Cyber Risk Management Analyst driving enterprise cybersecurity risk management and compliance with federal standards. Leading risk assessments and creating security awareness programs in a hybrid workplace.
Responsibilities
Drive enterprise cybersecurity risk management by quantifying risks, assessing control effectiveness, and ensuring alignment with NIST 800-53, FISMA, and DOE policies
Lead enterprise-wide risk assessments, audits, and user awareness programs
Maintain and manage the enterprise Risk Register and POA&M lifecycle
Monitor/report critical cyber risks; use dashboards and metrics to inform leadership
Design security awareness programs and phishing simulations
Collaborate with engineers and analysts to define compliance guardrails and prioritize remediation activities
Generate automated risk metrics, heat maps, and executive-level security reports
Requirements
Applicant must be a U.S. citizen residing in the U.S.
This position requires obtaining a clearance through the Department of Education. Applicants must be willing to undergo a background check as part of the hiring process.
Education: Bachelor’s degree from an accredited university or 5-7 years of relevant experience.
Experience: 3+ years in GRC, third-party risk management, federal compliance (NIST 800-53, 800-37)
Certifications: (candidates MUST HAVE obtained at least one)
Business Analyst at Sports Emotion headquarters optimizing purchasing through data analysis. Reporting to planning direction within the commercial team.
Business Analyst at SGI responsible for eliciting and documenting business requirements. Collaborating in an agile environment with the Core Insurance Delivery team to improve business processes.
Business Analyst Odoo optimizing business processes for major clients in the Open Source sector. Join a dynamic team and contribute to innovative projects in a stimulating environment.
IT Business Analyst/Product Owner at ICON plc, focusing on innovative healthcare technology products and project management across teams in a hybrid setting.
Business Analyst joining Aviso's Enterprise Delivery team for a 12 - month temporary contract. Engaging with stakeholders to gather and manage requirements within an Agile team.
Insurance IT Business Analyst responsible for analyzing technological needs for core insurance systems. Collaborating on Life Risk and Life Savings insurance projects within DXC's global framework.
Technical Business Analyst ensuring successful delivery of custom applications for Workday’s customers. Running multiple small projects and facilitating analysis with global clients.
Business Analyst at Erste Digital focusing on stakeholder communication and change management while collaborating with banks and financial institutions in Austria.
Business Analyst at an insurance brokerage, translating requirements for the Policy Administration System. Collaborating with business and technology teams to drive effective solutions.