Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Risk Management Framework (A&A) Manager

$130k - $216k

Guidehouse

Job Family :

Cyber Consulting

Travel Required :

Up to 10%

Clearance Required :

Ability to Obtain Public Trust

What You Will Do:

The RMF / A&A Manager provides senior leadership and strategic oversight for federal cybersecurity authorization, compliance, and audit programs supporting Ginnie Mae enterprise and cloud environments. This role is accountable for end to end execution of the Risk Management Framework (RMF), Assessment & Authorization (A&A), FedRAMP integration, and IT audit support, ensuring sustained compliance with FISMA, NIST, OMB mandates, and agency policies.

The Manager serves as the primary interface with government leadership and drives delivery excellence across multiple concurrent authorizations, audits, and third party assessments.

Key Responsibilities

  • Provide programmatic leadership across RMF, A&A, FedRAMP, and IT audit activities for major and minor systems and cloud platforms.

  • Direct multi disciplinary teams delivering authorization packages, audit responses, third party assessments, and remediation activities.

  • Serve as senior advisor to Authorizing Officials (AO), CISO, IAM, CTA, and System Owners on risk posture, authorization decisions, and compliance strategy.

  • Oversee FedRAMP P ATO reviews, agency control inheritance analysis, risk acceptance documentation, and authorization recommendations.

  • Lead third party assessment (3PAO) coordination and ensure quality, consistency, and timeliness of Security Assessment Reports (SARs).

  • Ensure development and maintenance of all RMF artifacts (SSP, SAR, POA&M, BIA, PIA, ISA, FIPS 199, contingency plans, and risk acceptance).

  • Lead enterprise audit readiness and execution for FISMA, financial system audits, and SSAE 18 reviews.

  • Establish governance processes, SOPs, metrics, dashboards, and executive level reporting.

  • Drive continuous improvement of RMF and audit processes to enhance efficiency, quality, and sustainability.

What You Will Need:

  • Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred.

  • Advanced experience leading federal RMF, A&A, and cybersecurity compliance programs.

  • A Minimum of EIGHT (8) years of experience supporting federal RMF / A&A programs

  • Minimum of THREE (3) years experience leading RMF, A&A, or cybersecurity compliance teams

  • Demonstrated leadership of consulting or government teams supporting enterprise security initiatives.

  • Deep expertise in NIST RMF, FISMA, FedRAMP, and OMB cybersecurity directives.

  • Proven experience supporting cloud authorization and high impact federal systems.

  • Strong executive communication, stakeholder management, and risk advisory skills.

  • Demonstrated experience leading cloud A&A efforts (IaaS, PaaS, SaaS)

What Would Be Nice To Have:

  • CISSP, CISM, or equivalent senior cybersecurity certification.

  • Experience managing IT and financial system audits (FISMA, SSAE 18, OIG)

  • FedRAMP authorization or 3PAO leadership experience.

  • Experience supporting financial systems or HUD related clients.

  • Experience implementing governance workflows using ServiceNow or similar tools.

The annual salary range for this position is $130,000.00-$216,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.

What We Offer :

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical, Rx, Dental & Vision Insurance

  • Personal and Family Sick Time & Company Paid Holidays

  • Position may be eligible for a discretionary variable incentive bonus

  • Parental Leave and Adoption Assistance

  • 401(k) Retirement Plan

  • Basic Life & Supplemental Life

  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts

  • Short-Term & Long-Term Disability

  • Student Loan PayDown

  • Tuition Reimbursement, Personal Development & Learning Opportunities

  • Skills Development & Certifications

  • Employee Referral Program

  • Corporate Sponsored Events & Community Outreach

  • Emergency Back-Up Childcare Program

  • Mobility Stipend

About Guidehouse

Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation.

Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.

If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at View phone number on click.appcast.io or via email at View email address on click.appcast.io . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.

All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or View email address on click.appcast.io . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.

If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact View email address on click.appcast.io . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties.

Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Risk Management Framework (A&A) Manager in Hanover, MD vacancy
  • $105k - $140k

     ...Technical Project Manager (TPM) – DISA / PEO Transport Specialization By Light Professional...  ...maintain integrated master schedules, risk management plans, and execution roadmaps...  ...transport‑layer strategy, and cybersecurity frameworks. Implementation & Deployment... 
    Suggested
    Work experience placement
    Worldwide

    By Light Professional IT Services

    Hanover, MD
    7 hours ago
  • $129.1k - $209.9k

     ...Overview Job Summary: The Sr. Delivery Manager - AI Strategy & Enablement will serve as...  ...role will establish the operating model, frameworks, and infrastructure required to scale AI...  ...and technology strategy. Governance & Risk Management: Establish AI governance frameworks... 
    Suggested
    Temporary work
    Work at office

    Allegis Group

    Hanover, MD
    3 days ago
  • $152k - $228k

     ...Exempt Position Description: Lead, direct, and coordinate management of Self-Perform Operations (SPO) projects, including overall...  ..., staffing, proactive planning and implementation, budget, and risk management. Essential Duties & Key Responsibilities:... 
    Suggested
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Flexible hours

    Turner Construction

    Halethorpe, MD
    15 hours ago
  • $171.6k - $392.1k

     ...ServiceNow – ServiceNow AI Architect Senior Manager ​In the digital economy, it takes...  ...agentic workflows, and robust AI governance frameworks. Your responsibilities will include...  ...maintaining a strong focus on quality and risk management. This position offers a unique... 
    Suggested
    Summer holiday
    Worldwide
    Flexible hours

    EY

    Baltimore, MD
    7 hours ago
  • $142.6k - $261.5k

     ...ServiceNow– ServiceNow AI Architect Manager In the digital economy, it takes more...  ...agentic workflows, and robust AI governance frameworks. Your responsibilities will include leading...  ..., ensuring a strong focus on quality and risk management. This role presents exciting... 
    Suggested
    Summer holiday
    Worldwide
    Flexible hours

    EY

    Baltimore, MD
    5 days ago
  • $152.3k - $228.5k

     ...career. The Sector Quality Compliance Manager is a catalyst for building a world-class...  ...courses of action and balancing risk/reward implications for programs or areas...  ...Quality Management System (QMS) compliance framework Assures the QMS complies with industry... 
    Full time
    Relocation package
    Shift work

    Northrop Grumman

    Linthicum Heights, MD
    11 hours ago
  • $118.3k - $224.9k

     ...has a great opportunity for an Information Systems Security Manager (ISSM) to add to the existing team of ISSMs, ISSOs, and...  ...(DAAG),DoD Special Access Program (SAP) Security Manuals, Risk Management Framework (RMF), Intelligence Community Directive (ICD-503), Joint Special... 
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work
    Relocation package
    Flexible hours

    Raytheon Technologies

    Columbia, MD
    3 days ago
  •  ...Information Systems Security Manager (ISSM) We are looking for an experienced and dedicated...  ...with relevant standards, and managing risk mitigation strategies. You will lead a...  ...Strong understanding of cybersecurity frameworks (e.g., NIST, ISO 27001) Experience with... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Annapolis Junction, MD
    1 day ago
  •  ...Project Management Office (PMO) Manager Tech Tammina LLC Job Description The PMO Manager will be responsible for the overall leadership...  ...with the organization's project management standards, such as Risk Management, schedule management, quality, and financial... 
    Contract work
    Work at office

    Tech Tammina

    Elkridge, MD
    1 day ago
  •  ...Information Systems Security Manager (ISSM) Strategic Analytix (SA) is an IT engineering...  ...for managing all vulnerability and risk assessments, configuration management, system...  ...familiarity in the NSA/CSS Risk Management Framework (RMF) process and DoD Information... 
    For contractors

    Strategic Analytix

    Fulton, MD
    1 day ago
  •  ...currently seeking an Information Security Manager (ISSM) to provide management support for...  ...information and will manage vulnerability and risk assessment activities to support security...  ...compliance with NSA/CSS Risk Management Framework and DoD Information Assurance... 
    Contract work
    For contractors
    Work experience placement

    Kaizen Approach

    Annapolis Junction, MD
    2 days ago
  • $170k - $190k

     ...seeking an Information Systems Security Manager (ISSM) 2 for a prime contract that is based...  ...Manage the performance of vulnerability/risk assessment analysis to support security authorization...  ...compliance with NSA/CSS Risk Management Framework (RMF) process and DoD Information... 
    Hourly pay
    Contract work
    For contractors
    Work experience placement
    Work at office
    Local area

    Amentum

    Columbia, MD
    4 days ago
  • $131.3k - $237.35k

     ...Description The Senior Security Manager for CMS Endpoints & M365 is responsible for leading...  ...platforms meet accreditation and risk management obligations. M365 Security...  ...Establish SOPs, workflows, and operational frameworks that enhance security posture and operational... 
    Local area
    Immediate start
    Remote work

    Leidos

    Baltimore, MD
    4 days ago
  •  ...from My3Tech*** Position: Senior Technical Project Manager Location: Baltimore, MD 21201 Duration...  ...teams, business stakeholders, and vendors. Conduct risk management within the CMMI framework. Monitor project financials including budget, forecasting... 
    For contractors

    My3Tech Inc

    Baltimore, MD
    3 days ago
  • $147.29k - $199.28k

     ...Description: QUALITY ASSURANCE MANAGER YOUR IMPACT Own your...  ...with program requirements Contribute to risk management, readiness assessments, and strategic...  ...ITIL, ITSM, or similar service management frameworks Experience supporting enterprise governance... 
    Temporary work
    Immediate start
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Annapolis Junction, MD
    4 days ago
  • $81.4k - $153.5k

     ...there's nowhere like RSM. Consulting Manager- Payroll Services Payroll...  ...responsibilities, SLAs, KPIs, and escalation frameworks. ~ Present recommendations and business...  ...cadence including status reporting, risk management, and executive steering updates... 
    Work experience placement
    Internship
    Local area

    RSM US LLP

    Baltimore, MD
    4 days ago
  • $105.1k - $192.6k

     ...world. Tax - Indirect - Sales and Use - Manager Will you shape the future or will...  ...models, processes, and compliance frameworks that raise efficiency and meet requirements...  ...Identify potential opportunities and risks and communicating these to our clients... 
    Summer holiday
    Flexible hours

    EY

    Baltimore, MD
    4 days ago
  • $185k - $277k

     ...Hybrid/Remote Job Overview The Senior Manager of Enterprise Security is a technical...  ...Engineering, IT, Legal, and Governance, Risk, and Compliance, this leader translates security...  ...tier and coverage mapped torelevant frameworks. ~ Design and operate an... 
    Work at office
    Remote work

    Relativity

    Baltimore, MD
    15 hours ago
  •  ...teams through the complexities of the Scrum framework. If you're ready to make an impact and...  ...SIMILAR CAREER TITLES Agile Coach, Project Manager, Agile Project Manager, Scrum Lead,...  ...management and prioritization Experience in risk management and mitigation DESIRED... 
    Temporary work
    For contractors
    Immediate start
    Remote work
    Flexible hours

    Cymertek

    Annapolis Junction, MD
    7 hours ago
  •  ...evaluation, selection, deployment, and lifecycle management of technologies, translating organizational...  ...performance. Establish and enforce IT governance, risk management, security, and regulatory compliance frameworks across the area of responsibility. Lead... 
    Full time
    Contract work
    Work experience placement
    Local area
    Day shift

    Johns Hopkins Medicine

    Baltimore, MD
    15 hours ago
  • $84.63k - $112.84k

     ...The Role The Senior Technical Project Manager within the GCO Front Door is...  ...workstream engagement, manages presales risks and dependencies, and ensures that customer...  ...Delivery teams Familiarity with governance frameworks, intake models, or enterprise operating... 
    Full time
    Contract work
    Temporary work
    Remote work

    Lumen

    Baltimore, MD
    4 days ago
  • $95k - $130k

     ...PRE-CONSTRUCTION MANAGER ROLE SUMMARY: Deliver conceptual, schematic and design development level estimating, negotiated project final...  ...Integrity, Teamwork, Health. Problem Solving and Decision Making Risk Management Relationship Building Strategic Thinking... 
    Contract work
    For subcontractor
    Casual work

    Plano-Coudon

    Columbia, MD
    1 day ago
  • $64.7k - $82.47k

     ...Job Title: Exhibit Operations Manager Posting Date: May 2026 Job Department: Exhibit...  ...and designers, as requested. Maintain risk management and SDS compliance for the...  ...colleagues and ourselves, and serve as the framework to guide our behaviors and actions to achieve... 
    Full time
    For contractors
    For subcontractor
    Work at office
    Local area
    Flexible hours

    National Aquarium

    Baltimore, MD
    10 hours ago
  • $127.1k - $190.7k

     ...to bring your pioneering spirit to our collaborative teams. As a Manager Contract Administration - Manager Level 2 located in Linthicum,...  ...strong customer satisfaction, successful financial performance, risk mitigation, change management, and new business strategy. Additionally... 
    Contract work
    Remote work
    Relocation package
    Shift work

    Northrop Grumman

    Linthicum Heights, MD
    1 day ago
  • $111.3k - $215.1k

     ...as we are, join our team. KPMG is currently seeking a Manager Contracts (State & Local Government) to join our Enterprise Contracting...  ..., escalate clauses for review to subject matter experts, risk management, independence, and office of general counsel, ensuring... 
    Contract work
    H1b
    Work at office
    Local area

    KPMG

    Baltimore, MD
    1 day ago
  • $55k - $119.6k

     ...to the company's success. As an Account Manager within PNC's Financial Wellness Solutions...  ...customized customer solutions. Managing Risk - Assessing and effectively managing all...  ...support PNC's Enterprise Risk Management Framework. Qualifications Successful... 
    Full time
    Contract work
    Temporary work
    Part time
    Work experience placement
    Work at office

    PNC

    Baltimore, MD
    3 days ago
  • $160.9k - $269.28k

    Senior MEP Manager - Pharma Job Locations US-IL-Chicago | US-PA-Philadelphia | US-VA-Arlington | US-MD-Baltimore | US-NC-Raleigh...  ...mindset when considering solutions to long-term opportunities and risks that may develop in the future. Your core values match Gilbane... 
    For contractors
    Work at office
    Local area

    Gilbane Building Company

    Baltimore, MD
    15 hours ago
  • $10k

     ...Description: Columbia Technology Partners is seeking a Configuration Manager to implement and maintain configuration management (CM) and...  ..., project management, systems/network engineering, security risk management, vulnerability assessments, and mobile security implementation... 
    Temporary work
    For contractors
    Local area

    Columbia Technology Partners

    Annapolis Junction, MD
    2 days ago
  • $72.5k - $108.8k

     ...benefits and services, including dental, vision, disability, absence management, life, supplemental health, medical stop-loss insurance, and...  ...well as fostering client relations and ensuring the accurate risk management of disability claims. What you will do: *... 
    Contract work
    Work at office
    Local area
    Flexible hours
    2 days per week

    Sun Life

    Baltimore, MD
    3 days ago
  •  ...Job Title: Project Manager Job Category: Operations Travel Required: Local Job Summary: Pax Services Group's Project Managers...  ...and implements a budget based on estimates. Conducts risk assessments; reports identified risks to management; provides recommendations... 
    Work at office
    Local area

    Pax Services Group

    Laurel, MD
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Risk Management Framework (A&A) Manager. Be the first to apply!