This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.

72 Lancesoft It Architect Jobs Hiring Near You
This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.
This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.
This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.
This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.
This job is with Encode, Inc a fully owned subsidiary of Lancesoft Position summary: The ... Coordinate governance activities with CRAA's cybersecurity and information-technology teams.
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
DCY - Technical Writer 3/ TW3
Columbus, OH ยท On-site
Create and Maintain Architecture Diagrams, API Documentation, Data Dictionaries, Entity ... Education: 4 year college Degree in IT, Computer Science, Engineering or Business with a focus on ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
Leads and performs the development, implementation, and monitoring of IT quality assurance standards and testing; Performs performance, regression and load testing. Documentation; writes, reviews ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
OBM - Senior Architect 2/ SA2
Columbus, OH ยท On-site
Proficient at PS Query Knowledge of SOA and other file transfer technologies Experience creating custom inbound and outbound interface files with banking and other external systems Knowledge with ...
IT Architect
Hanover, MD ยท On-site
IT Architect Client: Maryland Transportation Authority (MDTA) POP: 12+ months Location: Hybrid - Maryland US Citizen REQUIRED SKILLS * Five (5) years' experience as an Information Technology ...
IT Architect
Hanover, MD ยท On-site
IT Architect Client: Maryland Transportation Authority (MDTA) POP: 12+ months Location: Hybrid - Maryland US Citizen REQUIRED SKILLS * Five (5) years' experience as an Information Technology ...
IT Architect
Redmond, WA ยท On-site
Company Description Ajith KRG Technologies, Inc., ajith(at)krgtech.com 25000 Avenue Stanford, Suite #243, Valencia, CA 91355 Direct : 661-367-8000 Ext : 310 Job Title: IT Architect Location: Redmond ...
IT Architect
Redmond, WA ยท On-site
Company Description Ajith KRG Technologies, Inc., ajith(at)krgtech.com 25000 Avenue Stanford, Suite #243, Valencia, CA 91355 Direct : 661-367-8000 Ext : 310 Job Title: IT Architect Location: Redmond ...
IT Architect
Denver, CO ยท On-site
The IT Architect will be able to work side-by-side with other members of the growing technical team for a large 5 year fully-funded Federal Contract. The IT Architect must be able to provide ...
IT Architect
Denver, CO ยท On-site
The IT Architect will be able to work side-by-side with other members of the growing technical team for a large 5 year fully-funded Federal Contract. The IT Architect must be able to provide ...
IT Architect
Montreal, QC ยท Hybrid
At the heart of innovation and client experience At Desjardins, IT architecture is more than just a technical framework-it's a strategic driver that moves our mission forward. It relies on Desjardins ...
IT Architect
Montreal, QC ยท Hybrid
At the heart of innovation and client experience At Desjardins, IT architecture is more than just a technical framework-it's a strategic driver that moves our mission forward. It relies on Desjardins ...
IT Architect
Denver, CO ยท On-site
The IT Architect will be able to work side-by-side with other members of the growing technical team for a large 5 year fully-funded Federal Contract. The IT Architect must be able to provide ...
IT Architect
Denver, CO ยท On-site
The IT Architect will be able to work side-by-side with other members of the growing technical team for a large 5 year fully-funded Federal Contract. The IT Architect must be able to provide ...
IT Architect
Levis, QC ยท Hybrid
At the heart of innovation and client experience At Desjardins, IT architecture is more than just a technical framework-it's a strategic driver that moves our mission forward. It relies on Desjardins ...
IT Architect
Levis, QC ยท Hybrid
At the heart of innovation and client experience At Desjardins, IT architecture is more than just a technical framework-it's a strategic driver that moves our mission forward. It relies on Desjardins ...
IT Architect
Eglin Air Force Base, FL ยท On-site
$110 - $150/hr
Overview Intelligent Waves is seeking an experienced IT Architect with extensive expertise in enterprise systems engineering, architecture, and systems integration. The ideal candidate will serve as ...
New
IT Architect
Eglin Air Force Base, FL ยท On-site
$110 - $150/hr
Overview Intelligent Waves is seeking an experienced IT Architect with extensive expertise in enterprise systems engineering, architecture, and systems integration. The ideal candidate will serve as ...
New
IT Architect
Florida, NY ยท On-site
Intelligent Waves is seeking an experienced IT Architect with extensive expertise in enterprise systems engineering and architecture. The ideal candidate will lead technical initiatives, ensuring ...
IT Architect
Florida, NY ยท On-site
Intelligent Waves is seeking an experienced IT Architect with extensive expertise in enterprise systems engineering and architecture. The ideal candidate will lead technical initiatives, ensuring ...
LanceSoft Jobs Information
What other companies are hiring for It Architect jobs?
What are the most popular jobs at Lancesoft?
What are the most popular categories at Lancesoft?

Full-time
Posted 13 days ago
Job description
This job is with Encode, Inc a fully owned subsidiary of Lancesoft
ยPosition summary: The Cybersecurity Governance, Risk, and Incident Readiness Lead will be responsible for CRAAโs cybersecurity governance, maturity, policy improvement, incident-readiness, exercise, and training workstreams.
The role will lead the annual NIST CSF-aligned maturity assessment, review and improve cybersecurity policies and procedures, enhance incident-response and recovery plans, design and facilitate tabletop exercises, deliver quarterly incident-response training, support the airport-wide exercise, and translate findings into practical remediation roadmaps.
CRAA clarified that formal CMMC certification is not required. The recurring maturity requirement is one annual assessment aligned with the NIST Cybersecurity Framework and CRAAโs CMMI-style maturity approach.
Key responsibilities
- Cybersecurity governance
- Coordinate governance activities with CRAAโs cybersecurity and information-technology teams.
- Align advisory work to CRAAโs cybersecurity strategy, roadmap, risk priorities, operating environment, and applicable requirements.
- Support the Govern, Identify, Protect, Detect, Respond, and Recover functions.
- Provide consultative support concerning asset management, data governance, risk management, access control, training, data security, recovery, monitoring, response, mitigation, and improvement.
- Support CRAAโs enterprise Risk Governance forum and existing remediation-tracking processes.
- Maintain traceability among findings, risks, recommendations, responsible owners, actions, and status.
- Facilitate prioritization based on severity, business impact, effort, dependencies, and residual risk.
- Annual cybersecurity maturity assessment
- Plan and lead one annual NIST CSF-aligned cybersecurity maturity assessment.
- Define the assessment scope, participants, evidence requests, interviews, rating criteria, and schedule.
- Review policies, processes, procedures, governance records, technical evidence, and operating practices.
- Facilitate workshops with CRAA cybersecurity and technology personnel.
- Assess current maturity using CRAAโs requested CMMI-style approach.
- Document current-state maturity, target-state objectives, material gaps, strengths, dependencies, and recommended improvements.
- Develop a prioritized roadmap with approximate levels of effort.
- Present findings to technical personnel and executive leadership.
- Track progress against prior-year recommendations.
- Avoid representing the assessment as a formal CMMC certification or CMMI organizational appraisal.
- Policy, standard, and procedure support
- Establish a structured process for reviewing CRAAโs existing cybersecurity documentation.
- Support review and improvement of approximately 100 policies, standards, procedures, plans, and operational documents, subject to CRAA prioritization.
- Identify obsolete, conflicting, incomplete, or missing requirements.
- Recommend practical revisions aligned with CRAAโs technology, risk, and operating environment.
- Draft new documentation where emerging technology or operations create a material need.
- Coordinate review with document owners, technical stakeholders, leadership, and other CRAA personnel.
- Maintain version control, approval history, ownership, review dates, and document relationships.
- Ensure that policy language is implementable and does not create unsupported operational commitments.
- Incident-response planning
- Review and enhance CRAAโs existing Incident Response Plan.
- Define or improve roles, responsibilities, severity criteria, communications, escalation, evidence handling, containment decisions, recovery coordination, and post-incident review.
- Align the plan with the co-managed SOC operating model.
- Document the relationship among the MSSP, CRAA internal responders, cybersecurity leadership, cyber-insurance responders, legal stakeholders, and other participants.
- Support ransomware-readiness and recovery-planning activities.
- Ensure incident procedures reflect CRAAโs restrictions on AI, data handling, external ticketing, and third-party access.
- Incorporate lessons from actual events, exercises, post-mortems, and control assessments.
- Disaster recovery and business continuity support
- Review cybersecurity aspects of CRAAโs disaster-recovery and business-continuity plans.
- Help identify dependencies among incident response, system recovery, communications, crisis management, and continuity functions.
- Recommend improvements to existing plans rather than assuming they must be developed from the ground up.
- Support testing and evaluation of cybersecurity-related recovery processes.
- Coordinate with CRAA stakeholders responsible for technology recovery and continuity.
- Document gaps, dependencies, recovery risks, and recommended actions.
- Tabletop exercises
- Design and facilitate at least two IT-focused tabletop exercises annually.
- Coordinate exercise objectives, scope, participants, scenario, injects, decision points, facilitation guides, and evaluation criteria.
- Develop relevant scenarios reflecting CRAAโs identified risks and emerging threats.
- Test the Technology Departmentโs ability to detect, communicate, escalate, respond, recover, and coordinate.
- Observe actions and decisions without creating artificial expectations that differ from approved plans.
- Facilitate structured hot-wash discussions.
- Produce after-action reports identifying strengths, gaps, lessons learned, and prioritized recommendations.
- Track improvement actions into subsequent exercises and program plans.
- Airport-wide IR/DR/BC exercise
- Support the broader airport incident-response, disaster-recovery, and business-continuity exercise once during the three-year term.
- Assist CRAA with technology and cyber-related scenario design.
- Observe and evaluate technology and cybersecurity response activities.
- Assess coordination between technology and broader airport stakeholders.
- Provide feedback on incident-response and recovery performance.
- Document improvement opportunities and recommended plan updates.
- Recognize that CRAAโs clarifications describe both an observational role and support for scenario design and evaluation.
- Quarterly training
- Develop and deliver four one-hour incident-response training sessions annually.
- Tailor content to emerging incident-response risks and CRAAโs operating environment.
- Address best practices, successful response examples, lessons from failed responses, and strategies for avoiding similar failures.
- Deliver sessions virtually to approximately 25 to 40 participants.
- Adapt content for the Technology Department while allowing stakeholder or executive participation when CRAA requests it.
- Develop supporting materials, attendance records, learning objectives, and evaluation methods.
- Incorporate lessons from incidents, exercises, maturity assessments, and evolving threat patterns.
- Executive and technical reporting
- Prepare maturity reports, policy recommendations, exercise reports, training summaries, and incident-readiness roadmaps.
- Identify findings by risk and severity.
- Provide approximate levels of effort for recommended changes.
- Identify residual risk following proposed improvements.
- Develop executive-level presentations that clearly explain business impact, priorities, and decisions.
- Coordinate reporting with the Engagement Manager.
- Ensure that recommendations are practical, cost-conscious, and tailored to CRAA.
- Required capabilities: The proposed individual should demonstrate:
- Leadership of cybersecurity governance, risk, compliance, and maturity programs.
- Experience conducting NIST CSF-aligned maturity assessments.
- Experience reviewing and developing cybersecurity policies, standards, procedures, and plans.
- Experience enhancing incident-response, disaster-recovery, and business-continuity documentation.
- Experience designing and facilitating tabletop exercises.
- Experience developing and delivering cybersecurity training.
- Strong executive writing, workshop facilitation, presentation, and stakeholder-management skills.
- Ability to translate technical findings into prioritized risks and actionable roadmaps.
- Preferred qualifications: Include only where held:
- Bachelorโs or advanced degree in cybersecurity, information systems, risk management, business continuity, emergency management, or a related discipline.
- CISSP, CISM, CRISC, CGEIT, CBCP, CBCI, GCIH, ISO 27001, NIST-related, or comparable credentials.
- Experience with public-sector, aviation, transportation, critical-infrastructure, or regulated clients.
- Experience presenting cybersecurity findings to executive leadership.
- Key performance indicators: Potential measures include:
- Annual assessment completion
- Roadmap acceptance and action closure
- Policy-review completion rate
- Document approval timeliness
- Exercise completion
- After-action report timeliness
- Exercise-action closure
- Training completion and attendance
- Stakeholder feedback
- Recurring maturity improvement
- Residual-risk reduction
About LanceSoft
Sourced by ZipRecruiter
Established in 2000, LanceSoft is a Certified MBE and Woman-Owned organization. Lancesoft Inc. is one of the highest rated companies in the industry. We have been recognized as one of the Largest Staffing firms and ranked in the top 50 fastest Growing Healthcare Staffing firms in 2022. Lancesoft offers short- and long-term contracts, permanent placements, and travel opportunities to credentialed and experienced professionals throughout the United States. We pride ourselves on having industry leading benefits. We understand the importance of partnering with an expert who values your needs, which is why we're 100% committed to finding you an assignment that best matches your career and lifestyle goals. Our team of experienced career specialists takes the time to understand your needs and match you with the right job Lancesoft has been chosen by Staffing Industry Analysts as one of the Best Staffing Firms to Work for.LanceSoft specializes in providing Registered Nurses, Nurse Practitioners, LPNs/LVNs, Social Workers, Medical Assistants, and Certified Nursing Assistants to work in Acute Care Centers, Skilled Nursing Facilities, Long-Term Care centers, Rehab Facilities, Behavioral Health Centers, Drug & Alcohol Facilities, Home Health & Community Health, Urgent Care Clinics, and many other provider-based facilities.
Industry
Recruiting and staffing services
Company size
1,001 - 5,000 Employees
Headquarters location
Herndon, VA, US
Year founded
2000