Talent.com
No longer accepting applications
Senior Security Assurance Controls Manager (Falls Church)

Senior Security Assurance Controls Manager (Falls Church)

ID.meFalls Church, VA, US
8 hours ago
Job type
  • Part-time
Job description

Senior Security Assurance Controls Manager

ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me's technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to No Identity Left Behind to enable all people to have a secure digital identity.

Role Overview

ID.me is seeking a Senior Security Assurance Controls Manager to lead the development, implementation, and ongoing operation of our internal control program for external security and privacy frameworks including FedRAMP, ISO 27001, and SOC 2.

This role is critical to maintaining the trust of our customers and regulatory stakeholders by ensuring that security and compliance requirements are met across ID.me's rapidly evolving product and infrastructure landscape. You will work cross-functionally with Engineering, Product, Security, GRC, and external auditors to design scalable control strategies, validate control effectiveness, and operationalize continuous monitoring.

Responsibilities

  • Framework Ownership : Serve as the day-to-day owner for one or more frameworks (e.g., FedRAMP, ISO 27001, SOC 2), ensuring alignment between framework requirements and internal controls.
  • Control Lifecycle Management : Collaborate with control owners to design, implement, document, and monitor controls. Define control objectives, implementation guidance, and assurance requirements.
  • Audit & Assessment Readiness : Coordinate internal and external audits by developing audit plans, preparing walkthroughs, and managing evidence collection activities.
  • Continuous Monitoring : Maintain a recurring schedule of control validations based on framework-specific frequency requirements (e.g., FedRAMP ConMon). Track control health and remediation actions.
  • Gap Analysis & Risk Assessments : Lead gap analyses between new framework requirements and existing control coverage. Facilitate Security Impact Assessments (SIAs) to assess compliance implications of changes and identify risks.
  • Compliance Documentation : Manage organizational policies. Ensure up-to-date, reviewer-approved documentation exists for policies, procedures, and implementation statements. Lead annual reviews and updates.
  • Control Remediation & POA&M Management : Partner with control owners to define corrective actions, manage Plans of Action & Milestones (POA&Ms), and track resolution through closure. Propose and coordinate the design of controls to mitigate risks.
  • Stakeholder Engagement : Act as a trusted partner to engineering, product, infrastructure, and customer-facing teams. Provide clear guidance on what controls are required, why, and how to satisfy them.
  • Tooling & Metrics : Support the use of GRC and data pipelines to automate evidence collection, track control status, and generate metrics for reporting.
  • Internal and External : Contribute to executive and board-level reporting, as well as external customer reporting such as through Continuous Monitoring reports.

Basic Qualifications

  • Bachelor's degree in Information Security, Computer Science, Engineering, Risk Management, or related fieldor equivalent practical experience.
  • 710+ years of experience managing and operating security / compliance programs, including at least one of : FedRAMP, ISO 27001, or SOC 2.
  • 35+ years of experience managing third-party audits (e.g., ATO, SOC, ISO certs), including evidence preparation, auditor interface, and corrective actions.
  • Preferred Qualifications

  • Experience leading or contributing to FedRAMP Continuous Monitoring (ConMon) activities or significant change requests (SCR).
  • Proficient in project management : planning, tracking, reporting, and issue resolution.
  • Strong understanding of security control domains (e.g., access control, vulnerability management, encryption, logging, change management).
  • Experience working in cloud-native environments (AWS, GCP preferred).
  • Familiarity with GRC platforms such as LogicGate, ServiceNow GRC, or Archer.
  • Deep understanding of control implementation across cloud-native and DevOps environments.
  • CISSP, CISA, CCSK, or ISO 27001 Lead Auditor certification.
  • Cloud security certifications (e.g., GCP, AWS, etc.) are a plus.
  • Experience working in SaaS or regulated environments (e.g., healthcare, finance, government).
  • The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role.

    ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit.

    The above represents the anticipated total rewards package for this job requisition. Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors.

    Create a job alert for this search

    Senior Assurance Manager • Falls Church, VA, US

    Related jobs
    • Promoted
    Security Manager

    Security Manager

    Oneida ESC GroupFalls Church, VA, US
    Full-time
    Navy Bureau of Medicine and Surgery) Schedule : Full-time; Remote work may be available with Government approval Clearance : Must be able to obtain and maintain a security clearance.The Security Mana...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    National Security Systems SCA (Springfield)

    National Security Systems SCA (Springfield)

    ClearanceJobsSpringfield, VA, United States
    Full-time
    Mid Level Career It Security Position.Execute in-depth security control assessments (SCAs) for National Security Systems (NSS) in compliance with NIST RMF and CNSS policy.Develop and maintain forma...Show moreLast updated: 7 hours ago
    • Promoted
    Security Management Specialist

    Security Management Specialist

    Clearance JobsWashington, DC, US
    Full-time
    Security Management Specialist.MTSI is seeking a Security Management Specialist with a TS / SCI clearance to provide support to a Government Program Management Office / Program Manager (PMO / PM) at Join...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Case Management Security Specialist III (Springfield)

    Case Management Security Specialist III (Springfield)

    ClearanceJobsSpringfield, VA, United States
    Full-time
    Case Management Security Specialist III.Amentum is seeking a Case Management Security Specialist III to support the National Geospatial-Intelligence Agency (NGA) and Office of Security (SIS) in Spr...Show moreLast updated: 7 hours ago
    • Promoted
    Program Manager Lead Security Specialist

    Program Manager Lead Security Specialist

    OlgoonikWashington, DC, United States
    Full-time
    Olgoonik is an Equal Opportunity Employer.The PM Lead Security Specialist's primary duties are to escort, represent the company, and consult with Bureau Security Office (BSO).In addition to normal ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Cyber Security SME (Falls Church)

    Senior Cyber Security SME (Falls Church)

    ClearanceJobsFalls Church, VA, United States
    Full-time
    Information Systems Security Officer Team Lead.Be an agent of change on a team committed to achieving client-focused, mission-driven excellence. Steampunk is looking for an experienced Information S...Show moreLast updated: 5 hours ago
    • Promoted
    • New!
    Assistant Security Director

    Assistant Security Director

    Andy Frain ServicesWashington, DC, US
    Full-time
    Andy Frain Services is looking for a highly motivated individual that is multi-task-oriented to manage a Security contract. Manages the accountability of all Supervisors and staff for given accounts...Show moreLast updated: 22 hours ago
    • Promoted
    Access Control

    Access Control

    Clearance JobsFort Belvoir, VA, US
    Full-time
    Access control personnel support the MDA Security and Emergency Management Directorate (DSS) in executing multiple Security Operations Services at MDA facilities in the United States.Control access...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    DOE - NNSA Senior Security Specialist - Security Management Support (TEPSIII17) (Washington)

    DOE - NNSA Senior Security Specialist - Security Management Support (TEPSIII17) (Washington)

    ProSidian ConsultingWashington, DC, United States
    Full-time
    DOE - NNSA Senior Security Specialist - Security Management Support (TEPSIII17).ProSidian Seeks a DOE - NNSA Senior Security Specialist - Security Management Support (TEPSIII17) headquartered near ...Show moreLast updated: 7 hours ago
    Security Control Assessor I

    Security Control Assessor I

    gTANGIBLE CorporationArlington, VA, USA
    Full-time
    Quick Apply
    TANGIBLE Corporation (gTC), , is a S corporation and a registered Government contractor that provides services and solutions in : . Professional, Administrative, and Management Support.Mission and War...Show moreLast updated: 30+ days ago
    • Promoted
    Security Manager

    Security Manager

    Credence Management SolutionsWashington, DC, US
    Full-time
    Security Management Specialist.Credence supports our clients' mission-critical needs, powered by technology.We provide cutting-edge solutions, including AI / ML, enterprise modernization, and advance...Show moreLast updated: 26 days ago
    Security Contract Manager

    Security Contract Manager

    gTANGIBLE CorporationWashington, DC, USA
    Full-time
    Quick Apply
    TANGIBLE Corporation (gTC), , is a S corporation and a registered Government contractor that provides services and solutions in : . Professional, Administrative, and Management Support.Mission and War...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Unarmed Security Officer (Chantilly)

    Unarmed Security Officer (Chantilly)

    ConstellisChantilly, VA, US
    Part-time
    Aerospace Chantilly, VA location.This is a part-time / on-call position.Must have Top Secret clearance and eligible for SCI. Report to the Lieutenant or Sergeant.Patrol Buyer's facilities and report a...Show moreLast updated: 8 hours ago
    • Promoted
    Security Manager, Crisis Response

    Security Manager, Crisis Response

    FHI 360Washington, DC, United States
    Part-time
    FHI 360 staff working in the United States are required to be fully vaccinated for COVID-19, regardless of the type of project or client they serve, or of their employment status (full / part-time, r...Show moreLast updated: 30+ days ago
    • Promoted
    Posting Security Professional - Access Control - Overnight

    Posting Security Professional - Access Control - Overnight

    Allied UniversalRockville, MD, US
    Full-time +1
    Security Professional - Access Control - Overnight.Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose.Whil...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Sr Director (Falls Church)

    Security Sr Director (Falls Church)

    General Dynamics Information TechnologyFalls Church, VA, United States
    Full-time
    The Security Senior Director will lead and manage the security operations and strategy for our Defense Business Unit.This role is critical to ensuring the protection of our personnel, assets, and i...Show moreLast updated: 5 hours ago
    • Promoted
    • New!
    Senior Security Control Accessor (Government) (Chantilly)

    Senior Security Control Accessor (Government) (Chantilly)

    AT&TChantilly, VA, United States
    Full-time
    Independent Security Control Assessor.This position requires office presence of a minimum of 5 days per week and is only located at customer's site. AT&T Global Public Sector is a trusted provider o...Show moreLast updated: 7 hours ago
    • Promoted
    Senior Project Managers- Corporate Security

    Senior Project Managers- Corporate Security

    SamprasoftWashington, DC, US
    Full-time
    Looking for PM's construction background or physical security (gates, turnstyles etc).The Senior Project Managers are responsible for managing high.Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    SAP Security Manager (Chantilly)

    SAP Security Manager (Chantilly)

    Ridgeline InternationalChantilly, VA, United States
    Full-time
    At System High a Ridgeline Company, we are committed to securing the nation's most critical assets.We are looking for a highly skilled SAP Security Manager with experience in Special Access Program...Show moreLast updated: 5 hours ago
    • Promoted
    Senior Security Project Manager

    Senior Security Project Manager

    AccentureWashington, DC, United States
    Full-time
    Infrastructure & Capital Projects - Senior Security Project Manager, ANS.Accenture Infrastructure & Capital Projects.We are reinventing how capital projects are planned, designed, managed and execu...Show moreLast updated: 30+ days ago