Risk and Compliance Analyst

Dunhill Professional Search & Government Solutions
Bethesda, MD, US
Full-time
We are sorry. The job offer you are looking for is no longer available.

Risk and Compliance Analyst

Hybrid Bethesda, MD 2 days per week

US Citizenship Required

We are looking for a motivated Risk and Compliance Analyst to join a team working on a Federal contract. Specifically will need experience in cloud solutions AWS or Azure.

This is a mostly remote role with one or two days a week onsite as needed.

Job Description :

  • Provide Risk Management Framework (RMF) subject matter expertise to the client.
  • Experience implementing security controls and compliance with a Cloud Service Provider CSP (AWS or Azure)
  • Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP)
  • Collaborate with cross-functional teams to implement compliance initiatives and security controls
  • Monitor and track activities related to control remediation or corrective action.
  • Partner with business and IT teams to develop and deliver risk mitigation plans, implement additional control activities, or document risk acceptance
  • Experience with FedRAMP compliance, Cloud systems and the Customer Responsibility Matrix (CRM)
  • Coordinate with Authorizing Officials, System Owners, Engineers, ISSO and other applicable teams to create and update SSPs, SARs, SIAs, Security Impact Analysis and other applicable documentation for legacy on-prem and Cloud systems.
  • Assess and determine the NIST 800-53 Control Status for multiple ATOs.
  • Update and maintain POAMs and ATO packages in CSAM
  • Ensure assessment and authorization packages are in compliance with Federal government compliance and client requirements.
  • On-time submission of contract deliverables with special attention to quality and accuracy.
  • Monitor, track, and report on daily, weekly, and monthly team program initiatives.
  • Evaluate configuration management (CM) for information system security software, hardware, and firmware.

Other Job Specific Skills :

  • Experience and knowledge of NIST SP 800-37, NIST SP 800-53r5, FedRamp
  • Experience and knowledge of performing risk and vulnerability assessments for the purpose of change management (SIA).
  • POAM management, tracking and reporting.
  • Experience with RMF and Cloud authorization processes and procedures.
  • Experience with categorization of Federal government systems.
  • Experience in policy implementation with a Federal government client.
  • Technical writing skills to include SOPs and Control Implementation.
  • 6 days ago
Related jobs
Promoted
Dunhill Professional Search & Government Solutions
Bethesda, Maryland

We are looking for a motivated Risk and Compliance Analyst to join a team working on a Federal contract. Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP). Partner with business and IT teams to develop and deliver risk mit...

ASM Research
Bethesda, Maryland

Operations Security Advisor I – Cloud Risk and Compliance Analyst. Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP). Partner with business and IT teams to develop and deliver risk mitigation plans, implement additional co...

Highmark Health
MD, Working at Home, Maryland

Accountable for the review and interpretation of authoritative guidance (including, but not limited to NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, JCAHO reports) and performs qualitative and quantitative impact assessments based on physical, technical, and administrative safeguards as well as contract...

ASM Research
Bethesda, Maryland

Creates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate high level data and cyber security risks. Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and. Designs, tests and implement...

Ankura
Maryland

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . Working both independently and with team members as the project lead to successfully execute proj...

BDO
Potomac, Maryland

Under the direction of the Regional Business Development Director (RBDD), and in collaboration with practice leadership, and the Chief Business Development Officer, the Director of Business Development, Legal, Compliance & Risk, is responsible for driving, monitoring and improving sales performance ...

ZS
Bethesda, Maryland

This role will be important to help develop capabilities and service offerings to advance ZS as a leader in delivering strategic risk management solutions for clients by: (1) Integrating risk management into design of solutions; (2) Targeting risk and resources based on compliance insights from adva...

Equinix
Remote, US, Maryland
Remote

We embrace diversity in thought and contribution and are committed to providingan equitable work environment that is foundational to our core values as a company and is vital to our success. Maintains a moderate level of required compliance records in local/global repositories including: records rel...

finra
Rockville, Maryland

Ability to engage and work effectively with senior business management, across departments, and with staff in multiple locations, including partnering and collaborating with various internal departments for the identification and trending of industry and business model risks for summation and report...

Ankura
Maryland

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . Working both independently and with team members as the project lead to successfully execute proj...