IT Compliance Manager
Mantech International Corporation
Washington, DC, United States
2 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.indeed.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English
Job source
Tech stack
Xacta
Software Documentation
Cyber Security
Information Systems
Information Technology Audit
Information Systems Security Architecture Professional
Information Systems Security Engineering Professional
Information Technology
Plan of Action and Milestones
Job description
- Serving as a dedicated IT Compliance Manager exclusively assigned to conduct deep-dive audit readiness assessments and FISMA compliance quality reviews for assigned information systems.
- Evaluating system documentation, technical security controls, access controls, and Plan of Action and Milestones (POA&M) tracking against FISMA, NIST SP 800-53, and FBI policy standards.
- Conducting deep-dive reviews of enterprise-level FISMA artifacts, including security plans, risk assessments, and contingency plans, to ensure control mapping accuracy and completeness.
- Preparing defensible, audit-ready response packages, compliance statements, and supporting evidence to minimize findings during federal audit engagements.
- Communicating identified gaps, weaknesses, and remediation progress directly to Enterprise Cybersecurity Section leadership.
- Developing and tracking corrective action plans and POA&Ms to ensure pre-audit findings are resolved within required timelines.
Requirements
- Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, Business Management, or a related discipline, or equivalent work experience.
- 5+ years of progressive experience in cybersecurity compliance, IT auditing, or Risk Management Framework (RMF) execution.
- Demonstrated experience conducting deep-dive FISMA reviews and evaluating compliance against NIST SP 800-53, NIST SP 800-53A, and federal cybersecurity standards.
- Possess at least one of the following DoD 8140.03 Intermediate proficiency certifications: CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySA+, GSLC, or GSNA.
- Proven experience reviewing enterprise security documentation, preparing audit response packages, and managing POA&M lifecycles.
- Strong technical writing skills with experience developing defensible compliance justifications for federal auditors.
Clearance Requirements:
- An active Top Secret clearance with SCI eligibility is required.
Preferred Qualifications:
- Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Systems Security Professional (CISSP) certification.
- Experience supporting Department of Justice (DOJ) or Federal Bureau of Investigation (FBI) FISMA audits, Inspector General (IG) reviews, or OMB Circular A-123 assessments.
- Familiarity with government Governance, Risk, and Compliance (GRC) tools such as Joint Cybersecurity Authorization Management (JCAM) or Telos Xacta.
- Demonstrated track record of resolving pre-audit findings and achieving minimal or zero audit findings.
Physical Requirements:
- Must be able to remain in a stationary position 50% of the time.
- Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
- Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT