Cyber Policy, Governance, Risk,

3 weeks ago


Tysons VA United States LMI Government Consulting (Logistics Management Institute) Full time
Overview The Cybersecurity subservice line (SSL) is seeking a Practice Area Lead (PAL) for the Cyber Policy, Governance, Risk, and Compliance Practice Area (PA), where a PA is understood to refer to a set of closely aligned distinct and unique capabilities that support SSL and LMI priorities and vision
The PALs will be responsible for 1) working with their SSL VP to develop a strategy for their Practice Area that aligns with SSL strategy and capability maturation; 2) supporting business development and growth for their PA, and 3) talent management and development within their PA
Within the Cybersecurity SSL, the PA includes: Cyber Policy, Governance, Risk, and Compliance
The Cybersecurity PAL will lead these practice area activities related to FISMA and cyber framework risk management as defined by NIST
Responsibilities The Cybersecurity Practice Area Lead role includes the following activities:
• Capability Maturation & Strategy
• Work with the Cybersecurity SSL VP to develop PA strategy and support Cybersecurity SSL strategy to assist in executing SSL goals.
• Create, update, and/or document solutions, offerings, methodologies, strategic partnership related documentation, and capabilities that align to the PA and resonate with market trends and/or client challenges (e.g., emerging threat landscape, convergence of varying security frameworks and mitigation methodologies, etc.)
• Coordinate across LMI to ensure PA capabilities are known throughout LMI and meeting the needs of LMI's customers and strategic partners.
• Continuously improve existing capabilities and develop new capabilities within PA to stay in front of a rapidly evolving and digitally enabled marketplace.
• Work effectively with other SSL PALs to ensure successful strategy and capability integration for more successful market engagement activities.
• BD and Growth
• Provide solutioning, capture, and proposal writing support to markets/growth for PA capabilities.
• Develop sales enablement materials to support SSL and PA growth.
• Screen RFIs/RFPs for potential action and lead/coordinate response for SSL
• Review, maintain, and coordinate with markets/BD to update pipeline opportunities related to the Practice Area or coordinate updates with the Business Development POC
• Support SSL and markets/growth in partner identification for opportunities
• Community Mentorship and Development
• Manage and develop talent within the PA.
• Manage the hiring process for talent demands within the PA (create position description documents, create vacancies in iCIMS, review resumes, participate in interviews, and approve work with the cyber SSL and PMs to make hiring recommendations for vacancies)
• Assist Resource Managers and SSL Director with staff redeployments and internal mobility.
• Mature the PA bench by identifying and mentoring subject matter experts and emerging talent and maintaining awareness of desired growth areas of staff within PA.
• Help identify the best approaches to improve the professional skills of Practice Area members to include certifications, degrees, professional organizations, and work experience.
• Provide input and support to Practice Area staff on Performance 365 goals and calibrations.
• Provide information and handle ad hoc requests for how to handle training license access requests, reimbursement activities, and other PA staff needs.
• Work with LMI Internal Controls staff, the cyber SL VP, and PMs to successfully resolve any time sheet or leave related issues with PA staff as needed.
• Work with PA staff to develop a trained and capable group of individuals who can successfully support whitepaper, RFI, and RFP response activities in support of the cyber SL.
• Work with internal LMI staff and market team members to handle BD charge code creation, management, and usage for PA team members requested to assist in BD activities.
• Work with SL VP to determine appropriate salary ranges for cyber vacancy fills.
• Work with the SL VP to support spot bonus and promotion activities for PA staff
Work with the SL VP to respond to proposal and teaming skills and salary questionnaires to support PA growth and acceptable SL profit margins
Qualifications
• Strong knowledge and demonstrated expertise of FISMA, DoDI 8510.01, and NIST RMF including multiple NIST cybersecurity frameworks.
• Experience in management consulting or federal government service, executing capabilities in Practice Area (military or civilian)
• Previous experience with whitepapers, RFIs and RFPs related to cybersecurity.
• Demonstrated subject matter expertise and thought leadership.
• Ability to lead, nurture, and develop people in an effective way with positive impacts to both the employee and LMI.
• Ability to understand and align competing work priorities and outcomes with partners (e.g., service line and market), adjust individual priorities for the greater good, and negotiate shared work goals.
• Ability to develop, nurture, and maintain collaborative partnerships
Collaborative partnerships have multiple hand-offs, require regular communication to coordinate and debrief, continual information exchange, collective contribution to work products, creative conflict, and mutual stake in success.
• Ability to clearly articulate other's roles and responsibilities in completing work and proactively and effectively resolve role conflicts, to include partners, team members and leaders.
• Ability to leverage indirect influence to delegate, co-create, and implement work products.
• Ability to tailor communication requirements and style to a wide range of situations, audiences, and requirements
• Possess mature emotional intelligence (EQ) as demonstrated by strong self-awareness, emotional resilience, empathy, and relationship management
Preferred Qualifications:
• Secret or Top-Secret Clearance
• Previous DoD experience
• Bachelor's degree in computer science, Information Security, or Management Information Systems
Will consider relevant experience as a substitute.
• CISSP and/or Security+ or, CEH, or AWS Solutions Architect certifications
• Exemplify LMI's 5 behaviors.
• Collaborate constantly by working across organizational boundaries.
• Operate in the gray area by accepting ambiguity.
• Embracing conflict by supporting and engaging in respectful, robust debates and discussions,
• Develop people by investing in the growth of others.
• Take an enterprise-wide view by evaluating challenges from multiple perspectives and maximizing the whole
LMI is a consultancy dedicated to improving the business of government, drawing from commercially successful practices and our deep expertise in advanced analytics, digital services, logistics, and management advisory services
LMI was established in 1961 for the express purpose of enhancing operations by incorporate methodologies and innovations from outside the federal government
We cultivate a culture of empowerment, inclusion, diversity, and entrepreneurship
Our employees are encouraged to incorporate new and novel approaches in unconventional spaces to advance our clients goals
We believe our clients can change lives and make a meaningful difference in our Nation, and we seek talented, curious, hardworking people who share that conviction
Our generous compensation package includes excellent benefits that start the first day of employment
Business casual dress, flex time, and tuition reimbursement are a few of our many work-life benefits available to our employees
LMI has been named a 2022 #TopWorkplace in the United States by Top Workplaces We are honored to be recognized as a company that values a people-centered culture, and we are grateful to our employees for making this possible

  • Quincy, MA, United States State Street Corporation Full time

    Who we are looking for State Street's Global Cyber Security (GCS) Third Party Cyber Risk Management (TPCRM) program seeks to mitigate a variety of third-party information security risk in accordance with the Bank's cyber risk appetite. Through a framework that addresses policy, process, operations, people, and technology, GCS protects our infrastructure,...


  • New York, NY, United States Goldman Sachs Full time

    Tech Risk - Governance, Regulatory & Engagement - Regulatory Engagements & Governance - Vice President YOUR IMPACT You will be a key addition to the Technology Risk Governance, Regulatory, and Engagement (GRE) team which provides governance over various aspects of the firm's information security and cyber security program, ensures regulatory obligations...


  • Frisco, TX, United States Comerica Full time

    Enterprise Risk RCSA Governance OfficerThis position will support the maintenance and implementation of the RCSA Policy with a focus on associated risk governance processes including maintenance of related standards, procedures, and playbooks; technology solution management; and guidance and training for impacted stakeholders. The position will evaluate the...


  • Northeastern United States Albury Wodonga Health Full time

    Dynamic work environment and team focussed culture Career opportunities and support for professional development Picturesque NE Victoria location close to regional attractions Who are we? Albury Wodonga Health (AWH) is the largest regional health service between Sydney and Melbourne, located in the twin cities of Albury and Wodonga. Our dedicated...


  • Boston, MA, United States State Street Corporation Full time

    Who we are looking for State Street's Model Risk Management (MRM) is seeking a Head of Model Risk Governance (MD) who will lead the Model Risk Governance team within the Model Risk Management group. The Head of Model Risk Governance plays a crucial role in promoting risk excellence culture, partnering with stakeholders in ensuring the robustness of Model...

  • Senior Policy

    3 weeks ago


    Vienna, VA, United States Navy Federal Credit Union Full time

    To monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance effectiveness and...

  • Senior Policy

    3 weeks ago


    Vienna, VA, United States Navy Federal Credit Union Full time

    Overview To monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance...


  • Quincy, MA, United States State Street Corporation Full time

    TPCRM VP Role State Street is seeking an operations leader for our Third-Party Cyber Risk Management Program. The VP of Third-Party Cyber Risk Management Assessment Operations will be responsible for providing leadership in the effective and efficient operations pertaining to the bank's global third-party cyber risk management program, engaging with partners...


  • Chicago, IL, United States CME Group Full time

    Description The Manager, Risk Management Policy, Recovery & Resolution will be responsible for managing efforts to shape risk management policy, leveraging knowledge, expertise and analytical skills. Support the Senior Director, Risk Policy, Recovery & Resolution in building out risk management policies related to current and evolving regulatory...

  • Operations Risk

    3 days ago


    Reston, VA, United States Fannie Mae Full time

    Job Description As a valued colleague on our team, you will provide expert advice on, and guide team in, assessing, identifying and reporting potential risks that may threaten our reputation, safety, security, and/or financial success, as well as participate with key stakeholders across the enterprise and guide team in understanding business objectives.THE...


  • Boston, MA, United States State Street Corporation Full time

    Who we are looking for We are looking for a highly skilled and experienced Cyber Auditor, Assistance Vice President to join our global cyber audit team. To succeed in this role, you need to have a deep understanding of cyber risks processes, controls, industry standards, and should have a strong knowledge of NIST, MITRE, and Defense in Depth concepts. You...


  • Dallas, TX, United States Comerica Full time

    Risk Remediation OfficerThis position will manage the maintenance and implementation of the Issue Management Policy with a focus on associated risk governance and risk training and will support Issue Coordinator Responsibilities for Enterprise Risk Division. The position will develop and ensure appropriate maintenance of common reporting, content formats and...


  • Chicago, IL, United States CME Group Full time

    Description Senior Cyber Defense Engineer (Systems) Position SummaryThis is a perfect opportunity for the right person to become a key part of a team of cybersecurity professionals that are executing a pivotal role in protecting and defending the nation's critical infrastructure. The Senior Cyber Defense Engineer will create, implement, and subsequently...


  • New York, NY, United States CME Group Full time

    Description The Manager, Risk Management Policy, Recovery & Resolution will be responsible for managing efforts to shape risk management policy, leveraging knowledge, expertise and analytical skills. Support the Senior Director, Risk Policy, Recovery & Resolution in building out risk management policies related to current and evolving regulatory...


  • Winchester, VA, United States Navy Federal Credit Union Full time

    To review, analyze, and report on Navy Federal's risk, quality, service, and controls, to improve operational efficiency and effectiveness, mitigate risk and remediate operational and regulatory vulnerabilities. Develop, lead and approve risk assessment projects to assess compliance with federal and state regulatory requirements, industry standards, and Navy...


  • Tysons, United States Management Concepts Full time

    For over 50 years, Management Concepts has provided training and workforce development solutions for Federal Government employees, teams, and agencies with a mission to improve individual and organizational effectiveness. The Training and Development industry is constantly evolving. Management Concepts is striving to remain relevant amidst all the change and...


  • Vienna, VA, United States Zillion Technologies Inc Full time

    THIS IS A DIRECT BANKING CLIENT REQUIREMENT ! Operational Risk Analyst Location : Remote and Onsite ( Once a week ) --- Vienna, VA // Pensacola, FL Technical analysis, Data analysis, Communication risk assessment, critical thinking, data analysis To review, analyze, and report on risk, quality, service, and controls, to improve operational...


  • Tysons, United States LMI Full time

    OverviewLMI seeks a skilled Cybersecurity Information Systems Security Engineer (ISSE) to support activities related to shipyard modernization as part of enterprise-wide U.S. Navy strategic modernization and improvement efforts. LMI is helping NAVSUP, NAVSEA, and the shipyards use technology to track materiel through the shipyards to address long-standing...


  • Princeton, NJ, United States State Street Corporation Full time

    Who We are Looking For: This role will be member of the Global Infrastructure Operations Continuous Service Improvement (CSI) team as part of 24*7*365 Production Management organization. An organization that delivers highly secure, reliable, efficient infrastructure technology operations services that are focused on the needs of all State Street business....

  • MID ISSO

    3 weeks ago


    , VA, United States EGlobalTech Full time

    EGlobalTech, A Tetra Tech Company, is looking for an Information Systems Security Officer (ISSO) to join our Cyber Solutions Practice. Qualified candidates should have exceptional communication skills and experience organizing and preparing security documentation and an active or interim secret clearance. This exciting role offers outstanding career growth...