Cyber Risk Management Analyst Junior
Listed on 2026-10-10
-
IT/Tech
Cybersecurity, Information Security & Data Protection
The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the most comprehensive, mission critical cybersecurity operations in the federal government, protecting the digital infrastructure that safeguards America's borders. This multifaceted program spans 24/7/365 Security Operations Center (SOC) monitoring, advanced threat intelligence, forensics, incident response, cloud and network security engineering, zero trust modernization, vulnerability assessment, and enterprise-wide risk and compliance activities.
The Cyber Risk Management Analyst Junior will support teams at the forefront of national security, supporting sophisticated cyber operations that defend vital systems, enable secure mission execution, and counter rapidly evolving threats. You will find this work uniquely impactful, fast-paced, and deeply collaborative, offering the opportunity to lead high performing technical teams, shape CBP's cybersecurity strategy, and contribute directly to the protection of the nation.
WORK AND PERSONAL IMPACT
The Cyber Risk Management Junior plays a key role in ensuring risks are accurately captured, tracked, and communicated, forming the backbone of enterprise risk governance. By supporting control evaluations, documenting findings, and coordinating mitigation, this analyst enables leadership to make informed security decisions and strengthens the organization’s ability to meet federal cybersecurity expectations. The candidate will:
- Assist with documenting risks, gathering supporting information, assessing basic security control effectiveness, and monitoring remediation efforts.
- Supports risk reporting and contributes to applying repeatable risk processes across systems.
- Support the evaluation of technical and administrative security controls to determine effectiveness and identify deficiencies.
- Participate in continuous monitoring activities by assessing new vulnerabilities, configuration changes, or system updates.
- Support the evaluation of technical and administrative security controls to determine effectiveness and identify deficiencies.
- Assist in tracking remediation efforts by validating evidence, collecting updates from system owners, and maintaining accurate records of issue closure.
- Prepare supporting materials for risk summaries, dashboards, and leadership briefings.
- Minimum of three (3) years in cybersecurity or IT security experience.
- Foundational understanding of risk principles and assessment practices.
- Strong documentation, organizational, writing and communication capabilities.
- Foundational understanding of risk principles, security control assessment practices, and federal cybersecurity standards.
- Strong analytical and writing skills with the ability to break down technical issues into clear, actionable insights.
- Ability to collaborate effectively with technical and non-technical stakeholders across programs.
- Familiarity with IT system lifecycle processes, cybersecurity environments, or federal IT delivery.
- Preferred certifications:
- CompTIA Security+
- Certified in Risk and Information Systems Control (CRISC)
- NIST RMF Practitioner (various providers)
- Bachelor's degree in information technology, computer science, cybersecurity or a related field preferred.
- Previous or Current CBP Background Investigation desired.
Explore a career in cyber security at GDIT and you'll find endless opportunities to grow alongside colleagues who share your passion for securing the mission.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).