At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
CGRC * CISSP * CAP * CISM * GSEC * Desired technical experience: * * CSAM * ServiceNow * Splunk * Tenable * Qualys * Microsoft Azure * Microsoft 365 * Entra ID * Governance, Risk, and Compliance (GRC ...
CGRC * CISSP * CAP * CISM * GSEC * Desired technical experience: * * CSAM * ServiceNow * Splunk * Tenable * Qualys * Microsoft Azure * Microsoft 365 * Entra ID * Governance, Risk, and Compliance (GRC ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
Quick apply
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
Quick apply
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
ME00673-Senior Information System Security Officer (ISSO)
Washington, DC · On-site
$110 - $150/hr
CGRC * CISSP * CAP * CISM * GSEC * Desired technical experience: * CSAM * ServiceNow * Splunk * Tenable * Qualys * Microsoft 365 * Governance, Risk, and Compliance (GRC) platforms Exempt hourly ...
ME00673-Senior Information System Security Officer (ISSO)
Washington, DC · On-site
$110 - $150/hr
CGRC * CISSP * CAP * CISM * GSEC * Desired technical experience: * CSAM * ServiceNow * Splunk * Tenable * Qualys * Microsoft 365 * Governance, Risk, and Compliance (GRC) platforms Exempt hourly ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
CISSP, Security+, CGRC (formerly CAP), CISM Responsibilities: * Conduct initial Security Assessment and obtain system Authorization to Operate (ATO), in line with NIST SP 800-37 Rev. 2. * Maintain ...
CISSP, Security+, CGRC (formerly CAP), CISM Responsibilities: * Conduct initial Security Assessment and obtain system Authorization to Operate (ATO), in line with NIST SP 800-37 Rev. 2. * Maintain ...
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification. * Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
Quick apply
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC. Education: * Associate's degree in Cybersecurity, Information Technology, or ...
Cybersecurity Analyst - RMF / A&A (Cleared) with Security Clearance
Fort George G Meade, MD · On-site
ISC2 CGRC (formerly CAP), ISACA CISA, CompTIA SecurityX (formerly CASP), CISSP. About Blue Sky Blue Sky Innovative Solutions (Blue Sky) assists its federal, state and local, and commercial clients ...
Cybersecurity Analyst - RMF / A&A (Cleared) with Security Clearance
Fort George G Meade, MD · On-site
ISC2 CGRC (formerly CAP), ISACA CISA, CompTIA SecurityX (formerly CASP), CISSP. About Blue Sky Blue Sky Innovative Solutions (Blue Sky) assists its federal, state and local, and commercial clients ...
Security Controls Assessor
Washington, DC · On-site
... CGRC (formerly CAP), or Security+ (DoD 8140 compliant) - Experience assessing cloud-hosted systems (AWS GovCloud, Azure Government) or FedRAMP-authorized services - Experience with NIST SP 800-171 ...
New
Security Controls Assessor
Washington, DC · On-site
... CGRC (formerly CAP), or Security+ (DoD 8140 compliant) - Experience assessing cloud-hosted systems (AWS GovCloud, Azure Government) or FedRAMP-authorized services - Experience with NIST SP 800-171 ...
New
CISSP, CAP/CGRC, CISM, Security+, or equivalent certification. * Experience securing cloud, hybrid, or globally distributed enterprise environments. Compensation & Benefits Compensation will be ...
Quick apply
CISSP, CAP/CGRC, CISM, Security+, or equivalent certification. * Experience securing cloud, hybrid, or globally distributed enterprise environments. Compensation & Benefits Compensation will be ...
Minimum 3-5 Desired Skills & Experience • BS in Computer Science, Information Technology, or related field • CISSP, Security+, CGRC (formerly CAP), CISM Required Technical/Business Tools ...
Minimum 3-5 Desired Skills & Experience • BS in Computer Science, Information Technology, or related field • CISSP, Security+, CGRC (formerly CAP), CISM Required Technical/Business Tools ...
RMF and Authorization Lead
Bethesda, MD · Hybrid
$165K - $185K/yr
CISSP, CAP/CGRC, CISM, Security+, or an applicable cloud security certification. Compensation Salary Range: $165,000 - $185,000 annually (commensurate with experience) Benefits: Health, dental, and ...
RMF and Authorization Lead
Bethesda, MD · Hybrid
$165K - $185K/yr
CISSP, CAP/CGRC, CISM, Security+, or an applicable cloud security certification. Compensation Salary Range: $165,000 - $185,000 annually (commensurate with experience) Benefits: Health, dental, and ...
Junior Security Control Assessor
Bethesda, MD · Remote
$100K - $115K/yr
ISC2 CC or CGRC * CompTIA Security+, CySA+, PenTest+, CASP+ * CEH * Microsoft SC-900 * System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced ...
Quick apply
Junior Security Control Assessor
Bethesda, MD · Remote
$100K - $115K/yr
ISC2 CC or CGRC * CompTIA Security+, CySA+, PenTest+, CASP+ * CEH * Microsoft SC-900 * System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced ...
Cgrc information
What is a CGRC professional?
What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (CGRC) professional?
What are some common challenges CGRC professionals face when managing compliance across multiple frameworks?
What is the difference between Cgrc vs Compliance Analyst?
| Aspect | Cgrc | Compliance Analyst |
|---|---|---|
| Certifications | Certifications like CFE, CISA, or CMMC often preferred | Certifications such as CCEP, CISA, or CIA common |
| Work Environment | Typically in cybersecurity, risk management, or compliance teams within organizations | Usually in corporate compliance departments, auditing firms, or regulatory agencies |
| Industry Usage | Used in industries like finance, healthcare, and government for cybersecurity and risk management | Common across various industries for regulatory compliance and risk assessment |
The Cgrc (Certified Government Risk Compliance) focuses on government-specific regulations and cybersecurity risk management, while a Compliance Analyst generally handles broader regulatory compliance across industries. Both roles require understanding of compliance frameworks, but Cgrc emphasizes government standards and cybersecurity, making it more specialized in those areas.
What are popular job titles related to Cgrc jobs in Silver Spring, MD?
For Cgrc jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Cgrc jobs in Silver Spring, MD look for?
The top searched job categories for Cgrc jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Cgrc jobs?
Cities near Silver Spring, MD with the most Cgrc job openings:

Full-time
Posted 9 days ago
Job description
Overview:
Job Title: Senior Information System Security Officer (ISSO)
Security Clearance: Ability to Obtain Tier 4 High-Risk Public Trust
Location: Washington, D.C.
(Due to the nature of the work and contract requirements, U.S. Citizenship is required.)
Description:
C3EL is seeking a Senior Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment support in Washington, D.C., for a new contract. This role will serve as Operational Specialist for Splunk, ServiceNow, ConMon, vulnerability management, POA&M, and incident and change coordination, as well as being workstream lead and secondary backup for Lead ISSO duties.
Responsibilities will include, but not be limited to:
- Provide on-site cybersecurity and RMF sustainment support.
- Maintain traceability between ServiceNow remediation tickets and CSAM POA&M records.
- Analyze findings, validate false positives, and prioritize remediation using CVSS, CISA KEV, exposure, exploitability, and mission impact.
- Support notification, triage, CSAM context retrieval, Splunk verification, SitReps, RCA, corrective actions, and post-incident updates.
- Support CAB/CCB/ERB reviews, security impact analysis, artifact updates, and post-change verification.
- Track audit, penetration-test, and assessment findings through corrective action and evidence-supported closure.
- Maintain incident-response plans and support tabletop or functional exercises.
- Produce accurate, concise, and audit-ready Government cybersecurity documentation.
- Support team coverage from 7:00 a.m. to 6:00 p.m. ET (M-F) and participate in after-hours incident coverage as needed.
Minimum Qualifications:
- U.S. Citizenship.
- Eligibility to obtain a Tier 4 High-Risk Public Trust.
- Minimum seven (7) years of cybersecurity.
- Minimum five (5) years in federal ISSO, ConMon, vulnerability, security operations, or compliance work.
- Working knowledge of NIST SP 800-37, 800-53, 800-53B, FIPS 199, FISMA, and applicable CISA/OMB guidance.
- Familiarity with GRC, ITSM, SIEM, scanner, identity, endpoint, and cloud-security platforms.
- Direct experience with Splunk searches, dashboards, ingestion verification, log coverage, and incident timeline support.
- Direct experience with ServiceNow incidents, problems, changes, remediation tickets, and reporting.
- Direct experience with Tenable Nessus, Qualys, ACAS, or comparable Government-approved scanners.
- Experience with Defender, Intune, BigFix, or equivalent endpoint and configuration platforms.
Preferred Qualifications:
- At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC.
Education:
- Associate's degree in Cybersecurity, Information Technology, or related field. (Relevant experience may be considered in lieu of formal education.)
About c3el
Sourced by ZipRecruiter
Industry
It services
Company size
1 - 10 Employees
Headquarters location
Tampa, FL, US
Year founded
2012