Cybersecurity Risk Manager

1 month ago


Washington, Washington, D.C., United States Vets Hired Full time
Job Summary

Vets Hired is seeking a highly skilled Cybersecurity Risk Manager to join our team. As a key member of our security team, you will be responsible for conducting initial security assessments, maintaining security authorizations, and continuously updating security documentation to ensure compliance with NIST SP 800-37 Rev. 2.

Key Responsibilities
  • Conduct initial security assessments and obtain Authorization to Operate (ATO) in line with NIST SP 800-37 Rev. 2
  • Maintain security authorizations and continuously update security documentation
  • Select baseline security controls for IT systems using Archer and tailor where appropriate
  • Document NIST 800-53 security controls for assigned IT systems
  • Perform and document initial and annual risk assessments of all systems
  • Develop and document supporting security A&A artifacts (PIA, SP, ITCP, BIA, CMP, MOU, ISA)
  • Assist in the development of the Security Assessment Plan (SAP)
  • Develop Security Assessment Reports (SAR)
  • Produce security authorization packages for Authorizing Official (AO) signature, including Authorization to Operate (ATO)
  • Track deployment of software to the environment that is not part of the base image
  • Generate Plan of Actions & Milestones (POA&Ms) for each non-compliant control for assigned IT systems
Requirements
  • Working knowledge and experience with CSAM and RMF
  • DHS experience
  • Experience working with system stakeholders to assess and manage system cybersecurity risk
  • Knowledge of the process to obtain a system ATO and requirements to maintain the ATO
  • Ability to synthesize complex IT system information and communicate system status and requirements in written products and verbal presentations
  • Ability to write clear, concise, and effective security control implementation statements
  • Familiarity with configuration settings and vulnerability management analysis of infrastructure devices
  • Ability to draft a complete ATO package, including the SSP
  • Ability to work independently and within given timelines


  • Washington, Washington, D.C., United States BTI Full time

    Job SummaryBTI is seeking a highly skilled Cybersecurity Risk Management Lead to lead a team in executing risk management efforts against our customer's inventory of on premise, vendor and cloud-based systems.Key ResponsibilitiesManage Information System Security Officers (ISSO) to support information technology (IT) security goals and objectives and reduce...

  • Cybersecurity Analyst

    4 weeks ago


    Washington, Washington, D.C., United States Sayres & Associates Full time

    Job SummarySayres & Associates is seeking a skilled Cybersecurity Analyst to support the technical implementation of the Risk Management Framework (RMF) Assessment and Authorization (A&A) services. The successful candidate will conduct cybersecurity and risk assessments on Platform Information Technology (PIT) and PIT control systems to identify and mitigate...


  • Washington, Washington, D.C., United States MBO Partners Full time

    MBO Partners is a leading provider of deep jobs solutions that connect and enable independent professionals and microbusiness owners to do business safely and effectively with enterprise organizations.Duration: Multi-year contractLocation: DC MetroSchedule: Hybrid work model – 2-3 days onsiteClearance: Active secret security clearance or higher...


  • Washington, Washington, D.C., United States Axient Full time

    Axient is seeking a Mid-level Cybersecurity Engineer to join our team in Washington Navy Yard. The Cybersecurity Engineer will be responsible for bringing platform information technology systems through the full life cycle of the Risk Management Framework process to achieve/renew Authority to Operate (ATO).Responsibilities:• Responsible for bringing...


  • Washington, Washington, D.C., United States National Guard Employment Network Full time

    At National Guard Employment Network, we recognize the importance of cybersecurity in today's fast-paced digital landscape. That's why we're seeking an experienced Cybersecurity Risk Management Specialist to join our team.The ideal candidate will possess a strong background in governance, risk, and compliance (GRC), with a proven track record of developing...


  • Washington, Washington, D.C., United States Information Systems Solutions Full time

    Job SummaryWe are seeking a highly skilled Senior Level ISSO to support the Office of Naval Intelligence. As a Senior Level ISSO, you will be responsible for ensuring the security and integrity of our systems and networks.Key ResponsibilitiesImplement and maintain the NAVINTEL ICD 503 Risk Management Framework (RMF) Implementation Policies/Directives and...


  • Washington, Washington, D.C., United States Axient Full time

    About the Role:Axient is seeking a highly skilled Cybersecurity Engineer to join our team in Washington DC. As a Cybersecurity Engineer, you will be responsible for bringing platform information technology systems through the full life cycle of the Risk Management Framework process to achieve/renew Authority to Operate (ATO).Key Responsibilities:Responsible...

  • IT Project Manager

    4 weeks ago


    Washington, Washington, D.C., United States MBL Technologies Full time

    Job Title: IT Project Manager - Cybersecurity ExpertWe are seeking an experienced IT Project Manager to join our team at MBL Technologies. As a Cybersecurity Expert, you will be responsible for managing and overseeing IT projects to ensure the delivery of high-quality services to our customers.Key Responsibilities:Manage and coordinate IT projects to ensure...


  • Washington, Washington, D.C., United States Gunnison Consulting Group Inc Full time

    Job SummaryGunnison Consulting Group Inc is seeking a skilled Cybersecurity Project Manager to join our team. The ideal candidate will have experience in information systems security and risk management.Key ResponsibilitiesSupport the execution of Step 0-3 of the Risk Management Framework in accordance with NIST and 800-53.Manage multiple tasks within a...


  • Washington, Washington, D.C., United States Sayres and Associates Full time

    Cybersecurity AnalystSayres, a leading provider of defense support services to the DOD in the shipbuilding industry, is seeking a skilled Cybersecurity Analyst with Secret Clearance in Washington, DC.The Cybersecurity Analyst will play a vital role in ensuring the security and integrity of shipboard and shore-based operational sites, laboratory/development...


  • Washington, Washington, D.C., United States Vets Hired Full time

    Job Description for Cybersecurity SpecialistVets Hired is seeking a highly skilled Cybersecurity Specialist to join our team. The ideal candidate will have expertise in developing, implementing, and maintaining security policies, procedures, and controls in accordance with organizational and regulatory requirements.Main Responsibilities:Security Policy...


  • Washington, Washington, D.C., United States Jacobs Full time

    We are seeking a highly skilled Cybersecurity Specialist to join our team at Jacobs in Columbia, MD.The ideal candidate will serve on a team responsible for the Authorization and Assessment process under the Risk Management Framework (RMF) for new and existing information systems.The work environment is fast-paced and sometimes involves deadline...


  • Washington, Washington, D.C., United States Jacobs Full time

    We are seeking a highly skilled Cybersecurity Architect III to join our team at Jacobs.Key Responsibilities:Participate as the primary security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of secure networking, computing, and enclave environments.Apply knowledge of Cybersecurity...


  • Washington, Washington, D.C., United States Metrea Management LLC Full time

    Job SummaryMetrea Management LLC is seeking a skilled Cybersecurity Developer to join our team. As a key member of our Platform Technology Team, you will be responsible for developing and enhancing cybersecurity needs to our overall infrastructure.Key ResponsibilitiesDeveloping analytics and metrics to support incident and response protocols.Conducting...


  • Washington, Washington, D.C., United States Excentium Full time

    Job Description:Excentium Inc. is seeking a seasoned Senior Information Assurance Analyst to support our team in ensuring the security and compliance of our information systems, products, and services. The ideal candidate will have expertise in Federal Assessments & Authorizations (A&A) and a proven track record of reducing risk and improving the defensive...


  • Washington, Washington, D.C., United States Randstad Digital Full time

    Job Responsibilities/Duties:The Cybersecurity Policy Specialist shall proactively review, update, and maintain cybersecurity policy, guidance documents, directives, templates, and materials to ensure all documentation reflects and incorporates the most recent version of all cybersecurity program documentation.The specialist, with direction, shall provide...


  • Washington, Washington, D.C., United States Vets Hired Full time

    Job SummaryVets Hired is seeking a highly skilled Information Security Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for ensuring the security and compliance of our customer's toolset configurations.Key ResponsibilitiesSecurity Configuration Reviews: Conduct thorough reviews of customer toolset configurations...


  • Washington, Washington, D.C., United States Amentum Full time

    Job Title: Cybersecurity Engineer IIIJob Summary:We are seeking a highly skilled Cybersecurity Engineer III to join our team at Amentum. As a key member of our engineering team, you will be responsible for designing, developing, and implementing secure networking, computing, and enclave environments.Responsibilities:Participate as the primary security...


  • Washington, Washington, D.C., United States Tetrad Digital Integrity Full time

    Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm dedicated to safeguarding and protecting its customers from increasing threats and vulnerabilities in the digital age.We are a Cybersecurity Small Business with multi-year contracts and vehicles already in place. The Business Development Manager will lead growth with a focus on Navy and...


  • Washington, Washington, D.C., United States Jacobs Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Engineer to join our team at Jacobs. As a Cybersecurity Engineer for Secure Environments, you will be responsible for designing, developing, and implementing secure networking, computing, and enclave environments.Key ResponsibilitiesParticipate as the primary security engineering representative on...