2

Remote Technology Risk Management Jobs in Virginia

Manager, Cyber Security

Reston, VA ยท Remote

$115K - $156K/yr

... risk management, compliance coordination, and security integration for a complex federal technology ... This position is remote within the United States. Please note that ICF monitors employee work ...

Support oversight of Risk Management Framework (RMF) activities for both unclassified and classified systems * Assist with governance and compliance for Special Access Program (SAP) IT environments ...

Program Manager

Herndon, VA ยท On-site +1

Remote Clearance Required: Secret Position Type: Full-Time About the company: At VivSoft, we aim to ... This role requires expertise in Agile delivery, risk management, and performance monitoring within ...

Cyber Security Engineer Job number: 850 This is a remote position. Ad Hoc is a technology company ... Understanding of the VA's Risk Management Framework (RMF) and authorization (ATO) processes.

* Tier One Technologies is seeking a Policy Specialist for our US Government client. * This remote ... Familiarity with security governance, risk management, and compliance (GRC) processes. * Must be ...

Tier One Technologies is seeking a Policy Specialist for our US Government client. * This remote ... Familiarity with security governance, risk management, and compliance (GRC) processes. * Must be ...

Tier One Technologies is seeking a Policy Specialist for our US Government client. * This remote ... Familiarity with security governance, risk management, and compliance (GRC) processes. * Must be ...

Technical Program Manager

Richmond, VA ยท Remote

$127K - $165K/yr

... retail technology transformation initiatives, including POS modernization, store systems, and ... Lead program governance, risk management, and escalation frameworks across multi-million-dollar ...

Technical Program Manager

Mclean, VA ยท Remote

$130K - $168K/yr

... retail technology transformation initiatives, including POS modernization, store systems, and ... Lead program governance, risk management, and escalation frameworks across multi-million-dollar ...

next page

Showing results 1-20

Remote Technology Risk Management information

What is Remote Technology Risk Management?

Remote Technology Risk Management refers to the process of identifying, assessing, and mitigating risks associated with the use of technology in remote work environments. This includes ensuring data security, managing access controls, and developing incident response plans for employees who work outside traditional office settings. Professionals in this field help organizations prevent data breaches, comply with regulations, and maintain business continuity as more employees work remotely. Effective risk management is crucial for protecting sensitive information and maintaining the integrity of IT systems in a distributed workforce.

What are some common challenges faced in a remote technology risk management role, and how can they be effectively addressed?

In a remote technology risk management role, one common challenge is maintaining effective communication and collaboration with cross-functional teams, especially when assessing and mitigating risks across different time zones. To address this, professionals often rely on clear documentation, regular virtual meetings, and collaborative risk management tools. Additionally, staying updated on emerging threats and ensuring consistent security practices across remote environments can be demanding, but leveraging centralized frameworks and continuous training helps maintain a strong risk posture. Building strong relationships with IT, compliance, and business stakeholders also supports more proactive and coordinated risk management.

What is the difference between Remote Technology Risk Management vs Remote Cybersecurity Analyst?

AspectRemote Technology Risk ManagementRemote Cybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentRisk assessment, policy development, complianceThreat detection, incident response, vulnerability analysis
Industry UsageFinance, healthcare, tech companiesFinancial institutions, government agencies, tech firms

Remote Technology Risk Management focuses on identifying and mitigating technology risks across an organization, ensuring compliance and strategic risk reduction. In contrast, Remote Cybersecurity Analysts primarily detect and respond to security threats and vulnerabilities. While both roles require cybersecurity certifications and work in similar environments, their core responsibilities differ: risk management emphasizes proactive policies, whereas cybersecurity analysts handle active threat response.

What are the key skills and qualifications needed to thrive as a Remote Technology Risk Management professional, and why are they important?

To thrive in Remote Technology Risk Management, you need a solid understanding of IT risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information systems or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and relevant certifications like CRISC or CISSP is typically expected. Strong analytical skills, attention to detail, and effective written communication are essential soft skills for evaluating risks and reporting findings remotely. These competencies are crucial for identifying vulnerabilities, ensuring regulatory compliance, and protecting organizational assets in a distributed work environment.
What are the most commonly searched types of Technology Risk Management jobs in Virginia? The most popular types of Technology Risk Management jobs in Virginia are:
What are popular job titles related to Remote Technology Risk Management jobs in Virginia? For Remote Technology Risk Management jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Remote Technology Risk Management jobs in Virginia look for? The top searched job categories for Remote Technology Risk Management jobs in Virginia are:
What cities in Virginia are hiring for Remote Technology Risk Management jobs? Cities in Virginia with the most Remote Technology Risk Management job openings:
Manager, Cyber Security

Manager, Cyber Security

ICF

Reston, VA โ€ข Remote

$115K - $156K/yr

Full-time

Posted 18 hours ago


Job description

This role is contingent upon a contract award.

ICF is seeking an experienced Cybersecurity Manager to lead cybersecurity governance, risk management, compliance coordination, and security integration for a complex federal technology services program. This role will be responsible for ensuring cybersecurity requirements are addressed across systems, applications, integrations, cloud services, product delivery, and operational support functions.

The ideal candidate has demonstrated experience supporting federal cybersecurity programs that require RMF alignment, assessment documentation, POA&M management, contingency planning, vulnerability coordination, cybersecurity reporting, and integration with engineering and product delivery teams. This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and client stakeholder groups.

Job Location: This position is remote within the United States.

Please note that ICF monitors employee work locations, restricts access from foreign locations and IP addresses, and prohibits the use of personal VPN connections.

What You'll Be Doing
  • Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.
  • Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.
  • Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.
  • Evaluate cybersecurity risks associated with new capabilities, including applications, integrations, plug-ins, software tools, system connections, and platform changes.
  • Track system security deficiencies, remediation activities, and Plans of Action and Milestones through closure.
  • Lead or support development, maintenance, and testing of contingency plans for systems and services within program scope.
  • Develop and maintain cybersecurity governance standard operating procedures, workflows, templates, and reporting mechanisms.
  • Coordinate cybersecurity inputs into engineering, product delivery, architecture, DevSecOps, cloud, data, and service operations activities.
  • Support vulnerability management, incident response coordination, risk reviews, control evidence collection, and security-related data calls.
  • Partner with service operations, identity, device, network, platform, and application teams to ensure cybersecurity responsibilities are clear and evidence is maintained.
  • Monitor cybersecurity risks, issues, dependencies, and compliance gaps, and escalate items requiring leadership attention.
  • Translate cybersecurity requirements and risks into practical guidance for technical teams, program leadership, and client stakeholders.
What You Must Have
  • Bachelor's Degree
  • U.S. Citizenship required due to federal contract requirements.
  • Must be able to obtain and maintain a Federal Public Trust clearance.
  • 10+ years of experience supporting cybersecurity, information assurance, security governance, risk management, compliance, or RMF activities in federal or regulated environments.
  • Active CISSP, CISM, CAP, Security+, GSEC, or equivalent cybersecurity certification.
Preferred Qualifications
  • 7+ years of experience supporting federal cybersecurity requirements, including FISMA, NIST 800-53, RMF, POA&M management, system assessment, or authorization activities.
  • 5+ years of experience developing or maintaining cybersecurity assessment documentation, control implementation statements, security plans, contingency plans, risk assessments, or security artifacts.
  • 5+ years of experience coordinating with system owners, security assessors, engineering teams, product teams, operations teams, or federal cybersecurity stakeholders.
  • 5+ years of experience supporting vulnerability management, incident response coordination, remediation tracking, control evidence collection, or cybersecurity reporting.
  • 3+ years of experience evaluating cybersecurity risks for new technologies, applications, integrations, SaaS platforms, cloud services, or system connections.
  • 3+ years of experience supporting cybersecurity governance for cloud, SaaS, application modernization, DevSecOps, data, or enterprise platform environments.
  • Experience supporting HHS, NIH, FDA, CMS, CDC, or other health-focused federal environments.
  • Experience with Zero Trust, identity and access management, endpoint security, secure cloud architecture, secure SaaS governance, TIC 3.0, or continuous monitoring.
  • Experience integrating cybersecurity requirements into Agile, DevSecOps, CI/CD, product delivery, and application modernization workflows.
  • Experience supporting ATO packages, security assessment activities, security control validation, audit responses, and independent verification or validation reviews.
  • Experience with cybersecurity tools and repositories used for POA&M tracking, vulnerability management, audit evidence, incident coordination, SIEM/SOAR, or continuous monitoring.
  • Experience aligning cybersecurity activities with NIST 800-53 Rev. 5, NIST 800-37, NIST 800-61, NIST 800-34, FedRAMP, FISMA, CISA guidance, or HHS security policy.
  • Experience developing cybersecurity dashboards, executive risk reporting, compliance scorecards, and metrics-based security governance materials.
  • Additional cybersecurity, cloud security, Agile, ITIL, AWS, Azure, Google Cloud, or project management certification.

Working at ICF

ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read ourEEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please emailCandidateaccommodation@icf.comand we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations.

Read more aboutworkplacediscriminationrightsor our benefit offerings which are included in theTransparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process.

However, we understand that some candidates may require accommodationthat involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance atcandidateaccommodation@icf.com. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed.


Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$158,819.00 - $269,993.00Nationwide Remote Office (US99)