ISSO / ISSM

Guidehouse

Washington (District of Columbia)

On-site

USD 113,000 - 188,000

Full time

22 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical, Rx, Dental & Vision Insurance
401(k) Retirement Plan
Parental Leave
Transit and Parking Benefits
Employee Assistance Program
Tuition Reimbursement

Job summary

Guidehouse is seeking an experienced Cyber Security professional in Washington, DC, to apply core cybersecurity principles to complex tasks and projects. This role emphasizes CSF/RMF compliance, risk management, and collaboration with architects on security requirements.

Ideal candidates will hold an active Secret clearance, a Bachelor's degree, and recognized cyber certifications. The position requires on-site work in DC, with travel up to 10% and a competitive salary range reflecting

Qualifications

  • Six or more years of experience in Cyber Security/Information Assurance.
  • Bachelor's degree in a related field.
  • Active and maintained DoD or Federal Secret clearance.
  • Cyber certification such as CISM, CISSP, or Security+.

Responsibilities

  • Apply fundamental cybersecurity principles and concepts to tasks and projects.
  • Assess and implement NIST CSF guidelines and best practices for security and risk management.
  • Review disaster recovery, EDR, WAF, application whitelisting, and host-based firewalls for continuous monitoring and response.
  • Understand GRC requirements and align IT with business objectives to manage risk.
  • Apply RMF, NIST SP 800-53 controls, and FedRAMP/SOC 2 processes.
  • Perform cybersecurity risk management, research, and leading practices.
  • Gather and organize technical information about security needs and ongoing programs.
  • Develop strategies, roadmaps, assessments, and policies.
  • Perform password auditing, vulnerability scanning, and intrusion detection.
  • Monitor change management to identify impacts on security testing.
  • Author risk narratives for government CISO and auditors.
  • Support risk audits and provide design recommendations.
  • Collaborate with solution architects on security requirements.

Skills

Cybersecurity principles
Security clearance
Cyber certifications
Communication skills
On-site work
NIST CSF RMF experience

Education

Bachelor’s degree

Job description

Job Family

IT Cyber Security

Travel Required

Up to 10%

Clearance Required

Active Secret

What You Will Do
  • Apply fundamental cybersecurity principles and concepts to tasks and projects.
  • Assess and implement NIST Cybersecurity Framework (CSF) guidelines, standards, and best practices for cyber security and risk management to strengthen an organizations security posture.
  • Review disaster recovery capabilities (backups), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), application whitelisting, host-based firewalls, etc. to provide continuous monitoring of end-user devices to detect and respond to cyber threats.
  • Understand of Governance Risk and Compliance (GRC) requirements, standards, and guidelines governing security within the Federal Government (e.g., NIST publications, FISMA, and OMB memoranda) and aligning IT with business objectives to effectively manage risk.
  • Apply NIST Risk Management Framework (RMF), NIST SP 800-53 controls, Assessment and Authorization processes, POA&M management, and System Security Plan, FedRAMP, and SOC 2
  • Perform cybersecurity risk management, research and development, and leading practices.
  • Gather and organize technical information about an organization's mission goals and needs, existing security products, and ongoing programs in cybersecurity.
  • Develop strategies, roadmaps, assessments, and policies.
  • Perform password auditing, network and web vulnerability scanning, virus management and intrusion detection.
  • Monitor change management documentation to identify potential impacts to previous, current, and future security testing.
  • Author risk narratives to communicate key risks to government CISO and security auditors.
  • Support risk audits and assessments, provide recommendations for application design.
  • Work with solution architects for security requirements on network architecture
What You Will Need
  • Minimum SIX (6) years of experience in Cyber Security/ Information Assurance.
  • Bachelors Degree
  • Experience applying fundamental cybersecurity principles and concepts to tasks and projects.
  • An ACTIVE and MAINTAINED DOD or Federal Secret Clearance
  • Cyber certification - CISM, CISSP, or Security+
  • Ability to work full time on site in Washington DC
What Would Be Nice To Have
  • Experience working with networking, storage, intrusion detection/prevention systems, routers, switches, firewalls, logging, physical security systems, server, and workstation security configuration.
  • Experienced with performing risk assessments on cloud computing platforms i.e., AWS, Google, Azure.
  • Demonstrated ability leading successful teams and working in challenging situations.
  • Strong written and oral communication skills and demonstrates leadership role with the client and fellow team members.
  • Strong client leadership skills and ability to recognize opportunities for improvement to existing or future capabilities.
  • Ability to lead teams to complete projects with attention to detail on tight timelines.
  • Assures high quality work by taking advantage of learning opportunities and self-motivated.
  • HVA Assessment Qualification

The annual salary range for this position is $113,000.00-$188,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.

What We Offer

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits Include
  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Parental Leave
  • 401(k) Retirement Plan
  • Group Term Life and Travel Assistance
  • Voluntary Life and AD&D Insurance
  • Health Savings Account, Health Care & Dependent Care Flexible Spending Accounts
  • Transit and Parking Commuter Benefits
  • Short-Term & Long-Term Disability
  • Tuition Reimbursement, Personal Development, Certifications & Learning Opportunities
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Care.com annual membership
  • Employee Assistance Program
  • Supplemental Benefits via Corestream (Critical Care, Hospital Indemnity, Accident Insurance, Legal Assistance and ID theft protection, etc.)
  • Position may be eligible for a discretionary variable incentive bonus
About Guidehouse

Guidehouse is an Equal Opportunity Employer–Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation.

Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.

If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.

All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.

If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse’s Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant’s dealings with unauthorized third parties.

Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Consultant - ISSO/ISSM
Senior Cyber Consultant - ISSO/ISSM

Dovel Technologies, Inc • Washington

On-site
USD 113,000 - 188,000
Medical Insurance
Dental & Vision
401(k) Plan
+3
Senior Cyber Consultant - ISSO/ISSM
Senior Cyber Consultant - ISSO/ISSM

US101 Guidehouse Inc. • Washington

On-site
USD 113,000 - 188,000
Medical Insurance
Dental & Vision Insurance
401(k) Retirement Plan
+4
Pentest Operator
Pentest Operator

Guidehouse • Beltsville (MD)

On-site
USD 113,000 - 188,000
Medical Insurance
401(k) Retirement Plan
Tuition Reimbursement
+1
IT Security Auditor – Senior Consultant
IT Security Auditor – Senior Consultant

Guidehouse • Chantilly (VA)

On-site
USD 110,000 - 170,000
Medical Insurance
Dental & Vision Insurance
401(k) Retirement Plan
+2
Cybersecurity Consultant
Cybersecurity Consultant

Guidehouse • Bethesda (MD)

On-site
USD 85,000 - 141,000
Medical, Dental, Vision Insurance
401(k) Retirement Plan
Paid Holidays
Cybersecurity GRC Program Manager
Cybersecurity GRC Program Manager

Guidehouse • Arlington (VA)

On-site
USD 130,000 - 216,000
Medical Insurance
401(k) Retirement Plan
Parental Leave
+1
IT Advisory Manager
IT Advisory Manager

Guidehouse • Chantilly (VA)

On-site
USD 130,000 - 170,000
Cybersecurity GRC Program Manager
Cybersecurity GRC Program Manager

Dovel Technologies, Inc • Arlington (VA), Northern (KY)

On-site
USD 130,000 - 216,000
Medical, Rx, Dental & Vision
401(k) Retirement Plan
Parental Leave and Adoption Assistance
+1
Senior Operations Facilitation Manager
Senior Operations Facilitation Manager

Guidehouse • McLean (VA)

On-site
USD 150,000 - 190,000
Medical Insurance
Retirement Plan
Tuition Reimbursement
+2
Windows Systems Administrator and Vulnerability Management Coordinator
Windows Systems Administrator and Vulnerability Management Coordinator

Guidehouse • Idaho Falls (ID)

On-site
USD 110,000 - 140,000
Medical, Rx, Dental & Vision Insurance
Paid holidays
401(k) Retirement Plan
+3