Назад
Company hidden
8 часов назад

Senior Security Risk Management SME (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Risk Management SME (Cybersecurity): Providing senior-level cybersecurity risk management expertise for federal information technology and mission environments with an accent on A&A, FISMA compliance, IC security standards, continuous monitoring, CDS, and secure cloud/hybrid engineering. Focus on automating authorization and assessment activities, applying NIST 800-series and CNSSI 1253 controls, and advising on risk posture and remediation.

Location: Washington, District of Columbia, United States; on-site

Company

hirify.global is a professional services provider supporting U.S. defense and civilian agencies with cybersecurity, business intelligence, acquisition, procurement, and other mission services.

What you will do

  • Provide senior-level cybersecurity risk management subject matter expertise.
  • Support authorization and assessment, FISMA compliance, IC cybersecurity policies and standards, continuous monitoring, CDS, and secure cloud/hybrid engineering.
  • Apply emerging security risk management practices and automate authorization, assessment, and continuous monitoring activities.
  • Apply NIST 800-series and CNSSI 1253 security controls, RMF principles, and related guidance.
  • Advise on secure cloud and hybrid engineering risk posture, compliance, and remediation approaches.

Requirements

  • Minimum 10 years of related experience.
  • At least 2 years of recent experience in authorization and assessment, FISMA compliance, IC cybersecurity policy and standards, continuous monitoring, CDS, and secure cloud/hybrid engineering.
  • Experience automating authorization and assessment and continuous monitoring activities.
  • Experience applying NIST 800-series and CNSSI 1253 controls and RMF guidance.
  • CISM, CAP, or GRC certification in good standing is mandatory at award and throughout the period of performance, unless comparable demonstrable experience is accepted.

Nice to have

  • Certifications in AWS, Microsoft Azure, or Microsoft Office 365 cloud platforms.

Culture & Benefits

  • Work on federal defense and civilian agency missions.
  • Contribute to enterprise-wide cybersecurity and risk management outcomes.
  • Join a certified Service-Disabled Veteran-Owned Small Business with more than 20 years of professional services experience.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →