IBSS Corporation logo

Offshore Sr. GRC Analyst / Sr. ISSO (Information System Security Officer) Consultant | CMMC

IBSS Corporation
  • Silver Spring, MD
  • Remote
  • $3,000
  • Quick Apply
30+ days ago

Job Description

Job Title: Senior GRC Analyst / Senior ISSO (Information System Security Officer) Consultant
Location: Remote (This position is for offshore consultants supporting EST time zone)
Monthly Salary: $3000 Fixed / Flat Fee per month
Application Deadline: September 30, 2026

To apply, please follow these steps:
  • Visit https://ibsscorp.com/careers/
  • Select the position you are interested in
  • Review the job details, then click Apply Now
  • Complete and submit your application

Description
The Senior GRC Analyst / Senior ISSO will support cybersecurity governance, risk management, and compliance (GRC) initiatives across commercial and federal client environments. This role requires hands-on experience supporting cybersecurity compliance activities. Supporting NIST SP 800-171 compliance assessments to evaluate organizational security controls and identify gaps requiring remediation.

The ideal candidate must be capable of independently developing and maintaining System Security Plans (SSPs), identifying documentation and evidence deficiencies, and coordinating directly with stakeholders to request corrected or additional artifacts as needed. The candidate must possess strong written communication skills and the ability to translate technical implementations into defensible compliance documentation.

Key Responsibilities:

Governance & Policy Support
  • Develop, maintain, and update cybersecurity policies, standards, procedures, and supporting documentation.
  • Support policy-to-control mapping and traceability activities across multiple frameworks.
  • Coordinate annual policy reviews and assist with compliance reporting activities.
  • Research cybersecurity laws, regulations, standards, and guidelines relevant to client environments.

Risk Management
  • Conduct system-level and scoped enterprise risk assessments aligned with NIST SP 800-30 methodologies.
  • Identify threats, vulnerabilities, likelihood, impact, and overall risk ratings.
  • Develop risk assessment reports and remediation recommendations.
  • Maintain and track risks within centralized risk registers.
  • Support vendor risk management activities, including third-party security questionnaire and SOC report reviews.

Compliance & Audit Readiness
  • Independently develop and maintain System Security Plans (SSPs) for frameworks such as NIST SP 800-53 and NIST SP 800-171.
  • Document control implementation statements and validate supporting evidence.
  • Identify incomplete, inaccurate, or insufficient artifacts and coordinate directly with technical stakeholders to obtain corrected evidence.
  • Support readiness efforts for frameworks such as CMMC, HIPAA, ISO 27001, SOC 2, and FedRAMP.
  • Participate in internal and external audit engagements, evidence collection activities, stakeholder interviews, and remediation tracking efforts.
  • Maintain POA&Ms and compliance remediation trackers.

Methodology & Team Support
  • Contribute improvements to internal GRC methodologies, templates, checklists, and delivery processes.
  • Provide mentorship and informal guidance to junior team members, apprentices, and interns.
  • Escalate complex issues and risks to senior leadership as appropriate.
  • Participate in monthly volunteer efforts supporting environmental and humanitarian initiatives.

Required Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Information Systems, Computer Science, or related field; OR equivalent cybersecurity coursework and practical experience.
  • 10 to 12 years of hands-on cybersecurity GRC experience.
  • One or more of the following certifications: CCSP, CISA, CISM, CISSP
  • Experience supporting or documenting compliance activities aligned with:
    • NIST SP 800-53
    • NIST SP 800-171
    • CMMC
  • Experience developing or maintaining System Security Plans (SSPs).
  • Ability to independently identify evidence gaps and request corrected artifacts from stakeholders.
  • Strong written and verbal communication skills.
  • Ability to work independently and within a team environment.

Preferred Qualifications:
  • Familiarity with FedRAMP environments and federal compliance requirements.
  • Security+, CAP, CCP, or similar cybersecurity certification preferred but not required.
  • Experience supporting federal clients or regulated environments preferred.
  • Public Trust eligibility required; Secret clearance eligibility preferred.

Work Environment:
This position supports both commercial and federal cybersecurity compliance initiatives within a collaborative and fast-paced environment. Candidates should be comfortable working directly with technical teams, leadership, and client stakeholders while managing multiple concurrent compliance activities.

About IBSS Corp.

Since 1992, IBSS, a woman-owned small business, has provided transformational consulting services to the Federal defense, civilian, and commercial sectors. Our services include cybersecurity and enterprise information technology, environmental science and engineering (including oceans, coasts, climate, and weather), and professional management services.

Our approach is to serve our employees by investing in their growth and development. As a result, our employees bring greater capabilities and provide exceptional service to our clients. In addition to creating career development opportunities for our employees, IBSS is passionate about giving back to the community and serving the environment. We strive to leave something better behind for the next generation.

We measure our success by the positive impact we have on our employees, clients, partners, and the communities we serve. Our tagline, Powered by Excellence, is a recognition of the employees that make up IBSS and ensures we deliver results with quality, applying industry best practices and certifications.

IBSS offers a competitive benefits package that includes medical, dental, vision, and prescription drug coverage with a company-paid deductible, paid time off, federal holidays, a matching 401K plan, tuition/professional development reimbursement, and Flex-Spending (FSA)/Dependent Care Account (DCA) options.

IBSS is an affirmative action and equal opportunity employer. All qualified applicants will be considered for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. Click https://www.eeoc.gov/poster to see that the EEO is the law. Please direct any inquiries to the HR Department email at HR@ibsscorp.com.

If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to the Talent Acquisition department at Recruiting@ibsscorp.com

Numbers & Facts

LocationSilver Spring, MD (
Remote
)
IndustryComputer/IT Services
Company Size100 to 499 employees
Year Founded1992
Websitehttps://www.ibsscorp.com

Benefits

Paid Sick Days, Performance Bonus, Prescription Drug Coverage, Professional Development, 401K, Stock Options, Employee Referral Program, Flexible Spending Accounts, Employee Events, Retirement / Pension Plans, Tuition Reimbursement, Work From Home, Life Insurance, Military Leave

About Company

Headquartered in Silver Spring, MD, IBSS is a certified women-owned small business specializing in Cybersecurity and Enterprise IT Services; Oceans, Coasts, Climate, and Weather Services; and Professional Services. For more than 20 years, IBSS has been supporting federal and commercial customers. Our approach is to serve our employees by investing in their growth and development. As a result, our employees bring greater capabilities and provide an exceptional level of service to our clients. Our tagline, Powered by Excellence, is a recognition of the employees that make up IBSS and ensure we deliver results with quality, applying industry best practices and certifications. We apply our services, certified ISO 9001:2015, ISO 27001, ISO 20000, and CMMI, to deliver impactful consulting services to our clients.

Skills

  • Analysis Skillsunmatched
  • CCSP - Cisco Certified Security Professionalunmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Communication Skillsunmatched
  • CompTIA Security+unmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Consultingunmatched
  • Customer Support/Serviceunmatched
  • Document Controlunmatched
  • Documentationunmatched
  • Environmental Engineeringunmatched
  • Environmental Sciencesunmatched
  • External Auditunmatched
  • Federal Compliance Regulationsunmatched
  • HIPAA (Health Insurance Portability and Accountability Act)unmatched
  • ISO (International Organization for Standardization)unmatched
  • Information Technology & Information Systemsunmatched
  • Internal Auditunmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Legal Researchunmatched
  • Maintain Complianceunmatched
  • Mentoringunmatched
  • Presentation/Verbal Skillsunmatched
  • Professional Servicesunmatched
  • Regulationsunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Secret Clearanceunmatched
  • Security Consultingunmatched
  • Small Businessunmatched
  • Support Documentationunmatched
  • Systems Maintenanceunmatched
  • Team Playerunmatched
  • Traceabilityunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder