Cyber Risk and Vulnerability Lead (Remote)

Akima, LLC

• $155K — $165K *
Energy & Utilities
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in IT or related field with 8 years of experience in Information Technology.
  • 4+ years of experience in risk and vulnerability assessments on complex systems.
  • Experience in cybersecurity operations and security control assessments.
  • Proven ability to apply cybersecurity policies and practices effectively.
  • Demonstrated collaboration with IT and cybersecurity leadership for security solutions.
  • Experience validating new cybersecurity tools and assessing enterprise status against benchmarks.
  • Strong communication skills for presenting security strategies and assessments.

Responsibilities

  • Ensure implementation of cybersecurity policies across IT and cybersecurity services.
  • Collaborate with IT management to develop enterprise-wide security solutions.
  • Assess and validate new cybersecurity tools and processes with cybersecurity personnel.
  • Lead risk and vulnerability management efforts, overseeing a small team.
  • Serve as a subject matter expert in cyber risk and vulnerabilities.
  • Apply cyber risk management principles to develop secure solutions for applications.
  • Conduct briefings to Federal Leadership on cybersecurity matters.

Benefits

  • Comprehensive medical, dental, and vision insurance.
  • Life insurance and 401(k) plan.
  • Paid Time Off (PTO) for full-time and part-time employees.
  • Access to a range of voluntary benefits.
Full Job Description
Cyber Risk and Vulnerability Lead is a subject matter expert who supports this mission by leading cybersecurity measures, assessing security controls, evaluating system risks, and leading efforts to respond to cybersecurity data calls, research, and analysis. This role combines deep experience and understanding of cybersecurity functions and oversight and compliance responsibilities, ensuring DOE systems remain compliant, secure, and resilient.

Responsibilities

  • Ensures the appropriate implementation of cybersecurity policies, principles, and practices across information technology and cybersecurity services.
  • Collaborates with IT and cybersecurity line management to develop security solutions that maintain information assurance across the enterprise.
  • Collaborates with cybersecurity personnel to assess and validate new cybersecurity tools and processes. Evaluates the enterprise's overall status against established benchmarks.
  • Leads the enterprise-wide risk and vulnerability management efforts for key areas, typically overseeing a small team of senior technical professionals.
  • Serves as a subject matter expert in cyber risk and vulnerabilities, with in-depth knowledge of cybersecurity, risk management, vulnerabilities, and best practices for strengthening and enhancing the enterprise security posture.
  • Applies principles, methods, and expertise in cyber risk and vulnerability management across relevant technical and engineering disciplines to develop sound, secure solutions for applications and systems.
  • Conducts briefings to Federal Leadership and possesses and applies subject matter expertise across key tasks and high-impact assignments.
  • Serves as a security and technical expert across multiple project assignments.

Cyber Risk and Vulnerability Lead Duties:
  • Perform cybersecurity, risk, and vulnerability analysis and guidance of NIST and FISMA systems, including subsystems within respective system boundaries.
  • Effectively communicate findings, articulate the potential cybersecurity implications of identified risks, vulnerabilities, and weaknesses, and work through recommended resolutions.
  • When determining and assessing risks, evaluate the likelihood that a threat will exploit a vulnerability, as well as the potential impact on operations or data.
  • Provide oversight and leadership by advising IT and engineering teams on prioritizing fixes according to real-world implications, business risk, and business impacts.
  • To meet compliance objectives, ensure enterprise applications and systems adhere to all applicable legal, governmental, and industry security requirements.
  • Establish and maintain strong relationships across teams of cybersecurity professionals, including Information System Security Officers (ISSOs), System Owners (SOs), and Technical Points of Contact (TPOCs).
  • Provide leadership and guidance in responding to cybersecurity and system vulnerability data requests for internal and external audits and reporting, as needed.
  • Provide leadership in communicating complex technical risks clearly and concisely to management, executive leaders, and other federal officials.
  • Act as the primary liaison and point of contact among operational security teams, third-party system owners, contractors, government, and federal executive leadership.

Qualifications

  • Bachelor's Degree in an information technology-related field and eight (8) years of work experience in Information Technology.
  • At least four (4) years of experience performing risk and vulnerability assessments on progressively more complex systems and projects.
  • Experience in cybersecurity operations, security control assessments, or other related technical security functions.
  • Ability to ensure the appropriate application of cybersecurity policies, principles, and practices across information technology and cybersecurity services.
  • Demonstrated experience collaborating with IT and cybersecurity leadership to develop security solutions that maintain information assurance across the enterprise.
  • Experience collaborating with cybersecurity personnel to validate new cybersecurity tools and processes, as well as assessing the enterprise's overall status against established benchmarks.
  • Ability to provide senior-level consulting services to the client as needed to maintain a secure environment.
  • Ability to lead the enterprise-wide Risk and Vulnerability effort for significant organizational components, typically overseeing a small team of senior staff.
  • Ability to work independently with cybersecurity, assessment, external, and government teams to address cybersecurity and vulnerability issues, remove obstacles and barriers, and achieve successful outcomes.
  • Demonstrates strong written and verbal communication skills in preparing, presenting, and defending security strategies, vulnerability assessments, and remediation plans and outcomes.
  • Ability to complete a DOE background investigation and obtain federal government clearance for access to federal systems.
  • Ability to obtain DOE L clearance.
  • Any clearance requirements for this position are established by the government contract.

Job ID

2026-26053
Work Type

Remote
Pay Range

$155,000 - $165,000
Benefits

Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.

Similar Jobs

More Jobs at Akima, LLC

More Energy & Utilities Jobs

Find similar Cyber Risk and Vulnerability Lead (Remote) jobs: