Koniag Government Services logo
Koniag Government ServicesPosted 1 month ago

Risk & Quality Manager (REMOTE)

$31,200–$31,200 year

Remote

Full TimeLarge

Job Summary

Develop and manage a comprehensive risk management framework for ICAM programs, overseeing identification, assessment, prioritization, and mitigation of risks across people, processes, and technology. Establish and maintain a quality management program ensuring all deliverables meet defined standards, while conducting regular risk assessments and audits to identify vulnerabilities and gaps. Collaborate with engineers and program managers to implement mitigation strategies, support the Authority to Operate (ATO) process by reviewing security documentation, and coordinate with compliance teams to adhere to federal regulations including FISMA and FedRAMP. Prepare risk and quality reports for government stakeholders, monitor POA&Ms for timely remediation, and facilitate training on risk management practices. Requires a Secret Security clearance and 5+ years of experience in federal risk management.

Required Qualifications

  • Secret Security clearance
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Risk Management, or a related field from an accredited college or university
  • 5+ years of experience in risk management, quality assurance, or compliance roles within an information technology or cybersecurity environment
  • 3+ years of experience working with ICAM programs, frameworks, or technologies in a federal government context
  • Exceptional communication skills in English – both written and oral
  • Strong understanding of risk management frameworks and methodologies, including NIST Risk Management Framework (RMF), NIST SP 800-30, and NIST SP 800-53
  • Demonstrated experience developing and maintaining Risk Registers, POA&Ms, and risk assessment reports in a federal IT environment
  • Familiarity with ICAM frameworks, principles, and federal identity management standards, including FICAM, NIST SP 800-63, and Zero Trust Architecture
  • Experience supporting or leading ATO processes, including the preparation and review of security documentation such as SSPs, RARs, and POA&Ms
  • Knowledge of federal compliance and regulatory requirements, including FISMA, FedRAMP, and OMB policies related to identity and access management
  • Experience developing, implementing, and managing quality management programs and conducting process audits and reviews
  • Strong analytical and problem-solving skills, with the ability to assess complex risks and develop practical, actionable mitigation strategies
  • Ability to develop and present clear, concise risk and quality reports and briefings to diverse audiences, including senior leadership and government customers
  • Proficiency in developing and tracking metrics and KPIs to measure program health and effectiveness
  • Demonstrated ability to manage multiple priorities and work effectively in a fast-paced, team-oriented environment

Desired Qualifications

  • Experience working in a federal government IT environment supporting large-scale ICAM programs
  • Familiarity with ICAM technologies such as Okta, SailPoint, CyberArk, Ping Identity, or ForgeRock
  • Experience with continuous monitoring tools and security information and event management (SIEM) platforms
  • Knowledge of Privileged Access Management (PAM) concepts and associated risk considerations
  • Understanding of PIV/CAC authentication and its role within federal ICAM architectures
  • Experience with Agile and/or DevSecOps methodologies and their intersection with risk and quality management
  • Familiarity with cloud security frameworks and FedRAMP authorization processes
  • Project Management Professional (PMP) or equivalent certification
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) certification
  • CompTIA Security+ or equivalent certification
  • Experience facilitating tabletop exercises or risk workshops with government stakeholders

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce