Risk Management Framework Specialist

3 days ago


Boston, Massachusetts, United States AERMOR Full time
Job Title: Risk Management Framework Specialist

AERMOR is seeking a highly skilled Risk Management Framework Specialist to join our team in Suffolk, VA.

Job Summary:

This position will provide project management, detailed subject matter expertise, and expert guidance to government personnel in the execution of Cyber Red Team Cybersecurity.

Responsibilities:
  • Creates, reviews, updates, and validates Cybersecurity Standard Operations Procedures (SOPs) as required.
  • Reviews and maintains an inventory of authorized software (software custodian).
  • Reviews and maintains an inventory of devices and media.
  • Audits and validates configurations deployed on laptops, workstations, and servers.
  • Audits and validates configurations of network devices based on DISA STIGs, or defining and implementing compensating controls of such STIGs as required to ensure mission execution.
  • Maintain and update all Risk Management Framework (RMF) and C&A documentation to ensure the relevancy and currency of Navy Red Team assets to include required revisions and updates in eMass.
  • Conduct comprehensive annual RMF package reviews to ensure continued compliance of the Navy Red Team tool suite and/or Networks.
  • Ensure traceability is maintained throughout the RMF submission process (e.g: C&A Plan, POAM, RAR, Topology, Software, Ports Protocols and Services, Test Plan).
  • Maintain network and system documentation in DITPR-DON / DADMS.
  • Maintain documentation and registration of Network Ports, Protocols, and Services.
  • Maintain circuit registrations in Global Interconnection Approval Process System (GIAP) and Systems/Network Approval Process (SNAP).
  • Maintain and report on the status of all outstanding C&A items and supporting documentation.
  • As a member of the Configuration Control Board (CCB), ensures CCB approved changes are timely and accurately reflected in the C&A documentation.
  • Support compliance validation of current and future directives (e.g: IAVs, STIGs, CTOs).
  • Provide recommendations for corrective action of any non-compliant security controls.
  • Execute DISA STIG validations for systems in conjunction with C&A package reviews annually.
  • Provide security expertise to ensure security controls are implemented and the resulting documentation and artifacts are current.
  • Prepare reports on scanning results and configuration management observations monthly.
  • Document assessment activities and results in sufficient detail to enable external review of all assessment processes, activities, results, and conclusions.
  • Conduct and document a semi-annual table-top exercise (two times) each calendar year.
  • Produce test plans, draft after actions and other documents for review and comment.
  • Review and/or revise Business Impact Analysis (BIA) to include business process, IT dependency, and physical security assessments annually.
  • Review and analyze IT contingency / disaster recovery plans for NIST and DoN Compliance and produce checklists for IT systems.
  • Assist with exercise and/or training and documentation of IT contingency plan and execution.
Qualifications:
  • Certified Information Systems Security Professional (CISSP) certification.
  • 1-3 years of experience with Assured Compliance Assessment System (ACAS) and/or Nessus.
  • 5-10 years Certification and Accreditation (C&A) package assembly experience.
  • Risk Management Framework (RMF) training and certification is desired.


  • Boston, Massachusetts, United States AERMOR LLC Full time

    Job DescriptionAERMOR LLC is seeking a highly skilled Risk Management Framework Specialist to join our team in Suffolk, VA. This position will provide project management, detailed subject matter expertise, and expert guidance to government personnel in the execution of Cyber Red Team Cybersecurity.Key Responsibilities:Develop and maintain Cybersecurity...


  • Boston, Massachusetts, United States Federal Reserve Bank of Cleveland Full time

    Job SummaryWe are seeking a highly skilled IT Risk Specialist to join our team at the Federal Reserve Bank of Boston. As an IT Risk Specialist, you will play a critical role in evaluating the effectiveness of IT risk management practices for large financial institutions within our portfolio.Key ResponsibilitiesLead or support the oversight of information...


  • Boston, Massachusetts, United States Manulife Full time

    About the RoleWe are seeking a highly skilled and experienced Operational Risk Management Specialist to join our team at Manulife. As a key member of our Operational Risk and Resilience Programs Team, you will be responsible for supporting the development and implementation of global Operational Risk and Resilience Management (ORRM) program elements and the...


  • Boston, Massachusetts, United States Federal Reserve Bank Full time

    Job Title: IT Risk SpecialistJoin the Federal Reserve Bank of Boston as an IT Risk Specialist and contribute to promoting sound growth and financial stability in New England and the nation.About the Role:We are seeking a highly skilled IT Risk Specialist to participate in reviews and examinations that evaluate the effectiveness of IT risk management...


  • Boston, Massachusetts, United States Federal Reserve Bank Full time

    Job SummaryWe are seeking an IT Risk Specialist to join our team at the Federal Reserve Bank. As an IT Risk Specialist, you will play a critical role in evaluating the effectiveness of IT risk management practices for large financial institutions.Key ResponsibilitiesParticipate in reviews and examinations to assess IT risk management practices and identify...


  • Boston, Massachusetts, United States Federal Reserve Bank Full time

    Job Title: IT Risk SpecialistJoin the Federal Reserve Bank of Boston as an IT Risk Specialist and contribute to promoting sound growth and financial stability in New England and the nation.About the RoleAs an IT Risk Specialist, you will participate in reviews and examinations that evaluate the effectiveness of IT risk management practices for large...


  • Boston, Massachusetts, United States Citizens Financial Group, Inc. Full time

    Operational Risk Management Senior ManagerCitizens Financial Group, Inc. is seeking an experienced Operational Risk Management Senior Manager to join our team. As a key member of our Operational Risk Management (ORM) team, you will be responsible for assisting and supporting the planning, execution, and ongoing review of the Operational Risk Management...


  • Boston, Massachusetts, United States Extreme Event Solutions Full time

    Job OverviewExtreme Event Solutions is seeking a skilled Risk Management Specialist to join our Consulting and Client Service Team. As a key member of our team, you will be responsible for performing sophisticated risk analyses using our cutting-edge technology to help insurers, brokers, reinsurers, and other financial intermediaries manage extreme event...


  • Boston, Massachusetts, United States Citizens Full time

    Job SummaryWe are seeking a highly skilled Risk Oversight Manager to join our team at Citizens. This role will be responsible for providing independent risk oversight of our Business Unit(s) and ensuring that our First Line of Defense function appropriately manages risks relative to our business activities.Key ResponsibilitiesPartner and collaborate with...


  • Boston, Massachusetts, United States Citizens Bank Full time

    Risk Senior ManagerJoin Citizens Bank as a Risk Senior Manager and take on a challenging role in our Commercial Cards and Trade Finance team.About the Role:Lead risk management initiatives to ensure the bank's commercial cards and trade finance operations are aligned with regulatory requirements and internal policies.Develop and implement risk management...


  • Boston, Massachusetts, United States InterSystems Full time

    Risk Assurance Associate Job DescriptionWe are seeking a highly skilled Risk Assurance Associate to join our Global Trust department. As a key member of our team, you will play a critical role in ensuring the security, privacy, and product security risks of our organization are properly managed and mitigated.Key Responsibilities:Generate risk reports and...


  • Boston, Massachusetts, United States Booz Allen Hamilton Full time

    Job SummaryBooz Allen Hamilton is seeking a highly skilled Cybersecurity Risk Management Consultant to join our team. As a member of our Cyber Risk practice, you will provide strategic direction to a network of professionals helping clients transform and align their cybersecurity and risk management functions to the business.Key ResponsibilitiesSupport...


  • Boston, Massachusetts, United States MassMutual Full time

    The OpportunityAs a key member of the Credit Risk Management team, you will play a crucial role in developing and implementing quantitative models to manage portfolio credit, counterparty, and country risks. The ideal candidate will have a strong background in quantitative risk analytics and experience in leading projects in a similar capacity.You will work...


  • Boston, Massachusetts, United States MassMutual Full time

    {"title": "Actuarial Valuation Specialist", "description": "MassMutual is seeking an experienced Actuarial Valuation Specialist to support the Consolidated Reporting & Capabilities Team. The ideal candidate will have strong technical expertise in insurance products, financial reporting, and valuation modeling. The successful candidate will be responsible...


  • Boston, Massachusetts, United States Risk Placement Services Full time

    About the RoleWe're seeking a talented Casualty Broker to join our team at Risk Placement Services. As a key member of our team, you'll play a crucial role in developing and acquiring new business revenue through sales to new and existing clients.Key ResponsibilitiesDevelop and execute sales strategies to drive revenue growth and expand our client...


  • Boston, Massachusetts, United States Franklin Templeton Investments Full time

    Job SummaryWe are seeking a highly skilled Risk Management Principal to join our team at Franklin Templeton Investments. As a key member of our Enterprise Risk & Resilience group, you will be responsible for protecting the company against risks, ensuring business continuity, and enabling us to adapt in an ever-changing risk environment.Key...


  • Boston, Massachusetts, United States Zurich Insurance Company Ltd. Full time

    Job Title: Risk Engineering ManagerZurich Insurance Company Ltd. is seeking a highly skilled Risk Engineering Manager to join our team. As a key member of our Property East team, you will be responsible for managing a team of risk engineering specialists and providing comprehensive risk insight to achieve business objectives.Key Responsibilities:Lead a team...


  • Boston, Massachusetts, United States MassMutual Full time

    The OpportunityAs a key member of the Credit Risk Management team, you will play a crucial role in developing and implementing quantitative models to manage portfolio credit, counterparty, and country risks. The ideal candidate will have a strong background in quantitative risk analytics and experience in leading projects in a similar capacity.You will work...


  • Boston, Massachusetts, United States Best Buy Full time

    Job Title: Risk ManagerBest Buy Health is seeking a highly skilled Risk Manager to lead and maintain the risk management process for our health technologies. As a key member of our team, you will be responsible for ensuring compliance with ISO 14971:2019 and other applicable standards and regulations.Key Responsibilities:Lead the risk management process,...


  • Boston, Massachusetts, United States Massachusetts General Hospital(MGH) Full time

    Job SummaryThe Patient Safety and Risk Specialist will support the Sr. Manager of Patient Safety and Risk Management at Massachusetts General Hospital and Mass Eye and Ear Institute to oversee and manage hospital-wide patient safety initiatives and risk mitigation.Key ResponsibilitiesCoordinate daily activities to foster Equity Informed High Reliability...