Risk Governance and POA&M SME

Sorry, this job was removed at 12:08 a.m. (UTC) on Saturday, Oct 03, 2026
Be an Early Applicant
Washington, DC, USA
In-Office
110K-120K Annually
Senior level
Information Technology • Logistics • Professional Services • Defense
The Role
Supports federal cybersecurity risk governance across RMF teams by characterizing control deficiencies, developing and tracking POA&Ms, reviewing remediation evidence, analyzing portfolio risk, and preparing risk-acceptance materials, briefings, audits, and executive reporting. The role requires strong knowledge of NIST controls, vulnerability prioritization, residual risk, continuous monitoring, and authorization processes while supporting Department of State cybersecurity operations.
Summary Generated by Built In

Description

Contingent on Contract Award

National Capital Region (Hybrid)

Connected Logistics is seeking a Risk Governance and POA&M SME to assist in providing the Department of State Directorate of Technology (DT), Enterprise Architecture (EA), Cyber Security Team (CST) comprehensive cybersecurity support services to protect critical consular systems and data. The CST Cyber portfolio ensures compliance with federal mandates including the Federal Information Security Modernization Act (FISMA) and the Risk Management Framework (RMF), encompassing security monitoring, incident response, threat detection, vulnerability management, and continuous authorization activities.

The Risk Governance and POA&M SME will support assigned IASS personnel and RMF Leads in translating control deficiencies, vulnerability findings, and operational issues into defensible risk records and achievable remediation plans. Government officials retain risk-acceptance and authorization authority.

Key Responsibilities:

Responsible for consistent risk characterization, POA&M development, remediation tracking, closure-evidence review, and portfolio risk analysis across RMF delivery teams.

  • Review findings for control mapping, risk rationale, system applicability, residual exposure, and remediation priority.
  • Support POA&M development with accountable owners, realistic milestones, dependencies, and required closure evidence.
  • Track overdue, stalled, recurring, and cross-system findings and recommend escalation to the ISSO Lead.
  • Review closure packages for technical sufficiency and traceability before the applicable validation or approval process.
  • Develop risk-response recommendations and supporting risk-acceptance materials for Government consideration.
  • Analyze portfolio trends and support authorization briefings, audits, and reporting without altering independent assessor conclusions.

Requirements

  • U.S. citizenship and a final Secret clearance or higher
  • Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to the LCAT and permitted substitutions.
  • Senior-level Federal cybersecurity risk and POA&M management experience spanning authorization and continuous monitoring.
  • Strong understanding of NIST controls, vulnerability prioritization, remediation planning, residual risk, and evidence-backed closure.
  • Ability to produce clear technical risk analysis and executive summaries.
  • Meet applicable LCAT certification requirements and maintain required credentials.

Preferred Qualifications

  • CGRC, CRISC, CISSP, or CISM.
  • DOS ArchAngel and authorization risk-briefing experience.
  • Experience analyzing KEV/BOD actions, inherited-control risks, and cross-system remediation dependencies.

Success in this position will be demonstrated by consistent risk records, achievable POA&M milestones, defensible closure packages, and timely visibility into material portfolio risks.

Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $110,000.00-$120,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

EOE/Disability/Veterans

Skills Required

  • U.S. citizenship
  • Final Secret clearance or higher
  • Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to LCAT-approved substitutions
  • Senior-level federal cybersecurity risk and POA&M management experience spanning authorization and continuous monitoring
  • Strong understanding of NIST controls, vulnerability prioritization, remediation planning, residual risk, and evidence-backed closure
  • Ability to produce clear technical risk analyses and executive summaries
  • Applicable LCAT certifications and maintenance of required credentials
  • CGRC, CRISC, CISSP, or CISM certification
  • Department of State ArchAngel and authorization risk-briefing experience
  • Experience analyzing KEV/BOD actions, inherited-control risks, and cross-system remediation dependencies

Similar Jobs

MetLife Logo MetLife

Principal Data & Analytics Lead

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
140K-210K Annually

MetLife Logo MetLife

Consultant

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
71K-105K Annually

MetLife Logo MetLife

Nurse Reviewer

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
54K-72K Hourly

Shield AI Logo Shield AI

Simulation Specialist, AMER (R6171)

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software • Defense Technology
In-Office
Washington, DC, USA
270K-410K Annually
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Huntsville, AL
Year Founded: 2007

What We Do

Connected Logistics is a defense and health company specializing in network-enabled logistics, program management, and information system engineering for the Department of Defense and Army Business Mission Areas.

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
Los Angeles, California
38 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account