Cybersecurity Risk Management and Compliance

2 months ago


Springfield, United States Department of Homeland Security Full time

The Department of Homeland Security (DHS) is recruiting professionals to support a range of technical roles in Cybersecurity Risk Management and Compliance including, Cybersecurity Risk Management Analyst, Cybersecurity Policy Analyst, Technical Support Specialist, and Cybersecurity Supply Chain Risk Management Expert. All positions are in the DHS Cybersecurity Service.DHS Cybersecurity Service (DHS-CS) uses a multi-phase assessment process to qualify applicants seeking employment through the DHS-CS. Given the ever-advancing nature of cybersecurity and the ongoing need for cybersecurity talent, DHS-CS uses "Talent Pools" to pull qualified applicants (i.e., individuals who have successfully completed the multi-phase assessment process for their capability and career track/level) for consideration for these jobs.

This announcement is being used to fill the Cybersecurity Risk Management and Compliance Talent Pool. By applying to this job announcement, you are opting to be part of the DHS-CS Talent Pool for ongoing consideration for employment for relevant open jobs and will remain eligible for consideration for up to one year from the date of completion.

There are a variety of Cybersecurity Risk Management and Compliance opportunities across the Department, including supporting several specialized programs at the DHS Office of Strategy, Policy, and Plans (PLCY) the Cybersecurity and Infrastructure Security Agency (CISA), DHS Office of the Chief Information Officer (OCIO), and the Federal Emergency Management Agency (FEMA).

Depending on your career level and role, DHS Cybersecurity Service employees in the Technical Career Track, with a technical capability in Cybersecurity Risk Management and Compliance, will generally apply their expertise to perform a range of tasks, including:


Performing technical and nontechnical evaluation, documentation, validation, assessment, and authorization processes necessary to ensure that existing and new information technology systems meet the Department's cybersecurity and risk requirements, providing decision makers with the knowledge to make well-informed risk decisions
Considering risk assumptions and organizational tolerance for risk to inform strategic decision making
Monitoring adverse impacts or consequences to DHS and customizing communications for different levels of leadership and target audiences to present strategic recommendations for driving investments and operational decisions for managing risk to DHS mission, function, image, reputation, assets, individuals, and/or organizations
Supporting DHS leadership in making strategy or policy decisions for determining adverse impact or consequences to the organization to guide and inform subsequent risk management processes and tasks
Actively engaging with stakeholders within or across multiple organizations to identify, select, tailor, implement, document, and assess the security and privacy controls necessary to protect a system and/or the organization commensurate with the risk to organizational operations and assets
Ensuring appropriate treatment of risk, compliance, and assurance from internal and external perspectives, reporting on the security state of systems to appropriate organizational stakeholders
Working with HQ and/or Component experts to monitor and maintain ongoing situational awareness about the security and privacy posture of systems and/or the organization in support of risk management decisions
Collaborating with internal and external DHS stakeholders and/or National experts in risk management and compliance
Proactively performing risk assessment and compliance activities to determine levels of risk, tolerance for policy, and determine policy impact on strategy
DHS Cybersecurity Service employees start at career levels and salaries matching their experience and expertise. In recruiting for this opportunity, DHS may hire employees at higher or lower career levels and associated salaries. This position is in the Technical Track across a range of career levels. Employees in this career track generally:


Have between 5-15 years of cybersecurity work experience.
Range from experienced cybersecurity professionals who apply technical expertise and independent judgement to perform cybersecurity work - to - recognized Federal cybersecurity technical authorities with uncommon technical expertise who advise on cybersecurity challenges impacting DHS and the Nation.

Depending on their career level, DHS Cybersecurity Service employees with a technical capability Cybersecurity Risk Management and Compliance will generally apply their technical expertise to:


Oversee, evaluate, and support the documentation, validation, assessment, and authorization processes necessary to ensure that existing and new information technology systems meet the Department's cybersecurity and risk requirements, and provide decision makers with the knowledge to make well-informed risk decisions.
Ensure that strategic considerations drive investment and operational decisions with regard to managing risk to organizational operations (including mission, function, image and reputation), organizational assets, individuals, other organizations (collaborating or partnering with federal agencies and contractors) and the nation.
Understand and utilize the National Institute of Standards and Technology (NIST) series of documents.

DHS Cybersecurity Service employees start at career levels and salaries matching their experience and expertise. In recruiting for this opportunity, DHS may hire employees at higher or lower career levels and associated salaries.

To learn more about DHS Cybersecurity Service career tracks and levels, visit our application portal.

This position is focused on Cybersecurity Risk Management and Compliance.

DHS Cybersecurity Service jobs are structured cybersecurity specializations - called technical capabilities. To learn more about technical capabilities, visit our application portal.


  • Cybersecurity Manager

    1 month ago


    Springfield, Illinois, United States Rividium Inc Full time

    Job DescriptionRiVidium Inc, a leading provider of cybersecurity solutions, is seeking a highly skilled Cybersecurity Manager to join our team. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our systems and data.Key Responsibilities:Develop and implement cybersecurity policies...

  • Cybersecurity Manager

    4 weeks ago


    Springfield, Illinois, United States Rividium Inc Full time

    About the RoleRiVidium Inc, a leading provider of cybersecurity solutions, is seeking an experienced Cybersecurity Manager to join our team. As a key member of our security team, you will be responsible for ensuring the cybersecurity of our programs, organizations, systems, and enclaves.Key ResponsibilitiesAcquire and manage necessary resources to support IT...


  • Springfield, Virginia, United States Softek International Full time

    Cybersecurity Architect Role OverviewSoftek International Inc. is a leading provider of innovative solutions, committed to astounding clients with exceptional results. As a seasoned member of our team, you will play a crucial role in shaping our cybersecurity strategy.As a Cybersecurity Architect - Senior Level, you will be responsible for leading the...


  • Springfield, Illinois, United States NTT DATA Full time

    About the Role:The Principal Security Consultant at NTT DATA is a highly skilled expert responsible for translating clients' cybersecurity requirements and customizing and implementing security solutions into specific systems, applications, and product designs.This role identifies and develops the security solutions for clients using company products,...


  • Springfield, Illinois, United States Risk Strategies Full time

    The Account Executive role at Risk Strategies is a key position responsible for managing a complex book of business, including placement and client management. The ideal candidate will have a deep understanding of Property & Casualty business and experience in a brokerage environment.Key responsibilities include overall Service, Placement and Business...


  • springfield, United States FEDITC - Federal IT Consulting Full time

    DescriptionSpecialist should be capable of providing security control assessments in accordance with NIST Risk Management Framework and the Committee on National Security Systems (CNSS)’s guidance and standards. Able to validate those assessments and analysis of DHS NSS and other designated systems, appliances, or applications. Evaluate cyber risk...


  • springfield, United States FEDITC - Federal IT Consulting Full time

    DescriptionSpecialist should be capable of providing security control assessments in accordance with NIST Risk Management Framework and the Committee on National Security Systems (CNSS)’s guidance and standards. Able to validate those assessments and analysis of DHS NSS and other designated systems, appliances, or applications. Evaluate cyber risk...


  • Springfield, Missouri, United States 7G Environmental Compliance Management Full time

    Job Overview7G Environmental Compliance Management is seeking a highly motivated and detail-oriented Environmental Compliance Specialist to join our team. As a key member of our compliance team, you will be responsible for conducting visual inspections of our clients' petroleum storage tank systems and associate facilities.Key Responsibilities:Conduct visual...

  • Cybersecurity Expert

    4 weeks ago


    Springfield, Illinois, United States S2 Analytical Solutions Full time

    Cybersecurity SME Role OverviewThis position serves as a Cybersecurity subject matter expert responsible for advising the government on the development and execution of the strategic and tactical cybersecurity program with a focus on the coordination and development of system security concepts, capabilities, and problem resolution.Key...


  • Springfield, Illinois, United States Koniag Data Solutions, LLC Full time

    Job SummaryKoniag Data Solutions, LLC is seeking a highly skilled Information System Security Officer to support our government customer in Fairfax, VA. This is a hybrid opportunity requiring 2-3 days of onsite work.Key ResponsibilitiesAnalyze and define security requirementsPerform risk analysis and security control assessment and audit services, developing...


  • Springfield, Illinois, United States Rockwell Automation Full time

    Job DescriptionAt Rockwell Automation, we are seeking a highly skilled Cybersecurity Project Manager to join our team. As a key member of our Cybersecurity Delivery Office, you will be responsible for overseeing multiple projects and ensuring their successful completion. Key Responsibilities:Develop a deep understanding of projects within our program...


  • Springfield, United States Department of Homeland Security Full time

    The Department of Homeland Security (DHS) is recruiting professionals to support a range of developmental roles in Cybersecurity Research and Development, including Cybersecurity Strategist, Cybersecurity Researcher, Threat Researcher, and NISAC Portfolio Analyst. All positions are in the DHS Cybersecurity Service.DHS Cybersecurity Service (DHS-CS) uses a...

  • Cybersecurity Analyst

    1 month ago


    Springfield, Illinois, United States GuidePoint Security Full time

    GuidePoint Security is a trusted cybersecurity expert that provides expertise, solutions, and services to help organizations make informed decisions and minimize risk. Our team of skilled professionals performs in-depth analysis of potential cybersecurity incidents and provides formal recommendations to organizational leadership.As a Security Operations...


  • Springfield, Virginia, United States Raytheon Technologies Full time

    Job SummaryNightwing is seeking a highly skilled Cybersecurity Field Specialist to join our team. As a Cybersecurity Field Specialist, you will work with our cross-functional team to create and implement innovative solutions for our clients. Your background in the construction and trades industry will be essential in this role, as you will work with...


  • Springfield, Illinois, United States ManTech Full time

    Cyber Forensics Specialist Job DescriptionManTech is seeking a highly skilled Cyber Forensics Specialist to join our team. As a Cyber Forensics Specialist, you will support the Cyber Forensics team in providing expertise in computer forensics, mobile device forensics, data and media recovery. Your responsibilities will include providing reverse engineering,...


  • Springfield, Illinois, United States SAIC Full time

    This exciting opportunity at SAIC is for a Senior Cybersecurity Engineer with expertise in PKI configuration management to support the Department of State (DoS) Bureau of Diplomatic Technology (DT) PKI program. The successful candidate will provide transparent security services in support of the Department's goals to secure communications among Department...


  • Springfield, United States Department of Homeland Security Full time

    The Department of Homeland Security (DHS) is recruiting professionals to support a range of leadership roles in Cybersecurity Defensive Operations - Intelligence Collection & Analysis as well as Planning, Execution & Analysis, including Cyber Operations Lead, All Source-Collection Manager, All Source-Collection Requirements Manager and Network Operations...


  • Springfield, Virginia, United States Gray Tier Technologies Full time

    Job Title: Security Control AssessorGray Tier Technologies is seeking a highly skilled Security Control Assessor to join our team.Job Summary:We are looking for a seasoned professional with expertise in NIST RMF and CNSS policy frameworks to assess and ensure the security of National Security Systems. The ideal candidate will have a strong background in...

  • Compliance Manager

    1 month ago


    Springfield, Illinois, United States Mercy Full time

    OverviewThe Compliance Manager plays a critical role in ensuring the integrity of our healthcare operations. This position is responsible for managing internal and external audits, surveys, and risk assessments by working closely with the Ministry Office and other stakeholders to identify and document findings and recommendations.Key ResponsibilitiesManage...


  • Springfield, Illinois, United States General Dynamics Information Technology Full time

    Job Title: Cybersecurity Systems EngineerWe are seeking a skilled Cybersecurity Systems Engineer to support the implementation and integration of unified security and endpoint management solutions. The ideal candidate will play a crucial role in the knowledge transition process, ensuring seamless integration and effective utilization of these solutions...