Stand out for this role — generate a tailored resume and cover letter in about a minute.
Guidehouse is seeking a Cybersecurity Consultant in Washington, DC to apply foundational cyber principles to tasks and projects. You will assess and implement NIST CSF guidelines, RMF controls, and risk management processes to strengthen an organization’s security posture.
You will review disaster recovery capabilities, conduct vulnerability scanning, and coordinate with architects on security requirements for network architecture. Travel up to 10% may be required.
Travel Required: Up to 10%
Clearance Required: Active Secret
Apply fundamental cybersecurity principles and concepts to tasks and projects. Assess and implement NIST Cybersecurity Framework (CSF) guidelines, standards, and best practices for cyber security and risk management to strengthen an organizations security posture. Review disaster recovery capabilities (backups), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), application whitelisting, host-based firewalls, etc. to provide continuous monitoring of end-user devices to detect and respond to cyber threats. Understand of Governance Risk and Compliance (GRC) requirements, standards, and guidelines governing security within the Federal Government (e.g., NIST publications, FISMA, and OMB memoranda) and aligning IT with business objectives to effectively manage risk. Apply NIST Risk Management Framework (RMF), NIST SP 800-53 controls, Assessment and Authorization processes, POA&M management, and System Security Plan, FedRAMP, and SOC 2 Perform cybersecurity risk management, research and development, and leading practices. Gather and organize technical information about an organizations mission goals and needs, existing security products, and ongoing programs in cybersecurity. Develop strategies, roadmaps, assessments, and policies. Perform password auditing, network and web vulnerability scanning, virus management and intrusion detection. Monitor change management documentation to identify potential impacts to previous, current, and future security testing. Author risk narratives to communicate key risks to government CISO and security auditors. Support risk audits and assessments, provide recommendations for application design. Work with solution architects for security requirements on network architecture.
Minimum THREE (3) years of experience in Cyber Security/ Information Assurance. Bachelors Degree Experience applying fundamental cybersecurity principles and concepts to tasks and projects. An ACTIVE and MAINTAINED DOD or Federal Secret Clearance Cyber certification - CISM, CISSP, or Security+ Ability to work full time on site in Washington DC
HVA Assessment Qualification #LI-DNI
The annual salary range for this position is $113,000.00-$188,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.
Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include:
Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee. Guidehouse is a global AI-led professional services firm delivering advisory, technology, and managed services to the commercial and government sectors. With an integrated business technology approach, Guidehouse drives efficiency and resilience in the healthcare, financial services, energy, infrastructure, and national security markets. Built to help clients across industries outwit complexity, the firm brings together approximately 18,000 professionals to achieve lasting impact and shape a meaningful future. guidehouse.com