Назад
Company hidden
7 дней назад

Risk & Compliance Analyst (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Risk & Compliance Analyst (Cybersecurity): Conducting cybersecurity risk assessments, Federal compliance reviews, audits, and continuous monitoring for a large Federal Government client with an accent on VA security requirements, remediation tracking, and compliance documentation. Focus on analyzing audit findings, coordinating corrective actions, and developing prioritized risk mitigation recommendations.

Location: Remote; travel may be required for stakeholder meetings, training, presentations, or briefings.

Company

hirify.global delivers cybersecurity, development, IT infrastructure, supply chain management, system design, and continuous improvement services to the Federal Government.

What you will do

  • Conduct cybersecurity risk assessments and compliance reviews to identify gaps and remediation needs.
  • Support internal and external audits against Federal requirements and organizational policies.
  • Perform risk assessment, mitigation, tracking, and continuous monitoring activities.
  • Develop and maintain cybersecurity policies, procedures, and compliance documentation.
  • Track compliance issues, coordinate corrective actions, and collaborate with technical teams, program leadership, Government stakeholders, and auditors.
  • Support VA audit planning, documentation collection, auditor inquiries, and required submissions.

Requirements

  • Ability to obtain and maintain the required VA background investigation, suitability determination, and system access.
  • Bachelor’s degree in business, cybersecurity, computer science, information systems, information assurance, information security, resource management, or a related field.
  • At least 7 years of information security experience, including at least 5 years in risk and compliance at a large company or government agency.
  • Experience conducting cybersecurity risk assessments, compliance reviews, and audits.
  • Experience developing risk mitigation strategies and supporting continuous monitoring.
  • Certification in one or more of IAT III, IAM III, or IASAE III; certifications may substitute for a relevant bachelor’s degree or 4 years of relevant experience.

Nice to have

  • VA or Federal cybersecurity compliance experience.
  • RMF, FISMA, NIST, or ATO experience.
  • Audit remediation or POA&M experience.
  • Advanced degree in a related field.

Culture & Benefits

  • Eleven Federal holidays and paid time off accrued each pay period.
  • Parental leave and continuing education assistance.
  • Medical, dental, vision, disability, life, and AD&D insurance benefits.
  • 401(k) plan with competitive matching and a vesting schedule.
  • Flexible spending accounts, employee assistance, wellness, legal, pet, and 529 college savings benefits.
  • Veterans are encouraged to apply.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →