Risk Management Project Director

3 weeks ago


Washington, United States Gunnison Consulting Group Inc Full time

Job Description

Job Description

We are seeking a motivated and customer-oriented professional to support our HHS client. Location:

Remote Duties and responsibilities include: Provide strategic leadership to the enterprise cybersecurity risk management task area of the Cybersecurity Support Services (CSS) program at the Department of Health and Human Services (HHS). Provide strategic leadership of activities required under Circular A-123,

Management Responsibility for Internal Controls , as well as those under the

Federal Managers Financial Integrity Act of 1982,

improving accountability and effectiveness of federal programs and operations. Manage communication between contract support, federal leads, and the HHS Risk Branch Chief regarding personnel, processes, contract deliverables, etc. Conduct assessments to determine the likelihood and potential impact of identified risks in each program area. Anticipate and identify risks associated with risk program areas, develop and recommend risk mitigation plans to minimize the impact of identified risks, and work with HHS to implement changes to mitigate risks and improve overall HHS risk posture. Work with Risk Team Leads to mature HHS Risk area programs and processes. Provide leadership and guidance to the Risk Team, fostering a culture of risk awareness and accountability. Continuously evaluate and improve HHS' risk management processes, tools, and methodologies based on industry best practices and lessons learned. Ensure that risk management practices comply with relevant regulatory requirements and industry standards. Support additional activities under other task areas of the contract, as directed by the CSS Program Manager. Required Qualifications : Understanding of risk-related guidance from the National Institute of Standards and Technology (NIST); particularly Special Publication 500, 800, and 1800 series, as well as Interagency or Internal Reports (NISTIRs) and related artifacts. Identifying factors and circumstances that may influence or lead to the formation of risks, issues, and opportunities. Eliciting risks, issues, and opportunities from historical references, technical documentation, business processes, and U.S. Government-approved interview techniques, such as prompt lists and dipstick queries. Experience defining and explaining risks, issues, and opportunities from a:

Threat-centric approach. Control-centric approach. Vulnerability-centric approach.

Experience performing all steps of the NIST Risk Management Framework (RMF). Experience with both identifying and modeling threats. Excellent verbal and written communication required. Desired Qualifications: Performing enterprise risk assessments. Performing enterprise risk analyses (qualitative, quantitative, and semi-quantitative). Performing issue and opportunity impact assessments and analyses. Performing privacy threshold assessments (PTAs) and privacy impact analyses (PIAs). Evaluating and comparing mitigations (including cost/benefit and time/resource evaluations). Performing analyses of alternatives (AoAs). Familiarity (prefer experience) with multi-layer and multi-dimensional relationships between specific and enterprise risks, issues, and opportunities, as described in ISO 31000, the 7 imperatives of Continuous Adaptive Risk and Trust Assessment (CARTA), the COSO Cube

, and (ISC)2. Working familiarity with U.S. Government approved mitigation approaches. Experience as an Information System Security Officer (ISSO) and/or a Security Control Assessor (SCA). Performing physical facility risk, issue, and opportunity (RIO) walkthrough inspections. Developing taxonomies to clarify the policy-level relationship between traditional GRC and privacy. Procedure development and process improvement, such as ITIL, Lean, Six Sigma, and CMMI. The following certifications and training are preferred:

Project Management Professional (PMP) Certified Risk Manager (CRM) or Certified Risk Management Professional (CRMP) Completion of U.S. Government authorized RMF training, either:

Introduction to the RMF , from the Center for Development of Security Excellence (CDSE), Defense

Counterintelligence

and Security Agency; or RMF for Systems and Organizations Introductory Course - Version 2 , from NIST.

Certified Authorization Professional (CAP), Certified Information Systems Security Professional (CISSP), and/or Certified Cloud Security Professional (CCSP)

Education Requirement:

Bachelor's degree in business administration, Cybersecurity, or related field required Clearance Requirement : Ability to obtain and maintain a Public Trust.

Why Join Gunnison? Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation. Quality is our top priority. Gunnison employee benefits meet or exceed what other companies in the Washington, D.C. metropolitan area offer. There is a great sense of camaraderie at Gunnison. This is an atmosphere we will maintain as we continue to grow. We are growing rapidly and the opportunity for individual professional growth with Gunnison is outstanding. We hire for careers at Gunnison, not to fill a position. Employee Benefits Gunnison employee benefits meet or beat other companies in the Washington, D.C. metropolitan area, including: Bonuses AND profit-sharing 401k Matching Certifications and training allowance $2,500/year 3 weeks of personal leave your first year (160 hours can roll over every year) 5 days of Flex-Time-Off per year Equal

Opportunity/Affirmative

Action Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time. In 1994 Gunnison Consulting Group began serving the greater Washington, D.C. metro area, focused on tackling our customers' most ambitious technology projects.

By creating a culture dedicated to enabling our customers and employees to achieve more than they ever thought they could

, the company has thrived for over 25 years.

#J-18808-Ljbffr



  • Washington, United States Watermark Risk Management International Full time

    Job DescriptionJob DescriptionCome make your mark with Watermark!🎖️ FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business.🌎 SUBJECT MATTER EXPERTS specializing in security and risk management. We’re intimately familiar with DOD security programs and mission requirements.⭐ OUR CORE VALUES drive...


  • Washington, United States Logistics Management Institute Full time

    Overview LMI seeks Risk Management Consultant to support a federal program management office in Washington, DC. Join our team of collaborative self-starters focused on delivering practical and efficient solutions to help our client keep U.S. borders safe and facilitate travel and trade. As part of our high-performing team, you will augment our vital work to...

  • Project Manager

    18 hours ago


    Washington, United States Voter Education Project Full time

    STRATEGIES FOR CHANGE GROUP WHO WE ARE: Since 2013, Strategies For Change Group has combined insightful advice with meaningful involvement to effect real change in communities. Our expertise spans business-to-business engagement, phone banking programs, peer-to-peer texting, and canvassing initiatives. As a minority-owned and operated firm, SFCG has engaged...

  • Project Manager

    1 month ago


    Washington, United States Voter Education Project Full time

    STRATEGIES FOR CHANGE GROUP WHO WE ARE: Since 2013, Strategies For Change Group has combined insightful advice with meaningful involvement to effect real change in communities. Our expertise spans business-to-business engagement, phone banking programs, peer-to-peer texting, and canvassing initiatives. As a minority-owned and operated firm, SFCG has engaged...

  • Project Manager

    1 month ago


    Washington, United States Voter Education Project Full time

    Job DescriptionJob DescriptionSTRATEGIES FOR CHANGE GROUP WHO WE ARE: Since 2013, Strategies For Change Group has combined insightful advice with meaningful involvement to effect real change in communities. Our expertise spans business-to-business engagement, phone banking programs, peer-to-peer texting, and canvassing initiatives. As a minority-owned and...

  • Project Manager

    1 month ago


    Washington, United States Civics Education Project Full time

    Job DescriptionJob DescriptionSTRATEGIES FOR CHANGE GROUP WHO WE ARE: Since 2013, Strategies For Change Group has combined insightful advice with meaningful involvement to effect real change in communities. Our expertise spans business-to-business engagement, phone banking programs, peer-to-peer texting, and canvassing initiatives. As a minority-owned and...


  • Washington, United States Watermark Risk Management International, LLC Full time

    ️FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. SUBJECT MATTER EXPERTS specializing in security and risk management. We’re intimately familiar with DOD security programs and mission requirements. OUR CORE VALUES drive every action we take as a company. We strive to exhibit PERSPECTIVE, PASSION,...


  • Washington, United States Gunnison Consulting Group Inc Full time

    Job DescriptionJob DescriptionGunnison Consulting is seeking a Cybersecurity Risk Assessment Lead to work in the Washington, DC area to support the Department of Health and Human Services' (HHS) cybersecurity mission of ensuring HHS can actively protect the vital health information with which it is entrusted, respond to existing and emerging...


  • Washington, United States Gunnison Consulting Group Inc Full time

    Gunnison Consulting is seeking a Cybersecurity Risk Assessment Lead to work in the Washington, DC area to support the Department of Health and Human Services' (HHS) cybersecurity mission of ensuring HHS can actively protect the vital health information with which it is entrusted, respond to existing and emerging cybersecurity threats, and continue to enhance...

  • Director, Integrity

    5 hours ago


    Washington, United States World Wildlife Fund Full time

    Overview World Wildlife Fund (WWF), one of the world’s leading conservation organizations, seeks a Director, Integrity & Risk (Investigations). Major Function The Director is responsible for (1) developing strategy, programs, and processes for managing concerns raised via the incident management system and other channels, (2) intake, assessment,...

  • Project Manager

    16 hours ago


    Washington, United States LexisNexis Risk Solutions Group Full time

    ** Project-Program Management Project Manager - Public Safety Service Delivery** * Brand: LexisNexis Risk Solutions * Location: Washington, District of Columbia, United States of America **Job Overview** The Public Safety Service Delivery Project Manager position is within the Government Service Delivery organization. This role provides project management...


  • Washington, United States National Park Service Full time

    Summary This position is located in Visitor and Resource Protection, in the Office of Risk Management Division. The National Park Service's Office of Risk Management (ORM) provides management direction, policy, oversight, and technical assistance for a variety of national programs relating to employee and visitor safety. The Chief, Office of Risk...

  • Project Manager

    1 month ago


    Washington, United States LexisNexis Risk Solutions Group Full time

    ** Project-Program Management Project Manager - Public Safety Service Delivery** * Brand: LexisNexis Risk Solutions * Location: Washington, District of Columbia, United States of America **Job Overview** The Public Safety Service Delivery Project Manager position is within the Government Service Delivery organization. This role provides project management...

  • Risk Manager

    1 day ago


    Washington, United States RB Consulting Inc. Full time

    Job DescriptionJob DescriptionRisk Manager 05-8012 PAWashington, D.C.RB Consulting, Inc. ("RBCI") is a company that truly believes that workforce diversity is a major contributor to success. Since its inception, RBCI has made a concerted effort to attract and recruit talented individuals from all walks of life. RBCI is a Service-Disabled Veteran-Owned Small...


  • Washington, United States iTech Solutions Full time

    Description: Essential Duties Ensure all deliverables meet both project scope and project owner expectations; Provide guidance and direction to the project team; Responsible for the timeliness and budget of all work activates and project deliverables; Lead the project kick-off meeting, milestone status meetings, and deliverable review meetings; Interface...

  • Risk Manager

    5 hours ago


    Washington, United States Pesolutions IT Full time

    Experience developing and administering risk management, including risk identification, risk transfer and risk mitigation measures and techniques. Coordinates closely with project operations and management, and other stake holders. Responsible for developing and updating risk registers and implementing risk management policies and procedures. Relies on...

  • Risk Manager

    11 hours ago


    Washington, United States Premier Enterprise Solutions LLC Full time

    Risk Manager Overview: Responsibilities: Experience developing and administering risk management, including risk identification, risk transfer and risk mitigation measures and techniques. Coordinates closely with project operations and management, and other stake holders. Responsible for developing and updating risk registers and implementing risk management...

  • Senior Risk Manager

    13 hours ago


    Washington, United States CIPE Full time

    Company Overview The Center for International Private Enterprise (CIPE) strengthens democracy around the world through private enterprise and market-oriented reform. CIPE is one of the four core institutes of the National Endowment for Democracy and is an affiliate of the U.S. Chamber of Commerce. Since 1983, CIPE has worked with business leaders,...

  • Project Manager

    3 weeks ago


    Washington, United States APSI Construction Management Full time

    Responsibilities: Project Manager will provide leadership and mentorship and decisive guidance and direction in regard to the management of technical aspects of engineering related to building structures. Project Manager will be responsible for the overall management, in terms of technical quality, cost and schedule and will lead a diverse team of...

  • Project Manager 2

    5 days ago


    Washington, United States Federal Management Systems, Inc. Full time

    **Job Overview**: **Duties**: by the PB-ITS and ancillary support to other PBS offices, including regional offices - Provide project management support for Building, Monitoring, and Control (BMC) systems, Smart Building technologies, program implementation, documenting the inventory of business systems, as well as network design architecture. This support...