Senior Consultant – Cybersecurity Risk

Jobtailor

Washington (District of Columbia)

On-site

USD 140,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a seasoned cybersecurity risk leader to drive risk governance and risk management for a federal agency, reporting to executive leadership. You will oversee, manage, and execute technology risk assessments, maintain the enterprise risk register, and prepare decision-support deliverables for agency stakeholders.

Ideal candidates have a current Secret clearance, at least five years of cybersecurity experience, and certifications such as CISSP or CRISC.

Qualifications

  • Active and current Secret federal security clearance.
  • Bachelor’s Degree from an accredited university.
  • Minimum of five years of relevant cybersecurity experience.
  • US Citizenship contractually required.
  • Certified in CISSP, CRISC, CAP/CGRC, CISA, or another relevant field.
  • Experience interpreting and applying federal cybersecurity requirements and frameworks.
  • Ability to conduct and scope technology risk assessments.
  • Ability to prepare risk acceptance memoranda, risk management plans, SOPs, schedules, briefings, and corrective action plans.

Responsibilities

  • Lead a cybersecurity risk management and risk governance workstream within an agency.
  • Oversee, manage, and lead development and execution of cybersecurity risk governance.
  • Maintain and improve the enterprise-level risk register.
  • Oversee technology risk assessments, including Tier 1 assessments supporting Technology Review Board decisions.
  • Prepare risk acceptance memoranda for CISO and CIO approval.
  • Conduct limited FOCI-style assessments to support agency decision-making.
  • Interpret and adapt guidance for Tier 1 enterprise risk assessments.
  • Scope technology risk assessments, confirm outputs and required elements, and prepare decision-support deliverables.
  • Prepare plans and goals to improve the cyber risk register and support agency cyber risk profiles.
  • Prepare and implement corrective action plans addressing open GAO or OIG recommendations.
  • Incorporate federal cybersecurity frameworks into evaluations and assessments.
  • Prepare and update risk management plans, SOPs, and project schedules.
  • Present technology risk assessment findings and recommendations to technical and executive audiences.
  • Prepare briefing materials for weekly reports and specific audiences.
  • Advise on assessment severity and recommend courses of action to government stakeholders.
  • Adapt guidance and technical assistance to resource constraints and leadership direction.

Skills

Cybersecurity Risk Management
Technology Risk Assessments
Risk Governance Development
Report Writing
Verbal Communication
Written Communication
Advisory Skills
Federal Cybersecurity Frameworks
Consulting with Federal Agencies

Education

Bachelor's Degree

Tools

CISSP
CRISC
CAP
CGRC
CISA

Job description

  • Lead a cybersecurity risk management and risk governance workstream within an agency
  • Oversee, manage, and lead development and execution of cybersecurity risk governance
  • Maintain and improve the enterprise-level risk register
  • Oversee technology risk assessments, including Tier 1 assessments supporting Technology Review Board decisions
  • Prepare risk acceptance memoranda for CISO and CIO approval
  • Conduct limited FOCI-style assessments to support agency decision‐making
  • Interpret and adapt guidance for Tier 1 enterprise risk assessments
  • Scope technology risk assessments, confirm outputs and required elements, and prepare decision‑support deliverables
  • Prepare plans and goals to improve the cyber risk register and support agency cyber risk profiles
  • Prepare and implement corrective action plans addressing open GAO or OIG recommendations
  • Incorporate federal cybersecurity frameworks into evaluations and assessments
  • Prepare and update risk management plans, standard operating procedures, and project schedules
  • Present technology risk assessment findings and recommendations to technical and executive audiences
  • Prepare briefing materials for weekly reports and specific audiences
  • Advise on assessment severity and recommend courses of action to government stakeholders
  • Adapt guidance and technical assistance to resource constraints, knowledge variability, and government leadership direction
Requirements
  • Active and current Secret federal security clearance
  • Bachelor’s Degree from an accredited university
  • Minimum of five years of relevant cybersecurity experience
  • US Citizenship contractually required
  • Excellent verbal and written communication skills, specifically in report writing
  • Certified in CISSP, CRISC, CAP/CGRC, CISA, or another relevant field
  • Experience interpreting and applying federal cybersecurity requirements and frameworks
  • Ability to conduct and scope technology risk assessments
  • Ability to prepare risk acceptance memoranda, risk management plans, SOPs, schedules, briefings, and corrective action plans
  • Nice to have: consulting experience with large federal agencies such as the Department of State, Department of Justice, or Department of Homeland Security on cybersecurity audits and/or IT controls
  • Nice to have: external client‑facing management and/or consulting experience for large firms
Core Competencies

Demonstrates expertise in cybersecurity risk management, including the ability to conduct technology risk assessments, prepare risk management plans, and adapt federal cybersecurity frameworks. Strong communication skills are essential for presenting findings and recommendations to both technical and executive audiences.

Highest-signal resume keywords
  • Cybersecurity Risk Management
  • Technology Risk Assessments
  • Risk Governance Development
  • CISSP Certification
  • Federal Cybersecurity Frameworks
ATS Optimization Keywords
Hard Skills
  • Risk Management Plans
  • Risk Acceptance Memoranda
  • Standard Operating Procedures
  • Corrective Action Plans
  • Technology Review Board Assessments
  • FOCI-Style Assessments
  • Decision-Support Deliverables
  • Cyber Risk Register Improvement
  • Report Writing
  • Project Schedules
Soft Skills
  • Excellent Verbal Communication
  • Excellent Written Communication
  • Advisory Skills
Certifications & Qualifications
  • CISSP
  • CRISC
  • CAP
  • CGRC
  • CISA
Industry Keywords
  • Federal Security Clearance
  • Cybersecurity Audits
  • IT Controls
  • Department of State
  • Department of Justice
  • Department of Homeland Security
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Risk, Managing Consultant
Cybersecurity Risk, Managing Consultant

Jobtailor • Washington

On-site
USD 120,000 - 180,000
Senior IT Risk and Compliance Engineer
Senior IT Risk and Compliance Engineer

Jobtailor • Hartford (CT)

On-site
USD 120,000 - 180,000
Cybersecurity Risk Analyst II
Cybersecurity Risk Analyst II

Jobtailor • Honolulu (HI)

On-site
USD 120,000 - 170,000
IT Audit Manager – Clearance Required
IT Audit Manager – Clearance Required

Jobtailor • Washington

Hybrid
USD 140,000 - 200,000
Associate Cybersecurity Operations Researcher
Associate Cybersecurity Operations Researcher

Jobtailor • Pennsylvania

On-site
USD 90,000 - 130,000
Lead Security Analyst, Research Computing
Lead Security Analyst, Research Computing

Jobtailor • Knoxville (TN)

On-site
USD 110,000 - 160,000
Cybersecurity Operations Researcher
Cybersecurity Operations Researcher

Jobtailor • Pennsylvania

On-site
USD 115,000 - 160,000
Information Security Officer – Global Banking & Markets
Information Security Officer – Global Banking & Markets

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Information Systems Security Officer – Mid
Information Systems Security Officer – Mid

Jobtailor • Bath Township (OH)

On-site
USD 95,000 - 135,000
Information Systems Security Officer, Mid
Information Systems Security Officer, Mid

Jobtailor • Beavercreek (OH)

On-site
USD 90,000 - 130,000