Risk-Based Asset Management Lead (RBAM)
Kappaalphapsi1911
- Risk-Based Asset Management Lead (RBAM)Skyward IT SolutionsMDFull-TimeJun 01, 2026Information Technology## Job Description**We are Skyward.** That is, a love for people, for improvement, for human advancement through information technology. We are a people-centered business with a desire to serve others. We are diverse and unified; creative and collaborative; a collection of complementary, not competing talents. And though on the surface we remain relaxed, beneath, a torrent of energy links us to our civic tech mission. We stand by our values, and we won’t compromise on any of them. **Integrity:** We’re conscientious, intentional, and empathetic. Our words and actions align. That’s our character. Please don’t ask us to play another part, we’re poor actors. **Compassionate:** If we may borrow a quote from Theodore Roosevelt: “No one cares how much you know until they know how much you care.” Because our team is thoughtful and supportive, caring deeply for each other, our clients, and our work, this comes naturally. **Inquisitive:** We remain students by failing openly and turning lessons into solutions.**Unconventional:** For us, life isn’t what happens outside of work. Work happens inside of life and our culture erases the line often dividing the two. **Authentic:** Made possible only because we embody the values listed above. We’re relaxed and fun yet intensely curious and driven. Team members are placed with thought, care, and precision to ensure that Trust, Truth, and Transparency continue to represent our brand. Because of that, we continue Onward, Upward, and Skyward. **(\*\*CONTINGENT HIRE BASED ON CONTRACT AWARD\*\*)**We need a Risk-Based Asset Management Lead. If “CVE,” “STIG,” and “baseline drift” show up in your dreams — in a good way — keep reading. You’ll oversee Vulnerability Management, Configuration Management, and Database Management as one integrated practice (not three disconnected silos) and partner with the Risk Management Program to make sure the highest-impact risks get fixed first. If you’ve scaled a vuln program, hardened databases without melting production, and can brief a CISO without melting yourself, we want to talk.Come join us if you’re motivated to learn from others, to learn from mistakes, and to be part of a future-looking, growth-oriented team.Let’s go Skyward together.### What you'll do:* Lead the integrated RBAM practice across Vulnerability Management, Configuration Management, and Database Management, aligning effort with USCIS business priorities and risk tolerance.* Oversee RBAM projects end-to-end: track schedules, facilitate working sessions, and brief leadership and the Government PM/COR on status, risks, and decisions.* Run the vulnerability scanning program using approved tooling. Initiate scans, analyze results, prioritize remediation by impact and likelihood, and ensure adherence to DHS policies and federal regulations.* Continuously monitor emerging threats (CVE, NVD, CISA KEV) and translate them into a prioritized, defensible remediation backlog.* Validate and act on the DHS/CISA Cyber Hygiene Report. Partner with system owners and admins on remediation plans, track progress, and report to leadership.* Support the USCIS software approval process — evaluate new products and technologies for security, compliance, and operational fit.* Establish, document, and enforce configuration management policies, procedures, and baselines across diverse IT environments — with full traceability for changes (documented, tracked, approved, audited).* Use configuration management tooling to monitor and report on system configurations and compliance, identify drift, and resolve configuration-related risks.* Develop and maintain database hardening scripts and processes; translate audit requirements into actionable configurations and evidence artifacts.* Build and refine Splunk dashboards and reporting (and ServiceNow workflows/tickets) so VM/CM posture is visible at a glance — not buried in a spreadsheet.* Author and maintain SOPs and Playbooks for RBAM operations; contribute to the Risk Register, Weekly Status Report, and Monthly Program Management Review.### What we'd like you to have:* Bachelor’s degree in Information Systems / Information Technology, Computer Science, Computer Engineering, Electrical Engineering, related field, or technical degree — or 4 years of relevant experience in lieu of a degree.* An active CASP, GSEC, GSLC, CISSP, CEH, CISM, CISA, or comparable cybersecurity certification.* An active Agile certification: PMI-ACP, SAFe Agilist, CSM, or comparable.* Minimum 7 years of total professional experience, with at least 5 years of technical experience in either: (a) overseeing and managing vulnerability remediation for enterprise environments, or (b) establishing, managing, and enforcing configuration baselines across diverse IT environments — ideally both.* In-depth, working knowledge of CVE, CVSS, NVD, and the CISA KEV catalog. You can prioritize like a pro and explain the prioritization to a non-technical audience.* Deep understanding of Configuration Management principles as defined in NIST SP 800-128.* Strong, hands-on knowledge of system and database hardening best practices using DISA STIGs and CIS Benchmarks.* Familiarity with remediation across Windows, Linux, network devices, containerized environments, and cloud platforms (AWS, Azure, Google).* Hands-on experience implementing and operating SIEM tools — specifically Splunk dashboarding and reporting (creating and modifying dashboards, not just consuming them).* Experience with enterprise ticketing in ServiceNow, including building/altering workflows and reports.* Proficiency in scripting and automation: Python, PowerShell, Bash, and Splunk Search Processing Language.* Familiarity with DevSecOps and CI/CD pipeline development — enough to embed security baselines into pipelines and image-hardening processes.* Ability to incorporate security configuration baselines into CM processes and enforce through OS image hardening, automation, and audit.* Extensive hands-on experience with a wide range of database technologies, including Relational (Oracle, PostgreSQL, MySQL, MS SQL), NoSQL (MongoDB), and Cloud-native (Amazon RDS, Azure SQL, DynamoDB).* Ability to assess and secure both on-premises and cloud-hosted database environments.* Experience implementing and managing audit logging, data masking, and encryption mechanisms.* Experience using scanning tools to verify database hardening compliance and translate audit requirements into actionable configurations and evidence.* Strong written communication for SOPs, playbooks, technical decision memos, and executive-readable risk briefings.* Ability to obtain and maintain a DHS Public Trust suitability determination.### What would blow us away:* Prior experience supporting USCIS, DHS components, or other federal civilian agencies on Vulnerability or Configuration Management programs.* Active PMI certification (PMP, PgMP, or PMI-RMP) on top of the technical creds.* A genuine love for the moment a 9.8 CVSS issue goes to zero — we celebrate those here.### And now the important part. What we offer you:* Medical, dental, vision insurance (fully paid for employees)* 15 days of paid leave* 7 days of sick leave* 2 days bereavement leave* 11 paid Federal holidays* Up to 40 hours for jury duty* 401K with 4% employer contribution (and no vesting period)* Up to 4 weeks of paid paternity and maternity leave* Company provided laptop* $5,000 per year for professional development* $600 per year for technical supplies and equipment* $2,000 referral bonus* Life and disability insurance* HSA and FSA* Legal Shield and ID Shield Voluntary Benefits* Opportunity to work in a collaborative, motivated team focused on modernizing government services with cutting-edge technology and innovative solutions. Who says government work can’t be exciting!We believe great work deserves great pay. That’s why we ensure our compensation is not only competitive but also fair and transparent, as required by Maryland law. Expect a salary that matches your skills, experience, and the value you bring to the table — because you’re worth it!At Skyward, we support flexible working hours and remote opportunities to help maintain a healthy work-life balance for all employees. **Offers of employment with Skyward are contingent upon acceptable results of a background investigation.****Applicants must have the ability to obtain and maintain a Public Trust security clearance due to the nature of our work as a government contractor.**
- J-18808-Ljbffr Kappaalphapsi1911
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Risk-Based Asset Management Lead (RBAM) in Annapolis, MD vacancy
- ...Skyward IT Solutions is seeking a Risk-Based Asset Management Lead to oversee and integrate Vulnerability Management, Configuration Management, and Database Management practices. The successful candidate will work closely with the Risk Management Program to ensure high...RiskAssetRemote work
- ...Strategy Lead, RWD Commercial Strategy & Innovation Company:... ...feasibility thinking across RWD assets, including claims, EMR, lab data... ...clinical notes, and trigger-based datasets, with oversight from... ...to prevent downstream delivery risk Uses SQL proficiency to interrogate...RiskAssetFull timeTemporary workLocal areaRemote workFlexible hours
$136.6k - $338.5k
...infrastructure, enabling efficient management and automation. By... ..., OCI is positioned to lead the industry in cost-... ...across integrated assets Coordinate OEMs, EPCs... ...Maintain commissioning risk register, punch list,... ...that include inverter-based resources (BESS, fuel cells...RiskAssetTemporary workFlexible hours$84.9k - $91.35k
...Position Overview The Asset & Configuration Mgmt Lead directs lifecycle management of hardware and software assets so inventories... ...with budgeting, compliance, and risk‑management objectives. As an IT... ...this role is a general guideline based on these factors and is unique to...RiskAssetContract workWork at office$87k - $178.1k
...% of the time. This Lead Engagement Owner role will... ...program or project management professional with 10+ years... ...& manage project risks, drive mitigation/resolution... ...of project plans based on contractual commitments... ...safeguarding corporate and client assets, and take appropriate...RiskAssetContract workTemporary workWork experience placementLocal areaRelocationFlexible hours- ...making. Actuarial & Analytics Lead: reserve calculations and... ...products; challenge loss provisions; manage IFRS 17 reporting; automate... ...Set strategic direction for risk management; mentor and train analysts... ...(R/Python) is a major asset. Job ID: 41160 Salary: 120‑1...RiskAsset
$87k - $178.1k
...You will mitigate solution risks and issues and lead client meetings and events.... ...abilities include project management, sales scoping, requirements... ...objectives, and deliverables based on client requirements. ~... ...corporate and client assets, and take appropriate action...RiskAssetContract workTemporary workLocal areaFlexible hours$152.7k - $294k
...adoption, and measure risk reduction and time-to-value... ...coordination, and management for the CNAPP program.... ...robust protection of cloud assets and data. Continuously... ...multiple priorities, leading cross‑functional initiatives... ...you’ll be rewarded based on your performance and...RiskAssetSummer holidayFlexible hours$22.3 - $35.2 per hour
Lead Coordinator, Collections About Navista We believe in the power... ...safeguards the organization's assets. Collections is responsible... ...financial health through effective management of outstanding receivables.... ...with credit analysis and risk assessment. What is expected...RiskAssetHourly payTemporary workWork at officeLocal areaFlexible hours$176.4k - $298.32k
...Information Security and Risk contributes to Cardinal... ...'s technology assets from intentional or inadvertent... ...response, threat management, vulnerability scanning... ...responsible for establishing, leading, and evolving the... ...awareness Oversee role-based and executive training...RiskAssetContract workTemporary workLocal areaImmediate startFlexible hours$97.5k - $199.5k
...seeking a skilled Technical Program Manager to join our mission-driven... ...strategic coordination, risk management, and stakeholder communication... ...Release Managers and Delivery Leads with overall integration... ...placed into the range based on the preceding factors as well...RiskTemporary workWork at officeLocal areaFlexible hours$2,500 per month
...cloud development, and enterprise management solutions. We are focused on... ...posted range is determined based on an individual’s experience,... ...selections. Job Description A Lead Penetration Tester is needed to... ...experience performing IT security risk assessments. Must have...RiskLocal areaImmediate startShift work- ...responsible for executing order management and purchasing requirements... ...Chain Manual, and Supply Chain Risk Management procedures Seek... ...efficient Assist in Red River asset procurement Assist in... ...Discrimination or harassment based upon any protected characteristics...RiskAssetContract workWork at officeRemote work
$131.3k - $237.35k
...Lead Penetration Tester Leidos has a new and exciting opportunity... ...), and Cryptographic Key Management. At Leidos , we offer... ...pentests. Perform vulnerability risk assessments. Perform physical... ...: While subject to change based on business needs, Leidos reasonably...RiskLocal areaImmediate startFlexible hoursShift work$169.4k - $279.6k
...Compensation Overview The annual base salary range provided for this... ...-in-class solutions. As a Lead Architect, you will... ...• Help establish governance, risk, and control processes that ensure... ...governance frameworks and model risk management What is a Must Have? ~...RiskTemporary workWork experience placementLocal area- ...responsible for executing order management and purchasing requirements... ...Chain Manual, and Supply Chain Risk Management procedures Seek out... ...Assist in Red River asset procurement Assist in maintaining... ...Discrimination or harassment based upon any protected characteristics...RiskAssetContract workWork at officeRemote work
- ...Crisis24 GSOC Program Manager Crisis24, a GardaWorld company, is widely regarded as the leading integrated risk management, crisis response, consulting... ...Procedures (SOPs) based on client guidance or programmatic... ...Foreign language an asset, and travel experience preferred...RiskAssetCasual workImmediate startFlexible hoursShift workAfternoon shift
$75k - $105k
...is responsible for the overall management of an assigned loan management function within Situs Asset Management ("SAM") and will oversee... .... Support a strong risk management and control environment... ...resume. The annual full time base salary range for this role is...RiskAssetFull timeWork at officeLocal areaRemote work$111.16k - $150.39k
...Integration, IT Configuration Management, Version Control... ...controlled baseline, reducing risk, improving audit... ...ensuring all configuration assets, including test reports... ..., salary will be set based on experience,... ...countries worldwide, offering leading capabilities in digital...RiskAssetTemporary workImmediate startRemote workWorldwideFlexible hours$160k - $200k
...and highly skilled Integration Lead to join our team supporting... ...This is a senior, integration-based leadership role that requires... ...making. Lead the creation and management of integration schedules, migration... ...time, resources, and funding. Risk to future business...Risk- ...pleasing environment, and asset preservation and... ...inspections Assist in the management of procurement and application... ...(OSHA, ADA, EPA etc) Lead maintenance staff in... ...security and effective risk management Read and... ...We do not discriminate based upon race, religion, color...RiskAssetFor contractorsLocal area
$16.75 - $23 per hour
...position serves as the field team lead and provides functional... ...customers and business partners to manage difficult customer situations,... ...periods of time, there may be risk of injury resulting from... ...could be subject to variation based on regulatory minimum wage requirements...RiskMinimum wageWork at officeLocal areaShift workNight shift- ...global consulting firm seeks an experienced IT auditor to manage client engagements in Cloud Risk services. The role involves analyzing internal controls... ...benefits package are provided, including a competitive salary based on performance. #J-18808-Ljbffr Ernst & Young OmanRisk
- ...Description ProSidian is a Management and Operations Consulting Services... ...through tailored solutions based on industry-leading practices. ProSidian... ...Enterprise Service Solutions for Risk Management | Compliance |... ...at the intersections of assets, processes, policies, and...RiskAssetContract workTemporary workFor contractorsFlexible hours
$115k - $145k
...to join our Transaction Management team in Annapolis, MD... ...spanning diverse markets, asset classes, and investment... ...of $115,000-$145,000, based on experience and... ...regulatory compliance and risk management. Operational... ...Demonstrated ability to lead complex transactions and...RiskAssetInternshipH1bLocal area$110k - $150k
...Solutions Lead, Solutions Advisory Company: Norstella Location: Remote, United States... ...knowledge of Norstella's underlying data assets, pipelines, and product architecture.... ...Off & Company Holidays The expected base salary for this position ranges from $110,...AssetFull timeTemporary workLocal areaRemote workFlexible hours$25 - $27 per hour
...global, AI-enhanced provider of travel risk management, mass communications, critical event management... ...in another European/ Asian language an asset but not essential Working Pattern... ...not discriminate against any individual based on race, color, sex, national origin,...RiskAssetHourly paySummer workRemote workShift workRotating shift$7.5k
...Job Brief Portfolio Lead Job Description The RealmOne... ...technical teams, the program management office and corporate leadership... ...and proactively address risks, issues, and operational challenges... ...subject to variation and may differ based on work location, clearance...RiskContract workWork experience placementWork at officeImmediate startFlexible hours$100k
...Maximus is seeking a Certification Lead to manage end-to-end certification activities, including... ...Compensation - Bonus opportunities based on performance. ??? Comprehensive Insurance... ...addressing certification requirements, risks, and stakeholder needs. ~Establish and...RiskRemote work$115.2k - $158.4k
...community The Program Delivery Lead strategically identifies,... ...market leadership towards value-based relationships and/or improved... ...responsible for overseeing and managing eligibility strategy,... ...identify and resolve eligibility risks. This role plays a critical part...RiskBi-weekly payFull timeContract workTemporary workRemote workWork from homeHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Risk-Based Asset Management Lead (RBAM). Be the first to apply!
Related searches
- technology risk Annapolis, MD
- risk assurance Annapolis, MD
- analyst asset management Annapolis, MD
- asset management intern Annapolis, MD
- fixed asset accountant Annapolis, MD
- director of asset management Annapolis, MD
- asset management Annapolis, MD
- executive team lead asset protection Annapolis, MD
- entry level asset management Annapolis, MD
- asset finance Annapolis, MD

