Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Guidehouse

IT Security Auditor – Consultant

Guidehouse

IT Security Auditor assessing federal agencies’ IT controls and security assurance. Developing remediation plans and advising government stakeholders for Guidehouse’s consulting practice.

Posted 8/25/2026full-timeChantilly • Virginia • 🇺🇸 United StatesJuniorMid-LevelWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in IT controls assessments and federal information security requirements, with a strong ability to communicate findings and mentor team members. Proficient in evaluating IT control effectiveness and developing remediation plans based on industry standards.

Highest-signal resume keywords
IT Controls AssessmentFISMA ComplianceNIST SP 800 KnowledgeCISA CertificationStakeholder Engagement

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
IT Risk ManagementIT Security ReviewsAudit LoggingConfiguration ManagementContingency PlanningVulnerability ScanningSystem Security Plans ReviewSOP AnalysisRoot Cause AnalysisRemediation Planning
Soft Skills
CommunicationMentoringStakeholder EngagementAnalytical ThinkingTeam Collaboration
Certifications & Qualifications
CISACISM
Industry Keywords
Federal Information SecurityIT ControlsFISCAMOMB Circular A-123DISA STIGsTechnical DeliveryIT ConsultingSecurity ClearanceCounterintelligence PolygraphFederal Agencies

Tech Stack

Tools & technologies
TypeScript

About the role

Key responsibilities & impact
  • Lead stakeholder engagement and technical delivery for IT controls assessments and program evaluations supporting federal agencies
  • Perform assessments of IT controls using industry-standard guidance and leading best practices
  • Conduct interviews and discussions with client stakeholders, including ISSOs and system administrators
  • Review and analyze system security plans, SOPs, audit logs, configuration scans, and vulnerability scans
  • Evaluate IT control implementation and effectiveness against federal requirements, industry guidance, and leading best practices
  • Document IT controls testing results consistently and clearly
  • Summarize and communicate assessment results to client stakeholders, including senior leadership
  • Analyze known IT control weaknesses, identify root causes, and develop detailed remediation plans
  • Provide subject matter expertise on IT security and assurance matters
  • Respond to ad-hoc IT security-related requests
  • Plan and execute day-to-day IT assessments and evaluations individually and for the team
  • Mentor junior team members in IT controls testing responsibilities

Requirements

What you’ll need
  • An ACTIVE and MAINTAINED TS/SCI Federal or DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph
  • Bachelor’s Degree in a Technical or Business field
  • Two (2) + years' experience providing IT consulting
  • Experience consulting with the federal government, including senior government clients
  • Understanding and knowledge of federal information security and assurance laws, requirements, and guidance, including FISMA, NIST SP 800, and FISCAM
  • Relevant certification such as CISA or CISM is nice to have
  • Knowledge and experience in IT risk and controls through IT audits, IT controls assessments, or IT security reviews is nice to have
  • Knowledge of FISMA, NIST SP 800 series, FISCAM, and other relevant federal information assurance laws, regulations, and guidance is nice to have
  • Experience performing FISMA, OMB Circular A-123, or similar internal control assessments is nice to have
  • Experience implementing or auditing access and account management principles is nice to have
  • Experience implementing or auditing contingency planning principles is nice to have
  • Experience implementing or auditing configuration management principles, including DISA STIGs, is nice to have
  • Experience performing audit logging and monitoring is nice to have

Benefits

Comp & perks
  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend