Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Risk Manager

$155k - $165k

CVP (Customer Value Partners)

Cybersecurity Risk Manager

CVP is seeking a Cybersecurity Risk Manager for a large government agency enterprise-level cybersecurity program. The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the agency's CIO and CISO in cybersecurity tasks such as information security policy development and implementation; security compliance monitoring; security audit management; risk assessment; system authorization; security reporting; and other information security-related tasks.

Responsibilities
  • Identify, evaluate, and develop strategies for handling risks to reduce information security and privacy risk across the agency.
  • Provide recommendations, guidance, planning, and implementation support for agency risk management activities and tools, and provide support as needed to enhance the agency's Information Security Program related to governance, optimizations, automation, and supporting tools.
  • Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for Information Systems and Organizations and SP 800-39, Managing Information Security Risk (as revised).
  • Conducting an enterprise risk assessment and developing an agency Information Security Risk Assessment Report that addresses all findings from the assessment
  • Developing an agency Privacy and Security Roadmap that recommends privacy and information security capabilities based on risks identified in the agency's Information Security Risk Assessment Report
  • Developing an agency Information Security Risk Management Plan that addresses how the agency will implement and perform risk management activities regarding risk tolerance, risk assessment, risk response, risk monitoring, and risk capabilities
  • Providing risk management guidance to the agency offices for A&A activities as required, ensuring continuous risk monitoring of information security control implementation effectiveness and required information security compliance requirements
  • Support the Information Security and Assurance Office (ISAO) in implementing and overseeing the organization's information security risk management and security assessment and authorization (A&A) activities.
  • Advise the agency on how best to tailor the revised A&A process to handle non-traditional technologies including, but not limited to, cloud, mobile, and Internet of Things.
  • Provide the agency recommendations on how it can continuously monitor and assess the security posture of agency information systems over time and alert agency decision makers when an information system presents an increased risk or eminent threat to agency data and/or operations.
  • Develop guidance, templates, other tools, and advice to the program offices to support their risk management and ATO activities.
  • Provide risk management and information security continuous monitoring program implementation recommendations to program offices
  • Track and review Plans of Actions and Milestones (POA&Ms) agency-wide to identify areas of risk as a result of unimplemented POA&Ms, a buildup of risk-based decisions, or other cross-cutting issues observed as a result of its risk management support.
  • Track the A&A status for all divisions and programs that have information systems to validate they meet the requirements to protect the agency's data and operations.
  • Develop the required artifacts to complete security accreditation packages for OCIO information systems and perform any required assessments, as requested. The Contractor shall provide oversight and advisory support to agency program office personnel for completion of information system A&A packages, as requested.
  • Follow NIST Federal Information Processing Standards (FIPS) and Special Publications (SPs) to include, but not limited to, FIPS 199 and 200, SP 800-39, SP 800-37, SP 800-137, SP 800-60, SP 800-53, SP 800-53A, SP 800-34, SP 800-30, and SP 800-18. The Contractor shall comply with all agency IT security and Privacy policies and standards including, and the agency Privacy Impact Assessment (PIA) requirements and associated templates.
Qualifications
  • Minimum of six years' experience in cybersecurity. 10+ years' experience is preferred.
  • Minimum of six years' experience leading and delivering in FISMA-based and FedRAMP Assessment and Authorization (A&A) programs for comparably sized federal agencies and programs. Seven plus years' experience is preferred.
  • Shall have at least one of the following industry-recognized certifications:
    • Certified Information System Security Professional (CISSP)
    • Certified Information Systems Auditor (CISA)
    • Certified Information Security Manager (CISM)
    • Certified in Risk and Information Systems Control (CRISC)
  • Familiarity with Information Technology Infrastructure Library (ITIL) Foundation Compliance (GRC) tool, continuous monitoring, and vulnerability management tools or services. Note: NIH currently uses CSAM.
  • Demonstrated experience managing cybersecurity teams including personnel, workload, priorities, scheduling, and risks.
  • Proven experience bringing innovative approaches to help reduce the FISMA workload and time to authorization/reauthorization through such methods as boundary consolidation, common control identification and re-use, automation, assessment readiness reviews, and digital transformation.

Desired Skills

  • PMP Certification
  • CISSP Certification
  • Experience with Security Assessment Tools (Tenable Nessus, DBProtect, Wireshark, WebInspect)
  • NIH/HHS experience

Location

  • Rockville, MD (Hybrid)

Salary Band: $155-165k (Depending on experience)

About CVP

CVP is an award-winning healthcare and next-gen technology and consulting services firm solving critical problems for healthcare, national security, and public sector clients. We help organizations achieve lasting transformation.CVP is an Equal Opportunity Employer dedicated to actively recruiting individuals and providing advancement opportunities based on merit and legitimate job qualifications. We ensure that all associates receive equal opportunities based on their personal qualifications and job requirements. CVP strictly prohibits any form of discrimination or harassment.At CVP, we cultivate a work environment that encourages fairness, teamwork, and respect among all associated. We are committed to maintaining a workplace where everyone can grow both personally and professionally.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Risk Manager in Rockville, MD vacancy
  • $180k - $227.7k

    Alumni Ventures is seeking a Manager for Probabilistic Risk Assessment in Rockville, MD. In this full-time exempt position, you will lead a team responsible for safety analysis across various projects. Required qualifications include a Bachelor’s degree in nuclear engineering... 
    Suggested
    Full time

    Alumni Ventures

    Rockville, MD
    1 day ago
  • $155k - $165k

    SilverEdge Government Solutions is seeking a Cybersecurity Risk Manager for a government agency program in Rockville, MD. The role focuses on developing risk management strategies, ensuring compliance, and supporting the cybersecurity program. The ideal candidate should... 
    Suggested

    SilverEdge Government Solutions

    Rockville, MD
    5 days ago
  • $155k - $165k

    Customer Value Partners, Inc. is seeking a Cybersecurity Risk Manager for a large government agency enterprise-level cybersecurity program in Rockville, MD. The role involves assisting the Cybersecurity Program Manager with risk assessment, security policy development,... 
    Suggested

    Customer Value Partners, Inc.

    Rockville, MD
    3 days ago
  • $170k - $210k

     ...in a manner otherwise, please contact us at .Job DescriptionX-energy is seeking professionals to join our Risk Informed Safety Analysis team in the role of Manager, Probabilistic Risk Assessment. This position is responsible for providing leadership and management/... 
    Suggested
    Work at office

    X energy LLC

    Rockville, MD
    1 day ago
  •  ...Senior Manager, Risk Management & Compliance This is a temporary position. The Senior Manager, Risk Management & Compliance is a strategic leader responsible for strengthening Marriott's Global Technology governance, driving timely closure of security and compliance... 
    Suggested
    Temporary work

    disABLEDperson Inc

    Garrett Park, MD
    2 days ago
  • $151.9k - $173.4k

    Capital One’s Enterprise Risk Management (ERM) Team has responsibility for helping the overall organization identify, manage, and mitigate key risks that may keep the company from achieving its strategic objectives. The Corporate Policy Office (CPO) is a dedicated group... 
    Full time
    Part time
    Work at office
    Local area

    Capital One

    Mc Lean, VA
    4 days ago
  •  ...Modernization at U.S. Army Base/Post/Camp/Station (B/P/C/S) across the Continental United States (CONUS). We have an opening for a Project Risk Manager primarily responsible for supporting COMPMOD operations teams and leadership to evaluate and mitigate financial and performance... 
    Contract work
    Work at office
    Worldwide

    By Light Professional IT Services LLC

    Mc Lean, VA
    5 days ago
  • $114.07k - $192.8k

     ...71.00 to $192,797.00. Additional compensation may be possible based on experience and skills. Responsibilities The Operational Risk Manager drives and supports the Operational Risk Management framework, to enable the Bank to effectively identify, monitor, measure, and... 
    Flexible hours

    EagleBank

    Bethesda, MD
    2 days ago
  • TPRM Risk Manager Capital One is seeking an experienced and self-motivated Manager to join our Third Party Risk Management team, within the second line of defence. The TPRM team is a dedicated group of professionals whose mission is to provide value-add, independent stewardship... 

    Capital One National Association

    Mc Lean, VA
    2 days ago
  • $131.3k - $149.8k

     ...Investment (CI&I), Community Finance, CRA Strategy and Program Management, the Government and Political Affairs Group, Regulatory Relations...  ...integral part of Community Finance that is responsible for the risk assessment, evaluation, management, and administration of... 
    Permanent employment
    Full time
    Part time
    Local area

    Capital One

    Mc Lean, VA
    5 days ago
  • $126k - $190k

    Freddie Mac is looking for an experienced professional for an operational risk management role in McLean, Virginia. The successful candidate will manage critical SFA operational risk and collaborate with various internal partners. With over 8 years of experience in operational... 

    Fairygodboss

    Mc Lean, VA
    5 days ago
  • Ernst & Young Advisory Services Sdn Bhd in McLean is looking for a Manager in Tech Risk. You'll be pivotal in delivering high-quality IT audit services for U.S. federal agencies, ensuring compliance and security in critical sectors such as defense and healthcare. Ideal... 

    Ernst & Young Advisory Services Sdn Bhd

    Mc Lean, VA
    5 days ago
  • $197.3k - $225.1k

    Capital One National Association is seeking a Manager, Generative AI Advisory and Oversight in McLean, VA. This role requires a deep understanding of AI/ML architecture, risk analysis, and security compliance. You will lead assessments and provide oversight for the AI/... 

    Capital One National Association

    Mc Lean, VA
    4 days ago
  • $126k - $190k

     ...environment? Do you have extensive experience with operational risk, strong analytical and interpersonal skills, and knowledge of the...  .... This individual will work in conjunction with SFA Risk Management business leaders to optimally handle the division's operational... 
    Work at office

    Fairygodboss

    Mc Lean, VA
    5 days ago
  • Ernst & Young Advisory Services Sdn Bhd is seeking a Senior Manager in the Government and Public Sector for Tech Risk in McLean, Virginia. This role requires 8+ years of experience in information assurance and security, with a focus on IT audit and controls. The position... 
    Flexible hours

    Ernst & Young Advisory Services Sdn Bhd

    Mc Lean, VA
    5 days ago
  • A global consulting firm is seeking a Manager in Risk Technology, based in McLean, Virginia. The role requires expertise in implementing ServiceNow solutions and leading projects focused on risk management. Candidates should possess strong project management skills and... 
    Flexible hours

    Ernst & Young Oman

    Mc Lean, VA
    1 day ago
  • $151.9k - $173.4k

    Risk Manager, Business Continuity and Resilience Risk Management Do you want to be part of an organization that is dedicated to helping Capital One identify, manage, and effectively mitigate risk - for our customers, our communities, and our associates? Capital One is... 
    Full time
    Part time
    Local area

    Capital One National Association

    Mc Lean, VA
    1 day ago
  • $138.3k - $315.9k

    Government and Public Sector - Assurance - Tech Risk - Senior Manager - TS SCI Clearance Location: McLean Other locations: Primary Location Only Date: May 7, 2026 Requisition ID: 1707339 At EY, we’re all in to shape your future with confidence. We’ll help you succeed... 
    Summer holiday
    Work at office
    Local area
    Flexible hours

    Ernst & Young Advisory Services Sdn Bhd

    Mc Lean, VA
    5 days ago
  •  ...innovative financial solutions. You will apply your financial management and data analytics expertise to solve complex client problems and...  ...client sales of additional actuarial, financial, and/or risk solutions Provides consulting quality reviews and client delivery... 
    Temporary work
    Work at office
    Local area
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    Willis Towers Watson

    Potomac, MD
    4 days ago
  • $138.3k - $315.9k

     ...marketplace. Your key responsibilities As a member of our Technology Risk (IT Audit) team, you will serve as a key resource in delivering...  ...for example, IT general and application controls, risk management, information security, and information assurance Take a practical... 
    Summer holiday
    Work at office
    Local area
    Flexible hours

    Ernst & Young Oman

    Mc Lean, VA
    4 days ago
  • $151.9k - $173.4k

    Fraud Risk Manager - Business Cards and Payments, Hybrid Business Cards & Payments manages Capital One's Corporate and Small Business credit, charge cards, and emerging B2B payment functions. In this Fraud Risk Manager role, you will be responsible for leading a team of... 
    Full time
    Part time
    Local area

    Capital One

    Mc Lean, VA
    1 day ago
  • By Light Professional IT Services in McLean, VA is seeking a Project Risk Manager to support the US Army Comprehensive Modernization program. The ideal candidate will evaluate and mitigate financial and performance risks. Requirements include a Bachelor’s Degree, 5+ years... 
    Work at office

    By Light Professional IT Services

    Mc Lean, VA
    2 days ago
  • $96k - $144k

    Freddie Mac is seeking a motivated individual to support risk management practices in McLean, VA. This hybrid position requires a Bachelor's Degree along with 5+ years of related business experience. The role involves collaborating with partners to document technology needs... 

    Fairygodboss

    Mc Lean, VA
    5 days ago
  • $151.9k - $173.4k

    Strategic Risk Manager We are seeking a Strategic Risk Oversight Manager to join the Strategic Risk team. This exciting, high visibility role provides independent oversight, review and challenge of strategic risks resulting from competition, the external environment, or... 
    Full time
    Part time
    Local area

    Capital One

    Mc Lean, VA
    5 days ago
  • $151.9k - $173.4k

    Capital One is seeking a Risk Manager to enhance its policy program in McLean, Virginia. The role focuses on collaborating with diverse stakeholders to ensure governance and improve policy quality. Ideal candidates should possess a Bachelor's degree and significant experience... 

    Information Technology Senior Management Forum

    Mc Lean, VA
    1 day ago
  • $161.5k - $184.3k

    Sr. Risk Manager, Well Managed Team - Business Cards & Payments Level: Senior Manager, People Leader Locations: Richmond - VA, McLean - VA, Plano - TX, or New York - NY. Type: This is a Hybrid position. In Business Cards and Payments, we’re on a mission to pave the... 
    Full time
    Part time
    Work at office
    Local area

    Capital One

    Mc Lean, VA
    4 days ago
  • $96.5k - $110.1k

    Capital One National Association in McLean, VA is looking for a Card Vertical Risk Manager, Senior Associate. This role involves supporting risk management activities across multiple business areas and collaborating with stakeholders to ensure effective risk transparency... 

    Capital One National Association

    Mc Lean, VA
    2 days ago
  • Capital One is looking for a Principal Associate, Risk Manager in McLean, VA to join their Card Risk team. The role involves managing multiple risk events concurrently and collaborating with various teams to enhance the company's risk profile. Candidates should possess... 

    Capital One

    Mc Lean, VA
    4 days ago
  • $164.8k - $188.1k

    Overview Manager, Risk Data Product Manager. Product Management at Capital One is a booming, vibrant craft that requires reimagining the status quo, finding value creation opportunities, and driving innovative and sustainable customer experiences through technology. We... 
    Full time
    Part time
    Local area

    Information Technology Senior Management Forum

    Mc Lean, VA
    1 day ago
  • A leading financial services provider is seeking a Senior Risk Manager for their Well Managed Team. This hybrid role focuses on enterprise risk management, leading initiatives with strong collaboration across teams. Candidates should have over 6 years in risk and project... 

    Capital One

    Mc Lean, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Risk Manager. Be the first to apply!