Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Audit Analyst

$100k - $110k

Kentro

Overview Thank you for considering IT Concepts dba Kentro, where innovation drives opportunity and collaboration leads to success. Our dynamic community of experts is fully committed to advancing our customers' missions, fostering professional growth, and making a positive impact on our communities. By joining our supportive community, you will find that Kentro is dedicated to your personal and professional development. Together, we can drive meaningful change, spark innovation, and achieve extraordinary milestones. Kentro is hiring for a Cybersecurity Audit Analyst to coordinate and support all phases of cybersecurity‑related audit engagements across DOC, serving as the central liaison for planning, evidence curation, packaged responses, and follow‑up actions. The role covers OIG/GAO engagements, annual FISMA activities, OMB A‑123/FMFIA internal controls assessments, and cybersecurity elements of the Annual Financial Statement Audit (general coordination). The scope of this role covers audit coordination; the role does not perform formal control testing or own technical remediation. Additionally, the role supports program maturity by coordinating the continuous assessment of audit risks. It considers known weaknesses and audit recommendations and forecasts audit‑relevant risks from emerging technologies and external threats. These coordination efforts drive measurable improvements in cybersecurity posture and incremental gains in OIG FISMA outcomes. Location: Hybrid in Washington, D.C. Compensation Range: $100,000-110,000/annually. This Job Description reflects the primary duties of the role; however, it is not intended to be all‑inclusive. Team members may be asked to take on additional responsibilities in alignment with customer expectations, business needs, and Kentro’s culture of collaboration and adaptability. Responsibilities Cybersecurity Audit Management Lead planning, coordination, and tracking of cybersecurity audits and assessments, including FISMA, OMB A‑123, FMFIA, and OIG and GAO engagements. Maintain the cybersecurity audit risk register, tracking risks, remediation plans, owners, milestones, and progress. Prepare packaged responses, corrective action plans (CAPs), audit artifacts, and closure documentation for delivery to oversight bodies. Develop or update audit playbooks, process documents, and guidance materials to standardize readiness and engagement execution. Coordinate entrance/exit conferences, walkthroughs, interviews, site visits; manage information requests and due dates. Support development of risk summaries, dashboards, and program‑level reporting (e.g., status of audit activities, open items, milestones). Risk, Compliance & Alignment Monitor risks tied to High Value Assets (HVAs) and audit findings, providing periodic updates to leadership. Ensure coordination activities align with NIST RMF, NIST CSF, FISMA, applicable OMB guidance, and DOC cybersecurity policies. Track known weaknesses and recommendations to inform audit readiness and evidence planning. Stakeholder Engagement Serve as the primary liaison among OCRM, OCOS, ESOC, DOC Operating Units, auditors, and assessment teams. Provide clear communication, regular status updates, and issue escalation as needed to maintain schedule and quality. Develop concise briefings and summaries for leadership and audit stakeholders at key milestones (entrance, fieldwork, exit, close‑out). Tools & Platforms Utilize CSAM (GRC) as the system of record for system security documentation and status. Manage engagement workflow and artifacts through the DOC Audit Management System (ServiceNow); maintain request logs, evidence, and dashboards. Use collaboration/reporting tools (e.g., SharePoint, Excel/Power BI, MS Project) for repository management, trackers, and executive‑ready summaries. Qualifications Bachelor’s degree in Cybersecurity, Information Assurance, Information Systems, or closely related field; or equivalent experience. 3-5 years coordinating Federal cybersecurity audits or oversight engagements (OIG, GAO, FISMA, A‑123/FMFIA, financial statement audits). Demonstrated ability to manage complex audit calendars, artifacts, and multi‑stakeholder coordination under tight deadlines. Strong writing and communication skills to synthesize technical topics into accurate packaged responses and briefings. Qualifications And Certifications Required: Bachelor’s degree in Cybersecurity/Information Assurance/Information Systems or closely related field. Preferred: PMP or FAC/PPM equivalent certification, CompTIA Security+ (or higher DoD 8570/8140‑aligned baseline). Key Competencies Audit coordination & stakeholder management Evidence curation discipline and accuracy Clear written communication; executive‑ready summarization Attention to detail; confidentiality and records stewardship Clearance Requirement US Citizen or Green card holder Ability to obtain and maintain Public Trust adjudication. Must meet updated ID requirements: If you do not currently meet the ID requirements outlined, you must be willing and able to update your current forms of ID in a timely manner to complete the suitability process successfully. The Company We believe in generating success collaboratively, enabling long‑term mission success, and building trust for the next challenge. With you as our partner, let’s solve challenges, think innovatively, and maximize impact. As a valued member of our team, you have the unique opportunity to work in a diverse range of technology and business career paths, all while supporting our nation and delivering innovative technology solutions. We are a close community of experts that pride ourselves on creating an environment defined by teamwork, dedication, and excellence. We hold three ISO certifications (27001:2013, 20000-1:2011, 9001:2015), two CMMI ML 3 ratings (DEV and SVC) and CMMC Level 2 Certification. Industry Recognition Growth | Inc 5000’s Fastest Growing Private Companies, DC Metro List Fastest Growing; Washington Business Journal: Fastest Growing Companies, Top Performing Small Technology Companies in Greater D.C. Culture | Northern Virginia Technology Council Tech 100 Honoree; Virginia Best Place to Work; Washington Business Journal: Best Places to Work, Corporate Diversity Index Winner – Mid‑Size Companies, Companies Owned by People of Color; Department of Labor’s HireVets for our work helping veterans transition; SECAF Award of Excellence finalist; Victory Military Friendly Brand; Virginia Values Veterans (V3); Cystic Fibrosis Foundation Corporate Breath Award Benefits We offer competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k including an employer match, discount perks, rewards, and more. We invest in our employees – Every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking. We are committed to supporting your curiosity and sustaining a culture that prioritizes commitment to continuous professional development. We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities – virtual and in‑person – e.g., we host happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy. Commitment Equal Opportunity Employment & VEVRAA Kentro is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state or local law. Kentro is strongly committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. We have developed comprehensive policies and procedures to ensure our hiring practices align with these requirements. As part of our VEVRAA compliance efforts, Kentro has established an equal opportunity plan outlining our commitment to recruiting, hiring, and advancing protected veterans. This plan is regularly reviewed and updated to ensure its effectiveness. We encourage protected veterans to self-identify during the application process. This information is strictly confidential and will only be used for reporting and compliance purposes as required by law. Providing this information is voluntary and will not impact your employment eligibility. Our commitment to equal employment opportunity extends beyond legal compliance. We are dedicated to fostering an inclusive workplace where all employees, including protected veterans, are treated with dignity, respect, and fairness. Accommodations To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable Accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. If you need to discuss reasonable accommodations, please email View email address on click.appcast.io. #kentro #J-18808-Ljbffr

Vacancy posted 7 hours ago
Similar jobs that could be interesting for youBased on the Cybersecurity Audit Analyst in Washington DC vacancy
  • $150k - $160k

     ...primary liaison among Technology, Risk, Audit, and executive leadership to ensure the...  ...audit engagements related to technology, cybersecurity, and operational risk. Monitors and interprets...  ..., leads, and mentors a team of GRC analysts/specialists; establish performance... 
    Suggested
    Contract work
    Temporary work
    Work at office
    Flexible hours

    WesBanco

    Bowie, MD
    5 days ago
  • $104.8k - $192.2k

     ...to build a better working world.Government and Public Sector - Cybersecurity - Penetration Tester - Senior ConsultantFrom strategy to...  ...GPS”) of Ernst & Young provides a full range of consulting and audit services to help our Federal, State, Local and Education clients... 
    Suggested
    For contractors
    Summer holiday
    Work at office
    Local area
    Flexible hours

    EY (Ernst & Young)

    McLean, VA
    1 day ago
  • $78.68k - $157.88k

    Position Summary Audit and Assurance Information Technology Auditor - Senior Consultant Do you thrive in times of disruption? Have a passion for turning challenges and opportunities into long-term competitive advantages? As a Senior Consultant in Deloitte Audit and... 
    Suggested
    Work experience placement
    Work at office
    Local area
    Visa sponsorship

    Deloitte

    Rosslyn, VA
    2 days ago
  • $135k - $143k

     ...in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's information...  ...regulations. Provide advice on security compliance and audit requirements, supporting internal and external audits.... 
    Suggested
    Full time
    Contract work
    Casual work
    Remote work
    Flexible hours

    Gunnison Consulting Group Inc

    Washington DC
    1 day ago
  •  ...Description Cybersecurity Analyst – IT Contingency Management Xcelerate Solutions is seeking a Cybersecurity Analyst – IT Contingency Management to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support... 
    Suggested
    Full time

    Xcelerate Solutions

    Alexandria, VA
    1 day ago
  •  ...Certifications: Holds senior-level cybersecurity and GRC certifications appropriate for RMF...  ...PingWind is seeking a Cybersecurity Analyst responsible for leading governance, risk...  ...compliance artifacts. • Supports cybersecurity audits, inspections, and assessments by... 
    Full time
    Temporary work
    Flexible hours

    Pingwind

    Alexandria, VA
    1 day ago
  •  ...commercial and government clients, is seeking a full-time Cybersecurity Analyst II to support the government customer located in Washington...  ...security control validation in support of enterprise cybersecurity audit and testing activities. Execute approved Ground-Truth and... 
    Full time
    Remote work

    Dynamic Solutions Technology, Llc

    Washington DC
    1 day ago
  • $100k - $130k

    GovCIO is currently hiring a Journeyman Cybersecurity Analyst to support Information Assurance (IA) and Information System Security Officer (ISSO...  ...their Authorization to Operate (ATO) status.Analyze audit logs and security alerts to identify potential compliance gaps... 
    Currently hiring

    Govcio

    Alexandria, VA
    5 days ago
  • DescriptionActioNet has an immediate opportunity for a Cyber Security Analyst requiring a Public Trust clearance located in Silver Spring,...  ...and requirements: Firewall Policy, Ports & Protocols, Cybersecurity, CybersafeFamiliarity with Tenable and BigFix, preferred.Experience... 
    Immediate start
    2 days per week
    1 day per week

    ActioNet

    Washington DC
    3 days ago
  • $101.53k - $132.69k

     ...Location: Executive Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal... 
    Permanent employment
    Full time
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises Inc

    Alexandria, VA
    1 day ago
  • $102k - $127k

     ...people that keep us safe. In this job you will support OCIO FISMA audit readiness and compliance reviews by identifying gaps,...  ...Degree in one of the following disciplines (Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or... 
    Contract work

    ECS Federal

    Washington DC
    2 days ago
  •  ...Senior Principal Cyber Network AnalystIron EagleX is seeking a Senior Principal Cyber Network Analyst to join our fast-paced technical team. In this role, you will analyze, engineer, and troubleshoot complex network environments while supporting the integration and operationalization... 
    Contract work

    General Dynamics Information Technology

    Arlington, VA
    7 hours ago
  • $204.8k - $425.5k

     ...the Cyber Threat and Vulnerability Management (TVM) team, playing a pivotal role in understanding and contextualizing clients’ cybersecurity threats, as well as in evaluating, enhancing, and developing their security operations to counter these threats effectively. Spearhead... 
    Work experience placement

    EY

    Washington DC
    1 day ago
  • $78.2k - $137.7k

     ...security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is...  ...and Single Process Inventory (SPI) enhancements.Supports audit issues for closure and sustainabilityRequired Qualifications:7... 
    Full time
    Work at office
    Day shift

    Bank of America

    Washington DC
    4 days ago
  • $87.1k - $157.45k

     ...Cybersecurity Analyst Location: Keyport, WA Help Protect Critical Naval Operations Leidos is seeking a Cybersecurity Analyst to support NAVSEA NUWC Keyport in Keyport, WA. In this role, you will support Risk Management Framework (RMF) security and compliance activities... 

    Leidos

    Washington DC
    7 hours ago
  •  ...Peraton is seeking an experienced CIRT Tier 2 Analyst to support its Federal Strategic Cyber Mission program in Beltsville, MD. The role requires on-site work with a mid shift (22:00–6:00 EST, Tue-Sat) and involves detecting and responding to cyber security incidents in... 
    Shift work

    Peraton

    Beltsville, MD
    3 days ago
  • $120k - $140k

     ...seeking a detail-oriented and strategic Cyber Business Analyst to serve as the bridge between cybersecurity teams and business stakeholders. This role is...  ...associated with cybersecurity risks and control gaps.Support audit preparation and remediation efforts.Process... 

    ECS Federal

    Arlington, VA
    4 days ago
  •  ...Host Forensic Analyst/Host Based Systems Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node is seeking Host...  ...all-source research. Required Education BS Computer Science, Cybersecurity, Computer Engineering, or related degree; or HS Diploma and 7... 

    Node.Digital

    Arlington, VA
    5 days ago
  • $115k - $155k

     ...*/ State Maryland/*generated inline style */ Function Federal Audit/*generated inline style */ Job Description As CohnReznick grows...  ...engagements by evaluating technology risks, IT controls, and cybersecurity controls supporting federal systemsDemonstrate a thorough understanding... 
    Contract work
    Work at office
    Local area
    Flexible hours
    3 days per week

    CohnReznick

    Bethesda, MD
    1 day ago
  • Title:IT Audit ManagerKBR is seeking an experienced IT Audit Manager to join the Internal Audit & Advisory team. This role is responsible for leading and overseeing the organization's IT Sarbanes-Oxley (SOX) compliance program, including the planning, execution, and reporting... 
    Full time
    Temporary work
    Local area
    Relocation package
    Flexible hours

    KBR

    Arlington, VA
    3 days ago
  • $221.2k - $387.1k

     ...AI visibility & inventory, prompt & response protection, agent architecture & control, shadow AI & access control, and compliance & audit) and the enterprise AI risks reported to the Audit Committee. The team builds state-of-the-art controls that reduce risk to the company... 
    Permanent employment
    Work at office
    Immediate start
    Remote work
    Flexible hours
    Shift work

    ServiceNow

    Washington DC
    3 days ago
  •  ...analyze attack patterns, develop incident response plans, ensure audit readiness, and implement disaster recovery measures, to ensure...  ...."Training and Awareness-Assist in creating and delivering cybersecurity awareness sessions, including guidance on phishing and malicious... 

    Wipro

    Washington DC
    3 days ago
  •  ...action plan to prevent security breaches in the technology. An IT auditor can also be involved in the planning and execution of internal audit procedures and the creation of internal audit reports. An auditor must work within a team to create a solid information technology... 
    Full time
    For contractors
    Internship
    Work at office

    Prosidian Consultng

    Washington DC
    5 days ago
  • $110.18k - $183.63k

     ...thinking organization, apply now.We are currently seeking a Cybersecurity and Risk Analyst to join our team in Arlington, Virginia (US-VA), United...  ...CIS Controls, and ISO 27001.Support internal and external audits by mapping findings to compliance frameworks (FISMA, HIPAA... 
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Arlington, VA
    3 days ago
  • $77.6k - $176k

    Cybersecurity Compliance AnalystThe Opportunity:Designs, implements, and manages policies and procedures to ensure database and software security. Applies advanced advisory skills or extensive technical expertise with full industry knowledge. Develops innovative solutions... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    5 days ago
  • $45 - $60 per hour

     ...Job Title: Financial/IT Audit Manager (Secret Clearance Needed) Location: Arlington, VA Rate/HR: $45-60/hr Overview: We are seeking a highly qualified IT Audit Manager to join our team in Arlington, VA. The ideal candidate will possess a Master... 
    Remote work
    Work from home
    Flexible hours
    2 days per week
    3 days per week

    She Recruits LLC

    Arlington, VA
    3 days ago
  • $107.9k - $195.05k

     ...ConfigOS, Evaluate-STIG, STIG Manager, and SCAP-based compliance policies.Perform OS hardening, vulnerability analysis, remediation, audit support, and compliance reporting.Develop configuration baselines, documentation, and enterprise-wide compliance automation.... 
    Full time

    Leidos

    Suitland, MD
    2 days ago
  • $166k - $258k

    Job DescriptionThe Senior 2 Attack Surface Analyst champions reduction of Nordstrom’s attack surface through continuous identification...  ...Surface Management team, this role collaborates closely with cybersecurity and technology partner teams to prioritize risk, execute... 
    Full time

    Nordstrom

    Washington DC
    9 days ago
  •  ...ProSidian Consulting at DescriptionProSidian Seeks a A095 IM Cybersecurity Analyst - GSSC (Time and Materials) to support an engagement for the...  ...such as system test & evaluation, internal and external audits, assessments and continuous monitoring activities.Assist with... 
    Contract work
    For contractors
    Work at office

    Prosidian Consultng

    Washington DC
    a month ago
  •  ...Job Description Job Description Description: RMC is seeking a Senior OT Cybersecurity Analyst for a full-time hybrid position in San Diego CA, Washington D.C. or Norfolk VA! Are you ready to embark on a fulfilling and impactful career journey with Risk Mitigation... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Flexible hours

    RMC Global

    Arlington, VA
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Audit Analyst. Be the first to apply!