Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.
Job DescriptionGDIT is your place. You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day. We think. We act. We deliver. There is no challenge we can't turn into opportunity. And our work depends a TS/SCI POLY level cleared Information Assurance/Audit Support Services person to join our team in support our Intelligence areas in either Springfield, VA or St. Louis, MO.What we need:
GDIT is looking for person experienced in Information Assurance/Audit Support Services that will report directly to the Chief for Cyber Readiness, where you will provide audit support that manages our customers’ preparation for, execution of, and response to external cyber audits such as Command Cyber Operational Readiness Inspection (CCORI), Command Cyber Readiness Inspection (CCRI), Cybersecurity Service Provider (CSSP), Federal Information Security Management Act (FISMA), and Federal Information Systems Controls Audit Manual (FISCAM) audits This includes, but is not limited to, aggregating documents and artifacts, securing the facilities and infrastructure necessary to house auditors and meetings, developing presentations, briefs, and other products as needed to brief stakeholders on audit readiness status, coordinating audit activities across the NGA enterprise, and conducting routine internal audit assessments to ensure a continuous level of audit readiness. Candidates performing audit support services shall have or obtain within six months of start a certification that is compliant with DoD 8140.01 and DoD 8570.01-M 1040 IAT Level II and CSSP Auditor.
what you'll do:
Ensure the Cybersecurity Operation Cell (CSOC) is prepared to successfully pass inspections and audits at all times; this includes but is not limited to identifying the audit criteria for CCRI/CCORI, FISMA, FISCAM, and CSSP auditsReview regulations, directives, guidance, grading criteria, regulations, and other documents and products as required to identify applicable cybersecurity standards and inspection criteria;Perform self-assessments of CSOC services to identify deficiencies, gaps, or other issues and provide remediation recommendations to the Chief of Cyber ReadinessCoordinate and collaborate with other Contracts, Government entities, and activities to identify and remediate any findings outside the direct control of TCS staffAs required, provide status briefings and reports to the Government on the status of findings and remediation statusRegularly attend meetings held both internally and community-wideDevelop, update, and maintain, dashboards, charts, documents, reports, and other products as required to accurately depict NGA’s audit readinessProvide input to the Weekly CSOC Status ReportCoordinate and collaborate with any internal or external stakeholders (government and contractor) as needed or directed by the government in support of this serviceQualifications:
Required:
Minimum of 6 years demonstrated experience supporting an IC or DoD agency in an auditor roleTS SCI POLY (active)Considerable experience preparing organizations for CCRI/CCORI, CSSP, and FISMA auditsStrong understanding of the NIST Cybersecurity FrameworkWorking knowledge of DOD Cybersecurity Services Evaluator Scoring Metrics (ESM) V.10Working knowledge of DoDIN Inspection Coordination GuidesWorking knowledge of DoDIN Inspection Pre-Deployment ChecklistsWorking knowledge of the areas of CCORI to include, but not limited to, DCO-IDM effectiveness, Traditional Security STIG checks, Contributing Factors and CND Directive scoringA minimum of 6 years demonstrated experience supporting an IC or DoD agency in an auditor roleStrong understanding of cybersecurity compliance policy, governance, programs, processes, and metrics.Excellent verbal and writing skills with the ability to write clear and concise assessment reportsDemonstrated experience providing briefings to an executive audience.IAT Level II certifiedWillingness to obtain CSSP Auditor certification within 6 months of joining the teamDesired:
ISACA CISA CertifiedIAT Level III CertifiedBachelor’s Degree Master’s Degree a plus