Cybersecurity Governance and Compliance Specialist

2 weeks ago


Washington, United States Dine Development Corporation Full time
Job Overview:

Diné Development Corporation (DDC) is on the lookout for a Cybersecurity Governance and Compliance Specialist to enhance our dedicated team. The selected candidate will take the initiative to assess, revise, and uphold cybersecurity policies, guidance documents, directives, templates, and related materials, ensuring that all documentation aligns with the latest Government cybersecurity program standards.

*This role is contingent upon contract award*

Key Responsibilities:

Under guidance, the candidate will deliver Cybersecurity and Privacy requirements and support, which includes but is not limited to:
  • Ensuring a qualified and reliable workforce by submitting pre-vetted and completed Security Clearance Packages for all proposed personnel.
  • Providing meeting support and documentation, including administrative and technical assistance for meetings; coordinating scheduling and notifications; preparing briefing slides, agendas, handouts, and supplementary materials; and documenting meeting minutes, including action items and responsibilities.
  • Facilitating a Monthly Status Meeting.
  • Generating a Monthly Status Report (MSR).
  • Creating, editing, formatting, and updating cybersecurity documentation, including policies, standards, procedures, user manuals, and other relevant materials, ensuring uniformity in formatting, language, and structure across all documents.
  • Conducting a gap analysis of existing cybersecurity policies, handbooks, standards, and procedures, providing recommendations for improvements.
  • Performing Cybersecurity Assessment and Management (CSAM) inventory reviews and updating plans on a monthly basis.
  • Submitting Authority To Operate (ATO) packages to the Government as necessary.
  • Executing Supply Chain Risk Assessments, ensuring that IT Checklists meet data security requirements, integrated into the overall risk management framework.
  • Reporting Government risk metrics to the Risk Register monthly based on deliverables.
  • Demonstrating subject matter expertise in CSAM by performing tasks such as reviewing security assessments and managing Plans of Action and Milestones (POA&Ms).
  • Developing CSAM administration skills, managing user accounts, and providing training to users.
  • Generating reports and ensuring compliance with CSAM.
  • Collaborating with stakeholders, including Information System Security Officers (ISSOs), to update data in CSAM.
  • Working closely with stakeholders to gather necessary information for the development and updating of cybersecurity documentation through interviews and data collection.
  • Managing SharePoint Cyber Security Team Folders by maintaining and organizing documentation, ensuring proper access controls, and implementing effective folder structures.
  • Demonstrating understanding of Government standards and requirements from entities such as FISMA, NIST, CISA, and OMB.
  • Exhibiting proven experience in writing formal reports with minimal errors, conducting research, documenting findings, and making informed recommendations.
  • Possessing comprehensive knowledge of developing and modifying cybersecurity documentation to ensure consistency.
  • Performing other duties as assigned.
Qualifications (Education/Skills/Experience):

Education: BS/BA in a relevant field (or equivalent)

Experience: 6+ years of CyberSecurity Asset Management (CSAM) experience

Certifications: Minimum CGRC Certification

Clearance: Public Trust - Must have the ability to obtain

Work Schedule: Minimum of three (3) days per week on-site.

At DDC, we are committed to delivering IT, professional, and environmental solutions that support the missions of federal, state, and tribal government agencies. Our team of specialists is dedicated to building client-centric solutions that address critical challenges faced by various organizations. We prioritize economic development and community empowerment to create a lasting impact and sustainable growth for future generations.

This contractor and subcontractor shall adhere to the requirements of 41 CFR a), a) and a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity, national origin, or for inquiring about, discussing, or disclosing information about compensation, or any other basis prohibited by law. We participate in E-Verify.

#LI-DNP

  • Washington, Washington, D.C., United States SAIC Full time

    Position Overview SAIC is seeking a Cybersecurity Compliance Specialist to enhance the Department of Transportation's cybersecurity initiatives by becoming part of a skilled team of cybersecurity experts. This role is crucial in maintaining and improving the security framework of DOT's information systems and infrastructure, which are vital for managing the...


  • Washington, Washington, D.C., United States SAIC Full time

    Position Overview SAIC is seeking a Cybersecurity Compliance Specialist to enhance the Department of Transportation's Cybersecurity initiatives by collaborating with a skilled team of cybersecurity experts. This role is essential in upholding and improving the security framework of DOT's information systems and infrastructure, which are vital for managing...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cybersecurity Specialist to support a government consulting firm in a 100% on-site opportunity. The Cybersecurity Specialist is responsible for ensuring the security and compliance of the customer's critical systems.Key Responsibilities:Establish and maintain Configuration Management of documentationID,...


  • Washington, Washington, D.C., United States SAIC Full time

    Position Overview SAIC is seeking a Cybersecurity Compliance Specialist to enhance the security framework of the Department of Transportation's Cybersecurity initiatives. This role involves collaborating with a team of dedicated cybersecurity experts to uphold and improve the security standards of DOT's information systems and infrastructure, which are vital...


  • Washington, Washington, D.C., United States Bureau Of Industry And Security Full time

    As an IT Cybersecurity Specialist (Direct Hire), you will perform the following duties:Designs and reviews requirements for technical projects to determine objectives of the program, concepts, nature of the unprocessed data, and process required in support of the technology effort in or organize work processes and problems for technology solutions. Develops...


  • Washington, Washington, D.C., United States Department Of Energy - Agency Wide Full time

    This is an Excepted Service position. This appointment will not confer Competitive Service career-conditional or career tenure status. This means that if you are selected, you would have to compete with other applicants in open competition to meet requirements for another Federal position, unless you meet the requirements for reinstatement. Applicants who...


  • Washington, United States T-Mobile Full time

    About the RoleT-Mobile is seeking a highly motivated and experienced attorney to join its cybersecurity legal compliance team. As a Senior Corporate Counsel, you will play a critical role in administering the company's enterprise-wide cybersecurity compliance program, ensuring compliance with various regulations and providing legal guidance to the...


  • Washington, United States Dine Development Corporation Full time

    Job Summary: NOVA-Dine is seeking a Governance Risk Compliance Analyst to join their growing team! The candidate will proactively review, update, and maintain cybersecurity policy, guidance documents, directives, templates, and materials to ensure all documentation reflects and incorporates the most recent version of all Government cybersecurity program...


  • Washington, United States Dine Development Corporation Full time

    Job Summary: NOVA-Dine is seeking a Governance Risk Compliance Analyst to join their growing team! The candidate will proactively review, update, and maintain cybersecurity policy, guidance documents, directives, templates, and materials to ensure all documentation reflects and incorporates the most recent version of all Government cybersecurity program...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Information Systems Security Specialist to support a government consulting firm in a 100% on-site opportunity. The ISSO is responsible for ensuring the security and compliance of the customer's critical systems.Key Responsibilities:Establish and maintain Configuration Management of documentationID, assess,...


  • Washington, United States Alaka`ina Foundation Family of Companies Full time

    Position Title: Cybersecurity Compliance ManagerLocation: Washington, DCJob Code: 12185Openings: 1The Alaka`ina Foundation Family of Companies is seeking a dedicated Cybersecurity Compliance Manager to support our esteemed government client in Washington, DC. This role requires full-time on-site engagement.Key Responsibilities:Oversee and lead the...


  • Washington, United States Nava Full time

    Nava is looking for a Lead Cybersecurity Compliance Specialist to join our dedicated team. In this role, you will contribute your expertise in security compliance to critical projects that support our mission.This position currently offers a hybrid work arrangement, with some on-site responsibilities, and may adapt based on project needs.Key...


  • Washington, Washington, D.C., United States Vanguard-IP Full time

    About the RoleVanguard-IP is seeking a highly skilled Cybersecurity & Data Privacy Associate to join our team. As a key member of our organization, you will be responsible for providing expert-level guidance on international, federal, state, and local privacy laws, as well as industry standards and frameworks.Key ResponsibilitiesDevelop and implement...


  • Washington, Washington, D.C., United States Vets Hired Full time

    Job Summary:Vets Hired is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our organization, you will be responsible for ensuring the security and integrity of our systems and data.Key Responsibilities:Security Compliance: Conduct thorough reviews of customer toolset configurations to ensure compliance with security...


  • Washington, United States Interactive Process Technology LLC Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Interactive Process Technology LLC. As a key member of our Technology Solutions group, you will play a critical role in delivering innovative business solutions using emerging technologies.Key ResponsibilitiesRegulatory Compliance: Work in a constantly changing...


  • Washington, United States Gunnison Consulting Group Inc Full time

    Job DescriptionJob DescriptionWork Location: Hybrid/Washington, DC.We are seeking a motivated and customer-oriented cybersecurity professional to support our Department of State client. The candidate will support maturation of the customer's cybersecurity program to enact cyber policy, roles, operations, and compliance.Duties and responsibilities...


  • Washington, Washington, D.C., United States Tria Federal (Tria) Full time

    Job OverviewLocation: Washington, DC/ RemoteEmployment Type: Full-TimeClearance Requirement: Ability to obtain and maintain Top Secret (SCI Eligible)* US Citizenship and the ability to obtain and maintain the clearance level stated above are required for this specific opportunity. Tria Federal (Tria) is unable to sponsor at this time.About Tria Federal:Tria...


  • Washington, United States Coalfire Federal Full time

    About Coalfire FederalWe are a leading cybersecurity consultancy firm that delivers independent and customized guidance, evaluations, technical assessments, and a comprehensive range of cyber engineering services to Federal agency clients. Coalfire Federal, along with its parent organization, Coalfire, boasts an exceptional client portfolio with robust...


  • Washington, Washington, D.C., United States Ryde Technologies, LLC Full time

    Become a Key Player as a Cybersecurity SpecialistWe are thrilled to invite a skilled Cybersecurity Specialist to our organization, where you will be instrumental in supporting our Federal Government Client. As a vital contributor, your primary focus will be to ensure that our critical applications uphold the highest security protocols and maintain compliance...


  • Washington, United States Dynamic Solutions Technology LLC Full time

    Job DescriptionJob DescriptionDynamic Solutions Technology, LLC, a premier strategic services firm that meets IT and Service needs for commercial and government clients, is seeking a full-time Lead Cyber Security Specialist in support of the government customer located in Washington DC area. Responsibilities:Integrate and test new technology for compliance...