Cyber Risk Management Analyst Mid-Level
Gdit
Public Trust: BI Full 6C (T4)
Requisition Type: Regular
Your Impact
Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.
Job Description
The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the most comprehensive, mission critical cybersecurity operations in the federal government—protecting the digital infrastructure that safeguards America’s borders. This multifaceted program spans 24/7/365 Security Operations Center (SOC) monitoring, advanced threat intelligence, forensics, incident response, cloud and network security engineering, zero trust modernization, vulnerability assessment, and enterprise-wide risk and compliance activities. The Cyber Risk Management Analyst will support teams at the forefront of national security, supporting sophisticated cyber operations that defend vital systems, enable secure mission execution, and counter rapidly evolving threats. You will find this work uniquely impactful, fast-paced, and deeply collaborative, offering the opportunity to lead high performing technical teams, shape CBP’s cybersecurity strategy, and contribute directly to the protection of the nation.
MEANINGFUL WORK AND PERSONAL IMPACT
The Cyber Risk Management Analyst plays a critical role in strengthening the organization’s cybersecurity posture by assessing risks, evaluating security controls, and supporting enterprise‑wide governance efforts. Operating within a mission‑driven environment, this analyst provides meaningful insights that inform leadership decisions, drive remediation activities, and enhance overall cyber resilience. You will:
- Contribute to applying risk frameworks, assessing potential threats, and preparing clear, actionable risk documentation for stakeholder awareness.
- Review system security plans, policies, and control implementations for adherence to NIST‑aligned frameworks (e.g., RMF, CSF).
- Assess the sufficiency of existing security controls and recommend appropriate remediation or mitigation strategies.
- Contribute to compliance activities, audit preparations, and documentation packages.
- Develop high‑quality risk statements, findings summaries, and decision‑support materials for technical and non‑technical audiences.
- Monitor remediation progress, validate closure artifacts, and verify control improvements as part of the risk mitigation lifecycle.
- Assist with the creation and refinement of risk registers, dashboards, and other reporting tools that provide leadership situational awareness.
- Collaborate with program teams, system owners, ISSOs, and engineering groups to gather evidence, clarify risk drivers, and support timely resolution.
- Help standardize risk methodologies and documentation practices across projects.
WHAT YOU’LL NEED TO SUCCEED
- Minimum of three (3) years in cybersecurity or risk management.
- Understanding of NIST frameworks and security control assessments.
- Solid analytical and writing skills.
- Strong understanding of NIST frameworks and security control assessment concepts.
- Demonstrated analytical skills with the ability to break down complex problems and articulate risk clearly.
- Excellent writing and communication skills for developing professional risk documentation.
- Ability to work collaboratively across diverse technical and operational teams.
- Strong organizational, communication, and leadership capabilities.
- Familiarity with IT system lifecycle processes, cybersecurity environments, or federal IT delivery.
- Preferred certifications:
- CompTIA Security+
- Certified in Risk and Information Systems Control (CRISC)
- NIST RMF Practitioner (various providers)
EDUCATION AND EXPERIENCE
- Bachelor’s degree in information technology, computer science, cybersecurity or a related field preferred.
- Previous or Current CBP Background Investigation desired.
OWN YOUR OPPORTUNITY
Explore a career in cyber security at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for securing the mission.
Work Requirements
Years of Experience
3 + years of related experience
* may vary based on technical training, certification(s), or degree
Certification
Travel Required
Less than 10%
Citizenship
U.S. Citizenship Required
- ...The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the... ...modernization, vulnerability assessment, and enterprise-wide risk and compliance activities. The Cyber Risk Management Analyst Junior will support teams at the forefront of...Cyber
- Data Scientist mid-level TS/SCI CI polyDepartment: Govt Customer-ChantillyLocation... ....Position Description:The Cyber Data Science Engineer... ..., and configuration management toolsImport, transform, analyze... ...driven solutionsCollaborate with Risk Management teams to develop means...CyberContract work
- Position Objective: This Mid-Level Data Management Analyst will support the Centers for Disease Control and Prevention (CDC), Office of Public Health Data, Surveillance, and Technology (OPHDST). The analyst will support the Actionable Data Branch (ADB) and CDC Data Hub...SuggestedWork at office
- ...Description The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the... ..., vulnerability assessment, and enterprise-wide risk and compliance activities. The Management Analyst Junior will support teams at the forefront of national...Cyber
$87.1k - $157.45k
...capabilities in the areas of cyber, logistics, security operations... ...assets.The Geospatial Analyst Solutions Directorate, part of... ...Area, is currently seeking a Mid-Level DevSecOps Engineer on the Maru... ...Infrastructure as Code (IaC): Manage and monitor infrastructure using...CyberFull timeContract workShift work$98.1k - $115k
...requirements in addition to program management. The services obtained under... ...Security Officer (ISSO) Mid-Level: To support AT&T Federal... ...system to anotherResearch on cyber issues/mattersParticipate in... ...identify vulnerabilities and risks.Monitoring network traffic for...CyberContract workTemporary workFor contractorsWork at officeLocal areaRelocation$110k - $140k
...’t. We conduct research and development, manage national laboratories, design and manufacture... ...is currently seeking an aspiring Mid-level Vulnerability Researcher to work in our Columbus... ...have everything they need to invent new Cyber solutions. We encourage new ideas with...CyberWork experience placementWork at officeLocal areaRemote workFlexible hours- ...Description Dark Wolf is looking for a Mid-Level DevSecOps SME / Information System... ...software development, security engineering, risk management, and compliance. The specialist must be... ...directly with customers to improve cyber security posture ~ Experience authoring...CyberFull timeFor contractors
- ...seeking a Vulnerability Management Analyst (Tenable/Nessus &... ...environment. This is a junior-level role (1–3 years of... ..., EOL/EOS software risks, and affected assets.... ...vulnerability management, SOC, cyber GRC, IT operations, or... ...equivalent entry-to-mid-level cybersecurity...CyberFull timeWork from homeFlexible hours1 day per week
$72k - $129k
...be doing... The Threat Management Center (TMC) serves as... ...internal misconduct and cyber-attacks. The TMC... ...The Incident Management Analyst role is a position providing... ...communicate effectively with all levels of business including... ...of identified gaps, risks, or weaknesses....CyberFull timeTemporary workPart timeWork experience placementWork at officeWork from homeShift workNight shiftWeekend work3 days per week- ...Title: ServiceNow Security & Risk Specialists (Architect / Lead... ...Operations (SecOps), Integrated Risk Management (IRM / GRC), Continuous... ...integrations using REST, SOAP, MID Servers, LDAP, SSO, and external... ...to integrate third-party cyber tools and data feeds. Agile...CyberFull timeImmediate start
$150k - $250k
...Impact You'll Have GRVTY is seeking a Mid-level DevSecOps Engineer with a TS/SCI to join... ...software and automation tools that streamline Cyber Security workflows and improve the... .... What You'll be Owning Deploy and manage highly available applications to ensure system...CyberContract workImmediate start$146k - $234k
...future of air traffic management. This is your chance to... ...sophisticated network, cyber or testing projects from... ...employees.Conduct annual and mid-year performance... ...Resources when appropriate.Risk Management with Real... ...updates and executive-level briefings covering technical...CyberContract workFor subcontractorShift work$152.2k - $243.7k
...company against evolving cyber threats. If you would... ...subsidiaries.Essential Functions:Manage and address... ...the work performed by analysts to ensure accuracy and... ...working in an enterprise-level incident response team... ...Web Application Security risks. • Excellent understanding...CyberFull timeWork experience placementWork at officeLocal area$125.3k - $187.9k
...contributions to the nation’s safety. A Cyber Systems Security Engineering position... ...IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity,... ...with systems engineers to decompose system-level security controls into technical performance...CyberRelocation packageShift work$215k - $245k
...engineers. You will work closely with cyber operators, software engineers, and infrastructure... ..., software engineering) Mentor mid-level engineers and provide technical... ...systems Ensure compliance with DoD Risk Management Framework (RMF) requirements Required...CyberContract workWork experience placementLocal area- ...technically advanced full-spectrum cyber, data operations, systems... ...IntegrationHub, REST/SOAP APIs, and MID Server.Building and... ...incident triage, vulnerability management, compliance automation, and threat... ...DoD 8570.1-M Compliance at IAT Level I (e.g., Certified Information...CyberFull timeWork experience placement
- ...Job Description The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the most comprehensive... ...modernization, vulnerability assessment, and enterprise-wide risk and compliance activities. The Penetration Tester will support teams...Cyber
- ...Border Protection (CBP) Cyber Security... ...and enterprise-wide risk and compliance activities... .... The Cyber Risk Management Lead will lead teams... ...Cyber Risk Management Analyst plays a mission‑... ...guiding enterprise‑level risk strategy,... ...analysts at junior, mid, and senior levels,...Cyber
- ...The Public Affairs Officer – Mid, is a public affairs professional... ...and its mission. This mid-level role executes key tasks across... ...· Media Relations & Strategy: Manage media activities, including developing... ...(ICAM), Software Development, Cyber and Network Security, System...CyberTemporary workWork at officeRelocation packageShift work
- ...solutions in the areas of Cyber Security, Information Management and Systems Integration. NAOVI... ...NAOVI employs engineers, analysts, IT specialists and other... ...working with senior level customers for status updates... ...corrective actions; to perform risk identification and...CyberFull time
- ...DescriptionAs a valued advisor on our Single-Family Non-Financial Risk Management team, you will advise business leaders and risk partners on... ..., and inform conclusions. Experience facilitating senior-level risk discussions and influencing decisions across organizational...Full timeWork at officeRemote work
$86.6k - $181.8k
...Information Systems Security Manager (ISSM)Job Category: Information... ...project team, the Government’s Cyber Security team, and the... ...documentation and vulnerability and risk assessments.Design and implement... ...IT systems at acceptable levels of riskMonitoring and testing...CyberContract workWork experience placementFlexible hours$86.8k - $198k
...governance, ethical AI deployment, and risk management framework implementation.* Support the authoring... ...operating across complex, enterprise-level multi-cloud environments such as AWS,... ...skills* Master's degree in Cyber Strategy or Public policy**Vetting:** Applicants...CyberFull timeContract workPart time$154.05k - $278.48k
...with focus on leading teams through the Risk Management Framework to system ATOs across multiple... ...one of the following DoD 8570.01-M IASAE Level II certifications: CISSP, CISSP-ISSAP,... ...software systemsExperience managing a team of Cyber Security Engineers (CSEs) and...CyberFull timeRemote work- ...cloud modernization, data governance, and risk management. With a proven track record supporting... ...that maximize efficiency and strengthen cyber resilience. At our core, we are dedicated... ...~ Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX (formerly...CyberFull time
- ...Solutions, Inc (YSI) is a CMMI Level 3 assessed, ISO 9001, 20000:1... ...assistance.YSI is seeking a Risk Analyst. The ideal candidate will be... ...following:Supports enterprise cyber risk and compliance... ...and sustaining Integrated Risk Management (IRM) processes aligned with...CyberRemote jobTemporary workImmediate start
$128k - $270k
...compensation and benefits package. Visit our website at: . Cyber Security Project Manager CANDIDATES MUST HAVE AN ACTIVE TS/SCI w/ Poly... ...the Sponsor's cyber mission and provide the expert level support in cyber risk management, vulnerability assessment and applicable...CyberWork at officeFlexible hours$98.5k - $188k
...you’ll be doing...We are seeking a Senior Manager in Cyber Security to drive high-impact data... ...experience in fraud detection, security, risk management, or threat operations.Demonstrated... ...clear root-cause analyses and executive-level presentations.Communication & Executive...CyberFull timeTemporary workPart timeWork experience placementWork at officeWork from homeShift workWeekend work3 days per week- ...Job Description Job Description Cyber Risk Management Specialist Ashburn, VA 20147 Location: 100% On-Site Security: DHS Suitability... ...posture with risk management frameworks. Higher-level roles drive strategic enterprise risk initiatives, establish...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Risk Management Analyst Mid-Level. Be the first to apply!
- remote senior business analyst Ashburn, VA
- senior business analyst contract Ashburn, VA
- records management analyst Ashburn, VA
- public sector business analyst Ashburn, VA
- fiserv business analyst Ashburn, VA
- business development analyst Ashburn, VA
- business analyst law firm Ashburn, VA
- business analyst part time remote Ashburn, VA
- business analyst Ashburn, VA
- analytics business analyst Ashburn, VA



