Jobs
>
Rockville

    Security Compliance Lead - Rockville, MD, United States - TEKsystems

    TEKsystems background
    Description

    Description:

    As a Security Compliance Analyst, you will be joining a team performing security assessments and providing consulting support to assist clients in meeting FISMA and FedRAMP requirements. The ideal candidate will have a firm understanding of how to apply the principles of Information Security in a variety of circumstances and expertise translating the NIST guidelines into common technical implementations.


    • Develop Security Authorization Packages that are compliant with FISMA/FedRAMP requirements. Package components include: System Security Plans, Contingency Plans, Configuration Management Plans, Incident Response Plans, Privacy Impact Assessments, and Plan of Action and Milestones (POA&M)


    • Assist in the review and analysis of Security Authorization Packages for completeness and compliance with FISMA/FedRAMP requirements


    • Demonstrate ability to lead compliance and assessments projects through the project lifecycle from initiation to project closure


    • Lead working sessions with client and audit team to ensure expectations and direction are aligned and timelines are being met


    • Collaborate across multiple internal teams to ensure successful delivery of artifacts and closure of audit field work


    • Provide review and analysis of vulnerability scan results from tools such as Nessus, Qualys, AppDetective, WebInspect, IBM AppScan, Burp Suite, etc.


    • Build a customer-focused relationship with client(s)


    • Experience reviewing and updating policies, standards, and procedures to ensure they are up to date and reflect current practices


    • Demonstrate familiarity with FISMA and NIST 800 series guidelines , 800-37, and 53A, 800-60, etc.)


    • SOC2


    • RegSCI


    • PCI-DSS


    • Splunk

    Education/Experience Requirements:


    • CISSP/CEH/AWS certs/CASP/Security + certification or equivalent highly desired


    • Bachelor's Degree (preferably in Information Technology or Cyber Security) or equivalent work experience


    • FedRAMP experience HIGHLY preferred

    Skills:

    FISMA, FedRamp, SOC 2 Audit Process, NR53 Catalog, POAM, PCI, DSS ServiceNow, SPLUNK, CAP CERTIFICATION


    • FISMA at FedRamp initiative

    o Someone with that experience is important so this person can lead the process for the client

    o 5+ years of experience


    • PSI


    • SOX 2: going to handle some of the SOX 2 audits in the near future so someone with this experience is important


    • ServiceNow GRC2 would be very helpful as they're implementing ServiceNow

    o Should be able to work with the GRC platform for the compliance side of things: onboard an application in to ServiceNow, gather information and store evidence for artifacts.


    • If they can create a Splunk dashboard that would be helpful: tracking results and compliance


    • Certification: CAP or Security Plus or AWS (nice to have, really good experience to have as most applications are deployed in AWS platform)


    • Help prepare authorization package to send to government and then government brings in a third party assessor team to audit the program that are developed. They will then either reject or approve it based on risk factor that comes out of the assessment


    • Work environment: have flexibility to work remotely but may occasionally need to be on-site based on manager request

    About TEKsystems:



    We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.

    The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.


  • Mary's Center

    Compliance Lead

    6 days ago


    Mary's Center Washington, United States

    **_ Important Note: Mary's Center is mandating the COVID-19 vaccine + booster for all staff._** · **Position Summary*** · The Compliance Lead reports to and will work closely with the EVP of Compliance to support the activities and functions of the compliance program, bringing to ...


  • Axle Inc Rockville, United States

    Job Description Job Description Axle is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With experts i ...


  • Axle Inc Rockville, United States

    Job Description · Job Description · Axle · is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With ...


  • Axle Informatics Rockville, United States

    Axle · is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With experts in biomedical science, softwar ...


  • Axle Inc Rockville, United States

    Job Description · Job Description · Axle · is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With ...


  • TEKsystems Rockville, United States

    TEKsystems · Security Compliance Lead · Rockville , · Maryland · Apply Now · As a Security Compliance Analyst, you will be joining a team performing security assessments and providing consulting support to assist clients in meeting FISMA and FedRAMP requirements. The ideal c ...


  • TEKsystems Rockville, United States

    100% Remote · Top 3 skills · NIST · Knowledge of the controls, walking through apps through them. · Who is self-motivated, working from home you must be responsible for your work. · Nice to have · Experience with criminal justice controls from the FBI is a huge nice to have ...


  • Axle Rockville, United States

    Job Description · Job DescriptionAxle is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With experts ...


  • Hewlett Packard Spring, United States

    The Global Risk Organization provides a unique opportunity to get a broad view of HP businesses and processes in a relatively short period of time. The team is tasked with assessing how HP management is managing the inherent risk in our large, diverse and rapidly changing company ...


  • CEDENT Washington, United States

    Primary Job Responsibilities · **Qualifications**: · Technical Skills and Core Competencies Required · Preferred Certifications: CISSP, CISM, CRISC, CDPSE · Must have a basic background and understanding of SecDevOps, information technology, networking, virtual environments, and ...


  • MindPoint Group Washington, United States

    Text code CTL to to apply · Since 2009, MindPoint Group has been the cybersecurity firm of choice for the most security-conscious US federal agencies and commercial enterprises. · We're proud to be one of Inc. 5000's fastest-growing companies in the country. With several 'Best Pl ...


  • GE Aviation Washington, United States

    **Roles & Responsibilities**: · Consistent with the role of the ITC team, the primary tasks of Specialist - ITC include, but are not necessarily limited to): · - Assist with the development of licensing strategies for compliant business execution. · - Generate, maintain, and moni ...

  • Mary's Center

    Compliance Lead

    4 weeks ago


    Mary's Center Washington DC, United States

    Description · Mary's Center is committed to promoting diversity, equity and inclusion (DEI) within our organization and the communities we serve. We embrace diversity of experiences, ideas, and individuals, and seek to bring a diverse group of candidates to the table. · Importa ...

  • Interfaith Works

    Director of Finance

    1 week ago


    Interfaith Works Rockville, United States

    **Title**:Director of Finance · **Reports to**:CEO · **Employment Status**: Full-time · **FSLA Status**:Exempt · **Pay rate**:$140,000 - $145,000 · Since 1972, Interfaith Works (IW) has been meeting people where they are regardless of their challenges. We provide emergency shelte ...

  • Aretum

    508 Compliance Lead

    3 weeks ago


    Aretum Arlington, United States

    ARETUM, a leading government contracting company specializing in technology-enabled mission support services, is seeking a skilled and experienced 508 Compliance Lead to join our team. As a 508 Compliance Lead at ARETUM, you will play a critical role in ensuring that our digital ...

  • Nika

    Capture Manager

    2 weeks ago


    Nika Rockville, United States

    NIKA is hiring for a Capture Manager to support our business development team out of the Washington, D.C metro area · Named a "Top Workplace" by the Washington Post, NIKA is a well-established company that is focused on growth within an entrepreneurial environment. We work with g ...

  • US Nuclear Regulatory Commission

    Grants Specialist

    3 weeks ago


    US Nuclear Regulatory Commission Rockville, United States

    **Duties**: · With support from Grants Officers and/or Branch Chief, typical duties include: · - Preparing documentation required for Funding Opportunity Announcements for financial assistance awards (grants and cooperative agreements) · - Administering financial assistance award ...


  • Johns Hopkins Applied Physics Laboratory (APL) Laurel, United States

    Would you like to use your trade licensing and compliance expertise to help create the next defining innovation? · Do you like to work on novel legal issues that enable next-generation technological innovation? · If so, we're looking for someone like you to join our team at APL ...


  • The EMMES Corporation Rockville, United States

    Overview: · **Clinical Trials Administrator Analyst I** · **US Remote** · Emmes Group: Building a better future for us all. · Emmes Group is transforming the future of clinical research, bringing the promise of new medical discovery closer within reach for patients. Emmes Group w ...

  • GSK

    EHS Manager

    2 weeks ago


    GSK Rockville, United States

    **Site Name**: USA - Maryland - Rockville · **Posted Date**: Apr · GSK is currently looking for an EHS Manager to join our team in Rockville, MD. The EHS Manager is responsible for establishing, managing, and continuously improving the environmental compliance and sustainability ...