Risk and Compliance Analyst

Boston Government Services

Oak Ridge (TN)

On-site

USD 136,849 - 160,999

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health
Dental
Vision
Life Insurance
Paid Vacation
401K
Long and Short-Term Disability

Job summary

Boston Government Services, LLC. (BGS) seeks a Risk and Compliance Analyst to support client cybersecurity governance, risk management, and compliance reporting across US contracts.

The role emphasizes maintaining a defensible risk posture through documentation, audits, and stakeholder coordination. The ideal candidate will have federal cybersecurity experience, RMF, NIST 800-53 familiarity, and be eligible for security clearance.

Qualifications

  • Bachelor's degree or equivalent.
  • Experience supporting federal cybersecurity compliance, audit readiness, RMF, POA&M management, FISMA reporting, or risk management.
  • Working knowledge of NIST 800-53 Rev. 5, RMF, FISMA, federal-style reporting, CISA BODs, KEV tracking, and corrective action management.
  • Ability to analyze technical and compliance information and convert it into actionable risk reporting.
  • Strong writing, coordination, and stakeholder management skills.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.

Responsibilities

  • The Risk and Compliance Analyst supports client cybersecurity governance, risk management, compliance reporting, audit support, corrective action tracking, waiver management, and cybersecurity risk visibility.
  • This role helps sustain a defensible risk posture through structured analysis, documentation, reporting, and stakeholder coordination.
  • Support development and maintenance of risk registers, POA&Ms, risk mitigation waiver records, corrective action plans, compliance dashboards, and security metrics.
  • Assist with internal, external, and third-party cybersecurity audits and assessments.
  • Coordinate artifact collection, stakeholder inputs, interview support, remediation tracking, and response documentation.
  • Support risk analysis for system changes, vulnerabilities, exceptions, third-party software, vendor documentation, SBOM inputs, and acquisition-related cybersecurity concerns.
  • Help prepare cybersecurity risk profiles, FISMA quarterly/annual inputs, information security reports, dashboards, and ad hoc risk analyses.
  • Track waiver justifications, risk levels, compensating controls, approval authorities, expiration dates, and annual reassessments.
  • Identify emerging compliance gaps and recommend practical mitigation actions.

Skills

Strong writing
Coordination
Stakeholder management

Education

Bachelor's degree or equivalent

Job description

Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Risk and Compliance Analyst to support our clients in various locations across the US.

BGS is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex projects. We support clients at every stage, from strategic planning and program management to the execution of engineering and technical activities. We work to attract and retain the best talent because the best talent delivers the best results for our clients. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our experience and capabilities to provide mission-driven solutions tuned to our client's mission needs and strategic direction.

Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability-where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees' well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection.

If you align with BGS' company values and culture, we would love for you to explore opportunities to join our growing team by checking out the job description below!

Responsibilities:

The Risk and Compliance Analyst supports client cybersecurity governance, risk management, compliance reporting, audit support, corrective action tracking, waiver management, and cybersecurity risk visibility. This role helps sustain a defensible risk posture through structured analysis, documentation, reporting, and stakeholder coordination.

  • Support development and maintenance of risk registers, POA&Ms, risk mitigation waiver records, corrective action plans, compliance dashboards, and security metrics.
  • Assist with internal, external, and third-party cybersecurity audits and assessments.
  • Coordinate artifact collection, stakeholder inputs, interview support, remediation tracking, and response documentation.
  • Support risk analysis for system changes, vulnerabilities, exceptions, third-party software, vendor documentation, SBOM inputs, and acquisition-related cybersecurity concerns.
  • Help prepare cybersecurity risk profiles, FISMA quarterly/annual inputs, information security reports, dashboards, and ad hoc risk analyses.
  • Track waiver justifications, risk levels, compensating controls, approval authorities, expiration dates, and annual reassessments.
  • Identify emerging compliance gaps and recommend practical mitigation actions.
Requirements:
  • Bachelor's degree or equivalent.
  • Experience supporting federal cybersecurity compliance, audit readiness, RMF, POA&M management, FISMA reporting, or risk management.
  • Working knowledge of NIST 800-53 Rev. 5, RMF, FISMA, federal-style reporting, CISA BODs, KEV tracking, and corrective action management.
  • Ability to analyze technical and compliance information and convert it into actionable risk reporting.
  • Strong writing, coordination, and stakeholder management skills.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.
Preferred Qualifications:
  • CISA, CISM, Security+, CISSP, CAP/CGRC, CRISC, or equivalent.
Location/Work Arrangement:
  • Schedule is full-time, Monday - Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.
  • This position may be fully onsite or hybrid/remote depending on the needs of the specific contract.
Benefits:
  • Health
  • Dental
  • Vision
  • Life Insurance
  • Paid Vacation
  • 401K
  • Long and Short-Term Disability

Starting compensation for this role typical salary ranges between $136,849 - $160,999 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.

EEO:

BGS is an Equal Opportunity/Affirmative Action employer. All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.

Exclusive Agreement Disclaimer:

BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients. By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Risk and Compliance Analyst
Risk and Compliance Analyst

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 136,000 - 161,000
Health Insurance
Dental Insurance
Vision Insurance
+4
Cyber Security Analyst
Cyber Security Analyst

Boston Government Services, LLC (BGS) • United States

Hybrid
USD 70,000 - 90,000
Health, Dental, Vision Insurance
Paid Vacation
401K
+1
Remote Vulnerability Analyst — Cyber Hygiene & Risk Assessments
Remote Vulnerability Analyst — Cyber Hygiene & Risk Assessments

Boston Government Services, LLC (BGS) • Knoxville (TN)

On-site
USD 85,000 - 110,000
Senior RMF Lead, Cybersecurity Architect
Senior RMF Lead, Cybersecurity Architect

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 157,000 - 185,000
Health Insurance
Dental Insurance
Vision Insurance
+4
Senior Security Engineer, Security Architect
Senior Security Engineer, Security Architect

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 179,000 - 212,000
Health insurance
Dental insurance
Vision insurance
+4
Security Front Door-Service Desk Analyst
Security Front Door-Service Desk Analyst

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 136,000 - 161,000
Health insurance
Dental insurance
Vision insurance
+5
Senior RMF Lead, Cybersecurity Architect
Senior RMF Lead, Cybersecurity Architect

Boston Government Services • Oak Ridge (TN)

Hybrid
USD 157,000 - 185,000
Health insurance
Dental insurance
Vision insurance
+4
Cyber Security Analyst
Cyber Security Analyst

Boston Government Services • Oak Ridge (TN)

Hybrid
USD 70,000 - 115,000
Health insurance
Dental insurance
Vision insurance
+3
Senior Security Engineer, Security Architect
Senior Security Engineer, Security Architect

Boston Government Services • Oak Ridge (TN)

On-site
USD 179,000 - 212,000
Health benefits
Dental benefits
Vision benefits
+4
Vulnerability Analyst
Vulnerability Analyst

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 85,000 - 110,000
Health Insurance
Dental
Vision
+2