Jobs · Tennessee

Risk and Compliance Analyst

Boston Government Services, LLC (BGS) · Knoxville Metropolitan Area · 3 days ago
$137k–$161k/yrFull-time

Responsibilities

  • Supports client cybersecurity governance, risk management, compliance reporting, audit support, corrective action tracking, waiver management, and cybersecurity risk visibility.
  • Sustain a defensible risk posture through structured analysis, documentation, reporting, and stakeholder coordination.
  • Support development and maintenance of risk registers, POA&Ms, risk mitigation waiver records, corrective action plans, compliance dashboards, and security metrics.
  • Aid in internal, external, and third-party cybersecurity audits and assessments.
  • Coordinate artifact collection, stakeholder inputs, interview support, remediation tracking, and response documentation.
  • Support risk analysis for system changes, vulnerabilities, exceptions, third-party software, vendor documentation, SBOM inputs, and acquisition-related cybersecurity concerns.
  • Help prepare cybersecurity risk profiles, FISMA quarterly/annual inputs, information security reports, dashboards, and ad hoc risk analyses.
  • Track waiver justifications, risk levels, compensating controls, approval authorities, expiration dates, and annual reassessments.
  • Identify emerging compliance gaps and recommend practical mitigation actions.

Requirements

  • Bachelor’s degree or equivalent.
  • Experience supporting federal cybersecurity compliance, audit readiness, RMF, POA&M management, FISMA reporting, or risk management.
  • Working knowledge of NIST 800-53 Rev. 5, RMF, FISMA, federal-style reporting, CISA BODs, KEV tracking, and corrective action management.
  • Ability to analyze technical and compliance information and convert it into actionable risk reporting.
  • Strong writing, coordination, and stakeholder management skills.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.

Preferred Qualifications

  • CISA, CISM, Security+, CISSP, CAP/CGRC, CRISC, or equivalent.

Location/Work Arrangement

  • Schedule is full-time, Monday – Friday 40-hour week, 4/10’s, or 9/80’s and may require on call or overnight shifts depending on contract needs.
  • This position may be fully onsite or hybrid/remote depending on the needs of the specific contract.

Benefits

  • BGS offers a competitive total compensation package to eligible employees.
  • Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability.
  • Starting compensation for this role typical salary ranges between $136,849 – $160,999 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.

EEO

  • BGS is an Equal Opportunity/Affirmative Action employer.
  • All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.

Exclusive Agreement Disclaimer

  • BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients.
  • By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying.

Similar jobs

Risk and Compliance Analyst

Davis Polk & Wardwell LLPNew York, United States· 2 wk ago
Legal$100k–$125k/yrapply on davispolk.wd5.myworkdayjobs.com