Назад
Company hidden
21 час назад

Risk Manager (Cybersecurity)

122 300 - 183 400$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Risk Manager (Cybersecurity): Managing project and cybersecurity risks for national security software programs with an accent on RMF activities, NIST security controls, DoD STIGs, and DevSecOps integration. Focus on maintaining risk registers, supporting ATO and cATO decisions, embedding mitigation work into Agile planning, and coordinating with program, cybersecurity, client, and regulatory stakeholders.

Location: On customer site in Colorado Springs, Colorado. Minimal travel and flexible working hours.

Salary: $122,300–$183,400 annually for Colorado Springs.

Company

hirify.global provides engineering and advanced technology solutions for intelligence and national security customers.

What you will do

  • Guide project leadership and program management through potential risks, opportunities, historical context, and emerging trends.
  • Manage the project risk register according to DoW RIO practices, documenting probability, impact, mitigation plans, and ownership.
  • Coordinate RMF risk activities with system owners, cybersecurity teams, Authorizing Official representatives, and program leadership to support ATO, cATO, and CtF documentation.
  • Assess risks related to NIST SP 800-53 controls, DoD STIGs, supply chain security, and secure software development.
  • Integrate risk reviews and mitigation priorities into Agile sprints, Program Increment planning, product backlogs, and technical roadmaps.
  • Coordinate with clients, consultants, regulatory bodies, and stakeholders on risk mandates, compliance, and risk acceptance decisions.

Requirements

  • Active U.S. government TS/SCI clearance required; eligibility is limited to U.S. citizens.
  • Ability to obtain and maintain JWICS and SAP/SAR clearance.
  • Bachelor’s degree in Information Technology, Computer Science, or a related field, or equivalent experience, with 10+ years of experience.
  • DODM 8140.03 cybersecurity certification such as CISSP, CISM, or CCISO.
  • Experience with project management, scheduling, resource management, risk tools such as ARM or Primavera Risk Analysis, and stakeholder leadership.
  • Working knowledge of Agile, Agile XP, DevOps, DevSecOps, networking, GitLab, Jira, and Confluence.

Nice to have

  • Familiarity with DoD cybersecurity artifacts and tools, RMF documentation, vulnerability findings, and compliance evidence supporting ATO or cATO decisions.

Culture & Benefits

  • Zero Harm and People First culture focused on belonging, connection, growth, and collaboration.
  • Flexible working hours.
  • Minimal travel requirements.
  • Potential additional compensation may include bonuses, commissions, relocation benefits, short-term incentives, long-term incentives, or discretionary performance payments.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →