HimalayasHimalayas logo
ICFIC

Manager, Cyber Security

ICF is a global consulting and technology services provider that partners with government and commercial clients to deliver professional services and technology solutions. They address complex challenges in areas like energy, environment, health, and public safety.

ICF

Employee count: 5000+

Salary: 159k-270k USD

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

This role is contingent upon a contract award.

ICF is seeking an experienced Cybersecurity Manager to lead cybersecurity governance, risk management, compliance coordination, and security integration for a complex federal technology services program. This role will be responsible for ensuring cybersecurity requirements are addressed across systems, applications, integrations, cloud services, product delivery, and operational support functions.

The ideal candidate has demonstrated experience supporting federal cybersecurity programs that require RMF alignment, assessment documentation, POA&M management, contingency planning, vulnerability coordination, cybersecurity reporting, and integration with engineering and product delivery teams. This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and client stakeholder groups.

Job Location: This position is remote within the United States.

Please note that ICF monitors employee work locations, restricts access from foreign locations and IP addresses, and prohibits the use of personal VPN connections.

What You’ll Be Doing

  • Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.
  • Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.
  • Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.
  • Evaluate cybersecurity risks associated with new capabilities, including applications, integrations, plug-ins, software tools, system connections, and platform changes.
  • Track system security deficiencies, remediation activities, and Plans of Action and Milestones through closure.
  • Lead or support development, maintenance, and testing of contingency plans for systems and services within program scope.
  • Develop and maintain cybersecurity governance standard operating procedures, workflows, templates, and reporting mechanisms.
  • Coordinate cybersecurity inputs into engineering, product delivery, architecture, DevSecOps, cloud, data, and service operations activities.
  • Support vulnerability management, incident response coordination, risk reviews, control evidence collection, and security-related data calls.
  • Partner with service operations, identity, device, network, platform, and application teams to ensure cybersecurity responsibilities are clear and evidence is maintained.
  • Monitor cybersecurity risks, issues, dependencies, and compliance gaps, and escalate items requiring leadership attention.
  • Translate cybersecurity requirements and risks into practical guidance for technical teams, program leadership, and client stakeholders.

What You Must Have

  • Bachelor’s Degree
  • U.S. Citizenship required due to federal contract requirements.
  • Must be able to obtain and maintain a Federal Public Trust clearance.
  • 10+ years of experience supporting cybersecurity, information assurance, security governance, risk management, compliance, or RMF activities in federal or regulated environments.
  • Active CISSP, CISM, CAP, Security+, GSEC, or equivalent cybersecurity certification.

Preferred Qualifications

  • 7+ years of experience supporting federal cybersecurity requirements, including FISMA, NIST 800-53, RMF, POA&M management, system assessment, or authorization activities.
  • 5+ years of experience developing or maintaining cybersecurity assessment documentation, control implementation statements, security plans, contingency plans, risk assessments, or security artifacts.
  • 5+ years of experience coordinating with system owners, security assessors, engineering teams, product teams, operations teams, or federal cybersecurity stakeholders.
  • 5+ years of experience supporting vulnerability management, incident response coordination, remediation tracking, control evidence collection, or cybersecurity reporting.
  • 3+ years of experience evaluating cybersecurity risks for new technologies, applications, integrations, SaaS platforms, cloud services, or system connections.
  • 3+ years of experience supporting cybersecurity governance for cloud, SaaS, application modernization, DevSecOps, data, or enterprise platform environments.
  • Experience supporting HHS, NIH, FDA, CMS, CDC, or other health-focused federal environments.
  • Experience with Zero Trust, identity and access management, endpoint security, secure cloud architecture, secure SaaS governance, TIC 3.0, or continuous monitoring.
  • Experience integrating cybersecurity requirements into Agile, DevSecOps, CI/CD, product delivery, and application modernization workflows.
  • Experience supporting ATO packages, security assessment activities, security control validation, audit responses, and independent verification or validation reviews.
  • Experience with cybersecurity tools and repositories used for POA&M tracking, vulnerability management, audit evidence, incident coordination, SIEM/SOAR, or continuous monitoring.
  • Experience aligning cybersecurity activities with NIST 800-53 Rev. 5, NIST 800-37, NIST 800-61, NIST 800-34, FedRAMP, FISMA, CISA guidance, or HHS security policy.
  • Experience developing cybersecurity dashboards, executive risk reporting, compliance scorecards, and metrics-based security governance materials.
  • Additional cybersecurity, cloud security, Agile, ITIL, AWS, Azure, Google Cloud, or project management certification.

Working at ICF

ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read our EEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please email Candidateaccommodation@icf.com and we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations. 

Read more about workplace discrimination rightsor our benefit offerings which are included in the Transparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process. 

However, we understand that some candidates may require accommodation that involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance at candidateaccommodation@icf.com. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed. 

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$158,819.00 - $269,993.00Nationwide Remote Office (US99)

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Salary

Salary: 159k-270k USD

Education

Bachelor degree
Professional certificate

Experience

10 years minimum

Experience accepted in place of education

Location requirements

Hiring timezones

United States +/- 0 hours

About ICF

Learn more about ICF and their company culture.

View company profile

We are ICF, a global consulting and technology services company. For over 50 years, we've been partnering with clients to help them solve their most complex challenges and navigate change. Our journey began in 1969 when Clarence 'Lucky' Lester, a Tuskegee Airman, along with three U.S. Department of Defense analysts, founded the Inner City Fund. Initially, our mission was to finance and support minority-owned businesses in winning government contracts. However, our consulting expertise soon became our primary strength, leading us to reorganize as a consulting firm named ICF Incorporated. Throughout the 1970s and 1980s, we focused on providing consulting services on energy issues to U.S. federal agencies.

Our growth and evolution have been marked by strategic expansions and a broadening of our service offerings. We went public in 1989 after acquiring Kaiser Engineering, becoming ICF Kaiser and venturing into engineering and construction services. Though ICF and Kaiser later split, our consulting business continued to thrive. In 2006, we became ICF International, reflecting our expanding global presence and the increased scope of our services, which now range from advisory to implementation and improvement. Today, with approximately 9,000 dedicated professionals across more than 90 offices worldwide, we combine deep industry expertise with cutting-edge innovation. We're passionate about making a positive impact and work across diverse sectors including energy, environment, infrastructure, health, education, social programs, public safety, and consumer and financial markets. Our commitment extends to fostering a culture where our employees feel their values align with ours, and where their work truly matters. We strive to be a catalyst for shaping a more resilient and prosperous future for our clients and the communities we serve.

Employee benefits

Learn about the employee benefits and perks provided at ICF.

View benefits

401(k) Retirement Matching

ICF offers 401(k) retirement matching.

Pet Insurance

Pet insurance is offered as a benefit.

Flexible Work Arrangements

Flexible work arrangements are offered.

Life Insurance

Life insurance is offered to employees.

View ICF's employee benefits
Claim this profileICF logoIC

ICF

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

171 remote jobs at ICF

Explore the variety of open remote roles at ICF, offering flexible work options across multiple disciplines and skill levels.

View all jobs at ICF

Remote companies like ICF

Find your next opportunity by exploring profiles of companies that are similar to ICF. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan