7 дней назад
Risk & Compliance Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Risk & Compliance Analyst (Cybersecurity): Conducting cybersecurity risk assessments, Federal compliance reviews, audits, and continuous monitoring for a large Federal Government client with an accent on VA security requirements, remediation tracking, and compliance documentation. Focus on analyzing audit findings, coordinating corrective actions, and developing prioritized risk mitigation recommendations.
Location: Remote; travel may be required for stakeholder meetings, training, presentations, or briefings.
Company
delivers cybersecurity, development, IT infrastructure, supply chain management, system design, and continuous improvement services to the Federal Government.
What you will do
- Conduct cybersecurity risk assessments and compliance reviews to identify gaps and remediation needs.
- Support internal and external audits against Federal requirements and organizational policies.
- Perform risk assessment, mitigation, tracking, and continuous monitoring activities.
- Develop and maintain cybersecurity policies, procedures, and compliance documentation.
- Track compliance issues, coordinate corrective actions, and collaborate with technical teams, program leadership, Government stakeholders, and auditors.
- Support VA audit planning, documentation collection, auditor inquiries, and required submissions.
Requirements
- Ability to obtain and maintain the required VA background investigation, suitability determination, and system access.
- Bachelor’s degree in business, cybersecurity, computer science, information systems, information assurance, information security, resource management, or a related field.
- At least 7 years of information security experience, including at least 5 years in risk and compliance at a large company or government agency.
- Experience conducting cybersecurity risk assessments, compliance reviews, and audits.
- Experience developing risk mitigation strategies and supporting continuous monitoring.
- Certification in one or more of IAT III, IAM III, or IASAE III; certifications may substitute for a relevant bachelor’s degree or 4 years of relevant experience.
Nice to have
- VA or Federal cybersecurity compliance experience.
- RMF, FISMA, NIST, or ATO experience.
- Audit remediation or POA&M experience.
- Advanced degree in a related field.
Culture & Benefits
- Eleven Federal holidays and paid time off accrued each pay period.
- Parental leave and continuing education assistance.
- Medical, dental, vision, disability, life, and AD&D insurance benefits.
- 401(k) plan with competitive matching and a vesting schedule.
- Flexible spending accounts, employee assistance, wellness, legal, pet, and 529 college savings benefits.
- Veterans are encouraged to apply.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Ping Identity
10 дней назад
Risk Manager (Cybersecurity)
9 дней назад
Information Security & Risk Manager (Cybersecurity)
Anthropic
10 дней назад
Security Risk & Compliance, Data Centers & Compute (AI)
270 000 - 345 000$
8 дней назад
GRC Analyst (Cloud Security)
11 дней назад
Staff Security Analyst - GRC
160 000 - 190 000$
8 дней назад