Sr Consultant, Risk Management - P&C (Fleet) Nationwide Mutual Insurance CoSr Consultant, Risk Management - P&C (Fleet)MDRemote$122,000–$214,000 / yearNationwide pays on a geographic-specific salary structure and placement within the actual starting salary range for this position will be determined by a number of factors including the skills, education, training, credentials and experience of the candidate; the scope, complexity and location of the role as well as the cost of labor in the market; and other conditions of employment. Drives technical direction of specialty related to quality control, risk selection, competitive monitoring, and development of knowledge and partnerships across related business units within the enterprise (underwriting, systems, services, claims, sales, distribution, marketing, etc.).
Scrm/Emerging Technology Security Analyst K2ShareScrm/Emerging Technology Security AnalystWashington, DCSupport compliance with the client's Secure and Trustworthy Artificial Intelligence Policy, including the written-approval workflow, required disclosures covering training data sources, learning cutoff dates and model limitations, human-oversight requirements, output review controls, and AI activity logging. Apply OMB M-21-30, M-22-18, and M-23-16; NIST software supply chain security guidance; NIST SP 800-218 (Secure Software Development Framework); and the NIST AI Risk Management Framework and Playbook.
Chief Financial Officer (CFO) Fox Point RecruitmentChief Financial Officer (CFO)Chantilly, VirginiaThis executive will provide strategic financial leadership while overseeing accounting, financial planning and analysis, tax, enterprise risk management, ESOP administration, financial systems, corporate governance, and mergers and acquisitions. The CFO will partner closely with executive leadership and the Board to drive long-term financial performance, operational excellence, and sustainable growth while supporting an employee-owned (ESOP) business structure and maintaining S-Corporation compliance.
Senior ServiceNow Developer - IRM/GRC West Monroe Partners, LLCSenior ServiceNow Developer - IRM/GRCWashington, D.C., DC$127,700–$150,200 / yearWorking knowledge of IRM concepts and data relationships, including entities, risks, controls, control objectives, assessments, issues, indicators, and risk-response or remediation workflows. Configure IRM data structures and relationships for entities, risks, risk statements, controls, control objectives, authority documents, citations, issues, indicators, and remediation activities.
AI Governance Manager DeloitteAI Governance ManagerMclean, VA$134,500–$265,100 / yearAs a Manager, AI Governance on the Enterprise Operations & Risk team, you will be responsible for: Leading delivery of Trustworthy AI risk workstreams, including generative AI, agent model validation, and AI regulatory sensing, for Deloitte member firms and external clients in the Technology, Media & Telecommunications industry. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.
Senior Counsel Regulatory Affairs and Policy PNC BankSenior Counsel Regulatory Affairs and PolicyDistrict of ColumbiaProviding thought leadership and support to PNC’s regulatory strategy and relationships in conjunction with other Legal Department and Regulatory/Government Affairs colleagues; Advising senior management on key regulatory issues and trends and on how to proactively manage regulatory issues and relationships; Providing specialized legal advice and counsel to attorneys supporting the lines of business, as well as management in those areas, on a wide array of regulatory issues in support of the company’s efforts to achieve its business goals in compliance with law and regulation. Ensuring that PNC is in line with industry best practices for a top-tier bank, in its approach to understanding regulatory guidance; Analyzing legislation to identify issues for PNC and drafting legislative amendments to support ongoing advocacy of PNC Government Affairs; Leading the development of comment letters, advocacy materials, and policy positions on significant regulatory and legislative initiatives affecting banking, payments, and digital assets, along with other new regulations and guidelines that impact PNC.
SAP GTS Manager PricewaterhouseCoopers LLPSAP GTS ManagerWashington, DC$99,000–$232,000 / yearPreference for a Master''s or Masters of Business Administration degree in at least one of the following fields of study: Accounting, Analytics/Data Science, Business Administration/Management, Computer Science/Information Systems, Cybersecurity, Economics, Engineering, Finance, Mathematics/Statistics, Operations/Supply Chain, Project/Technology Management, Risk Management/Insurance. As a SAP GTS Manager, you will play a pivotal role in helping clients optimize operational efficiency by analyzing their needs, implementing software solutions, and providing training and support for seamless integration of business applications.
Security Engineer Core One SolutionsSecurity EngineerMclean, VA$150,000–$200,000 / yearThe ideal candidate brings deep expertise in NIST frameworks, FedRAMP authorization processes, continuous monitoring (ConMon), cloud security, incident response, and ATO lifecycle management, along with the ability to operate effectively within classified and high-security environments. Final compensation is determined based on factors including, but not limited to, relevant experience, education, certifications, security clearance level, contract requirements, geographic location, and internal pay equity, and may reflect market data specific to the awarded contract.
AI Governance Senior Consultant DeloitteAI Governance Senior ConsultantMclean, VA$110,700–$218,300 / yearAs a Senior Consultant, AI Governance on the Enterprise Operations & Risk team, you will be responsible for: Supporting delivery of Trustworthy AI risk workstreams, including generative AI, agent model validation, and AI regulatory sensing, for Deloitte member firms and external clients in the Technology, Media & Telecommunications industry. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.
Manager, Product Management GRCx Data Products Capital One Financial CorpManager, Product Management GRCx Data ProductsMcLean, VA$149,800–$171,000 / yearBasic Qualifications: Currently has, or is in the process of obtaining one of the following with an expectation that the required degree will be obtained on or before the scheduled start date: A Bachelor's or Master's Degree in a quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Computer Science, Computer Engineering, Software Engineering, Mechanical Engineering, Information Systems or a related quantitative field), Business or Marketing. Product Management at Capital One is a booming, vibrant craft that requires reimagining the status quo, finding value creation opportunities, and driving innovative and sustainable customer experiences through technology.
Senior Director, Product Management-GRCx Capital One Financial CorpSenior Director, Product Management-GRCxMcLean, VA$269,600–$307,700 / yearProduct Management at Capital One is a booming, vibrant craft that requires reimagining the status quo, finding value creation opportunities, and driving innovative and sustainable customer experiences through technology. Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Information Systems Security Engineer (ISSE) - Skill Level 1 Kaizen Approach, Inc.Information Systems Security Engineer (ISSE) - Skill Level 1Annapolis Junction, MDMust have a bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university, OR 11 years of Information Systems Security Engineer experience if a degree is not held, and must meet DoD 8570 compliance with IASAE Level 2. Active TS/SCI clearance with Polygraph is required. Requirements: Must have the ability to participate as a security engineering representative on engineering teams for the design, development, implementation, evaluation, and integration of secure networking, computing, and enclave environments, including serving as the primary representative when required.
Program Manager – Legal and Compliance Review Kaiva CorpProgram Manager – Legal and Compliance ReviewWashington, DCFull timePhysical DemandsPhysical Demand Estimated RequirementStanding 60% per dayWalking > 10% per dayStooping 75% per dayTelephone/Virtual Meeting Work > 25% per dayReading/Document Review > 50% per dayOther- Frequent participation in virtual and in-person meetings, presentations, training sessions, acquisition reviews, stakeholder engagements, and occasional travel to government or customer sites as required. This position serves as the primary day-to-day leader for the attorney team and works closely with government stakeholders to ensure that assigned activities, casework, deliverables, and program objectives are completed accurately, consistently, and in accordance with applicable laws, regulations, policies, procedures, and contractual requirements.
Cybersecurity Protect Analyst Spahr Solutions GroupCybersecurity Protect AnalystFort Belvoir, VirginiaBlue Team & Posture Validation: Coordinate and conduct "Blue Team" assessments under Government supervision to evaluate subscriber security postures for DoW compliance, while validating detection playbooks and signature effectiveness by emulating adversary tactics to trigger alerts and detect Red Team activities. · Cyber Threat Intelligence (CTI) Integration: Monitor, evaluate, and digest cyber threat intelligence feeds, indicator of compromise (IOC) alerts, and open-source threat reports to anticipate emerging vectors and proactively adjust defensive postures.
NewISSO Lead DoS CSS OneZero SolutionsISSO Lead DoS CSSWashington, DCFull timeChair Implementation Readiness Reviews prior to independent Security Control Assessments and oversee SCRM/demo preparation(RMF Steps 3–4).Oversee iPost risk-score management, ensure findings open more than 30 days are tracked and reported, and enforce BOD remediation timelines across the portfolio(RMF Step 6).Lead post-incident reviews for significant incidents and ensure outcomes flow into risk assessments, POA&Ms, SSPs, and control implementation statements. The ISSO Lead maintains an accurate, current picture of every consular system's lifecycle stage, authorization status, and risk posture; leads a team of SME, Senior, and Information Assurance analysts serving as ISSOs of record; sets technical direction for the vulnerability management and cloud engineers; and interfaces daily with the Information Systems Security Manager (ISSM), Authorizing Official's Designated Representative (AODR), and system owners.
Security Assurance Specialist , AWS Compliance & Security Assurance Amazon.com IncSecurity Assurance Specialist , AWS Compliance & Security AssuranceArlington, VAAs part of the Amazon Web Services (AWS) Security team, we are looking for a technically deep Industry Specialist who is passionate about owning far-reaching projects to drive continuous improvement across AWS at unparalleled scale. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
NewCompliance Paralegal Choice HotelsCompliance ParalegalNorth Bethesda, MarylandNorth Bethesda, MD — Located at Pike & Rose , our worldwide headquarters is less than 15 miles from Washington, D.C., one block away from the North Bethesda Metro station, with easy access to I-495, complimentary parking, electronic charging stations, restaurants and retail. Field/Remote — Select roles designated as field/remote will require associates to work from a home office, connecting virtually with Choice team members and leadership on Zoom, with possible required travel depending on the role.
Security Compliance Specialist, Amazon Leo Security Assurance Amazon.com IncSecurity Compliance Specialist, Amazon Leo Security AssuranceArlington, VAIn this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators. Interpret NIST SP 800-53, Intelligence Community Directives (ICD), Committee on National Security Systems Instruction (CNSSI), and other government compliance requirements and define their applicability to ALG products and services.
Information Systems Security Engineer Prodigy OneInformation Systems Security EngineerAnnapolis Junction, MarylandThe strongest candidates will have experience working in these areas: Validating and verifying system security requirements and establishing system security designs for large-scale systems, major system elements, and interfacing systems that are part of a large complex network environment with geographically distributed components. Preferred Qualifications: Five (5) years of experience with Defense in Depth Principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying risk assessment methodology to system development.
Information System Security Manager (req-294) CATHEXISInformation System Security Manager (req-294)Tysons, VA$150,000–$195,000 / yearThe ISSM is responsible for the development, implementation, and maintenance of the agency's information security program in accordance with the Risk Management Framework (RMF), NIST SP 800-series guidance, and applicable federal and agency-specific security policies. Lead and manage the Assessment and Authorization (A&A) process for information systems in accordance with the Risk Management Framework (RMF, NIST SP 800-37), ensuring timely issuance and maintenance of Authorizations to Operate (ATOs).