Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity ... Coordinate with third-party cybersecurity teams and federal oversight bodies as needed. * Prepare ...
Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity ... Coordinate with third-party cybersecurity teams and federal oversight bodies as needed. * Prepare ...
Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity ... Coordinate with third-party cybersecurity teams and federal oversight bodies as needed. * Prepare ...
Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity ... Coordinate with third-party cybersecurity teams and federal oversight bodies as needed. * Prepare ...
Manage incoming third-party risk requests from onboarding, procurement, security architecture, business stakeholders, security teams, and related intake channels. * Review supplier, product, service ...
Manage incoming third-party risk requests from onboarding, procurement, security architecture, business stakeholders, security teams, and related intake channels. * Review supplier, product, service ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
... cybersecurity risk, technology risk, vendor management, procurement risk, security governance ... Experience supporting third-party risk assessments, supplier due diligence, risk tiering ...
Manager of Cyber Security
$105K - $143K/yr
Third-Party Risk Management * Risk Management: Oversee the assessment and management of cybersecurity risks associated with third-party vendors, partners, and bio-medical devices. Policy Development ...
Quick apply
Manager of Cyber Security
$105K - $143K/yr
Third-Party Risk Management * Risk Management: Oversee the assessment and management of cybersecurity risks associated with third-party vendors, partners, and bio-medical devices. Policy Development ...
Cybersecurity Analyst Division: Environmental Duration: Direct Hire Location: Knoxville, TN Company ... third party vendor assessment, systems assessment support, and has familiarity with risk ...
Cybersecurity Analyst Division: Environmental Duration: Direct Hire Location: Knoxville, TN Company ... third party vendor assessment, systems assessment support, and has familiarity with risk ...
Third-Party Risk Management * Risk Management: Oversee the assessment and management of cybersecurity risks associated with third-party vendors, partners, and bio-medical devices. Policy Development ...
Quick apply
Third-Party Risk Management * Risk Management: Oversee the assessment and management of cybersecurity risks associated with third-party vendors, partners, and bio-medical devices. Policy Development ...
Provide oversight of IT risk associated with third party vendors, including material risk vendor ... Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field.
Provide oversight of IT risk associated with third party vendors, including material risk vendor ... Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field.
Provide oversight of IT risk associated with third party vendors, including material risk vendor ... Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field.
Provide oversight of IT risk associated with third party vendors, including material risk vendor ... Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field.
Director of Cybersecurity
$160K - $183K/yr
Third-Party Risk Management Oversee assessment and management of cybersecurity risks associated with third-party vendors, partners, and biomedical devices. Policy Development and Enforcement Develop ...
Quick apply
Director of Cybersecurity
$160K - $183K/yr
Third-Party Risk Management Oversee assessment and management of cybersecurity risks associated with third-party vendors, partners, and biomedical devices. Policy Development and Enforcement Develop ...
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Quick apply
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Risk Manager
Memphis, TN · On-site
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Risk Manager
Memphis, TN · On-site
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
$75K - $125K/yr
As a LOB Risk Specialist, Senior within PNC's Technology Third-Party Risk Management organization, you will be based in Pittsburgh, PA, Cleveland, OH, Phoenix, AZ. Birmingham, AL, or Dallas, TX. ...
$75K - $125K/yr
As a LOB Risk Specialist, Senior within PNC's Technology Third-Party Risk Management organization, you will be based in Pittsburgh, PA, Cleveland, OH, Phoenix, AZ. Birmingham, AL, or Dallas, TX. ...
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Risk Manager Department: Risk Management / Compliance FLSA: Non-Exempt Reports To: Chief Legal ... Coordinate with internal departments, third-party administrators, insurers, defense counsel, and ...
Manage third-party risk, including vendors and biomedical devices * Establish and enforce cybersecurity policies, standards, and governance frameworks * Lead security architecture and design to ...
Quick apply
Manage third-party risk, including vendors and biomedical devices * Establish and enforce cybersecurity policies, standards, and governance frameworks * Lead security architecture and design to ...
Technology & Vendor Management o Evaluate and manage third-party Managed Security Service Providers ... risk reduction. Ability to solve complex cybersecurity operational problems without guidance.
Technology & Vendor Management o Evaluate and manage third-party Managed Security Service Providers ... risk reduction. Ability to solve complex cybersecurity operational problems without guidance.
Cyber Manager - ServiceNow
Hermitage, TN · On-site +1
$97K - $131K/yr
... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Third-Party Risk Management workstreams in partnership with architects and product owners
Cyber Manager - ServiceNow
Hermitage, TN · On-site +1
$97K - $131K/yr
... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Third-Party Risk Management workstreams in partnership with architects and product owners
Third Party Cybersecurity Risk information
What is the difference between Third Party Cybersecurity Risk vs Cybersecurity Analyst?
| Aspect | Third Party Cybersecurity Risk | Cybersecurity Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, CompTIA Security+, CEH |
| Work Environment | Vendor assessments, risk management teams, client organizations | Security operations centers, IT departments, consulting firms |
| Industry Usage | Supply chain, vendor management, compliance | Network security, incident response, vulnerability assessment |
Third Party Cybersecurity Risk professionals focus on evaluating and managing risks from external vendors and partners, ensuring compliance and reducing supply chain vulnerabilities. Cybersecurity Analysts primarily monitor, analyze, and respond to security threats within an organization’s own systems. While both roles require security certifications and involve risk assessment, their focus areas and work environments differ significantly.
Full-time
Posted 20 days ago
Job description
This position supports the U.S. Department of Energy Office of Scientific and Technical Information (DOE OSTI) in its mission to ensure the long-term preservation and accessibility of DOE scientific and technical information. The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring compliance with federal cybersecurity frameworks and OSTI's internal policies. This is onsite in Oak Ridge, TN.
Responsibilities
Essential Duties & Responsibilities:
Responsibilities include, but are not limited to the following:
- Evaluate and document the effectiveness of cybersecurity controls across OSTI's network and systems.
- Support internal and external audits, including evidence collection, control mapping, and remediation tracking.
- Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity requirements.
- Collaborate with system owners and technical teams to ensure security controls are implemented and maintained.
- Monitor compliance with OSTI's cybersecurity policies, procedures, and standards.
- Maintain and update system security plans (SSPs), risk registers, and control documentation.
- Assist in the development and refinement of cybersecurity governance processes.
- Analyze security event data to identify control weaknesses and recommend improvements.
- Support the implementation of continuous monitoring strategies and reporting mechanisms.
- Coordinate with third-party cybersecurity teams and federal oversight bodies as needed.
- Prepare technical documentation and compliance reports for internal and external stakeholders.
- Stay current on cybersecurity regulations, audit trends, and best practices.
- Assist with installation, configuration, and maintenance of security tools used for compliance monitoring.
- Perform other duties as assigned.
Qualifications
Education, Training, Experience
- High school diploma required.
- Prefer degree or coursework in cybersecurity, information assurance, audit, or related field.
- Minimum of 3 years' experience in cybersecurity, audit, or compliance roles.
Knowledge, Skills, Abilities
- Possesses a strong understanding of cybersecurity frameworks (e.g., NIST SP 800-53, FISMA, RMF), implementing and adapting them to specific organizational needs.
- Performs risk assessments, identifies control gaps, and recommends strategic remediation efforts based on organizational risk appetite.
- Supports audits, leads audit responses and compliance assessments, coordinates evidence collection, and develops corrective action plans in a federal or regulated environment.
- Leverages SIEM tools (e.g., Splunk), vulnerability management, and control monitoring platforms.
- Works independently and collaboratively across technical and non-technical teams.
- Exhibits excellent analytical, documentation, and communication skills.
- Detail-oriented with a commitment to quality assurance and continuous improvement.
- Manages multiple projects and deadlines in a fast-paced environment.
- Maintains a high level of initiative, customer service, and professional growth mindset.
Ability to provide proof of US Citizenship on your first day of employment to obtain a DOE HSPD-12 Badge in accordance with the terms of the contract. Department of Energy OSTI's policy direction requires all employees employed on this contract to be citizens of the United States.
About Us:
Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2025.
It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law. #LISW
About Edgewater Federal Solutions
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Ijamsville, MD, US
Year founded
2002