Federal Security Consultant

Genesis Consulting Group
Washington, DC, United States
4 days ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

SAP Cloud Software as a Service Cloud Computing Cloud Engineering Cyber Security Data Security Internet Security Information Systems Security Architecture Professional Cloud Services SAP Concur SAP (Applications) Software Vulnerability Management
+4 more
Netsuite Erp HybridCloud Information Technology Mulesoft

Job description

The Federal Security Consultant will serve as a key member of the Go.gov transformation team, ensuring that SAP Concur and related cloud solutions achieve and sustain FedRAMP Authorization to Operate (ATO). This role bridges enterprise security architecture, compliance engineering, and federal risk management frameworks in a complex, multi-agency program., Duties will include but may not be limited to:

  • Lead the planning and execution of FedRAMP ATO activities for SAP Concur and aligned SaaS platforms used in the Go.gov modernization program.
  • Develop, review, and maintain system security documentation including SSPs, POA&Ms, and related artifacts per NIST SP 800-53 and 800-37 guidelines.
  • Interface with GSA IT Security, agency ISSOs, and SAP Cloud Compliance teams to align controls, evidence, and risk assessments.
  • Conduct continuous monitoring and controls assessment to sustain authorization.
  • Define and communicate security architecture strategies compatible with multi-tenant and hybrid cloud environments.
  • Evaluate vendor security postures and integration security impacts for connected applications.
  • Support internal and external audits, coordinating responses and remediation activities across functional teams.
  • Advise project managers and technical leads on secure configuration baselines and policy compliance., * Secure, compliant SAP Concur implementation aligned with GSA’s Go.gov transformation milestones.
  • Comprehensive ATO documentation and control validation evidence.
  • A sustainable framework for ongoing monitoring and risk management across participating agencies.

Requirements

  • Minimum 5 years of experience in federal cybersecurity, including at least 3 years in FedRAMP, FISMA, or related authorization frameworks.
  • Deep familiarity with NIST SP 800-53, 800-171, and 800-37 RMF.
  • Solid understanding of security architecture for cloud SaaS solutions (preferably SAP Concur, Mulesoft, or similar platforms).
  • Experience with vulnerability management, incident response, and security operations.
  • Strong written and verbal communication skills for interfacing with Federal stakeholders.

Preferred Qualifications:

  • CISSP, CISM, or FedRAMP 3PAO experience.
  • Experience supporting GSA, DHS, or other civilian agencies in large-scale digital modernization projects.
  • Prior involvement in cloud migration or ERP cloud security initiatives., * Bachelor’s Degree in Information Security, Computer Science, or related field. Master’s Degree preferred.

Required Certifications:

  • CISSP or CISM Certifications Preferred.

Other:

  • Must be US Citizen with ability to obtain Public Trust Clearance.
  • Must be willing to travel to Washington, DC on occasion.

Skills: Bridge Building, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Architecture, Cloud Computing, Communication Skills, Computer Science, Computer Security, Documentation, ERP (Enterprise Resource Planning), Enterprise Architecture, Enterprise Protection, External Audit, FISMA - Federal Information Security Management Act, Homeland Security, Hybrid Cloud, Incident Response, Information/Data Security (InfoSec), Internal Audit, Internet Security, Presentation/Verbal Skills, Project/Program Management, Risk Analysis, Risk Management, Risk Management Framework (RMF), SAP, Security Architecture, Security Consulting, Software as a Service (SaaS), Systems Maintenance, Technical Leadership, U.S. National Institute of Standards and Technology (NIST), United States Citizen, Validation Documentation, Vendor/Supplier Evaluation, Willing to Travel, Writing Skills

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:55 min

Executing secure deployments with verified compliance and data residency

Alex Laubscher Alex Laubscher · World Congress 2025

2:21 min

FinLeap Cloud architecture and compliance guidelines

Jan Steffen · LIVE

1:08 min

Structuring a three-tier API architecture in MuleSoft

Nils Hünerberg · World Congress 2023

2:42 min

Core objectives for automated vehicle management systems

Oliver Zimmert · LIVE

2:19 min

Selecting and evaluating enterprise integration platforms

Nils Hünerberg · World Congress 2023

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

Videos

See all

Related articles

See all