The job below is no longer available.

You might also like

in Falls Church, VA

  • Agility Consultants, LLC 12h ago
    Urgently hiring3.1 mi Use left and right arrow keys to navigate
  • U.S. Navy 30d ago
    Urgently hiring6.6 mi Use left and right arrow keys to navigate
  • U.S. Navy 30d ago
    Urgently hiring6.6 mi Use left and right arrow keys to navigate
  • $21
    est. per hour
    NuAxis Innovations 6h ago
    Urgently hiring8.6 mi Use left and right arrow keys to navigate
  • Lafayette Group Inc. 12h ago
    Urgently hiring5.6 mi Use left and right arrow keys to navigate
Use left and right arrow keys to navigate
Estimated Pay $20 per hour
Hours Full-time, Part-time
Location Falls Church, Virginia 22043
Falls Church, Virginia

Compare Pay

Estimated Pay
We estimate that this job pays $20.02 per hour based on our data.

$14.11

$20.02

$32.31


About this job

Cloud Cybersecurity Compliance Engineer – Hybrid - Rockville, MD About us: Creative Information Technology Inc (CITI) is an esteemed IT enterprise renowned for its exceptional customer service and innovation. We serve both government and commercial sectors, offering a range of solutions such as Healthcare IT, Human Services, Identity Credentialing, Cloud Computing, and Big Data Analytics. With clients in the US and abroad, we hold key contract vehicles including GSA IT Schedule 70, NIH CIO-SP3, GSA Alliant, and DHS-Eagle II. Join us in driving growth and seizing new business opportunities. Role and Responsibilities The contractor will provide technical staff to take a leading position in the County's Cloud Cybersecurity Compliance program. Their primary focus will be to identify and prioritize cloud related risks enterprise-wide, executing comprehensive risk assessments and control gap analyses in line with established information security policies and widely recognized risk management frameworks applicable to a range of public cloud environments. Contractor Staff will be responsible for conducting thorough reviews of legal contracts and agreements relevant to cloud services, including service level agreements (SLAs), data processing agreements (DPAs), and vendor contracts. This involves interpreting complex legal language and terms to ensure compliance with information security and privacy requirements, identifying potential risks or areas of non-compliance, and articulating these findings in a clear, comprehensible manner to business units and legal counsel. The contractor will liaise closely with County attorneys and business stakeholders to provide actionable insights, ensuring that contractual obligations align with the County’s governance, risk, and compliance frameworks and standards. Contract Staff will work side-by-side with County staff and play a lead role on the Governance, Risk, Compliance team having responsibility for the following: Designing, implementing, and continuously improving the County’s cloud information security/privacy compliance program based on applicable policies, local/state/federal laws/regulations and adopted risk management frameworks. Designing, implementing, leading cloud-based risk assessments and control gap analysis procedures, activities, documents, and communication plans Leveraging NIST 800-53/FedRAMP assessment experience, technical, and program management skills to lead, plan, track, collaborate and report on the cloud governance, risk compliance program deliverables, including scheduling/leading meetings, assigning/tracking action items, and developing status reports. Performing cross functional interviews with business, technical and information security partners to determine if information security/privacy controls are implemented correctly, operating as intended, and producing the desired results. Communicating program controls, measurements, metrics, and assessment results confidentially, professionally, and effectively, in both written and verbal formats, with business, technical, and third-party stakeholders. Minimum Qualification 5+ years-experience applying governance, risk, compliance principles to public cloud ecosystems such as AWS (Amazon), Azure (Microsoft) and/or (GRC) Google 5+ years-experience designing/implementing cloud-based information security/privacy polices mapped to industry standards and regulatory frameworks (e.g., NIST 800-53, FedRAMP, PCI, HIPAA etc.) Designing, implementing, and performing cloud-based risk assessments and control gap analysis; identifying, analyzing, and evaluating cloud security/privacy risks through analysis of vendor-provided SOC2 and other cloud security control documentation. Proven ability to communicate confidentially, professionally, and effectively, in both written and verbal formats, with business, technical, and third-party stakeholders. Developing monitoring, gathering, and analyzing information security and compliance metrics for management for the cloud environment Contract staff will report directly to Governance, Risk, Compliance Team Lead.