Risk and Compliance Analyst

Job not on LinkedIn

🔥 0 minutes ago

🏛️ District of Columbia, Washington – Remote

infoinfo

⏰ Full Time

🟠 Senior

🔴 Lead

🚔 Compliance

👻 Ghost score 15%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Triumph Enterprises, Inc.

Triumph Enterprises, Inc.

51 - 200 employees

Founded 2005

🎖️ Defense

📦 Logistics

🏭 Manufacturing

Defense • Logistics • Manufacturing

Triumph Enterprises, Inc. is a service disabled veteran owned small business committed to delivering exceptional services, solutions, quality, and value to federal clients. The company specializes in a range of services including cybersecurity, business intelligence, program management, additive manufacturing, and IT service management. Triumph emphasizes the importance of data-driven insights and proactive solutions to meet the evolving needs of the federal government, challenging traditional approaches to ensure mission success.

📋 Description

• Produce the Security Risk Analysis Report every Friday, 52 per option year • Build and operate the annual Cyber Supply Chain Risk Management program • Develop the C-SCRM strategy and implementation plan, vendor risk assessment framework and scoring rubric, and quarterly briefing package • Own SBOM validation procedures and quarterly SBOM compliance reporting • Maintain the critical supplier inventory and risk prioritization • Implement banned vendor automation • Report FISMA and CISA compliance quarterly • Report performance metrics against committed data quality thresholds: at least 97% asset coverage, at least 98% data accuracy and completeness on a 30-day rolling average, and 97% tagging accuracy • Produce specialized security posture reports, remediation reports following audit activity, and requirements traceability matrices • Support cyber engineering modernization with risk analysis and continuous monitoring

🎯 Requirements

• U.S. citizenship required • Minimum 7 years of information security experience • At least 5 years of risk and compliance experience at a large company or government agency similar in size and scope to VA, DoD, GSA, or IRS • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Information Security, Information Resource Management, Business Administration, Business Management, or a related field • An advanced degree in a related field may substitute for up to 2 years of experience, to a floor of 6 years • Expertise in risk management, compliance, audit, or related organizational roles • Expertise conducting internal and external audits for regulatory and organizational-policy compliance • Expertise developing and implementing risk management programs, including risk assessments, risk mitigation strategies, and continuous monitoring • Expertise in policy development, documentation, and enforcement • Expertise handling and reporting compliance issues and coordinating with regulatory bodies • Demonstrated ability to sustain a weekly reporting cadence in a federal environment • One or more required certifications: IAT III, IAM III, or IASAE III; commonly satisfied by CISSP, CISM, or CASP+ • Certification verified before an offer is extended • Must be able to obtain and maintain a Tier 4 / High Risk Public Trust background investigation, VA systems access, and PIV credentialing • No work may begin until an interim determination is received • Preferred: CDM program experience • Preferred: cyber supply chain risk management under EO 14028 or NSM-10 • Preferred: familiarity with CISA binding operational directives • Preferred: NIST Risk Management Framework and FISMA reporting at a federal agency • Preferred: prior VA program experience, particularly within OIT or OIS

🏖️ Benefits

• Regular full-time, exempt employment • Remote work arrangement • 0–10% travel expected • Equal opportunity employment

Apply Now

Similar Jobs

🔥 52 minutes ago

CyrusOne

501 - 1000

🏢 Enterprise

Energy policy manager advancing CyrusOne’s data center infrastructure and regulatory strategy across North America. Monitoring legislation, utility proceedings, energy markets, and advocacy initiatives.

🔥 59 minutes ago

Echodyne

51 - 200

🏭 Manufacturing

🚀 Aerospace

🎖️ Defense

Trade Compliance Analyst supporting customs, export controls, and due diligence for Echodyne’s solid-state radar technology. Managing HTS classification, documentation, screening, and export authorizations.

🇺🇸 United States – Remote

💵 $91.5k - $129.9k / year

💰 $135M Series C on 2022-06

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🔥 1 hour ago

EPIC Retirement Plan Services

201 - 500

💸 Finance

💳 Fintech

🤝 B2B

Compliance Specialist III preparing retirement-plan compliance tests and government filings for NBT, a stable financial institution. Reviewing complex plans, mentoring teammates, and resolving regulatory issues.

🔥 2 hours ago

Boehringer Ingelheim

10,000+ employees

🏥 Healthcare

🏭 Manufacturing

💊 Pharmaceuticals

Senior compliance leader driving GxP quality strategy, NC/CAPA processes, and clinical inspection readiness. Supporting Boehringer Ingelheim’s pharmaceutical product development and global quality initiatives.

🔥 3 hours ago

AbbVie

10,000+ employees

🏥 Healthcare

💼 Consulting

🏭 Manufacturing

Senior Manager overseeing safety, medical, and regulatory quality for AbbVie’s innovative medicines and healthcare products. Providing GxP oversight, compliance support, risk mitigation, and inspection readiness.