Guidehouse
Technology Consulting
ITSecurityAuditor–SeniorConsultant
Neural analysis suggests this role is
optimal for Senior candidates.
“IT Security Auditor – Senior Consultant at Guidehouse. Skills: IT Security Auditing, Federal IT Controls, Remediation Planning. Lead stakeholder engagement. Lead technical delivery”
Industry & Context.
Root cause analysis; Problem solving
Up to 10% travel, Active Top Secret SCI, CI polygraph
What They're Looking For.
Must Have
3+ years IT consulting, Federal government consulting, Federal information security laws, Federal information assurance laws, Federal information assurance guidance, Bachelor's Degree Technical, Bachelor's Degree Business
Nice to Have
CISA certification, CISM certification, IT risk knowledge, IT controls knowledge, IT security reviews knowledge, FISMA experience, NIST SP 800 experience, FISCAM experience, OMB Circular A-123 assessments, Internal control assessments experience, Access management auditing, Account management auditing, Contingency planning auditing, Configuration management auditing, Audit logging auditing, Audit log monitoring
What You'll Do.
Lead stakeholder engagement
Lead technical delivery
Support federal agencies
Perform IT controls assessments
Perform program evaluations
Analyze IT control weaknesses
Develop remediation plans
Conduct IT controls assessments
Perform IT controls testing
Review documents and artifacts
Evaluate IT controls implementation
Evaluate IT controls effectiveness
Document IT controls testing
Summarize assessment results
Communicate assessment results
Provide subject matter expertise
Respond to IT security requests
Execute IT assessments
Mentor junior team members
How You'll Work.
Team & Collaboration
Client stakeholders; IT system personnel; Junior team members
Communication Scope
Client communication; Senior leadership communication
Process & Methodology
IT assessments, IT evaluations
Full Job Description
**_Job Family_ :** Technology Consulting ** _Travel Required_ :** Up to 10% **_Clearance Required_ :** Active Top Secret SCI with Polygraph ** _What You Will Do_ :** The Senior IT Security Auditor will lead stakeholder engagement and technical delivery for efforts supporting federal agencies with IT controls assessments and program evaluations. This is an ideal role for someone with an information security and assurance or IT audit background who is looking to utilize their skills to work with the federal government to analyze IT control weaknesses, identify root causes, and develop remediation plans. Responsibilities include some or all of the following: Performing assessments of IT controls using industry-standard guidance and leading best practices Conducting interviews and discussions with a variety of client stakeholders, including IT system personnel such as Information System Security Officers (ISSOs) and system administrators * Reviewing and analyzing documents and artifacts to assist in IT controls testing such as system security plans, SOPs, audit logs, configuration scans, and vulnerability scans * Evaluating the implementation and effectiveness of IT controls using provided artifacts against federal requirements, industry guidance, and leading best practices * Documenting the results of IT controls testing in a consistent and high-quality manner that would allow others to review and understand the results * Summarizing and communicating IT controls assessment results to a variety of client stakeholders, including senior leadership * Understanding and analyzing known IT control weaknesses, identifying root causes, and developing detailed remediation plans * Providing subject matter expertise to client personnel on a wide range of matters relating to IT security and assurance * Responding to ad-hoc IT security-related requests from client personnel * Planning and executing day-to-day activities of IT assessments and evaluations individually and for the tea
Applying for this IT Security Auditor – Senior Consultant role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Guidehouse?
Real rants from real employees. Read before you apply.