Browse
···
Log in / Register

Cybersecurity / Data Compliance Analyst - Active Secret Clearance

Negotiable Salary

TOMORROW HIRE

Washington, DC, USA

Favourites
Share

Description

Location: Washington, DC (Hybrid) Clearance Required: Active Secret Position Type: Full-Time We are seeking a skilled Cybersecurity / Data Compliance Analyst to support enterprise data and analytics initiatives for our federal client. The ideal candidate will bring expertise in security assessments, compliance frameworks, and risk management to ensure that systems and data practices meet federal cybersecurity requirements. This role will involve supporting Assessments & Authorizations (A&A), managing POA&Ms, conducting risk assessments, and aligning cybersecurity and data governance practices across mission-critical programs. Strong communication, documentation, and stakeholder engagement skills are essential, along with hands-on experience in eMASS and federal security standards. Primary Responsibilities: Support Assessments & Authorizations (A&A) processes in eMASS. Develop, track, and manage Plans of Action & Milestones (POA&Ms). Conduct risk assessments of systems and enterprise data processes. Collaborate with system owners and engineers to ensure compliance with federal security policies and standards (FISMA, NIST, DHS directives). Document findings, recommendations, and remediation actions for leadership and stakeholders. Assist in aligning data governance and cybersecurity practices across teams. Support internal and external compliance audits and reporting requirements. Provide advisory support on data protection, metadata management, and secure data sharing. Requirements Requirements Minimum Qualifications: Active Secret clearance (required at time of application). Bachelor’s degree in Cybersecurity, Information Systems, or a related field. 5+ years of experience in cybersecurity compliance, risk management, or A&A. Hands-on experience with eMASS and POA&M lifecycle management. Familiarity with NIST Risk Management Framework (RMF) and DHS/DoD security standards. Strong knowledge of FISMA, FedRAMP, and information assurance policies. Excellent documentation, analytical, and stakeholder communication skills. Preferred Qualifications: Security certifications such as Security+, CISSP, CISM, or equivalent. Experience supporting federal or regulated environments. Knowledge of secure data governance and metadata management practices. Eligibility: Must be legally authorized to work in the United States without employer sponsorship, now or in the future. Active Secret clearance required for this role. Benefits Salary: Competitive, commensurate with experience.

Source:  workable View original post

Location
Washington, DC, USA
Show map

workable

You may also like

Workable
Security Engineering Manager
Thorlabs is pleased to play a role in advancing science through the components, instruments, and systems we design and manufacture. We believe that science and innovation have great potential to improve the world around us and are committed to advancing photonics (i.e., light-based) technologies that positively impact our customers, employees, and communities. Via educational outreach and more sustainable business practices, we continuously invest in a brighter future. We recognize that each of our employees is a unique individual with the ability to contribute to our success and seek to find great people who will thrive in our fun, fast-paced culture. The Security Engineering Manager will lead the evolution of our cybersecurity engineering, architecture, and operations. This role bridges strategic and tactical domains – collaborate cross-functionally with IT and business stakeholders, oversee enterprise security architecture (both Cloud and on-prem), manage security engineering team, and optimize security operations (including an outsourced SOC). This is a strategic role designed for a seasoned security expert with a proven ability to manage teams, architect complex solutions, and influence across departments. The successful candidate must be strategic while also comfortable at tactical level, with both leadership and hands-on responsibilities. Although the location of the position is in Newton, NJ, from time to time it may be required to undertake duties at other Thorlabs locations. Essential Job Functions include the following, but are not limited to: Leadership & Strategy Serve as a strategic advisor to the IT leadership team on emerging threats, investment priorities, and security posture. Set and track KPIs, KRIs, OKRs, and metrics to ensure effectiveness and continuous improvement. Collaborate closely with Infrastructure and Operations, Enterprise Applications, Application Development, and Enterprise Data teams to embed security into their processes. Present to executive stakeholders and help translate technical risk into business impact. Serve as the security SME in enterprise projects and technology investments, including tool evaluations, acquisitions, and divestitures, including strategic planning, budgeting, and cross-functional alignment. Security Architecture & Engineering Define and drive the enterprise security architecture roadmap across infrastructure, cloud, applications, and Operational Technology (OT). Lead the design and implementation of security controls, frameworks, and reference architectures. Oversee architecture reviews, and secure-by-design practices across the organization. Ensure baseline security measures are implemented and monitored (e.g., hardening, patching, zero trust, segmentation). Manage integration and ongoing optimization of security tools (e.g., CSPM, CNAPP, IAM, PKI, DLP). Identity & Access Management (IAM) Lead the Security Engineering function responsible for Identity and Access Management Architect and enhance enterprise IAM strategy including RBAC, PAM, MFA, SoD, and JML lifecycle. Drive IAM policy creation and enforcement across service, privileged, and user accounts. Guide the definition of IAM operating models, access certification processes, and automation of identity governance. Security Operations & Incident Response Oversee day-to-day security operations including SOC management (outsourced), SIEM/SOAR (Microsoft Sentinel), EDR/XDR, and threat detection and response. Collaborate with the SOC to improve detection rules, reduce false positives, and ensure robust incident detection and response capabilities. Plan and oversee penetration testing, forensic analysis, and incident investigations. Governance, Risk, & Compliance Align security architecture and operations with regulatory frameworks such as NIST, ISO 27001, CMMC, PCI-DSS, and GDPR. Partner with the GRC and Audit teams to ensure technical controls support broader compliance and risk. Coordinate with the GRC team to support policy development, risk assessments, and business continuity/disaster recovery planning. Requirements Physical Activities: The employee is occasionally required to stoop, kneel, crouch, climb or crawl. The employee must frequently lift and move up to 10 pounds and occasionally lift and move up to 25 pounds. Qualifications Experience: 10+ years of experience in cybersecurity with increasing leadership responsibility, with at least 4+ years direct people management in technical security teams. Extensive experience in security architecture, cloud platforms (Microsoft Azure, M365), and enterprise security tools. Strong command of at least 3 of the following core security domains: IAM, SIEM, vulnerability management, network security, DevSecOps, and incident response. Experience leading or managing an outsourced SOC or MDR provider. Proven leadership in security engineering and operations in a hybrid (cloud/on-prem) environment. Education: Bachelor’s degree in computer science, Engineering, related field, or equivalent work experience. Specialized Knowledge and Skills: Advanced degree (e.g., MS in Cybersecurity) is a plus. Certifications such as CISSP, CISM, Microsoft Certified: Cybersecurity Architect Expert, Azure Solutions Architect, or CEH. Experience with Microsoft Defender suite, Intune, Microsoft Sentinel, various IAM and Vulnerability Management Tools. Familiarity with security control frameworks (e.g., NIST CSF, MITRE ATT&CK, CIS). Excellent communication and interpersonal skills, with proven ability to lead across functions and influence executive stakeholders. Experience in Zero Trust architecture and OT security a big plus. Salary range for this position is $111,000 - $165,000 depending on experience Thorlabs values its diverse environment and is proud to be an Equal Employment Opportunity/Affirmative Action Employer. All qualified individuals will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. Job descriptions are not intended as and do not create employment contracts. The organization maintains its status as an at-will employer. Employees can be terminated for any reason not prohibited by law.
Newton, NJ, USA
$111,000-165,000/year
Workable
GxP Lab Computing Analyst
Location: North Chicago, IL **This position requires full-time on-site presence at our client site in North Chicago, IL **This position is not eligible for relocation assistance** The Zifo Lab Computing Analyst provides both consulting, analytical and technical laboratory services, including multivendor instrument, information technology as well as in-lab validation/compliance services when applicable. The individual will provide the consulting skills required to analyze customer needs and gaps to propose solutions for the desired state. He or she will work with business users and managers of customers in conjunction with the internal Zifo support team. Requirements Required Skills: Excellent customer service skills complemented by an ability to listen to and interpret client requests Ability to troubleshoot complex instrument and technology issues Strong oral and written communication skills Ability to identify, track and complete tasks for multiple projects Knowledge of laboratory safety practices as defined by the company and/or customer’s site safety code Responsibilities: As a Lab Computing Analyst, beneficiary would perform following key responsibilities: Requirements Management and onsite Validation/Compliance support IT Consulting Customer Liaison Onsite Lab IT Support Requirements Management Understand problem statement/challenges Define scope Gather requirements. Assist with Validation/Compliance activities (IOPQ) as required. Analyze current state business processes and requirements. Assist in building plans for process improvement IT Consulting Analyze gaps/opportunities for improvement based on industry Best Practice Evaluate Industry trends to identify areas for optimization Evaluate vendor solutions and facilitate demos of prototypes as Proofs of Concept Recommend process improvements that fit business needs Customer Liaison: Meeting with internal/external service groups/leads Liaise between System/Lab owners and third parties to coordinate best times for services Provide weekly planning schedules for review at status meeting with customer leads Monthly Operational review meetings/ Quarterly metrics reporting with department heads On Site Lab IT Support: Perform break/fix support for all Instrument connected systems Implement Windows based security policies as required Ensure adherence to client’s corporate policies through periodic reporting & compliance programs Acts as the technical support contact for field service engineers and external vendors Provide technical subject matter expertise for new system validation and change management Create and maintain a physical inventory of lab equipment, PC’s, software, and any other information pertinent to the environment if applicable Perform system preventative maintenances based on client’s schedule, if applicable Requirements Bachelor’s/Master’s degree or equivalent in Pharmaceutical, Bio-technology, Bio-medical engineering, Chemical engineering At least 3 years of directly relevant Information Technology experience, including: At least 1 year in software development and testing. At least 1 year of experience in business requirement analysis and gathering. Demonstrated domain area knowledge. Candidate must possess excellent analytical and interpersonal skills along with a proven track record in system design, implementation, have demonstrated ability to guide the activities of colleagues, and have demonstrated ability to gain client’s confidence and trust. Candidate must demonstrate in-depth understanding in one or more of the following areas of Bio/Pharma industry: Drug Discovery & Development Processes Clinical study planning & Data management Lab Workflows Chemical & Biologics material Management Sample Management Robotic Systems Integration & Qualification Operations KPI and Metrics tracking Optional requirement: Candidate needs to be familiar with the US and International Regulations and Standards governing the development of technical solutions such as GLP, GMP, 21 CFR Part 11, Part 210, Part 211, Part 820 Technical Skills: Operating System familiarity with at least 1 of the following: Unix, Windows, MVS Software Methodology familiarity with: Object Oriented Programming, Structured Programming Software Development Process familiarity with: Waterfall, Agile Change Control Management and Risk Management Office Tools proficiency required in : MS Word, Excel, PowerPoint Office productivity tool proficiency in at least 1 of the following: Visio, MS Project, SharePoint Benefits About Zifo: CURIOSITY DRIVEN, SCIENCE FOCUSED, EMPLOYEE BUILT. Our culture is unlike any other, one where we debate, challenge ourselves, and interact with all alike. We are a curious bunch, characterized by our passion to learn and spirit of teamwork. Zifo is a global R&D solutions provider focused on the industries of Pharma, Biotech, Manufacturing QC, Medical Devices, specialty chemicals and other research-based organizations. Our team’s knowledge of science and expertise in technology help Zifo better serve our customers around the globe, including 7 of the Top 10 Biopharma companies. We look for Science – Biotechnology, Pharmaceutical Technology, Biomedical Engineering, Microbiology etc. We possess scientific and technical knowledge and bear professional and personal goals. While we have a “no doors” policy to promote free access within, we do have a tough door to walk in. We search with a two-point agenda – technical competency and cultural adaptability. We offer a competitive compensation package including accrued vacation, medical, dental, vision, 401k with company matching, life insurance, and flexible spending accounts. If you share these sentiments and are prepared for the atypical, then Zifo is your calling! Zifo is an equal opportunity employer, and we value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
North Chicago, IL, USA
Negotiable Salary
Workable
SQA Manual Tester
ProArch is looking for a dedicated SQA Manual Tester to join our quality assurance team. In this role, you will be responsible for ensuring the highest quality of our software products by executing manual testing processes. You will work collaboratively with developers, product managers, and other stakeholders to identify defects and ensure our applications are user-friendly and functionally robust. Key Responsibilities: Design and execute comprehensive test plans and test cases based on system requirements and specifications. Identify, document, and track defects to ensure timely resolution. Conduct various types of testing, including functional, regression, and user acceptance testing. Perform exploratory testing to identify potential issues and improve product usability. Communicate test results, issues, and progress to team members and stakeholders effectively. Participate in requirement reviews and contribute to product development discussions. Maintain detailed and accurate test documentation and reports. Requirements Strong working experience in Manual Testing on windows, Mobile and Web applications. Having knowledge on Automation is an advantage. Should have very good knowledge on SQL. Should be aware of database testing & Linux fundamentals. Exposure to web services (SoapUI, REST etc). Should be familiar with all the major stages of SDLC, STLC and Bug Life Cycle. Should be aware of doing the Requirement Analysis. Work experience / knowledge in testing the client service-oriented architectures is must. Should be capable of interacting/communicating with the client. Good in both oral & written skills.
Atlanta, GA, USA
Negotiable Salary
Craigslist
Project Manager (Rockville)
An HBW Construction Project Manager is involved with all aspects of HBW Construction projects including marketing, sales, estimating, contract management, negotiating, project schedule and administration, financial management and closeout. The Project Manager is responsible for approximately 3-4 HBW Construction projects at any one time and ensures projects are of high quality, delivered on schedule, within budget and in accordance with all regulatory requirements and customer expectations. PRINCIPAL DUTIES AND AREAS OF RESPONSIBILITIES Customer Care An HBW Construction Project Manager is responsible for assisting in the development of new business opportunities and strengthening existing customer relationships. The Project Manager will assist in: Cultivating existing customer relationships to generate repeat business through performing work above expectation, regular check-ins and entertaining. Share professional knowledge with clients that adds value to their projects and identifies/addresses issues before they become problems. Estimating/Sales The Project Manager works directly with the estimating staff to develop bids, participates in project interviews, works with the client to answer any questions, and follows up on outstanding bids. The Project Manager creates the project schedule using MS Project and develops the general conditions for each bid. The Project Manager will review all subcontractor bids for completeness and accuracy. Identifying potential new business opportunities by following up on leads, networking and attending industry events. Planning/Execution Once a job has been awarded, the Project Manager will: Oversee preparation and ensure execution of job contract. Negotiate with and select subcontractors to perform the work. Draft subcontracts. Prepare job budget, develop project schedule, and coordinate material ordering, as necessary. Select the project Superintendent, orient the Superintendent to the job and work with the Superintendent to ensure that the construction plan is executed in accordance with schedule, HBW standards of quality and complies with building codes and regulations. Identify and track all long lead time items on the project critical path. Prepare for and lead weekly progress meetings. Anticipate issues and proactively work to avoid or resolve them. Hold weekly progress meetings and prepare meeting minutes. Track submittals, prepare requests for information, and create owner and subcontractor change orders. Responsible for the financial management of the job and meeting the job's financial goals. Revise monthly cost projections and handle collections related to work. Update the project schedule as needed to meet the final deadline. Deliver project on time, within budget and "100% at move-in." "100% at move-in" is having no punch list at completion. Resolve interpersonal conflicts among project staff, handle errors or delays and respond to crises. Safety Project Managers must promote HBW Construction's safety-first goal at all times and will: Understand, promote, and enforce the HBW Construction Corporate Safety Program. Understand, promote, and enforce the safety requirements of all authorities having jurisdiction. (ex. OSHA, MOSH, VOSH, EM - 385-1-1). QUALIFICATIONS Knowledge, Skills, and Abilities 5 years of experience as a Project Manager in commercial construction, 3 of which may be Assistant Project Manager experience. High school diploma or equivalent required, college degree preferred. Knowledge of construction industry standards, building codes, equipment, methods, and contracts. Demonstrated business acumen with strong presentation, communication (verbal and written), problem solving, financial and leadership skills. Ability to maintain composure, professionalism and objectivity in difficult situations and effectively resolve conflicts. Proficient in Microsoft Office Suite and Microsoft Project. LEED and CHC certification preferred. Must have a vehicle to use for work. Physical Qualifications Must be able to lift up to 20 lbs. Must be able to work for 8-10 hours a day. Must be able to visit project sites HBW provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. For more information, or to apply now, you must go to the website below. Please DO NOT email your resume to us as we only accept applications through our website. Click Here to Apply or use the link below https://www.applicantpro.com/openings/hbwconstruction/jobs/2197922-19785
707 Anderson Ave, Rockville, MD 20850, USA
$85,000-130,000/year
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.