Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Defense & Security, IT Risk and Controls Consultant

Dovel Technologies, Inc

  • # Defense & Security, IT Risk and Controls ConsultantApplylocations: US - VA, McLean: US - VA, Arlingtontime type: Full timeposted on: Posted Yesterdayjob requisition id: 40393**Job Family:**IT Risk & Controls Consulting**Travel Required:**Up to 10%**Clearance Required:**Ability to Obtain Public Trust**What You Will Do****:**Our professionals help our clients to identify, evaluate, and solve some of their most complex challenges, assisting them in achieving their strategic goals and objectives to fulfill their mission. We help our clients transform their business processes, improve efficiency of operations, evaluate and improve internal controls, strengthen policies and controls, increase transparency and performance management, and comply with Federal laws and regulations.The nature of our projects can be fluid and requires self-motivated individuals that are willing to develop solutions on their own or in a team of highly skilled professionals. Project team members are provided the opportunity to interact with our clients’ senior management, as well as the opportunity to enhance their skills in the area of technical competency, business development, client service, leadership, project management, and people development.The IT Risk and Controls Consultant will support stakeholder engagement and technical delivery for efforts supporting client organizations with IT controls audit/assessments, remediation, and other related support. The client is responsible for coordinating and monitoring internal controls for the organization, including performing assessments in accordance with OMB Circular A-123, the FISCAM, and assisting other program offices with remediation and other related internal controls tasks. This is an ideal role for someone with an IT audit background who is looking to utilize their skills to support clients internally as a consultant rather than as an external auditor.The IT Risk and Controls Consultant will have a role in working directly with clients and other organizational stakeholders to support IT internal control efforts, including audits/assessments, remediation, and other ad-hoc efforts.This role will support a Government agency within the homeland security enterprise with opportunities to expand your support to other national security-related organizations. **Day-to-day tasks include some or all of the following:*** Performing rigorous audits/assessments of IT controls using industry-standard guidance and leading practices* Performing walkthrough interviews and maintaining communication with a variety of client stakeholders, including system personnel such as system and database administrators* Requesting, obtaining, reviewing, and analyzing a variety of artifacts to assist in executing IT controls testing such as security plans, SOPs, system screenshots, and system configuration settings* Evaluating the design and operating effectiveness of IT controls using provided artifacts, industry-standard guidance, leading practices, and professional judgment* Professionally documenting the results of IT controls test work in a consistent and high-quality manner that would allow a reviewer to repeat the test and reach the same conclusion* Summarizing and communicating IT controls assessment results to a variety of client stakeholders, including senior leadership personnel* Planning and executing day-to-day activities of IT controls assessments individually and for the team* Working with client personnel to understand and analyze known IT control weaknesses, identify root causes, and develop detailed, robust remediation plans* Providing subject matter expertise to client personnel on all matters relating to IT controls and responding to ad-hoc IT controls requests from client personnel* Developing documents to support internal control assessment planning decisions and control identification* Supporting the development of corrective action plans to resolve material weaknesses, significant deficiencies, and control deficiencies* Reviewing financial system modernization production environment functionality and application controls to provide input regarding audit readiness.* Assessing incremental financial system modernization efforts as well as in-production and in-development environments with regards to audit readiness and future risks* Preparing presentations, briefing materials, standard operating procedures, frequently asked questions, guides, and white papers that effectively support organizational efforts to promote awareness and understanding of OMB A-123 and internal controls**What You Will Need:*** Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY are preferred.* Bachelor's Degree* TWO (2) or more year' experience in IT controls, audit, assessment, AND/OR remediation**What Would Be Nice To Have:*** Master's Degree* Certified Information Systems Auditor (CISA) certification* Demonstrates knowledge and experience in IT risk and controls through IT audits, IT control assessments, and IT security reviews. Demonstrates a working knowledge of IT audit, the FISCAM, and other relevant federal information assurance laws, regulations, and guidance.* Experience supporting an internal control program* Experience performing IT audits, OMB Circular A-123 or similar internal control assessments, and/or remediating and implementing IT controls is preferable. Experience testing or remediating some or all of the following IT controls topic areas is preferable:* Access and account management, including authorization, provisioning, recertification, and separation* Segregation of duties, including identifying and defining segregation of duties risks and conflicts, preventive and detective segregation of duties controls, and understanding the difference between segregation of duties and least privilege* Technical account management controls, such as password length, complexity, and expiration* Audit logging and monitoring, including generation of audit logs, use of audit log aggregation and analysis tools, and audit log monitoring and review* Configuration management, including configuration baseline concepts, baseline deviations, baseline maintenance, monitoring for ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS benchmarks* Change management, including authorization, development, testing, and deployment of changes* Contingency planning, including backups, testing of backups, and alternate site **What We Offer:**Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.Benefits include:* Medical, Rx, Dental & Vision Insurance* Personal and Family Sick Time & Company Paid Holidays* Position may be eligible for a discretionary variable incentive bonus* Parental Leave and Adoption Assistance* 401(k) Retirement Plan* Basic Life & Supplemental Life* Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts* Short-Term & Long-Term Disability* Student Loan PayDown* Tuition Reimbursement, Personal Development & Learning Opportunities* Skills Development & Certifications* Employee Referral Program* Corporate Sponsored Events & Community Outreach* Emergency Back-Up Childcare Program* Mobility Stipend
  • J-18808-Ljbffr Dovel Technologies, Inc

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Defense & Security, IT Risk and Controls Consultant in Mc Lean, VA vacancy
  •  ...Technologies, Inc in McLean, VA is looking for a Consultant - Financial Management to join their...  ...management structure, focusing on Defense & National Security. Your responsibilities will include performing IT risk and controls assessments, ensuring compliance with federal... 
    Risk

    Dovel Technologies

    Mc Lean, VA
    2 days ago
  •  ...Consultant, Campus Defense & Security Federal Audit Readiness and Internal Control Our 2026 Campus Defense & Security Federal Audit Readiness and Internal Control consultants...  ...Conducting entity level controls, risk management, and fraud risk assessments Providing... 
    Risk
    Temporary work
    Summer work
    Flexible hours

    Guidehouse

    Mc Lean, VA
    5 days ago
  • Dovel Technologies, Inc is looking for a Consultant in McLean, Virginia to support government agency initiatives in internal controls and risk management. This full-time position involves evaluating financial processes, supporting audit activities, and developing solutions... 
    Risk
    Full time

    Dovel Technologies, Inc

    Mc Lean, VA
    2 days ago
  • ## Consultant - Financial Management (FM) IT Risk and Controls - Defense & Security - Campus 2026Applylocations: US - VA, McLean: US - IN, Indianapolis: US - TX, San Antonio: US - FL, Tampa: US - AL, Huntsvilletime type: Full timeposted on: Posted Yesterdayjob requisition... 
    Risk
    Temporary work
    Summer work
    Flexible hours

    Dovel Technologies, Inc

    Mc Lean, VA
    2 days ago
  • ## Defense & Security, Internal Controls, Audit Remediation, Readiness, and Risk Management ConsultantApplylocations: US - VA, McLean: US - VA, Arlingtontime type: Full...  ...id: 40394**Job Family:**Finance & Accounting Consulting**Travel Required:**Up to 10%**Clearance Required... 
    Risk
    Temporary work
    Flexible hours

    Dovel Technologies, Inc

    Mc Lean, VA
    2 days ago
  •  ...Research and Policy Analyst Export Controls and End-Use Monitoring *** As...  ..., end-use monitoring, and risk assessments related to international defense trade and export controls. This...  ...in accordance with U.S. national security and foreign policy objectives.... 
    Risk
    Full time
    Contract work
    Work at office

    Cherokee Federal

    Washington DC
    7 hours ago
  •  ...We Are: At SES Space & Defense, we are a trusted partner...  ...technology solutions that provide secure, reliable, and high-bandwidth...  ...areas such as budgeting, cost control, variance analysis, revenue recognition...  ...support program execution, risk management, and strategic... 
    Risk
    Contract work
    Local area

    DRS Global

    Reston, VA
    8 hours ago
  • $142.9k - $266k

    Job Description OT & Defense Critical Infrastructure Cybersecurity EngineerThe Opportunity...  ...) systems. Provide expert guidance on securing industrial control systems (ICS), SCADA environments, and...  ...and engineering teams on compliance, risk management, and advanced threat... 
    Risk
    Full time
    Part time
    Local area

    Booz Allen Hamilton

    Arlington, VA
    6 days ago
  • $130k - $160k

     ...activities and manage risk. CPMG offers flexible,...  ...solutions for Department of Defense (DoD) contractors,...  ...technology, electronic security surveillance, and support...  ...experienced Principal Consultant to support the United States...  ...and improve complex IT systems in mission-... 
    Risk
    Contract work
    For contractors
    Work at office
    Flexible hours

    Goldbelt

    Washington DC
    3 days ago
  • A federal consulting firm is seeking an experienced IT Advisory Manager to lead IT risk and controls assessments for federal agencies. The ideal candidate will have extensive experience in information security and IT audits, focusing on identifying weaknesses and developing... 
    Risk

    Dovel Technologies, Inc

    Mc Lean, VA
    6 days ago
  •  ...The Compliance Testing (CT) team conducts risk‑based, independent testing across the...  ...an impactful role on the second line of defense (2LOD) Compliance Testing (CT) team by leading...  ...assess the adequacy and effectiveness of controls in place to mitigate risk of non‑... 
    Risk
    Work at office

    Fairygodboss

    Mc Lean, VA
    2 days ago
  • $120.8k - $137.9k

    Role Overview Card Vertical Risk Manager (VRM) role supports Card Data leadership in controls oversight & innovation, script governance, and feature governance. The Card Risk role supports the Card Data Now team within Card Data Models Decisioning and Credit (DMDC). Principal... 
    Risk
    Full time
    Local area

    Capital One

    Mc Lean, VA
    3 days ago
  • $112.8k - $257k

    Enterprise Cybersecurity and IT Risk Management Operations Lead Job Number: R0241238 The...  ..., product risk assessment execution, security findings tracking, vulnerability risk coordination...  ..., collaborating with technical teams, control owners, product owners, business... 
    Risk
    Full time
    Part time
    Local area

    Phase2 Technology

    Mc Lean, VA
    2 days ago
  • $96.5k - $110.1k

    The Card Vertical Risk Manager (VRM) role supports Card leadership...  ...across multiple lines of defense. These activities include product...  ...and exams, new intent delivery, control advisory, and more....  ...relationships to collaborate and consult with key stakeholders Collecting... 
    Risk
    Full time
    Part time
    Work at office
    Local area

    Capital One National Association

    Mc Lean, VA
    2 days ago
  • ## Defense & Security, Financial System Implementation Readiness ConsultantApplylocations...  ...:**Finance & Accounting Consulting**Travel Required:**Up to 10%...  ...and improve internal controls, strengthen policies and...  ...be process documentation and risk control matrices to identify... 
    Risk
    Temporary work
    Flexible hours

    Dovel Technologies

    Mc Lean, VA
    2 days ago
  •  ...company, BWXT is a Fortune 1000 and Defense News Top 100 manufacturing and...  ...effective nuclear solutions for global security, clean energy, environmental...  ...analyst also evaluates internal controls over financial reporting, identifies risks or weaknesses, and recommends improvements... 
    Risk
    For contractors
    Local area
    Flexible hours
    3 days per week

    BWX Technologies

    Vienna, VA
    5 days ago
  • $142k - $212k

    Freddie Mac is seeking a Tech Lead for the Risk Assurance team in McLean, Virginia. This role focuses on executing control testing and Quality Assurance while leveraging...  ...experience in Information Technology or Information Security, a strong educational background, and... 
    Risk

    Fairygodboss

    Mc Lean, VA
    2 days ago
  • $68k - $102k

     ...EO&T) RM team provides risk management services within...  ...at Freddie Mac. The IT Risk Associate will assist...  ..., assisting risk and controls self-assessments (RCSAs...  ...of the First Line of Defense, the associate will work...  ...Degree in an Information Security, Data Analysis or... 
    Risk
    Work at office

    Fairygodboss

    Mc Lean, VA
    5 days ago
  •  ...leading global professional services company is seeking a motivated Senior Associate in Risk Technology to manage client engagements, focusing on SAP application risk and controls. The role demands communication and project management skills alongside 2-3 years of relevant... 
    Risk
    Flexible hours

    Ernst & Young Oman

    Mc Lean, VA
    4 days ago
  • ## Consultant - Defense & Security Segment - 2026 (Evergreen)Applylocations: US - VA,...  ...operations, strengthen policies and controls, increase transparency and...  ...and programs to identify risks and help develop, apply,...  ..., Finance, Business, IT, Computer Science, Audit Readiness... 
    Risk
    Temporary work
    Summer work
    Flexible hours

    Dovel Technologies, Inc

    Mc Lean, VA
    2 days ago
  • $69.7k - $115.2k

    Ernst & Young Oman is seeking a Technology Risk professional to join their team in...  ...services on financial statement audits and IT control projects. You will collaborate with clients...  ...into risk management and information security. The ideal candidate will have a Bachelor... 
    Risk
    Flexible hours

    Ernst & Young Oman

    Mc Lean, VA
    1 day ago
  •  ...to our customers across defense, civilian, and homeland security sectors. Our teams work at...  ...of our work as a federal consulting organization, employees may be expected to handle Controlled Unclassified Information...  ...work, ticket numbers, and risks/issues with proposed solutions... 
    Risk
    Full time
    Contract work
    Temporary work
    Local area
    Remote work

    Aretum

    Mc Lean, VA
    3 days ago
  • A defense consulting firm in Falls Church, VA, is seeking a Financial Management Analyst at the Jr. Level. This role involves providing financial...  ...Agency. Responsibilities include assisting in internal control evaluations, managing audit requests, and maintaining... 
    Risk
    Remote work

    Montcure LLC

    Falls Church, VA
    4 days ago
  •  ...Projects. “A U.S.-based defense technology subsidiary is seeking an IT Regulations Leader in...  ...and technical leaders (IT Security, GRC, IT Operations, C-Level...  ...and plans surrounding risk, compliance, IT Security,...  ...documentation, updates and overall controls is preferred.... 
    Risk

    Unique Hardware Software Systems Company in Major Growth Mod...

    Reston, VA
    16 days ago
  • Dovel Technologies, Inc is seeking an IT Risk and Controls Consultant in McLean, VA. The role demands rigorous IT audit/assessment skills to support government agency engagements. Responsibilities include evaluating IT controls, communicating results to senior leadership... 
    Risk

    Dovel Technologies

    Mc Lean, VA
    2 days ago
  • $112.8k - $257k

    OT & Defense Critical Infrastructure Cybersecurity Engineer The Opportunity: Serve as...  ...) systems. Provide expert guidance on securing industrial control systems (ICS), SCADA environments, and...  ...and engineering teams on compliance, risk management, and advanced threat mitigation... 
    Risk
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    4 days ago
  •  ...Manager Cymulate's Continuous Security Validation enables companies...  ...test and verifies security controls using real-world attacks,...  ...vulnerabilities and assurance that defenses are effective. This is not...  ...the CISO level on security risk and program strategy in the... 
    Risk
    Shift work
    Day shift

    Cymulate Ltd

    Washington DC
    1 day ago
  •  ...technologies. The ideal candidate will have over 9 years of relevant experience and an active TS/SCI clearance, with the ability to advise on complex policy integrations and develop risk assessments for senior leadership. #J-18808-Ljbffr Huntington Ingalls Industries
    Risk

    Huntington Ingalls Industries

    Arlington, VA
    3 days ago
  • $99k - $225k

    SOX IT General Controls Lead You will play a critical role in managing operational risk, regulatory risk, and risk related to financial reporting...  ...to, Application Logical Security, Application Change...  ...with Workiva Knowledge of Defense Federal Acquisition Regulation... 
    Risk
    Local area

    Booz Allen Hamilton

    Mc Lean, VA
    5 days ago
  • $120k - $135k

     ...Senior Security Control Assessor Cybersecurity Blu Omega is seeking a Senior...  ...comprehensive assessments of IT systems' security/privacy...  ...in accordance with the NIST Risk Management Framework (RMF). The...  ...programs across civilian and defense sectors, partnering with... 
    Risk
    Permanent employment
    Temporary work

    Blu Omega

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Defense & Security, IT Risk and Controls Consultant. Be the first to apply!