Company Details
general-dynamics-information-technology
25,548
267,620
5415
gdit.com
0
GEN_1859352
In-progress

General Dynamics Information Technology Company CyberSecurity Posture
gdit.comGDIT is a global technology and professional services company that delivers solutions, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. GDIT is part of General Dynamics, a global aerospace and defense company. We have shared our clients’ sense of purpose for over half a century and have a have a unique understanding of their missions, complex environments, and a rapidly changing world. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Company Details
general-dynamics-information-technology
25,548
267,620
5415
gdit.com
0
GEN_1859352
In-progress
Between 750 and 799

GDIT Global Score (TPRM)XXXX



No incidents recorded for General Dynamics Information Technology in 2025.
No incidents recorded for General Dynamics Information Technology in 2025.
No incidents recorded for General Dynamics Information Technology in 2025.
GDIT cyber incidents detection timeline including parent company and subsidiaries

GDIT is a global technology and professional services company that delivers solutions, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. GDIT is part of General Dynamics, a global aerospace and defense company. We have shared our clients’ sense of purpose for over half a century and have a have a unique understanding of their missions, complex environments, and a rapidly changing world. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.


Apex Systems is a leading global technology services firm that incorporates industry insights and experience to deliver solutions that fulfill our clients’ digital visions. We offer a continuum of services, specializing in strategy, transformation, and managed services across application development

For 50 years, our nation’s federal Medicaid program has worked to improve the health, safety and well-being of America’s most vulnerable populations: low-income families, women and children, seniors, and those with disabilities. With positive health and cost outcomes that pierce inequities and impac

NTT DATA, Inc. is a trusted global innovator of business and technology services. We're committed to helping clients innovate, optimize and transform for long-term success. Our R&D investments help organizations and society move confidently and sustainably into the digital future. As a Global Top Em
Artificial Intelligence. Automation. Cloud engineering. Advanced analytics. For business leaders, these are key factors of success. For us, they’re our core expertise. At Sutherland, we are a leading global business and digital transformation partner. Our services span a diversified range of categ

Avanade is the world’s leading expert on Microsoft. Trusted by over 7,000 clients worldwide, we deliver AI-driven solutions that unlock the full potential of people and technology, optimize operations, foster innovation and drive growth. As Microsoft’s Global SI Partner we combine global scale with

We’re a cloud technology company that provides organizations around the world with computing infrastructure and software to help them innovate, unlock efficiencies and become more effective. We also created the world’s first – and only – autonomous database to help organize and secure our customers’

Virtusa is a global product and platform engineering services company that makes experiences better with technology. We help organizations grow faster, more profitably, and more sustainably by reimagining enterprises through domain-driven solutions. We combine strategy, design, and engineering, back

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to op

Accenture is a global professional services company with leading capabilities in digital, cloud and security. Combining unmatched experience and specialized skills across more than 40 industries, we offer Strategy and Consulting, Interactive, Technology and Operations services — all powered by the w
.png)
General Dynamics Information Technology is expanding its work with Google Public Sector to bring secure AI and cloud tools to the tactical...
Under the expanded collaboration, the two companies seek to jointly develop AI and cloud capabilities for defense and federal civilian...
GDIT will use Google Cloud technology to deliver advanced AI, cloud, and cyber solutions to government agencies.
GDIT's VENIN cyber accelerator employs artificial intelligence to automate detection and response and enhance situational awareness.
General Dynamics Information Technology (GDIT), a business unit of General Dynamics (NYSE:GD), announced today the launch of its VENIN...
Ninety percent of major carriers report monthly cyber intrusions. Hear David Carroll's key takeaways from the NMFTA Cybersecurity Conference...
GDIT's Matthew McFadden said AI's success in cyber defense depends on strong data governance, automation and responsible adoption.
In a recent discussion with General Dynamics Information Technology (GDIT) and Everfox, experts explored insider threats and emphasized that...
General Dynamics Information Technology announced last week it was awarded a $1.25 billion task order to modernize Army IT infrastructure.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of General Dynamics Information Technology is https://www.gdit.com.
According to Rankiteo, General Dynamics Information Technology’s AI-generated cybersecurity score is 784, reflecting their Fair security posture.
According to Rankiteo, General Dynamics Information Technology currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, General Dynamics Information Technology is not certified under SOC 2 Type 1.
According to Rankiteo, General Dynamics Information Technology does not hold a SOC 2 Type 2 certification.
According to Rankiteo, General Dynamics Information Technology is not listed as GDPR compliant.
According to Rankiteo, General Dynamics Information Technology does not currently maintain PCI DSS compliance.
According to Rankiteo, General Dynamics Information Technology is not compliant with HIPAA regulations.
According to Rankiteo,General Dynamics Information Technology is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
General Dynamics Information Technology operates primarily in the IT Services and IT Consulting industry.
General Dynamics Information Technology employs approximately 25,548 people worldwide.
General Dynamics Information Technology presently has no subsidiaries across any sectors.
General Dynamics Information Technology’s official LinkedIn profile has approximately 267,620 followers.
General Dynamics Information Technology is classified under the NAICS code 5415, which corresponds to Computer Systems Design and Related Services.
No, General Dynamics Information Technology does not have a profile on Crunchbase.
Yes, General Dynamics Information Technology maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/general-dynamics-information-technology.
As of November 27, 2025, Rankiteo reports that General Dynamics Information Technology has not experienced any cybersecurity incidents.
General Dynamics Information Technology has an estimated 36,263 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, General Dynamics Information Technology has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.