246 information security risk jobs at 116 companies in Washington, DC
2w
Save
Mark Applied
Hide
2w
Senior Information Security Risk Analyst
Washington, District of Columbia, United States
$103k-$191k/yrHybridFull Time
Warner Bros. DiscoveryNasdaq: WBD: Produces and distributes multimedia entertainment content and news worldwide.
3+ YOEBS/BA required, 3+ years information security experience with at least 1 year in third‑party risk management; knowledge of network, access control and encryption; strong communication and analytical skills.
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
5+ YOERequires 5+ years IT experience, 3+ years cybersecurity and DoD A&A, TS/SCI clearance, high school diploma/GED, and DoD 8570 Level II Security+ or higher; cloud, RMF, DevSecOps, and risk assessment experience required.
Assessment and Authorization (A&A), AWS, Azure, ACAS, SCAP, STIGs, eMASS, Xacta, NIST SP 800-53, CNSSI 1253, DevSecOps, CI/CD, Red Hat Enterprise Linux 8, Windows Server 2012, Kubernetes, Rancher
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
5+ YOERequires 5+ years IT experience, 3+ years DoD cybersecurity and A&A experience, TS/SCI clearance, Security+ or higher, cloud security expertise, and a high school diploma or GED.
Google Chrome, Mozilla Firefox, Microsoft Edge, Apple Safari, Opera Browser, Blackberry Browser, AWS, Microsoft Azure, ACAS, SCAP, STIGs, eMASS, Xacta, NIST SP 800-53, CNSSI 1253, Kubernetes, Rancher, Red Hat Enterprise Linux 8, Windows Server 2012, CI/CD
Bank of AmericaNYSE: BAC: Provides banking, investment, and financial risk management services.
5+ YOERequires 5+ years in information security, technology and application security experience, cloud experience with Microsoft Azure, Amazon Web Services and Google Cloud Platform, risk management, and strong communication skills.
Microsoft Azure, Amazon Web Services, Google Cloud Platform, PaaS, SDLC
Bank of AmericaNYSE: BAC: Provides global banking, investing, and financial risk management services.
5+ YOERequires 5+ years in information security, 2–5 years in technology and application development or security, cloud experience with Azure, AWS, and Google Cloud Platform, risk management, and strong communication skills.
Microsoft Azure, Amazon Web Services, Google Cloud Platform, PaaS, SDLC
Asurion: Provides insurance and repair services for consumer electronics.
10+ YOE5+ Mgmt10+ years in information security or related disciplines, 5+ years influencing senior stakeholders; bachelor’s degree or equivalent experience; experience in application, cloud, and architecture security; executive communication and risk advisory skills.
PEMCCO: Provides IT and engineering services for government transportation systems.
10+ YOEBachelor's degree and 10 years' experience in information assurance/cybersecurity, advanced RMF and NIST knowledge, ability to obtain security clearance, strong risk assessment and documentation skills.
Argo Cyber Systems: Provides managed cybersecurity and incident response services to organizations.
5+ YOEU.S. citizen with active TS/SCI clearance preferred; 5+ years info security management (or HS+7), RMF/ATO experience, Linux or AWS experience, POA&M and A&A knowledge, MS Office proficiency, risk assessment and security control implementation.
Linux, Amazon Web Services, CSAM, Xacta, Archer, RegScale, Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp, CrowdStrike, CarbonBlack, Splunk, SOAR, ELK, Microsoft Word, Microsoft Excel, Microsoft Powerpoint, Microsoft Visio, python, AWS CLI, Lambda, bash, powershell
Novul Solutions: Providing cybersecurity, software engineering, and IT solutions for government.
12+ YOEExperience conducting cybersecurity risk assessments in DoD/federal environments; strong knowledge of security planning, assessments, risk analysis, and NIST RMF/800-53; excellent written and verbal communication.
Washington Navy Yard, District of Columbia, United States
$102k-$158k/yrOnsiteFull Time
Strategic Systems Programs: Manages the lifecycle of naval strategic weapon systems.
1+ YOEAt least one year of specialized experience equivalent to NH-02 or GS-11 conducting IT systems, policy, or planning reviews to assess security risks and vulnerabilities.
Information Technology (IT), Systems Security Engineering (SSE)
SinclairNASDAQ: SBGI: Operates television stations and produces news and sports programming
4+ YOEBachelor's in IT/cybersecurity or equivalent experience, 4+ years information security (6 years without degree), 2+ years DLP experience, experience with MS Purview DSPM, Varonis, Zscaler, automation tools (Tines/Torq), Microsoft Excel/Power BI/Power Automate, prompt engineering, multi-cloud, strong communication and AI risk assessment skills.
Data Loss Prevention (DLP), Microsoft Purview DSPM, Varonis, Zscaler, Tines, Torq, Microsoft Excel, Microsoft Power BI, Microsoft Power Automate, GPT
Federal Reserve Board of Governors: The central bank of the United States.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
Base-2 Solutions: Delivers engineering and technology services for national security.
9+ YOERequires active Top Secret/SCI clearance with CI polygraph, a bachelor's degree or equivalent experience, and 9+ years of relevant experience in information security, risk, vulnerabilities, compliance, and incident response.
Xacta, Risk Management Framework (RMF), System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), Plans of Action and Milestones (POAMs), Security Technical Implementation Guide (STIG), ACAS
Ascension Federal Services: Provides security engineering services for government and military networks.
5+ YOEBachelor's degree; CISSP or CISM; 5-10+ years in information systems security engineering; TS/SCI with Full Scope Poly clearance; security policy development and risk management.
Excelity: Provides IT solutions and software engineering for government agencies.
9+ YOERequires TS/SCI with CI Poly, 9+ years of A&A and information assurance experience, RMF and Xacta expertise, control validation, security risk knowledge, and DoD 8140 baseline certification; degree or additional experience required.
XACTA, Risk Management Framework (RMF), ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, Xacta, Splunk, ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality, DISA STIGs, STIG Viewer, AWS, Google Cloud, Red Hat, CentOS, Linux, DevSecOps, Containerized Systems
Peraton: Provides advanced technology and mission support for government agencies.
10+ YOEActive Top Secret with SCI, IAM Level III, extensive information systems security experience (10+ years), ISSM experience, A&A and RMF expertise, NIST/FISMA knowledge, risk assessment and stakeholder engagement skills.
Data Intelligence: Provides engineering and cybersecurity solutions for federal government clients.
3+ YOE3–5 years ISSE experience, Top Secret/SCI with CI Polygraph, knowledge of NIST/ISO 27001/CIS Controls, cloud security, RMF, secure SDLC, incident response, risk assessments, and systems security engineering.
Senior Lead Information Security Office Consultant
McLean or Richmond or New York or Plano
$209k-$286k/yrOnsiteFull Time
Capital OneNYSE: COF: Financial services offering credit cards, banking, and loans.
6+ YOESenior-level information security consulting with cloud and risk management experience; CISSP/CISM/CISA and cloud certifications preferred; 6+ years cybersecurity/IT; 5+ years security architectural guidance; strong communication skills.
Capital OneNYSE: COF: A diversified financial services providing banking and credit products.
7+ YOE5+ MgmtBachelor's degree, 7+ years in cybersecurity or IT, and 5+ years each in people leadership, security risk assessments and architecture reviews, and application development.