Cybersecurity Audit Analyst
$100k - $110kKentro
Overview Thank you for considering IT Concepts dba Kentro, where innovation drives opportunity and collaboration leads to success. Our dynamic community of experts is fully committed to advancing our customers' missions, fostering professional growth, and making a positive impact on our communities. By joining our supportive community, you will find that Kentro is dedicated to your personal and professional development. Together, we can drive meaningful change, spark innovation, and achieve extraordinary milestones. Kentro is hiring for a Cybersecurity Audit Analyst to coordinate and support all phases of cybersecurity‑related audit engagements across DOC, serving as the central liaison for planning, evidence curation, packaged responses, and follow‑up actions. The role covers OIG/GAO engagements, annual FISMA activities, OMB A‑123/FMFIA internal controls assessments, and cybersecurity elements of the Annual Financial Statement Audit (general coordination). The scope of this role covers audit coordination; the role does not perform formal control testing or own technical remediation. Additionally, the role supports program maturity by coordinating the continuous assessment of audit risks. It considers known weaknesses and audit recommendations and forecasts audit‑relevant risks from emerging technologies and external threats. These coordination efforts drive measurable improvements in cybersecurity posture and incremental gains in OIG FISMA outcomes. Location: Hybrid in Washington, D.C. Compensation Range: $100,000-110,000/annually. This Job Description reflects the primary duties of the role; however, it is not intended to be all‑inclusive. Team members may be asked to take on additional responsibilities in alignment with customer expectations, business needs, and Kentro’s culture of collaboration and adaptability. Responsibilities Cybersecurity Audit Management Lead planning, coordination, and tracking of cybersecurity audits and assessments, including FISMA, OMB A‑123, FMFIA, and OIG and GAO engagements. Maintain the cybersecurity audit risk register, tracking risks, remediation plans, owners, milestones, and progress. Prepare packaged responses, corrective action plans (CAPs), audit artifacts, and closure documentation for delivery to oversight bodies. Develop or update audit playbooks, process documents, and guidance materials to standardize readiness and engagement execution. Coordinate entrance/exit conferences, walkthroughs, interviews, site visits; manage information requests and due dates. Support development of risk summaries, dashboards, and program‑level reporting (e.g., status of audit activities, open items, milestones). Risk, Compliance & Alignment Monitor risks tied to High Value Assets (HVAs) and audit findings, providing periodic updates to leadership. Ensure coordination activities align with NIST RMF, NIST CSF, FISMA, applicable OMB guidance, and DOC cybersecurity policies. Track known weaknesses and recommendations to inform audit readiness and evidence planning. Stakeholder Engagement Serve as the primary liaison among OCRM, OCOS, ESOC, DOC Operating Units, auditors, and assessment teams. Provide clear communication, regular status updates, and issue escalation as needed to maintain schedule and quality. Develop concise briefings and summaries for leadership and audit stakeholders at key milestones (entrance, fieldwork, exit, close‑out). Tools & Platforms Utilize CSAM (GRC) as the system of record for system security documentation and status. Manage engagement workflow and artifacts through the DOC Audit Management System (ServiceNow); maintain request logs, evidence, and dashboards. Use collaboration/reporting tools (e.g., SharePoint, Excel/Power BI, MS Project) for repository management, trackers, and executive‑ready summaries. Qualifications Bachelor’s degree in Cybersecurity, Information Assurance, Information Systems, or closely related field; or equivalent experience. 3-5 years coordinating Federal cybersecurity audits or oversight engagements (OIG, GAO, FISMA, A‑123/FMFIA, financial statement audits). Demonstrated ability to manage complex audit calendars, artifacts, and multi‑stakeholder coordination under tight deadlines. Strong writing and communication skills to synthesize technical topics into accurate packaged responses and briefings. Qualifications And Certifications Required: Bachelor’s degree in Cybersecurity/Information Assurance/Information Systems or closely related field. Preferred: PMP or FAC/PPM equivalent certification, CompTIA Security+ (or higher DoD 8570/8140‑aligned baseline). Key Competencies Audit coordination & stakeholder management Evidence curation discipline and accuracy Clear written communication; executive‑ready summarization Attention to detail; confidentiality and records stewardship Clearance Requirement US Citizen or Green card holder Ability to obtain and maintain Public Trust adjudication. Must meet updated ID requirements: If you do not currently meet the ID requirements outlined, you must be willing and able to update your current forms of ID in a timely manner to complete the suitability process successfully. The Company We believe in generating success collaboratively, enabling long‑term mission success, and building trust for the next challenge. With you as our partner, let’s solve challenges, think innovatively, and maximize impact. As a valued member of our team, you have the unique opportunity to work in a diverse range of technology and business career paths, all while supporting our nation and delivering innovative technology solutions. We are a close community of experts that pride ourselves on creating an environment defined by teamwork, dedication, and excellence. We hold three ISO certifications (27001:2013, 20000-1:2011, 9001:2015), two CMMI ML 3 ratings (DEV and SVC) and CMMC Level 2 Certification. Industry Recognition Growth | Inc 5000’s Fastest Growing Private Companies, DC Metro List Fastest Growing; Washington Business Journal: Fastest Growing Companies, Top Performing Small Technology Companies in Greater D.C. Culture | Northern Virginia Technology Council Tech 100 Honoree; Virginia Best Place to Work; Washington Business Journal: Best Places to Work, Corporate Diversity Index Winner – Mid‑Size Companies, Companies Owned by People of Color; Department of Labor’s HireVets for our work helping veterans transition; SECAF Award of Excellence finalist; Victory Military Friendly Brand; Virginia Values Veterans (V3); Cystic Fibrosis Foundation Corporate Breath Award Benefits We offer competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k including an employer match, discount perks, rewards, and more. We invest in our employees – Every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking. We are committed to supporting your curiosity and sustaining a culture that prioritizes commitment to continuous professional development. We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities – virtual and in‑person – e.g., we host happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy. Commitment Equal Opportunity Employment & VEVRAA Kentro is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state or local law. Kentro is strongly committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. We have developed comprehensive policies and procedures to ensure our hiring practices align with these requirements. As part of our VEVRAA compliance efforts, Kentro has established an equal opportunity plan outlining our commitment to recruiting, hiring, and advancing protected veterans. This plan is regularly reviewed and updated to ensure its effectiveness. We encourage protected veterans to self-identify during the application process. This information is strictly confidential and will only be used for reporting and compliance purposes as required by law. Providing this information is voluntary and will not impact your employment eligibility. Our commitment to equal employment opportunity extends beyond legal compliance. We are dedicated to fostering an inclusive workplace where all employees, including protected veterans, are treated with dignity, respect, and fairness. Accommodations To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable Accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. If you need to discuss reasonable accommodations, please email View email address on click.appcast.io.
- kentro
- J-18808-Ljbffr Kentro
$135k - $143k
...in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's information... ...regulations. Provide advice on security compliance and audit requirements, supporting internal and external audits....SuggestedFull timeContract workCasual workRemote workFlexible hours- ...Description Cybersecurity Analyst – IT Contingency Management Xcelerate Solutions is seeking a Cybersecurity Analyst – IT Contingency Management to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support...SuggestedFull time
- ...team that values community engagement, volunteerism, and employee connection. MBL Technologies is seeking an experienced Cybersecurity Analyst to support cybersecurity architecture, engineering, risk management, and authorization activities for a federal client....SuggestedFull timeRemote work
- ...commercial and government clients, is seeking a full-time Cybersecurity Analyst II to support the government customer located in Washington... ...security control validation in support of enterprise cybersecurity audit and testing activities. Execute approved Ground-Truth and...SuggestedFull timeRemote work
$101.53k - $132.69k
...Location: Executive Office for Immigration Review, 4825 Mark Center Drive, Suite 200, Alexandria, VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee incident response, vulnerability management, and threat analysis for a federal...SuggestedPermanent employmentFull timeContract workTemporary workWork at officeLocal area- ...Clearance Node is supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and... ...Key Resources (CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques...
- Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions...For contractors
- ...Cogent Communications is seeking a Cybersecurity Analyst (Security & AI Governance) to protect the organization’s information assets, technology, applications, cloud environments, data, and AI initiatives from cyber threats and misuse. The role partners with IT, software...
$120k - $160k
...Description SAIC is looking for a Senior Cybersecurity Analyst supports Security Operations functions while helping establish and mature the organization's offensive security capability in support of a critical U.S. Government agency. This position is responsible...Remote work$55.2k - $126k
...Cybersecurity Policy Analyst The Opportunity: Provide support, execution, and management services to a high visibility DoD information assurance client. Provide onsite policy and technical analytical support for Federal Information Security Management Act, cybersecurity...Full timeContract workPart timeWork at officeLocal areaRemote work$50k - $70k
...Cybersecurity Policy Analyst The Company: Censeo Consulting Group is a top Washington D.C. based management consulting firm dedicated to helping public sector and non-profit clients build operational excellence, deliver better outcomes, and lower cost. We take a...Full timeWork at officeRemote workFlexible hours$100k - $130k
...Technology Overview GovCIO is currently hiring a Journeyman Cybersecurity Analyst to support Information Assurance (IA) and Information System... ...their Authorization to Operate (ATO) status. Analyze audit logs and security alerts to identify potential compliance gaps...Full timeCurrently hiringFlexible hours- PrimeLife Therapeutics is seeking a Cybersecurity Analyst to monitor security systems and respond to incidents across enterprise infrastructure. You will perform vulnerability assessments, implement security controls, and conduct penetration testing to strengthen defenses...Contract workFor contractors
- This is a full-time contract position for a Senior Cybersecurity Analyst based in Arlington, Virginia. You will assist with designing, implementing... ...ISO 27000 series. Support internal and external security audits, compliance reviews, and control validation activities....Full timeContract work
- Lafayette Group Inc. in Arlington, VA is seeking a qualified Requirements Analyst to drive requirements from discovery through validation and delivery for national cybersecurity programs. You will gather, analyze, and validate technical and project requirements, collaborating...
- ...small business delivering enterprise IT, cybersecurity, and program management services to the... ...programs. We are seeking a Cybersecurity Analyst / Information System Security Officer (... ...activities, security investigations, audit requests, and cybersecurity reporting as...
- Cogent Communications in Washington, DC seeks a Cybersecurity Analyst (Security & AI Governance) to protect information assets, infrastructure... ...of AI solutions, with duties spanning security monitoring, audits, and continuous improvement. #J-18808-Ljbffr Cogent Communication
$75k - $90k
Kearney & Company Cybersecurity Analyst will play a key role in safeguarding the organization’s data by designing, implementing, and maintaining... ..., Kearney & Company provides financial services, including auditing, consulting, and technology services. Our commitment to our...Local areaFlexible hours- ...comprehensive assessment of a federal agency's cybersecurity. Our mandate is a team of professionals... .... Job Description: Cybersecurity Analyst (Federal Assessments Top Secret Clearance... ...with contract requirements and federal audit expectations. Required Qualifications Active...Contract workFor contractors
$90k - $140k
Job Description: Job Description Spry Squared is looking for a strong Cybersecurity Analyst for our client to provide cybersecurity control solutions that ensure protection of all information and systems. Responsibilities Establishes and satisfies complex enterprise...- Accenture Federal Services in Arlington, VA, seeks a Cybersecurity Incident Response Triage Analyst to join the CIRT team within the CISO organization. The role involves monitoring, triaging, and analyzing alerts from SIEM and security sensors, coordinating with incident...
$100k - $120k
Cogent Communications, based in Washington D.C., is looking for a skilled Cybersecurity Analyst (Security & AI Governance) to safeguard the organization’s information assets and technology infrastructure. This role involves identifying, assessing, and mitigating cyber threats...$100k - $120k
C.C.D. Cogent Communications Deutschland GmbH is seeking a Cybersecurity Analyst (Security & AI Governance) to protect information assets and manage cyber threats. The role involves collaboration with IT teams and business stakeholders to align cybersecurity and AI governance...- ICF in Arlington, VA is seeking a program support analyst to perform independent business, governance, engagement, reporting, and project... ...coordination on critical infrastructure protection and cybersecurity. Based in the client office with hybrid flexibility, you will...Work at office
- TIAG is hiring Cyber Security Analyst to support our team at the Uniform Services University of Health Sciences (USUHS) in Bethesda,... ...(e.g., CASP+, CISM) is highly preferred.2+ years of relevant cybersecurity and information assurance experience, with hands-on exposure to...For contractorsFor subcontractorLocal area
- Senior Cybersecurity Analyst Trident Technologies and Consulting - Global, LLC (d.b.a. T2C-Global) is currently seeking motivated and talented individuals who can offer the knowledge, skills, and experience to support the United States Navy, NAVSEA HQ in administrating...Contract workFor contractorsWork at officeFlexible hours
- ...learn and grow professionally? At Talent Acquisition Concepts, we are changing the way small businesses hire. We are seeking a Cybersecurity Analyst to report to the Cybersecurity Program Manager. This individual will serve as part of an integrated team of engineering and...Local areaRemote work
$90k - $130k
...and celebrate success! Job Summary JCS Solutions is seekinga Cybersecurity Analyst and help protect critical federal systems. In this hands-on... ...and operational metrics. Assist with security assessments, audits, compliance activities, and evidence collection. Stay current...Contract workTemporary workLocal area$127k - $138k
Job Location: Washington D.C., DC 20376. Position Type: Full Time. Salary Range: $127,000.00 - $138,000.00. Title: Cybersecurity Analyst V (Senior). Clearance Type: Secret with the ability to obtain a Top Secret. Responsibilities Lead RMF lifecycle execution: Develop, manage...Full time- Avalore.ai is seeking an Information Security Analyst to design, implement, and manage cybersecurity controls for the War Data Platform (WDP) to meet DoD security requirements and protect systems, data, and applications. The role involves risk assessments, security testing...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Audit Analyst. Be the first to apply!
- cyber security consultant Washington DC
- cybersecurity analyst remote Washington DC
- cyber security specialist Washington DC
- cyber security incident responder Washington DC
- remote cyber security Washington DC
- cyber security Washington DC
- cybersecurity policy and compliance analyst Washington DC
- work from home cyber security Washington DC
- cybersecurity Washington DC
- cybersecurity certificate Washington DC


