Talent.com
Cybersecurity Risk Assessment Consultant
Cybersecurity Risk Assessment ConsultantGDR Defense • Annapolis, Maryland, USA
Cybersecurity Risk Assessment Consultant

Cybersecurity Risk Assessment Consultant

GDR Defense • Annapolis, Maryland, USA
Hace 6 horas
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Join GD Resources for dynamic opportunities in business management and IT where innovation meets excellence.

About the Company :

GD Resources is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. GD Resources provides dynamic opportunities for veterans and professionals alike to contribute to innovative projects and drive success in a collaborative and supportive environment. Join us to make a difference advance your career and grow with a company that values integrity diversity and continuous improvement.

Job Title : Cybersecurity Risk Assessment Consultant

Location : Hybrid (onsite work possibly at various locations throughout Maryland)

Rate : Competitive DOE (W2 or 1099)

Position Overview

We are seeking a Cybersecurity GRC Data & Dashboard Consultant to support follow-on work from approximately 90 completed cybersecurity assessments for a client. The consultant will transform assessment results into structured data dashboards and reports that align with NIST CSF CMMI maturity scoring and the clients Governance Risk and Compliance (GRC) platform (e.g. ServiceNow GRC). This role is ideal for someone with strong cybersecurity domain knowledge GRC platform experience and hands-on skills in data analytics and dashboard development. The consultant will help build real-time interactive views of client-wide and agency-level cybersecurity maturity risks issues and remediation progress to support executive decision-making and continuous improvement.

Responsibilities

  • Convert all assessment results into a format compatible with the clients GRC platform import requirements.
  • Prepare and manage key data outputs including assessment scope maturity scores (CMMI 0 5 by NIST CSF function / category / control) findings risks issues and recommended remediation actions.
  • Provide data files and reports in Client-specified formats and offer reasonable technical assistance to support successful import into the Clients GRC platform.
  • Incorporate agency issue response status data from the Clients GRC platform into reporting and analysis as needed.
  • Design develop and maintain real-time reporting dashboards using cybersecurity assessment data at both client-wide (aggregated) and agency (disaggregated) levels.
  • Build dashboards that show :

Top control categories by maturity

  • Most common constraints
  • Top recommended areas of improvement
  • CMMI-based maturity levels (0 5) across Identify Protect Detect Respond and Recover
  • Top findings risks issues and issue response by agency
  • Ensure all dashboards are interactive allowing users to drill down into underlying assessment data behind summary metrics.
  • Implement robust filters in dashboards to support targeted analysis including filters for : Executive Branch designation enterprise agency agency size tier IT complexity tier and overall Maturity Group.
  • Build agency-level dashboards that :
  • Display average maturity scores by NIST CSF area compared against client-wide averages using side-by-side bar charts

  • Show maturity averages by CSF categories (e.g. Communications Maintenance Access Control) compared to client-wide averages
  • Highlight recommended areas of improvement top 10 findings and percent completion of identified issues
  • Create comparison dashboards that allow users to select one or more agencies and compare ratings and metrics across NIST CSF areas and categories.
  • Integrate historical NIST CSF assessment data from prior years into dashboards to show year-over-year trends at both agency and client-wide levels.
  • Ensure all required data entry is completed before final project close-out unless an exception is approved by the client.
  • Provide reasonable technical assistance to support ongoing imports and integration into the Clients GRC platform.
  • Participate in weekly status meetings with client stakeholders.
  • Prepare concise written status updates on a bi-weekly basis and join additional meetings / discussions as needed.
  • Maintain and follow quality procedures methodologies and standards relevant to this contract including those associated with Client platforms such as ServiceNow GRC.
  • Qualifications

  • Bachelors degree in Cybersecurity Information Technology Computer Science Data Analytics or related field (or equivalent experience).
  • 5 years of experience in cybersecurity GRC or risk management roles supporting government or large enterprise environments.
  • Hands-on experience working with NIST Cybersecurity Framework (NIST CSF) and familiarity with NIST 800-53 and / or NIST 800-171 controls.
  • Experience with CMMI-style maturity scoring (0 5) and translating assessment results into structured data and reports.
  • Practical experience with Governance Risk and Compliance (GRC) platforms preferably ServiceNow GRC or similar Client / enterprise platforms.
  • Strong skills in data analysis and dashboard / report development using tools such as Power BI Tableau or similar visualization platforms.
  • Proven ability to design interactive dashboards with drill-down and filter capabilities for different organizational tiers (e.g. client-wide vs. agency-level).
  • Experience integrating and analyzing historical assessment data to present trends and performance changes over time.
  • Strong attention to detail and ability to ensure data quality consistency and completeness prior to project close-out.
  • Excellent written and verbal communication skills including experience preparing status reports and presenting findings to technical and non-technical stakeholders.
  • Demonstrated commitment to ongoing training and staying current with cybersecurity standards tools and assessment methodologies.
  • Ability to participate in weekly calls and other meetings during standard business hours and collaborate effectively with a remote multi-organization team.
  • GDR is an Equal Opportunity Employer. We consider all qualified applicants without regard to race color religion sex gender identity national origin age disability veteran status or any other protected status under applicable law. We are committed to equal opportunity in all aspects of employment including hiring promotion compensation and benefits.

    Key Skills

    Access Control System,B2C,Business Analysis,Data Structures,Affiliate Marketing,Loans

    Employment Type : Full Time

    Experience : years

    Vacancy : 1

    Crear una alerta de empleo para esta búsqueda

    Cybersecurity Consultant • Annapolis, Maryland, USA

    Ofertas relacionadas
    Associate Director of Risk Management

    Associate Director of Risk Management

    InsideHigherEd • Bowie, Maryland, United States
    A tiempo completo
    JR101457 Associate Director of Risk Management (Open).The Associate Director of Risk Management will lead the development and implementation of Bowie State University's Enterprise Risk Management (...Mostrar más
    Última actualización: hace 24 días • Oferta promocionada
    Identity Access Management (IAM) Manager - Cyber Security - Bowie, MD

    Identity Access Management (IAM) Manager - Cyber Security - Bowie, MD

    WesBanco Bank Inc. • Bowie, MD, United States
    A tiempo completo +1
    Identity Access Management (IAM) Manager - Cyber Security.Bowie, Maryland, United States.This position is 100% remote within the Bank's footprint. Employee will work full time remote outside of a We...Mostrar más
    Última actualización: hace 21 días • Oferta promocionada
    IT Compliance SME

    IT Compliance SME

    GStek, Inc. • ABER PROV GRD, MD, US
    Temporal
    Active / recent (last 24 months) U.Minimum 5 years of IT-related experience, preferably within a DoD facility.Microsoft, Cisco, Cybersecurity related experience. Certified Associate in Project Managem...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Insider Threat Program User Activity Monitor Engineer

    Insider Threat Program User Activity Monitor Engineer

    Leidos • Upper Marlboro, MD, US
    A tiempo completo
    The Digital Modernization Sector at Leidos currently has an opening for User Activity Monitor (UAM) Engineer supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insid...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Principal Associate, Business Risk Guide- Enterprise Services Risk Office

    Principal Associate, Business Risk Guide- Enterprise Services Risk Office

    Capital One • Annapolis, MD, US
    A tiempo completo +1
    Principal Associate, Business Risk Guide- Enterprise Services Risk Office.We are hiring! The Enterprise Services Business Risk Office provides risk management support to several lines of business i...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Risk Solutions Expert

    Risk Solutions Expert

    The Strickland Group • Baltimore, MD, US
    A tiempo completo
    Quick Apply
    Join Our Team as a Risk Solutions Expert!.Are you a problem-solver with a passion for optimizing business operations and driving efficiency?. We are looking for a Risk Solutions Expert to deve...Mostrar más
    Última actualización: hace más de 30 días
    Manager, eData Risk Guide - Enterprise Services Risk

    Manager, eData Risk Guide - Enterprise Services Risk

    Capital One • Baltimore, MD, US
    A tiempo completo +1
    Manager, eData Risk Guide - Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled prof...Mostrar más
    Última actualización: hace 5 horas • Oferta promocionada • Nueva oferta
    Director Patient Care Services Operations

    Director Patient Care Services Operations

    University of Maryland Medical System • Easton, MD, US
    A tiempo completo
    A member of the University of Maryland Medical System, Shore Regional Health is a Magnet®-designated facility.At Shore Regional Health, you can learn, grow and make a lasting impact on patients...Mostrar más
    Última actualización: hace 10 días • Oferta promocionada
    Cybersecurity Assessments Lead

    Cybersecurity Assessments Lead

    CompQsoft • Fort Meade, MD, United States
    A tiempo completo
    Position : Cybersecurity Assessments Lead.Clearance : Top Secret, SCI eligible.Determines enterprise IA and security standards. Develops and implements IA / security standards and procedures.Coordinates...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Engineer, Strategic / Reliability

    Engineer, Strategic / Reliability

    Constellation Energy • Huntingtown, MD, US
    A tiempo completo
    As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose : accelerating the transition to a carbon-free future. We have been the leader in clean ener...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Manager, Tech and Product Risk - Enterprise Services Risk

    Manager, Tech and Product Risk - Enterprise Services Risk

    Capital One • Baltimore, MD, US
    A tiempo completo +1
    Manager, Tech and Product Risk - Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled...Mostrar más
    Última actualización: hace 5 horas • Oferta promocionada • Nueva oferta
    Principal Risk Associate | Retail Bank Tech

    Principal Risk Associate | Retail Bank Tech

    Capital One • Annapolis, MD, US
    A tiempo completo +1
    Principal Risk Associate | Retail Bank Tech.The Principal Associate within the Tech, Cyber, Data, and Resiliency (TCDR) team will strategically apply analytical expertise to proactively identify, m...Mostrar más
    Última actualización: hace 28 días • Oferta promocionada
    Cybersecurity Risk Assessment Consultant

    Cybersecurity Risk Assessment Consultant

    GDR Defense • Annapolis, MD, United States
    A tiempo completo
    Quick Apply
    Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence.About the Company : GD Resources is a Veteran Women-Owned Bu...Mostrar más
    Última actualización: hace 1 día
    Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

    Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

    EY • Baltimore, MD, United States
    A tiempo completo
    At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Cyber Technical Lead

    Cyber Technical Lead

    MAXIMUS • Annapolis Junction, MD, United States
    A tiempo completo
    Maximus is seeking a highly skilled Cyber Technical Lead to support a contract with a Homeland Security customer.The successful candidate will provide strategic and technical leadership in cybersec...Mostrar más
    Última actualización: hace 19 horas • Oferta promocionada • Nueva oferta
    Risk Management Framework (RMF) Cyber Expert

    Risk Management Framework (RMF) Cyber Expert

    Link Solutions • Aberdeen Proving Ground, MD, United States
    A tiempo completo
    Information Technology services to government clients in support of critical mission needs.Delivering a broad range of Infrastructure Operations, Application Development, Cybersecurity, Virtualizat...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Engineering Analyst, Strategic / Reliability

    Engineering Analyst, Strategic / Reliability

    Constellation Energy • Benedict, MD, US
    A tiempo completo
    As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose : accelerating the transition to a carbon-free future. We have been the leader in clean ener...Mostrar más
    Última actualización: hace 23 horas • Oferta promocionada
    Manager, Technology Risk Guide - Enterprise Services Risk

    Manager, Technology Risk Guide - Enterprise Services Risk

    Capital One • Highland Beach, MD, United States
    A tiempo completo +1
    Manager, Associate Treasury Management Consultant Team Lead.This role is a leadership opportunity with a dual mandate of driving associate development and portfolio management.As the Associate Trea...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada