IT Compliance Manager

Mantech International Corporation
Quantico, VA, United States
5 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Xacta Software Documentation Cyber Security Information Systems Information Technology Audit Information Systems Security Architecture Professional Information Systems Security Engineering Professional Information Technology Plan of Action and Milestones

Job description

MANTECH seeks a motivated, career and customer-oriented IT Compliance Manager to join our team in Washington, D.C. This is an onsite position.

The IT Compliance Manager will leverage their technical background and compliance expertise to support the Federal Bureau of Investigation (FBI) Enterprise Cybersecurity Section (ECS) with audit preparation and quality reviews for FISMA compliance. You will help conduct deep-dive readiness assessments, evaluate enterprise security artifacts, and ensure system audit readiness across the enterprise.

Responsibilities include but are not limited to:

  • Serving as a dedicated IT Compliance Manager exclusively assigned to conduct deep-dive audit readiness assessments and FISMA compliance quality reviews for assigned information systems.
  • Evaluating system documentation, technical security controls, access controls, and Plan of Action and Milestones (POA&M) tracking against FISMA, NIST SP 800-53, and FBI policy standards.
  • Conducting deep-dive reviews of enterprise-level FISMA artifacts, including security plans, risk assessments, and contingency plans, to ensure control mapping accuracy and completeness.
  • Preparing defensible, audit-ready response packages, compliance statements, and supporting evidence to minimize findings during federal audit engagements.
  • Communicating identified gaps, weaknesses, and remediation progress directly to Enterprise Cybersecurity Section leadership.
  • Developing and tracking corrective action plans and POA&Ms to ensure pre-audit findings are resolved within required timelines.

Requirements

  • Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, Business Management, or a related discipline, or equivalent work experience.
  • Minimum of 5 years of progressive experience in cybersecurity compliance, IT auditing, or Risk Management Framework (RMF) execution.
  • Demonstrated experience conducting deep-dive FISMA reviews and evaluating compliance against NIST SP 800-53, NIST SP 800-53A, and federal cybersecurity standards.
  • Possess at least one of the following DoD 8140.03 Intermediate proficiency certifications: CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySA+, GSLC, or GSNA.
  • Proven experience reviewing enterprise security documentation, preparing audit response packages, and managing POA&M lifecycles.
  • Strong technical writing skills with experience developing defensible compliance justifications for federal auditors.

Clearance Requirements:

  • An active Top Secret clearance with SCI eligibility is required.

Preferred Qualifications:

  • Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Systems Security Professional (CISSP) certification.
  • Experience supporting Department of Justice (DOJ) or Federal Bureau of Investigation (FBI) FISMA audits, Inspector General (IG) reviews, or OMB Circular A-123 assessments.
  • Familiarity with government Governance, Risk, and Compliance (GRC) tools such as Joint Cybersecurity Authorization Management (JCAM) or Telos Xacta.
  • Demonstrated track record of resolving pre-audit findings and achieving minimal or zero audit findings.

Physical Requirements:

  • Must be able to remain in a stationary position 50% of the time.
  • Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
  • Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all