Risk and Compliance Analyst

Dunhill Professional Search & Government Solutions
Bethesda, MD, US
Full-time

Risk and Compliance Analyst

Hybrid Bethesda, MD 2 days per week

US Citizenship Required

We are looking for a motivated Risk and Compliance Analyst to join a team working on a Federal contract. Specifically will need experience in cloud solutions AWS or Azure.

This is a mostly remote role with one or two days a week onsite as needed.

Job Description :

  • Provide Risk Management Framework (RMF) subject matter expertise to the client.
  • Experience implementing security controls and compliance with a Cloud Service Provider CSP (AWS or Azure)
  • Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP)
  • Collaborate with cross-functional teams to implement compliance initiatives and security controls
  • Monitor and track activities related to control remediation or corrective action.
  • Partner with business and IT teams to develop and deliver risk mitigation plans, implement additional control activities, or document risk acceptance
  • Experience with FedRAMP compliance, Cloud systems and the Customer Responsibility Matrix (CRM)
  • Coordinate with Authorizing Officials, System Owners, Engineers, ISSO and other applicable teams to create and update SSPs, SARs, SIAs, Security Impact Analysis and other applicable documentation for legacy on-prem and Cloud systems.
  • Assess and determine the NIST 800-53 Control Status for multiple ATOs.
  • Update and maintain POAMs and ATO packages in CSAM
  • Ensure assessment and authorization packages are in compliance with Federal government compliance and client requirements.
  • On-time submission of contract deliverables with special attention to quality and accuracy.
  • Monitor, track, and report on daily, weekly, and monthly team program initiatives.
  • Evaluate configuration management (CM) for information system security software, hardware, and firmware.

Other Job Specific Skills :

  • Experience and knowledge of NIST SP 800-37, NIST SP 800-53r5, FedRamp
  • Experience and knowledge of performing risk and vulnerability assessments for the purpose of change management (SIA).
  • POAM management, tracking and reporting.
  • Experience with RMF and Cloud authorization processes and procedures.
  • Experience with categorization of Federal government systems.
  • Experience in policy implementation with a Federal government client.
  • Technical writing skills to include SOPs and Control Implementation.
  • 1 day ago
Related jobs
Promoted
Dunhill Professional Search & Government Solutions
Bethesda, Maryland

We are looking for a motivated Risk and Compliance Analyst to join a team working on a Federal contract. Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP). Partner with business and IT teams to develop and deliver risk mit...

Promoted
Dunhill Professional Search & Government Solutions
Bethesda, Maryland

We are looking for a motivated Risk and Compliance Analyst to join a team working on a Federal contract. Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP). Partner with business and IT teams to develop and deliver risk mit...

Promoted
IVA'AL Solutions, LLC
Hyattsville, Maryland

Support the development of standard risk analysis policies, standard operating procedures, and similar documents to ensure standardized approaches across the JCDC Planning Office. The Senior Risk and Vulnerability Analyst will perform among a talented and technically accomplished group of colleagues...

Promoted
IVA'AL Solutions, LLC
Takoma Park, Maryland

Support the development of standard risk analysis policies, standard operating procedures, and similar documents to ensure standardized approaches across the JCDC Planning Office. The Senior Risk and Vulnerability Analyst will perform among a talented and technically accomplished group of colleagues...

ASM Research
Bethesda, Maryland

Operations Security Advisor I – Cloud Risk and Compliance Analyst. Support ongoing compliance activities and monitoring efforts across applicable Regulations and Standards (NIST-800-53, FedRAMP). Partner with business and IT teams to develop and deliver risk mitigation plans, implement additional co...

Equinix
Remote, US, Maryland
Remote

We embrace diversity in thought and contribution and are committed to providingan equitable work environment that is foundational to our core values as a company and is vital to our success. Maintains a moderate level of required compliance records in local/global repositories including: records rel...

finra
Rockville, Maryland

Ability to engage and work effectively with senior business management, across departments, and with staff in multiple locations, including partnering and collaborating with various internal departments for the identification and trending of industry and business model risks for summation and report...

Ankura
Maryland

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . Working both independently and with team members as the project lead to successfully execute proj...

BDO
Potomac, Maryland

Under the direction of the Regional Business Development Director (RBDD), and in collaboration with practice leadership, and the Chief Business Development Officer, the Director of Business Development, Legal, Compliance & Risk, is responsible for driving, monitoring and improving sales performance ...

Ankura
Maryland

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . Working both independently and with team members as the project lead to successfully execute proj...