Cybersecurity Risk Management Specialist

6 days ago


Baltimore, Maryland, United States Assyst Full time
Cybersecurity Risk Advisor Job Description

ASSYST's Information Assurance and Cyber Security Practice is seeking a Cybersecurity Risk Advisor to support our Federal Project. The Cyber Security Risk Advisor will be responsible for evaluating, maintaining, and communicating the risk posture of each FISMA system to executive leadership and making risk-based recommendations. They will act as the subject matter expert in all areas of the Risk Management Framework (RMF) and provide guidance to stakeholders on required actions, strategies, and best practices for closure of identified weaknesses.

Key Responsibilities:
  • Support Stakeholders: Ensure that all requirements specified by the Acceptable Risk Safeguards and the procedures and standards of the risk management framework are implemented and enforced.
  • Information Security and Privacy Testing: Ensure information security and privacy testing is performed throughout the SDLC as appropriate, and results are considered during the development phase of the SDLC.
  • System Security Posture: Monitor system security posture by reviewing all proposed information security and privacy artifacts to provide recommendations to the ISSO.
  • Guidance and Recommendations: Provide guidance to stakeholders on required actions, strategies, and best practices for closure of identified weaknesses.
  • System Configuration Deviations: Serve as the authority to approve selected system configuration deviations from the required baseline.
  • Coordination and Risk Management: Coordinate with the point of contact, including ISSO, for each FISMA system or collection of Personally Identifiable Information (PII)/Protected Health Information (PHI) to identify the types of information processed, assign appropriate security categorizations to information systems, ensure legal authority for activities involving PII/PHI, and determine privacy impacts and manage information security and privacy risk.
Requirements:
  • Education: Bachelor's degree in Computer Science, Information Technology, Cyber Security, or related field.
  • Certifications: CISSP, CISM, or other relevant certifications preferred.
  • Experience: 6+ years of professional experience developing and implementing information security/assurance programs, policies, processes, and procedures per various security frameworks/laws/standards/directives, e.g. FISMA; OMB directives; Presidential Directives; NIST (SP-800 series; FIPS); HIPAA of 1996; Privacy Act.
  • Knowledge and Skills: Comprehensive knowledge of the FISMA, HIPAA laws and Privacy Act of 1974; in-depth knowledge of the NIST SP 800 series documents, especially 800-34, 37,39 47, 53, 53A, 60, 63, 64, 137 and FIPS 140, 199, 200 and 201; in-depth knowledge of the 800-53 security control requirements and standard methods for implementing them; practical knowledge of IT System contingency planning; understanding of risk assessment and risk management concepts; good understanding of continuous monitoring and continuous authorization concepts; good understanding of the protection of PII and PIA concepts; expert use of MS Office, especially Word, PowerPoint, and Outlook; excellent communication and interpersonal skills; ability to work effectively with executive leadership and stakeholders from diverse backgrounds; strong problem-solving and analytical skills.
Benefits:

We are proud to offer a robust benefits package including medical, dental, vision, 401(k) retirement plan, disability insurance, flexible spending accounts and more in order for our employees to maintain a secure work/life balance.

ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law.



  • Baltimore, Maryland, United States Assyst Full time

    Cybersecurity Risk Advisor Job DescriptionASSYST's Information Assurance and Cyber Security Practice is seeking a Cybersecurity Risk Advisor to support our Federal Project. The Cyber Security Risk Advisor will be responsible for evaluating, maintaining, and communicating the risk posture of each FISMA system to executive leadership and making risk-based...


  • Baltimore, Maryland, United States Lockheed Martin Corporation Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Lockheed Martin Corporation. As a key member of our cybersecurity team, you will play a critical role in protecting our customers' networks and systems from cyber threats.Key ResponsibilitiesParticipate in the design, development, and implementation of secure...


  • Baltimore, Maryland, United States Assyst Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Advisor to join our team at ASSYST. As a key member of our Information Assurance and Cyber Security Practice, you will play a critical role in supporting our Federal Project.Key ResponsibilitiesEvaluate and Maintain Risk Posture: Assess and maintain the risk posture of each FISMA system,...


  • Baltimore, Maryland, United States Kairos Full time

    Job Title: Cybersecurity SpecialistKAIROS, Inc. is seeking a highly motivated and experienced Cybersecurity Specialist to join our team. This position will require onsite work to be done in St. Inigoes, MD.About KAIROS, Inc.KAIROS, Inc. is a growing Woman Owned Small Business (WOSB) providing full life cycle Cybersecurity, Program Management, Engineering,...


  • Baltimore, Maryland, United States OneMain Financial Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Governance Lead Analyst to join our team at OneMain Financial. As a key member of our Cybersecurity team, you will play a pivotal role in building and implementing governance frameworks tailored to our on-site and SaaS environments.Key ResponsibilitiesCollaborate with cross-functional teams to...


  • Baltimore, Maryland, United States CHICKASAW NATION INDUSTRIES INC Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Chickasaw Nation Industries Inc. as an Information Assurance Reviewer. This is a unique opportunity to work on complex computer enterprises and apply expertise in security best practices.Key ResponsibilitiesConduct security reviews and evaluations to assess the...


  • Baltimore, Maryland, United States OneMain Financial Full time

    Cybersecurity Governance ManagerWe are seeking a highly skilled Cybersecurity Governance Manager to join our team at OneMain Financial. This role will lead the development of a comprehensive technology and cybersecurity governance framework tailored to our on-premise and SaaS environments.This position is critical in ensuring that our company's technology...


  • Baltimore, Maryland, United States Kairos Full time

    KAIROS, Inc. is a growing Woman Owned Small Business (WOSB) providing full life cycle Cybersecurity, Program Management, Engineering, Logistics, and Training and Education services. We are seeking an experienced Information Security Analyst, Journeyman, to join our team in St. Inigoes, MD. This position requires onsite work and will involve planning,...


  • Baltimore, Maryland, United States Lockheed Martin Corporation Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Lockheed Martin Corporation. As a key member of our Cyber & Intelligence team, you will play a critical role in developing and implementing cutting-edge cybersecurity solutions to protect our nation's most sensitive systems and networks.Key ResponsibilitiesDesign and...


  • Baltimore, Maryland, United States Unison Risk Advisors Full time

    Client Manager Job DescriptionAt Unison Risk Advisors, we're seeking a skilled Client Manager to join our Retirement Services team. As a key member of our team, you'll be responsible for ensuring the efficient operation of our clients' retirement plans and providing exceptional customer service.Key Responsibilities:Act as the primary point of contact for our...


  • Baltimore, Maryland, United States OneMain Financial Full time

    Job Title: Cybersecurity Controls Assurance ManagerAt OneMain Financial, we're committed to improving the financial well-being of hardworking Americans. As a Cybersecurity Controls Assurance Manager, you'll play a critical role in ensuring the security and integrity of our organization's information systems.Key Responsibilities:Lead and oversee the...


  • Baltimore, Maryland, United States Unison Risk Advisors Full time

    Client Manager Job DescriptionAt Unison Risk Advisors, we are seeking a skilled Client Manager to join our Retirement Services department. As a key member of our team, you will be responsible for ensuring the efficient operation of our clients' retirement plans and providing exceptional customer service.Key Responsibilities:Act as the primary point of...

  • Cybersecurity Manager

    4 weeks ago


    Baltimore, Maryland, United States Northrop Grumman Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Manager to join our team at Northrop Grumman. As a Cybersecurity Manager, you will be responsible for leading a small team of Information Systems Security Professionals (ISSOs/ISSMs) in assessing and mitigating risks to our classified information systems.Key ResponsibilitiesSupervise a team of...


  • Baltimore, Maryland, United States OneMain Financial Full time

    Cybersecurity Governance ManagerWe are seeking a highly skilled Cybersecurity Governance Manager to join our team at OneMain Financial. This role will lead the development of a comprehensive technology and cybersecurity governance framework tailored to our on-premise and SaaS environments.Key Responsibilities:Establish and maintain a security governance...


  • Baltimore, Maryland, United States OneMain Financial Full time

    Cybersecurity Governance LeadAs a key member of our Cybersecurity team, you will play a pivotal role in developing and implementing governance frameworks tailored to our on-site and SaaS environments. This includes policies, standards, and controls that align with legal, regulatory, and contractual requirements. You will also be responsible for driving the...


  • Baltimore, Maryland, United States Unison Risk Advisors Full time

    Client Manager Job DescriptionAt Unison Risk Advisors, we're seeking a skilled Client Manager to join our Retirement Services team. As a key member of our team, you'll be responsible for ensuring the efficient operation of our clients' retirement plans and providing exceptional customer service.Key Responsibilities:Act as the primary point of contact for our...


  • Baltimore, Maryland, United States Unison Risk Advisors Full time

    Client ManagerAt Unison Risk Advisors, we're seeking a skilled Client Manager to join our Retirement Services team. As a key member of our team, you'll play a vital role in ensuring the smooth operation of our clients' retirement plans.Key Responsibilities:Act as the primary point of contact for our clients, addressing their day-to-day concerns and working...


  • Baltimore, Maryland, United States Cyberesi Cg Full time

    Job DescriptionAt Cyberesi Cg, we are seeking a highly skilled Information System Security Officer, Senior Cyber Engineering Services to join our team. This role is responsible for providing support for a program, organization, system, or enclave's information assurance program.Key Responsibilities:Propose, coordinate, implement, and enforce information...


  • Baltimore, Maryland, United States CHICKASAW NATION INDUSTRIES INC Full time

    Cybersecurity IA Reviewer Job DescriptionAt Chickasaw Nation Industries Inc., we're committed to bringing passion and customer focus to our business. We're seeking a highly skilled Cybersecurity IA Reviewer to support our program located at DISA Fort Meade, MD.Job SummaryThe Cybersecurity IA Reviewer will apply expertise in security best practices to complex...


  • Baltimore, Maryland, United States CHICKASAW NATION INDUSTRIES INC Full time

    Cybersecurity IA Reviewer Job DescriptionWe are seeking a highly skilled Cybersecurity IA Reviewer to join our team at Chickasaw Nation Industries Inc. This role will be responsible for conducting security reviews and assessments to ensure the confidentiality, integrity, and availability of sensitive information.Key Responsibilities:Conduct security tests...