Guidehouse
Cyber Consulting
CybersecurityConsultant
Neural analysis suggests this role is
optimal for Mid candidates.
“Cybersecurity Consultant at Guidehouse. Skills: Cyber risk management, POA&M lifecycle, NIST SP 800-53, GRC platforms. Lead cyber risk management efforts. Manage end-to-end POA&M lifecycle”
What You'll Achieve.
validation, and closure of identified security weaknesses; support timely remediation; align with continuity and contingency planning requirements
Industry & Context.
analytical ability
Ability to Obtain Public Trust, Up to 25% Travel, Federal or DoD "PUBLIC TRUST" clearance
What They're Looking For.
Must Have
Ability to Obtain Public Trust, Bachelors Degree, 3 years of cybersecurity or IT risk management experience, GRC platforms
Nice to Have
ACTIVE PUBLIC TRUST or SUITABILITY, active HHS/NIH clearance, experience focused on cybersecurity risk management, Experience developing automated data pipelines, integrating APIs into Power BI dashboards, MITRE ATT&CK framework, vulnerability prioritization methodologies, EPSS, CVSS v3, Prior experience supporting a federal agency, working in a Public Health environment, CompTIA Security+ CE, CISSP, CEH, cloud-related certifications
What You'll Do.
Lead cyber risk management efforts
Manage end-to-end POA&M lifecycle
Prioritize remediation activities
Conduct POA&M status reviews
Validate system criticality
Prepare reports and briefings
Provide cyber subject matter expertise
Maintain and update BIA documentation
How You'll Work.
Team & Collaboration
Build and maintain working relationships with business, engineering, and security teams; Coordinate with system owners and O&M teams; Collaborate with stakeholders
Communication Scope
communication
Full Job Description
**_Job Family_ :** Cyber Consulting ** _Travel Required_ :** Up to 25% **_Clearance Required_ :** Ability to Obtain Public Trust ** _What You Will Do_ :** * Lead cyber risk management efforts across a portfolio of client applications. * Manage end-to-end POA&M lifecycle, including creation, tracking, validation, and closure of identified security weaknesses * Prioritize remediation activities based on risk severity, compliance requirements, and operational impact Conduct regular POA&M status reviews and coordinate with system owners and O&M teams to track milestone progress Perform BIAs to identify critical systems, functions, dependencies, and recovery time/objectives Collaborate with stakeholders to validate system criticality and align with continuity and contingency planning requirements * Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation. * Prepare reports and briefings for leadership and federal oversight stakeholders. * Provide cyber subject matter expertise during information security audits and assessments. * Maintain and update BIA documentation in alignment with evolving system architecture and mission priorities ** _What You Will Need_ :** * Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred. * Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on cybersecurity risk management are preferred. * Minimum of a Bachelors Degree is required. * **Tools:** Hands-on experience with GRC platforms. * **Knowledge:** Deep understanding of NIST SP 800-53, FISMA requirements, and 800-37. * **Soft Skills:** Strong communication and analytical thinking; ability to manage m
Applying for this Cybersecurity Consultant role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Guidehouse?
Real rants from real employees. Read before you apply.