Cyber Risk Management Analyst

4 weeks ago


Washington, Washington, D.C., United States GCyber Full time


GCyber is hiring a Cyber Risk Management Analyst to support data security risk assessments for a high visibility Executive Branch customer. Your primary focus will be on identifying and evaluating potential data security risks and vulnerabilities within the systems and developing effective mitigation strategies.

This is a dynamic role that will require knowledge and understanding in data security planning and controls compliance as well as a technical background to interpret data security risk and security assessment results and technical guidance.

This position is hybrid telework with 3 days onsite in Washington, DC. Given the unique mission requirements, there is no opportunity for full-time remote work arrangements.
As a Cyber Risk Management Analyst, you will:

  • Perform security risk assessments to data security principles and best practices are applied to applications architectures during the design, implementation, and operations phases.
  • Risk assessments include evaluating system interconnections for potential risks or vulnerabilities in how data is transmitted, accessed, and stored.
  • Develop risk assessment reports that can be presented to senior executives, highlighting features, functionality, interoperability, and other critical aspects.
  • Research data security capabilities for applications to provide recommendations for enhancing data security.
  • Identify and recommend appropriate security measures to mitigate identified risks. Collaborate with offices such as Cloud Application Security, Data Governance, and others to incorporate their findings into the risk assessment package.
  • Draft and maintain waivers, Plan of Action and Milestones (POA&Ms), and other relevant artifacts.


Minimum Qualifications and Experience:

  • Active DoD Top Secret/SCI clearance
  • BA/BS Degree in IT, Security, or a related field (or equivalent experience)
  • DoD IAT II certification (i.e., CCNA-Security, CySA+, GICSP, GSEC, Security+, CND, SSCP)
  • 4+ years of experience including demonstrated experience conducting security risk assessments for IT systems, applications, or services within a Government environment
  • Solid knowledge of cybersecurity frameworks, standards, and best practices such as NIST, FISMA, FedRAMP, etc.
  • Strong problem-solving abilities and attention to detail.
  • Excellent written and verbal communication skills, with the ability to explain technical concepts to non-technical stakeholders.

GCyber is an Equal Opportunity Employer. This means you don't have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability.
For future job notifications please follow GCyber on LinkedIn.


  • Cyber Threat Analyst

    1 month ago


    Washington, Washington, D.C., United States Non-Departmental Agency Full time

    SummaryCyber Threat Analysts conduct analysis, digital forensics, and targeting to identify and counter foreign cyber threats against U.S. information systems, infrastructure, and cyber-related interests.Duties As a Cyber Threat Analyst at CIA, you will conduct all-source analysis, digital forensics, and targeting to identify, monitor, and counter threats...


  • Washington, Washington, D.C., United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...


  • Washington, Washington, D.C., United States Joint Enterprise Technologies, LLC Full time

    Today's global security environment is a constant of change.Joint Enterprise Technologies is currently seeking an experienced Cyber Security Analyst with advanced knowledge in applying analytics in support of our client's enterprise network cyber defense capabilities As a Cyber Security Analyst you will have the opportunity to build strong lines of cyber...


  • Washington, Washington, D.C., United States ASRC Federal Holding Company Full time

    ASRC Federal AFSS is a premier provider of systems engineering, software engineering, system integration and project management services for real-time, mission-critical defense systems. We are seeking a Senior Risk Management Analyst to support a NASA contract in Greenbelt, MD.Responsibilities:Seeking an experienced senior-level Risk Management Analyst to...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Cyber Security Officers identify current threats, mitigate vulnerabilities, and anticipate future cybersecurity challenges, protecting CIA data and systems and managing IT risk. Duties As a Cyber Security Officer (CSO), you will protect Agency data and systems using sophisticated tools, instrumentation, and knowledge of CIA Information Technology...


  • Washington, Washington, D.C., United States Department Of The Treasury Full time

    Summary The new Director of the Office of Global Transactions will lead a team focusing on national security risks from global transactions, particularly those related to sensitive technologies and products crucial for military, intelligence, surveillance, or cyber capabilities of concerning countries.This opportunity is also open to Status Candidates under...


  • Washington, Washington, D.C., United States Office Of The Inspector General Full time

    This position is in the Policy, Strategy, and Risk Division (PSR), Office of lnnovation (OIN), Office of Inspector General (OIG), Department of Homeland Security (DHS). PSR is responsible for working across DHS OIG to forge effective communication and information sharing, create and maintain sound policies and procedures, facilitate strategic planning and...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired?In this position, you will serve as a Management & Program Analyst for the National Preparedness Directorate, National Integration Center, Planning Integration Branch, Office of Resilience StrategyTypical assignments include:Overseeing a team of contractors developing Resilience doctrine, including Resilience keystone...


  • Washington, Washington, D.C., United States SAIC Career Site Full time

    Description SAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy...


  • Washington, Washington, D.C., United States Talent Acquisition Concepts Full time

    What does a typical day look like for the Portfolio, Program, and Project Analyst?Monitoring project performance and reviewing deliverables to ensure technical, programmatic, and financial goals and objectives are met and identify possible program risks.Performing routine tasks including, but not limited to, scheduling, writing internal memos, maintaining...

  • Info Security Analyst

    2 weeks ago


    Washington, Washington, D.C., United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...


  • Washington, Washington, D.C., United States Veterans Affairs, Inspector General Full time

    OIG's Office of Investigations (OI) investigates potential crimes and civil violations of law involving VA programs and operations committed by VA employees, contractors, beneficiaries, and other individuals. These investigations focus on a wide range of matters including healthcare, procurement, benefits, education, construction, and other fraud; cybercrime...


  • Washington, Washington, D.C., United States Conference of State Bank Supervisors Full time

    Essential Functions To perform this job successfully, an individual must be able to perform each essential duty and responsibility satisfactorily. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Other duties may be assigned to meet business needs. Member of the Senior Leadership Team (SLT) -...


  • Washington, Washington, D.C., United States Judicial Branch Full time

    Summary This position is located in the Department of Technology Services, Information Technology Security Office, Security Operations Division. Duties The incumbent is a recognized cyber security expert with a proven record of successfully managing tier 3 level support to defensive cyber operations in a 24/7 environment. Must have a proven record of...


  • Washington, Washington, D.C., United States Department Of Transportation Full time

    Summary The position supports the mission and objectives of the ASH organization in the Intelligence & Threat Analysis Division (AXE-200). Duties Serves as an Intelligence Operations Specialist for Cyber Intelligence to assess current and emerging cybersecurity and technology threats while working within a Sensitive Compartmented Information Facility (SCIF)...


  • Washington, Washington, D.C., United States Department Of State Full time

    Summary This position is located with the U.S. Department of State, Office of the Inspector General (OIG) which has statutory oversight responsibility covering the Department, the U.S. Agency for Global Media (USAGM), and the International Boundary and Water Commission (IBWC). The incumbent serves as a Management and Program Analyst within the Office of...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired?In this position, you will serve as an expert-level analyst and advisor to management in the Policy, Tools, and Training Branch within the Hazard Mitigation Assistance Division. You'll be joining a team that invests in helping American communities become more resilient and mitigate against future disasters.Typical...


  • Washington, Washington, D.C., United States Department Of Defense Full time

    Summary This is an exciting opportunity to showcase your Enterprise Risk Management (ERM) expert knowledge, skills, and abilities with the Defense Counterintelligence and Security Agency (DCSA). DCSA is seeking a Supervisory Program Manager to serve as the Chief ERM, leading the agency's development, implementation, and sustainment of an ERM program. DCSA...

  • Financial Analyst

    4 weeks ago


    Washington, Washington, D.C., United States Department Of Commerce Full time

    SummaryThis notice is issued under direct-hire authority in response to the Creating Helpful Incentives to Produce Semiconductors (CHIPS) Act of 2022 for which NIST has a critical hiring need.Duties The CHIPS Operations Office is looking for a Financial Analyst who is excited to work with a new, evolving teamAs a new Financial Analyst on our team, you...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    In this position you will:Overseeing the development of evaluation plans, including theories of change, logic models, evaluation strategies, research agendas, and learning agendas for Risk MAP and other programs within the Directorate. Coordinating research, analysis, and evaluation efforts of FEMA programs and support the development of a Learning Agenda,...