1

Beyond Risk Management Jobs in Washington (NOW HIRING)

Knowledge of Risk Management Framework (RMF) and the A&A activities needed to obtain and maintain an ATO, including National Institute of Standards and Technology (NIST) and Committee on National ...

Knowledge of Risk Management Framework (RMF) and the A&A activities needed to obtain and maintain an ATO, including National Institute of Standards and Technology (NIST) and Committee on National ...

The Senior AI Risk Advisor, under the direction of the Manager of Risk Operations, sits at the ... a framework helps and when to go beyond it * Solid understanding of data privacy and ...

... beyond our direct resources. IFC's Credit Risk Department IFC's Credit and Investment Risk ... Manage and further develop functioning and controls around IRP central inputs, such as BICRA, CICRA ...

Provide security engineering and authorization services solutions using updated methodology and processes and aligning those solutions with Risk Management Framework (RMF) capabilities. All work is ...

Reporting Relationships: * IT Risk and Compliance Manager Key Contacts: * Works closely with the ... Trips will sometimes extend to 5 working days and could on rare occasions extend beyond 5 business ...

next page

Showing results 1-20

Beyond Risk Management information

What is the difference between Beyond Risk Management vs Risk Analyst?

AspectBeyond Risk ManagementRisk Analyst
Required CredentialsCertifications like CRM, FRM, or RIMS certificationsDegrees in finance, economics, or related fields; certifications like FRM or CRM
Work EnvironmentCorporate risk departments, consulting firms, insurance companiesFinancial institutions, consulting firms, corporate risk teams
Industry UsageUsed across industries for comprehensive risk oversightFocused on analyzing specific risks and data

While both roles involve risk assessment, Beyond Risk Management focuses on overarching risk strategies and enterprise-wide risk oversight, whereas Risk Analysts primarily analyze specific risks and data to inform decision-making. Understanding these differences helps professionals choose the right career path or role within the risk management field.

What are popular job titles related to Beyond Risk Management jobs in Washington? For Beyond Risk Management jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Beyond Risk Management jobs in Washington look for? The top searched job categories for Beyond Risk Management jobs in Washington are:
What cities in Washington are hiring for Beyond Risk Management jobs? Cities in Washington with the most Beyond Risk Management job openings:
Cyber Risk Analyst (TS/SCI)

Cyber Risk Analyst (TS/SCI)

Beyond SOF

Reston, VA • On-site

Full-time

Posted 13 days ago


Job description

Cyber Risk Analyst (TS/SCI)
Reston, VA, USA
Full-time
Clearance: Top Secret/SCI

Job Description Summary:
Warnings about cyber threats are everywhere and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD and the IC. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is you. Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action.
As a Cyber-Risk Analyst on our team, you'll use your experience to work with DoD programs to discover their cyber risks, understand policies, and develop a mitigation plan. You'll get technical, environmental, and personnel details from engineers and SMEs to assess the entire threat landscape. Then, you'll help your team guide your client through a plan of action with presentations, white papers, and milestones. You'll work on translating security concepts for your client so they can make the best decisions to secure their mission critical networks and systems. This is your opportunity to act as an information security subject matter expert while broadening your skills in cybersecurity, security and network tools, systems engineering, and data science.
Qualifications
  • 5+ years of experience working in a professional IT environment
  • 3+ years of experience with cybersecurity
  • 3+ years of experience with Assessment and Authorization (A&A) in support of DoD and IC programs, including package development, artifact generation, and authority to operate (ATO)
  • Experience with security hardening of Windows and Linux operating systems and security tools, such as ACAS, SCAP, STIG/SRGs, SCC, eMASS/Xacta, ESS, Prisma Cloud, Kubernetes, Rancher, and Docker
  • Experience generating and maintaining System Security Plans (SSP), Implementation Plans, Privacy Impact Assessments, Security Assessment Plans (SAP), Risk Assessments, Plan of Action and Milestones (POA&M), and other A&A documentation
  • Knowledge of Risk Management Framework (RMF) and the A&A activities needed to obtain and maintain an ATO, including National Institute of Standards and Technology (NIST) and Committee on National Security Systems Instruction (CNSSI), including NIST SP 800-60, NIST SP 800-53, and CNSSI 1253
  • IAT Level II Certification, including a Security+ Certification

Desired Qualifications:
  • Experience with DoD or IC cybersecurity projects or programs
  • Experience with DevSecOps, Path-to-Production, and CI/CD
  • Experience with Cloud Authorization and Cloud Migration
  • Experience with administering Red Hat Enterprise Linux or Windows Server 2012 or higher
  • Ability to provide subject matter expertise to system engineering documents, including technical requirements documents, interface control documents, and system specifications
  • Ability to analyze and communicate complex technical challenges to both technical and non-technical clients and stakeholders
  • Ability to communicate and integrate between multiple customer stakeholders
  • Bachelor's degree