65 security governance analyst jobs at 43 companies in Middle River, MD
2w
Save
Mark Applied
Hide
2w
Senior Security Governance and Policy Analyst
Washington, District of Columbia, United States
$145k-$168k/yrOnsiteFull Time
Concurrent Technologies Corporation (CTC): An independent nonprofit applied scientific research and development organization delivering full-lifecycle solutions to government and private-sector clients.
10+ YOEBachelor's degree or equivalent experience, 10+ years of progressive cybersecurity experience, federal and intelligence community program experience, governance, policy, risk, compliance, cloud and on-premises expertise.
NIST Cybersecurity Framework (CSF), NIST Special Publications (800 Series), Risk Management Framework (RMF), FISMA, CNSS, Intelligence Community Directives (ICDs), Zero Trust Architecture
Sidley Austin: Global law firm providing comprehensive legal and regulatory counsel.
5+ YOEBachelor's degree or 5 years relevant experience; knowledge of information governance, records management, data privacy, and information security; experience with cross-functional tech projects and document management systems.
NetDocuments, iManage, Microsoft SharePoint, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft OneDrive, Microsoft Outlook, Intapp Walls, Microsoft Purview, Cyberhaven, Netskope, Proofpoint
CDO Technologies: Private IT services firm providing cybersecurity, infrastructure, logistics, and technology solutions to federal and commercial clients.
10+ YOE10+ years supporting large cybersecurity programs, deep knowledge of Federal/DHS/IC cybersecurity policy, ability to translate policy into actionable plans and oversee execution.
One Federal Solution: Provides professional and technical services to federal government agencies.
10+ YOE10+ years cybersecurity experience; knowledge of Federal, DHS, and IC cybersecurity policy; cloud and on‑premise experience; ability to translate policy into executable plans; CISSP or CISM desired.
Dexian Government Solutions: Private federal government contractor delivering enterprise IT, cybersecurity, cloud, AI/ML, and engineering services to government agencies.
10+ YOE10+ years cybersecurity experience; knowledgeable in Federal, DHS, and IC cyber policy; cloud and on‑premise experience; CISSP or CISM desirable; TS/SCI with CI Polygraph required; meets DoD 8140/WRC 628 requirements.
JWICS, NATO COSMIC, Risk Management Framework (RMF), CNSSI, NIST AI/ML guidance, DoD 8140
Virtru: Private data security platform providing encryption and access controls for enterprises and government agencies.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
Federal Reserve Board of Governors: The central bank of the United States.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
Booz Allen HamiltonNYSE: BAH: Global firm providing management, technology, and engineering consulting services.
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles, experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS), knowledge of NIST frameworks and federal security standards, HS diploma/GED, U.S. citizenship required.
El Segundo or Los Angeles or Washington or San Francisco or San Diego or Seattle or London
$120k-$150k/yrHybridFull Time
CHAOS Industries: Redefining modern defense with a multi-product portfolio.
5+ YOEBachelor's degree or equivalent experience, 5+ years of GRC or compliance experience, DoD or military experience, audit support, risk assessment, GRC tooling, and knowledge of major security frameworks.
Armada: Government contracting and professional services provider.
5+ YOESecret clearance required; Bachelor's in security (or 10 years experience) and 5+ years qualifying experience; knowledge of NISP/EO 12829, DD Form 254, FCL/PCL/FOCI/NID; Microsoft Office and government security systems proficiency.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Access, NCAISS, NISS, JPAS, CVS, ISMS
Sancorp Consulting: Service-disabled veteran-owned federal contractor providing cybersecurity, intelligence, AI/ML, and professional services to government agencies.
5+ YOETS/SCI and U.S. citizenship required. Bachelor's in security-related discipline plus 5+ years (or 10 years experience). Experience in physical access control, credential/identity management, risk methodologies, security engineering, and government databases; intermediate Microsoft Office skills.
Microsoft Office, Microsoft Word, Microsoft Access, Microsoft Excel, Microsoft PowerPoint, DOD365, SharePoint, Adobe Acrobat, MPICAM, ISMS, Modified Infrastructure Survey Tool (MIST), Interagency Security Committee - Compliance System (ISC-CS), Homeland Security Information Network (HSIN)
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
6+ YOERequires TS/SCI clearance, MAGTF operations and CI/HUMINT integration knowledge, training expertise, and qualifying intelligence experience with a high school diploma, associate's degree, or bachelor's degree in intelligence.
Knox Systems: Private U.S. cloud security providing FedRAMP-authorized managed cloud and compliance software for SaaS and AI vendors.
5+ YOERequires 5+ years in security operations, senior floor experience, people development, cloud security monitoring, detection engineering, and incident response. U.S. citizenship and ability to pass a government background investigation required.
Information Security Analyst Advisor (Azure Security Senior Engineer)
Washington, District of Columbia, United States
$84k-$114k/yrHybridFull Time
GDITNYSE: GD: Delivers IT and mission services to government agencies.
10+ YOEActive Secret clearance, 10+ years related experience, 5+ years cloud security with Azure Government experience, Bachelor in information systems security, DoD 8570 IAT Level II cert (Security+/CISSP/CISM), scripting and IaC proficiency, knowledge of NIST/JSIG/STIG frameworks.
Microsoft Azure, Microsoft Defender for Cloud, Azure Policy, Azure Key Vault, NSG, Private Endpoints, Microsoft Sentinel, SIEM, SOAR, PowerShell, Terraform, ARM templates, Bicep, Python, Bash, SCAP, STIG, eMASS, Jira, DoD SRG, FedRAMP High, JSIG, ICD 503, NIST 800-53
Mayvin: Provides technical advisory and mission support to federal agencies.
8+ YOEBachelor's degree and 8+ years of experience with physical security systems, equipment lifecycle management, and federal security operations. U.S. citizenship and successful background investigation required.
Steampunk: Federal contractor providing human-centered IT and mission solutions.
4+ YOEBachelor's degree and 4+ years as a federal government business analyst. Requires Salesforce.com, Agile and DevSecOps knowledge, technical documentation, analytical skills, and ability to obtain a government security clearance.
Weeghman & Briggs: Veteran-owned IT consulting firm providing data analysis, cybersecurity, telematics, and training to government and private clients.
4+ YOEActive TS/SCI with polygraph; government or DoD experience; signals, waveform, protocol, network troubleshooting, traffic characterization, or security analysis experience; degree and relevant experience requirements apply.
Cyber and Information Systems Security Analyst/ISSO
Laurel, Maryland, United States
$105k-$290k/yrOnsiteFull Time
Johns Hopkins Applied Physics Laboratory: University-affiliated research center serving national security and science.
8+ YOE8+ years experience with government sponsors, deep knowledge of NISPOM/JSIG/ICDs/RMF, crafting ATO packages with XACTA/ServiceNow/eMASS, DoD 8570 certification, and active TS/SCI+poly clearance.