Recent Searches

You haven't searched anything yet.

21 Sr. Risk Management Consultant Jobs in Washington, DC

SET JOB ALERT
Details...
KPMG
Washington, DC | Other
$96k-115k (estimate)
2 Days Ago
Cognizant Technology Solutions
Washington, DC | Full Time
$160k-196k (estimate)
Just Posted
Diverse Lynx
Washington, DC | Full Time
$117k-140k (estimate)
3 Days Ago
TekWissen ®
Washington, DC | Full Time
$117k-141k (estimate)
6 Days Ago
Net2Source
Washington, DC | Full Time
$133k-162k (estimate)
1 Week Ago
Inter-American Development Bank
Washington, DC | Contractor
$96k-123k (estimate)
1 Week Ago
Cognizant
Washington, DC | Full Time
$155k-189k (estimate)
1 Week Ago
World Bank Group
Washington, DC | Full Time
$98k-125k (estimate)
1 Week Ago
IFC Systems Corporation
Washington, DC | Full Time
$98k-124k (estimate)
1 Week Ago
Visa
Visa
Washington, DC | Full Time
$112k-142k (estimate)
2 Months Ago
Visa
Visa
Washington, DC | Full Time
$108k-138k (estimate)
2 Months Ago
AECOM
Washington, DC | Full Time
$105k-142k (estimate)
2 Weeks Ago
Impact Solutions
Washington, DC | Full Time
$100k-129k (estimate)
2 Weeks Ago
Thelan
Washington, DC | Full Time
$117k-156k (estimate)
10 Months Ago
ECS_FEDERAL
Washington, DC | Full Time
$127k-161k (estimate)
5 Months Ago
ClickJobs.io
Washington, DC | Full Time
$162k-208k (estimate)
1 Week Ago
HWC
Washington, DC | Full Time
$110k-140k (estimate)
1 Week Ago
Cognizant
Washington, DC | Full Time
$126k-152k (estimate)
6 Days Ago
AHU Technologies Inc
Washington, DC | Full Time
$94k-119k (estimate)
3 Weeks Ago
AHU Technologies Inc
Washington, DC | Full Time
$127k-154k (estimate)
3 Weeks Ago
Sr. Risk Management Consultant
TekWissen ® Washington, DC
$117k-141k (estimate)
Full Time | Business Services 6 Days Ago
Save

TekWissen ® is Hiring a Sr. Risk Management Consultant Near Washington, DC

Overview: TekWissen Group is a workforce management provider throughout the USA and many other countries in the world. Our client is an American multinational information technology services and consulting company and is a leading provider of information technology, consulting, and business process outsourcing services, dedicated helping the world's leading companies build stronger businesses.
Job Title: Sr. Risk Management ConsultantWork Location: Washington, DCJob Type: Contract Work Type: Remote - except for week 1 and quarterlyDuration: 5 MonthsJob Description/ Responsibilities:
  • Senior individual contributor for information security risk management projects.
  • Sample projects/programs could include but are not limited to:
  • Control design and assessment for high-demand technical areas such as ERP, IT Service Management, Identity and Access Management, IT Resiliency, Cloud, etc.
  • Compliance framework mapping and implementation,
  • Risk remediation management,
  • Information Security risk reporting and monitoring
  • Creation of roadmaps to mature or advance Information Security Strategies/Programs/Controls
  • Design and enablement of cyber controls functions and processes
  • Direct experience as a power user of Cybersecurity GRC/ solutions, tools, and technologies, specifically ServiceNow and Archer
  • Projects or roles requiring coordination across lines of defense working with technical, business, compliance, risk, and audit teams to deliver solutions.
  • Delivery of information security risk assessments for large-scale IT implementation projects including consulting with security architecture function for threat modeling, appropriate tiering of N tier products/platforms, design of infrastructure security controls to protect system components.
  • Practical use of risk management concepts and principles - including assessment, prioritization, delivery of treatment plans, tracking and reporting. Experience with NIST-SP800-30, ISO 27001/2, ISO 27005, COBIT.
  • Consult and review the implementation of authentication, authorization (fine grained and coarse grained), and cryptography (PKI, SSL, Kerberos, crypto algorithms) mechanisms within applications.
  • Consult with security assurance function on the delivery of technical security standards, configuration baselines and related procedures for the hardening of both cloud and non-cloud application and infrastructure components, tools, and techniques to ensure the security of application and infrastructure components such as LINUX/Windows servers, Web servers (IIS, Apache, tomcat), app servers, Databases (Oracle and MS SQL), endpoints (MAC, Windows, Apple IOS, etc.), and Web Application Firewalls.
  • Collaborate with other security functions e, g. security architecture, security assurance, offensive security team (red/purple team), application security penetration testing team, to review and apply appropriate risk levels to the output of the assessments performed by the functions.
  • Maintain impartiality around IT systems to produce unbiased reports on information security risk.
  • Works closely with IT project teams to develop implementation plans for new security-related products and services.
  • Conducts quality assurance reviews of security requirements for the implementation of identified solutions.
  • Define/enhance process and procedures for using external security service providers including scoping, management of services, remediation tracking, and exception management.
  • Effectively communicates requirements and trains staff and managers in IT divisions to identify and manage risks throughout the project lifecycle.
  • Where applicable, manages the engagement process of external risk assessment providers and acts as a liaison with internal IT project teams and business units.
  • As an advocate of information security, works closely and proactively with IT project team leaders, service providers, and business units to provide security-related technical solutions. Identifies opportunities to improve business practices or IT security-related processes.
  • Other ad hoc responsibilities may include:
  • Analyzes, recommends, and implements process improvements within the context of information security.
  • Support governance activities for Identity and Access Management, where requested.
Top 3 Skills Required For This Role:
  • Assurance guidelines, risk factors, Risk is controlled and managed across projects.
  • Risk Assessment, Security Policy being met, Any Risk being highlighted, managed and documented in ISG tool GRC ( ServiceNow, Archer)
  • Represent ISG to follow Risk Constitution
Experience Must Include:
  • Prior work in a technical cybersecurity risk management function at organizations with security related regulatory requirements.
  • Practical use of risk management concepts and principles - including assessment, prioritization, delivery of treatment plans, tracking and reporting, and metrics (accreditation and certification). Experience with NIST-SP800-30, ISO 27001/2, ISO 27005, COBIT.
  • Embedding security into processes such as SDLC, Project Lifecycle, ITIL, etc.
  • Demonstrated cybersecurity expertise with infrastructure, applications, and database system technologies.
  • Basic IT consultancy skills. Ability to consult and deliver on the security hardening of application and infrastructure components, including tools, and techniques to ensure the security of application, database, and infrastructure components.
  • Pragmatic security expert with an inherent ability to balance security demands with business reality. Ability to quickly grasp how new technologies work and how security controls should be applied to achieve business goals.
  • Knowledge of security solutions, latest threats, and countermeasures.
Required Soft Skills:
  • Familiarity with a broad range of security technologies supplemented by in-depth knowledge in specific areas of relevance.
  • Ability to quickly grasp how new technologies work and how they might be applied to achieve business goals.
  • Analytical skills that enable synthesis of inputs from many sources and allow for strategic thinking and tactical implementation.
  • Pragmatic security expert with an inherent ability to balance security demands with business reality.
  • Excellent relationship management skills
  • Ability to think laterally and to have input to / propose detailed, complex solutions to technical issues.
Required Soft Skills:
  • Analytical skills that enable synthesis of inputs from many sources and allow for strategic thinking and tactical implementation.
  • Spoken and written communications that are compelling, convincing, and reassuring, and skills to articulate complex technical ideas to non-technical stakeholders.
  • Ability to think laterally and to have input to / propose detailed, complex solutions to technical issues.
  • Interpersonal skills that create openness and trust among colleagues.
  • Ability to work well under pressure and to meet tight deadlines. Demonstrates a high level of motivation, confidence, integrity, and responsibility.
  • Ability to be organized, responsive and to be able to effectively multi-task with a focus on driving results.
  • Demonstrate excellent interpersonal and relationship management skills. This includes the ability to work independently, effectively in a team/task force as a team member or leader, and with senior staff and managers.
  • Ability to work well under pressure and to meet tight deadlines, whilst demonstrating a high level of motivation, confidence, integrity, and responsibility.
  • Excellent relationship management skills. Facilitation and conflict management skills that enable effective working relationships.
Education:
  • Bachelor's degree in information security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 12 years of relevant experience in regulated industries working as an information risk manager or IT security architect; OR
  • Advanced degree in Information Security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 6 years of relevant experience in regulated industries working as an information risk manager or IT security architect.
Certifications: (Minimum plus at least 2 preferred):
  • CISSP or CISM (minimum required)
  • CCSP (preferred)
  • Microsoft Certified: Cybersecurity Architect Expert (preferred)
  • Other Microsoft cloud security related certifications at the Expert level (preferred)
  • GIAC certifications (preferred)
  • Offensive security related certifications (preferred)
TekWissen® Group is an equal opportunity employer supporting workforce diversity.TekWissen is an emerging global human capital, recruitment and IT services organization. Operating since 2009, we draw upon more than a decade of staffing experience to deliver critical talent acquisition solutions and IT engagements for our clients. We’re founded on a culture that is passionate about delivering tailored solutions, that create lasting partnerships.
Our global footprint covers six countries: United States, Canada, Australia, India, United Kingdom and the Philippines. This allows us to work in close partnership with organizations and manage everything from global talent needs with demanding resourcing strategies, to single sites with lower recruitment volumes.
TekWissen® is an equal opportunity employer supporting workplace diversity.

Job Summary

JOB TYPE

Full Time

INDUSTRY

Business Services

SALARY

$117k-141k (estimate)

POST DATE

09/11/2024

EXPIRATION DATE

03/04/2025

WEBSITE

tekwissen.com

HEADQUARTERS

ANN ARBOR, MI

SIZE

200 - 500

FOUNDED

1998

TYPE

Private

CEO

STEVE MOMORELLA

REVENUE

$10M - $50M

INDUSTRY

Business Services

Related Companies
About TekWissen ®

TekWissen provides enterprise software, web development, data warehousing, systems integration, information technology security services.

Show more

TekWissen ®
Full Time
$73k-86k (estimate)
1 Day Ago
TekWissen ®
Full Time
$36k-45k (estimate)
1 Day Ago
TekWissen ®
Contractor
$57k-71k (estimate)
1 Day Ago

The following is the career advancement route for Sr. Risk Management Consultant positions, which can be used as a reference in future career path planning. As a Sr. Risk Management Consultant, it can be promoted into senior positions as an Information Security Analyst IV that are expected to handle more key tasks, people in this role will get a higher salary paid than an ordinary Sr. Risk Management Consultant. You can explore the career advancement for a Sr. Risk Management Consultant below and select your interested title to get hiring information.

Net2Source
Full Time
$133k-162k (estimate)
1 Week Ago
Inter-American Development Bank
Contractor
$96k-123k (estimate)
1 Week Ago