Jobs
>
Washington, D.C.

    Head Of Project Risk Management - Washington DC, United States - Gunnison Consulting Group Inc

    Default job background
    Description

    Job Description Gunnison Consulting is seeking a Cybersecurity Risk Assessment Lead to work in the Washington, DC area to support the Department of Health and Human Services' (HHS) cybersecurity mission of ensuring HHS can actively protect the vital health information with which it is entrusted, respond to existing and emerging cybersecurity threats, and continue to enhance the program to ensure HHS has the capability and capacity to respond to new and emerging requirements, technologies and threats.

    The Cybersecurity Risk Assessment Lead will work with the HHS Office of Information Services (OIS) Cybersecurity Risk Management Branch federal client and the Cybersecurity Risk Management Project Manager in the development, coordination, and execution of Risk Assessments through HHS OpDivs/StaffDivs.

    The role requires a competent leader, self-starter, and strong problem solver who can identify/anticipate requirements and provide creative solutions to the team.


    Location:
    Remote

    Lead risk assessments, develop strategies to mitigate risks, identify potential vulnerabilities to the organization's IT infrastructure, and ensure compliance with industry regulations.

    Create and utilize a Cyber Risk Register to aggregate and normalize the risks documented at the Department level.
    Monitor and analyze emerging cyber threats and provide proactive solutions to mitigate risks.
    Collaborate with cross-functional teams to implement and execute enterprise risk assessments.
    Develop and maintain GRC risk assessment procedures.
    Stay updated on the latest industry trends and technologies related to cyber risk management.
    Communicate risk assessment findings and recommendations to senior management and stakeholders.
    Maintain documentation of all risk management processes, procedures, and findings.
    Monitor, track, and report assessment results for risk owners; as well as escalate risks to Senior Leadership.
    Develop mitigation and corrective action plans with application/system owners.
    Recommend appropriate policy, standards, process, and procedural updates as part of comprehensive remediation solutions.
    Develop and provide key risk metrics for the cybersecurity risk management program.
    Develop and maintain documentation in support of audit reviews.
    Bachelor's degree and seven (7) or more years of related professional experience; 7+ years of project management experience as a government contractor
    ~ Proficient with Microsoft Products (Excel, Word, Project)
    ~ Strong presentation skills and ability to adapt to various customers, to include government and/or contractors
    ~ Performing enterprise risk assessments.
    Performing enterprise risk analyses (qualitative, quantitative, and semi-quantitative).
    Performing issue and opportunity impact assessments and analyses.
    Performing privacy threshold assessments (PTAs) and privacy impact analyses (PIAs).

    Familiarity (prefer experience) with multi-layer and multi-dimensional relationships between specific and enterprise risks, issues, and opportunities, as described in ISO 31000, the 7 imperatives of Continuous Adaptive Risk and Trust Assessment (CARTA), the COSO Cube , and (ISC)2.

    Performing physical facility risk, issue, and opportunity (RIO) walkthrough inspections.
    Developing taxonomies to clarify the policy-level relationship between traditional GRC and privacy.
    Procedure development and process improvement, such as ITIL, Lean, Six Sigma, and CMMI.
    The following certifications and training are preferred:
    Project Management Professional (PMP)
    Certified Risk Manager (CRM) or Certified Risk Management Professional (CRMP)
    Government authorized RMF training, either:
    Certified Authorization Professional (CAP), Certified Information Systems Security Professional (CISSP), and/or Certified Cloud Security Professional (CCSP)

    Bachelor's degree in Computer Science, Information Systems, Engineering or related field (or equivalent experience +5 years of experience)
    Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation.
    Quality is our top priority.
    Certifications and training allowance $2,500/year
    ~5 days of Flex-Time-Off per year

    C. metro area, focused on tackling our customers' most ambitious technology projects.

  • Quantum Innovations

    Risk Manager

    3 weeks ago


    Quantum Innovations Congress, United States

    We are here for Berlin. · Berlin is probably the most exciting location for those who want to make a difference in their job. Our capital is characterized by diversity, growth, dynamism, and opportunities. And right at the heart of it all: berlinovo. As a modern, state-owned real ...


  • CareFirst BlueCross BlueShield Washington, United States

    **Resp & Qualifications** · **PURPOSE**: · Responsible for development and execution of effective risk management and insurance programs; serves as a dedicated resource to several business units of the Company. Coordinates and leads risk assessment and drives cost-effective risk ...


  • Sayres & Associates Washington, United States

    Sayres is a leader in defense support services to the US Navy and DOD. Our 300+ program support experts empower our customers' senior leadership with long term planning and analytics, insightful decision making, and day-to-day operations. Headquartered in Washington, DC, Sayres h ...


  • GCyber Washington, United States

    GCyber is hiring a **Cyber Risk Management Analyst **to support data security risk assessments for a high visibility Executive Branch customer. Your primary focus will be on identifying and evaluating potential data security risks and vulnerabilities within the systems and develo ...

  • Science and Technology Corporation

    Risk Manager

    1 week ago


    Science and Technology Corporation Silver Spring, United States

    JOB DESCRIPTION * · Founded in 1979, Science and Technology Corporation (STC) delivers an extensive range of award-winning advanced scientific, engineering, and technical support services to the U.S. Government and Industry customers. Our proven expertise and experience span scie ...


  • Georgetown University Washington, United States

    Located in a historic neighborhood in the nation's capital, Georgetown offers rigorous academic programs, a global perspective, exciting ways to take advantage of Washington, D.C., and a commitment to social justice. Our community is a tight knit group of remarkable individuals i ...


  • US Assistant Secretary for Housing-Federal Housing Commissioner Washington, United States

    **Duties**: · The Deputy Assistant Secretary for Risk Management reports to the General Deputy Assistant Secretary for Housing, who provides broad policy outlines and budgetary constraints to the incumbent. The incumbent serves as the Chief Risk Officer to the Assistant Secretary ...


  • Advanced Decision Vectors, LLC Washington, United States

    Advanced Decision Vectors, LLC (ADV), established in 2009, provides superior program management, program support, strategic planning, and systems engineering to the Federal and Commercial sectors. Located in Alexandria, Virginia, ADV is a Small Disadvantaged Business (SDB) contra ...


  • Noblis Washington, United States

    **Responsibilities**: · The responsibilities of the team member typically includes: · - Assisting with the development and administration of RDT&E contracts, to include tasks such as: development of solicitation material, administration of source selection reviews, and assessing ...


  • Quantum Innovations Columbia City, United States

    Shape the future with us - become part of our team in Columbia City · Join us in shaping the insurance landscape of tomorrow. · Do you want to accompany the digital transformation of insurers and financial service providers with us? Then discover as a [mover] what moves the indus ...


  • Horizon Ventures Monument, United States

    About the Company · We are an internationally oriented partnership of lawyers, auditors, and tax consultants, founded in 2006. Today, we have around 380 employees at our locations in Hamburg, Berlin, Bochum, Hanover, Dortmund, Munich, and Bielefeld. · Through our own company and ...


  • Amazon Logistics, Inc. Arlington, United States

    Juris Doctor (JD) Degree · - Active membership in at least one state bar · - 5+ years of experience in transportation claims · - Strong understanding of the litigation process · Amazon's Global Risk Management Claims team is seeking a talented attorney to support our rapidly grow ...


  • Science and Technology Corporation Silver Spring, United States

    Founded in 1979, Science and Technology Corporation (STC) delivers an extensive range of award-winning advanced scientific, engineering, and technical support services to the U.S. Government and Industry customers. Our proven expertise and experience span scientific research, dev ...


  • Webb County, TX Washington, United States Full time

    Salary: $76, $85,739.99 Annually · Location : 1110 Washington St. Suite 204 Laredo, TX · Job Type: Full-Time · Job Number: 03241 · Department: Risk Management · Opening Date: 04/16/2024 · Closing Date: Continuous · Description · Oversees the Risk Management Department, including ...

  • Cynet Systems

    Risk Manager

    3 weeks ago


    Cynet Systems Washington, United States

    Job Description · Job DescriptionWe are looking for Risk Manager for our client in Washington, DC · Job Title: Risk Manager · Job Location: Washington, DC · Job Type: Contract · Job Description: · Responsibilities: · This opportunity seeks a Medical Device Risk Manager to lead a ...

  • General Dynamics Information Technology

    Risk Manager

    1 week ago


    General Dynamics Information Technology Washington, United States

    GDIT is your place. You make it your own by bringing your ideas and unique perspective to our culture. By owning your opportunity at GDIT, you are helping us ensure today is safe and tomorrow is smarter. Our work depends on a Risk Manager joining our team to support the Departmen ...

  • RB Consulting Inc.

    Risk Manager

    2 weeks ago


    RB Consulting Inc. Washington, United States

    Job Description · Job DescriptionRisk Manager PA · Washington, D.C.RB Consulting, Inc. ("RBCI") is a company that truly believes that workforce diversity is a major contributor to success. Since its inception, RBCI has made a concerted effort to attract and recruit talented indiv ...


  • Mid-Atlantic Permanente Medical Group PC Rockville, United States

    Mid-Atlantic Permanente Medical Group is comprised of more than 1,700 Permanente physicians and nearly 300 staff professionals who come together to make a positive impact on the health and lives of more than 800,000 members in Virginia, Maryland, and the District of Columbia. · R ...


  • Hewlett Packard Spring, United States

    The Global Controls, Compliance, and Risk Manager will play a pivotal role in safeguarding the company's interests by overseeing and enhancing the enterprise-wide controls, compliance, and risk management framework, with end-to-end responsibility for management's compliance with ...

  • Amazon Inc

    Risk Manager

    2 weeks ago


    Amazon Inc Arlington, United States

    Are you interested in building high-performance, globally scalable Financial systems that support Amazon's current and future growth? Are you seeking an environment where you can drive innovation? Does the prospect of working with top engineering tal Risk Manager, Manager, Techno ...