
Cybersecurity Risk Manager
Citizant
full-time
Posted on:
Location Type: Hybrid
Location: Washington, D.C. • Washington • United States
Visit company websiteExplore more
Salary
💰 $111,130 - $172,670 per year
Tech Stack
About the role
- Deliver practical, high-impact cybersecurity risk management services
- Manage System Security Assessment & Authorization (ATO) Documentation
- Develop, upload, and maintain system cybersecurity assessment documentation
- Track progress and completion of assessment activities
- Assess cybersecurity risk for new or changed IT capabilities
- Own Contingency Planning & Testing
- Drive POA&M and Governance Execution
- Coordinate with system teams on operational cybersecurity activities
- Respond to cybersecurity governance data calls as directed
Requirements
- 10 + years cybersecurity risk/compliance
- 5+ years of federal RMF
- RMF/NIST/FISMA, POA&Ms, security documentation, contingency planning
- Experience supporting ATO/continuous monitoring activities and maintaining security assessment artifacts
- Experience performing cybersecurity risk assessments for new systems/integrations/capabilities
- Working knowledge of POA&M management, governance SOP development, and compliance reporting
- Experience coordinating across technical teams for incident response and vulnerability management activities
- Master's degree in Cybersecurity, Information Assurance, Information Systems, IT, or related field (or equivalent relevant experience)
- Certifications: CISSP, CAP (Certified Authorization Professional), CISA, Zero Trust certification, FedRAMP Practitioner (optional but preferred)
Benefits
- Medical, dental, and vision insurance
- 401(k)
- Generous PTO
- Company-paid life and disability insurance
- Flexible Spending Accounts (FSA)
- Employee Assistance Program (EAP)
- Tuition Assistance & Professional Development Program
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurity risk managementSystem Security Assessment & Authorization (ATO)cybersecurity assessment documentationcybersecurity risk assessmentcontingency planningGovernance ExecutionPOA&M managementcompliance reportingincident responsevulnerability management
Certifications
CISSPCAPCISAZero Trust certificationFedRAMP Practitioner