Hiring.Camp

Security Auditor

Ryan Consulting Group

·

Today

Location
Washington, DC
Workplace
Hybrid
Department
Finance
Experience
4+ years
Source
Paylocity

Description

Description

This role is part of a proposal submission. All offers of employment are conditional and subject to the awarding of the contract. The company reserves the right to modify, delay, or cancel the recruitment process based on the outcome of the award.


Location: Hybrid – Washington, DC
Job Type: W-2
Shift: Monday–Friday; 40-hour work week during DFC core hours of 7:00 AM–6:00 PM ET; after-hours assignments possible

Worksite Address: DFC HQ 1100 New York Avenue NW Washington, DC
Pay Max: $132,500
Security Clearance: Tier 4 High Trust Background Investigation
Direct Reports: 0
Travel Requirements: None


Ryan Consulting Group, Inc. is seeking a Security Auditor to support the U.S. International Development Finance Corporation (DFC). The Security Auditor is responsible for assessing and auditing complex information systems, platforms, and operating procedures in accordance with established corporate standards for efficiency, accuracy, and security. This role evaluates IT infrastructure for organizational risk, establishes controls to mitigate loss, and recommends improvements to existing risk management controls and the implementation of system changes or upgrades. 


Key responsibilities include:

· Monitor security tools including Splunk, Tenable, Qualys, and ServiceNow. 

· Support assigned Risk Management Framework (RMF) activities. 

· Analyze vulnerability scans and prepare assessments and recommendations for reducing risks and vulnerabilities. 

· Identify issues to be addressed within the Risk Register, Plans of Action and Milestones (POA&Ms), and audit artifacts to enhance the security posture of DFC systems. 

· Assess and audit complex information systems, platforms, and operating procedures for efficiency, accuracy, and security. 

· Evaluate IT infrastructure for organizational risk. 

· Establish and evaluate controls designed to mitigate organizational loss. 

· Determine and recommend improvements to current risk management controls and the implementation of system changes or upgrades. 

Requirements

· Bachelor’s degree in Information Technology, Information Systems, Computer Science, Information Assurance, or a related field. 

· 4–7 years of experience performing IT system security documentation, preferably within the federal government. 

· In-depth knowledge of NIST, OMB, other federal cybersecurity governance standards, and the Risk Management Framework (RMF). 

· Strong written and verbal communication skills with demonstrated ability to document processes and procedures. 


Certification Requirements

One of the following:

· Certified Information Security Manager (CISM) 

· Certified Information Systems Auditor (CISA) 


Benefits at RYAN

RYAN offers a comprehensive, competitive benefits package designed to support the well-being of our employees and their families. Some benefits may vary by contract.

· Paid Holidays (varies by contract) 

· Paid Time Off (PTO) 

· Bereavement, Military, and Parental Leave 

· 401(k) or Roth Retirement Plan with Employer Matching 

· Medical, Dental, and Vision Coverage 

· Health Savings Account (with employer contribution) 

· Group Term Life Insurance 

· Pet Insurance 

· Employee Discount Perks 

· Voluntary Life Insurance 

· Short- and Long-Term Disability 

· Accident, Cancer, and Critical Illness Insurance 


Equal Employment Opportunity (EEO) Statement:
Ryan Consulting Group, Inc. is an equal opportunity employer. We are dedicated to ensuring equal employment opportunities in all aspects of employment, including recruitment, hiring, promotion, training, compensation, benefits, and termination. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other characteristic protected by applicable law.

Ryan Consulting Group, Inc. is also committed to complying with the Americans with Disabilities Act (ADA) and providing reasonable accommodations for qualified individuals with disabilities. If you need assistance or accommodation due to a disability in the application process, please contact [email protected]


Drug-Free Workplace Statement:
Ryan Consulting Group, Inc. is committed to maintaining a drug-free workplace, in compliance with the Drug-Free Workplace Act of 1988, which is a requirement for all federal contractors. We recognize the impact that drug and alcohol abuse can have on the safety, health, and productivity of our workforce, and we are dedicated to providing a work environment that is free from illegal drugs and alcohol. All employment offers are conditional upon successfully passing a drug screening. 


Pay Transparency Statement:
Ryan Consulting Group, Inc. complies with all relevant pay transparency laws in each state and jurisdiction where we operate. This includes providing salary ranges and pay data in compliance with state or local regulations where applicable. We also ensure that applicants and employees in relevant states are informed of their right to inquire about pay information as required by state or local laws. Employees and applicants in states where pay transparency laws are in effect can expect to be provided with salary information upon request during the hiring process.

Skills

ServiceNowCybersecuritySplunkRisk ManagementCompliance

Similar Jobs

30

Security Auditor

Nc·Randall Wake, US

Today

Security Auditor

"Summit Federal Services, LLC"·Fort Gordon, GA·Onsite

3mo ago

Security Auditor

TMPC·Fayetteville, North Carolina

1y+ ago

Security Auditor

TMPC·Tampa, Florida

1y+ ago

ISO 27001 Information Security Auditor

BSI·Poland - Field Based +4·Remote, Hybrid

1w ago

TISAX/Information Security Auditor

BSI·Poland - Field Based +4

2w ago

Senior Security Auditor 0926

nexus IT group

2w ago

IT Security Auditor - Consultant

Guidehouse is·Client Office: Chantilly, VA +1

4w ago

ISO 27001 Information Security Auditor

BSI·Netherlands - Field Based +1·Remote, Hybrid

1mo ago

Information Security Auditor

Wintrust·Rosemont - WTFC - 9700 W. Higgins Road, US

3mo ago

IT Security Auditor – Senior Consultant

Guidehouse is·Client Office: Chantilly, VA

3mo ago

Senior Security Auditor

Nttlimited·Hanoi, Vietnam +1·Remote, Onsite

5mo ago

ISO 27001 Information Security Auditor

BSI·Germany - Field Based·Remote, Hybrid

6mo ago

Sr Exec Corporate Audit - Application Security Auditor / IT Process Auditor

EXL Talent Acquisition Team·Noida, Uttar Pradesh·Hybrid

7mo ago

Sr Exec Corporate Audit - Application Security Auditor / IT Process Auditor

EXL·Noida, Uttar Pradesh·Hybrid

7mo ago

Future Opening: Site Security Auditor: Los Angeles Metro REMOTE

Independent Security Evaluators·Remote

7mo ago

Information Security Auditor

"SecurityPal, Inc."

9mo ago

Supply Chain Security Auditor

Employees Pinkerton·Shenzhen, CN·Remote, Onsite

1y+ ago

Information Security Auditor (SOC Services)

KirkpatrickPrice

1y+ ago

Information Security Auditor

KirkpatrickPrice

1y+ ago

(Junior) Security Auditor (gn*) Electronic Identities and Trust Services (eIDAS)

TÜV TRUST IT Unternehmensgruppe TÜV AUSTRIA·Germany·Hybrid

1y+ ago

Security Analyst & Auditor

Orange·Ebene, MU

1w ago

Lead Auditor Information Security (M/F/X)

Bevifr Vincotte·Vilvoorde, VBR

1mo ago

Lead Auditor Information Security (M/V/X)

Bevinl Vincotte·Vilvoorde, VBR

1mo ago

Lead Auditor - Info Security & Digital Trust

SGS·Shah Alam, Selangor·Hybrid

1mo ago

Security Compliance Auditor

IntouchCX·Hyderabad, Telangana

2mo ago

Platform Security Engineering, Auditor

Anthropic·San Francisco, CA +1·Onsite

2mo ago

Information Security Lead Auditor

Alcumus·Oxford, UK·Onsite

4mo ago

Information Security Lead Auditor

Alcumus·Manchester, UK·Onsite

4mo ago

Information Security Lead Auditor

Alcumus·London, UK·Onsite

5mo ago