careertakescareertakes

Compliance & Audit Support - Jr.

Confidential ClientConsulting
Entry LevelFull-timeHybrid$86,735
Washington, District of Columbia
15 Hours Ago

The Compliance & Audit Support Specialist (Jr) supports federal cybersecurity compliance efforts by assisting in documentation, audit facilitation, risk management, and continuous monitoring activities within a federal civilian agency. This role involves producing and maintaining security documentation aligned with federal standards, supporting audit and FISMA reporting processes, and collaborating with senior staff to ensure adherence to cybersecurity policies and frameworks. It offers significant professional development opportunities for early-career cybersecurity professionals in a mission-critical federal IT environment.

Boost your chances. Upload your resume to see your match score.

Unlock Match Rate
Description

About Careertakes

👉 Important disclosure: Careertakes is a third-party recruiting platform supporting this hiring process. If selected, you will be employed directly by our client, Government Services (Federal contracting).

Applicants for this role may also receive access to additional matched opportunities through the Careertakes platform.


Role Overview

Confidential Client is seeking an early-career Compliance & Audit Support Specialist (Jr) to support enterprise cybersecurity compliance for a federal civilian agency in Washington, DC. This role provides foundational support for FISMA reporting, RMF compliance, audit facilitation, security documentation, and continuous monitoring under the direction of senior ISSOs and compliance staff.

Work will be performed primarily at the Government facility in Washington, DC, with potential hybrid/remote arrangements as approved. This position requires the ability to obtain and maintain a government background investigation commensurate with a Moderate Risk designation (Minimum Background Investigation or higher) prior to performing work.

Estimated pay: $86,735 per year (estimated). Benefits include health, dental, vision, 401(k) matching, flexible spending accounts, paid holidays, and paid time off.


Key Responsibilities

  • Assist senior ISSOs and compliance staff in creating, updating, and maintaining cybersecurity documentation (SSPs, CMPs, ISCPs, ERAs, architecture diagrams, etc.) per agency templates.
  • Review draft documentation for completeness, formatting consistency, grammar, and alignment to templates prior to Government submission.
  • Upload and maintain assigned documents in the agency GRC tool and track document review cycles and submission deadlines.
  • Support controls assessment activities: artifact collection, evidence gathering, stakeholder coordination, and documenting NIST SP 800-53A Determine If Statements.
  • Assist with SAPs, SARs, AARs, and POAM drafting and formatting; map vulnerabilities to NIST SP 800-53 controls.
  • Assist in collecting, compiling, and validating FISMA metrics and supporting quarterly FISMA reporting and dashboards.
  • Provide logistical and administrative audit support: prepare artifact packages, coordinate walkthroughs, track auditor requests, and maintain submission logs.
  • Support accreditation knowledge management and expiration tracking for ATO/AOR documentation and related agreements.
  • Maintain POAM tracking and assist with monthly POAM status reports and evidence collection.
  • Support Ongoing Authorization (OA) activities, test scheduling, and GRC entries for OA test results.
  • Assist with ERM risk register updates, visualization inputs, and preparation of ERM deliverables.
  • Participate in HVA inventory updates and complete CISA HVA Assessment 3.0 training within the first 90 days.
  • Support FedRAMP CONMON logistics and tracking, including meeting prep and vendor follow-up.
  • Assist with cybersecurity and privacy awareness training development tasks and tracking government review cycles.
  • Ensure all deliverables meet federal security, privacy, accessibility (Section 508), and agency-specific requirements.

Required Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business Administration, or a related field — or equivalent combination of education and directly relevant experience.
  • 1–2 years of experience in information security, IT compliance, audit support, or related roles (including internships or entry-level federal contractor experience).
  • Foundational knowledge of the NIST Risk Management Framework (RMF) and NIST SP 800-53 control families.
  • Demonstrated ability to produce clear, well-organized, professionally written technical documentation aligned to templates and style guides.
  • Ability to obtain and maintain a government background investigation consistent with a Moderate Risk designation prior to starting work.

Preferred Qualifications

  • Prior internship or entry-level experience supporting federal cybersecurity compliance, RMF documentation, or audit facilitation.
  • Familiarity with agency GRC tools for documentation management, POAM tracking, or continuous monitoring.
  • Exposure to federal audit processes (IG/GAO), FedRAMP CONMON, or FISMA reporting workflows.
  • Basic familiarity with cloud security concepts and vulnerability management (CVSS) concepts.

Required Skills & Competencies

  • Strong written communication skills and attention to grammatical accuracy and formatting.
  • Organized with strong time-management skills and ability to track multiple concurrent documentation and audit tasks.
  • Ability to follow detailed procedural instructions, templates, and style guidance.
  • Proficiency with Microsoft Office (Word, Excel, PowerPoint) and Adobe Acrobat Pro.
  • Familiarity with SharePoint and enterprise collaboration tools (Microsoft Teams).
  • Knowledge of Section 508 accessibility requirements as applied to technical documentation.
  • Strong interpersonal skills to coordinate with system owners, auditors, and technical teams.
  • Eagerness to learn and develop technical expertise in federal RMF, FISMA, and cybersecurity compliance.

Desired Certifications & Training

  • CompTIA Security+, CompTIA CySA+, (ISC)² SSCP, or equivalent entry-level cybersecurity certification.
  • Completion of CISA HVA Assessment 3.0 training within the first 90 days (or willingness to complete).
  • Exposure to federal GRC platforms, CyberScope/FISMA reporting processes, and FedRAMP continuous monitoring practices.

Location & Security Requirements

  • Work location: Washington, DC (primarily on-site at a federal facility; hybrid arrangements possible as approved).
  • Must be able to obtain and maintain a government background investigation commensurate with a Moderate Risk designation prior to performing work.

Compensation & Benefits

  • Estimated salary: $86,735 per year (estimated).
  • Competitive benefits package including health, dental, and vision insurance; 401(k) with company match; flexible spending accounts; paid holidays; and paid time off.
  • Significant professional development and mentorship opportunities within federal RMF and cybersecurity compliance.

Additional Information

This role is ideal for an early-career cybersecurity professional seeking hands-on experience with federal RMF, FISMA reporting, audit support, and security documentation in a mission-driven environment. You will work under senior ISSOs and compliance staff and have opportunities to grow technical skills and federal cybersecurity expertise.


Equal Opportunity & Hiring Transparency

Careertakes and our client are Equal Opportunity Employers committed to building a diverse and inclusive workforce. We prohibit discrimination or harassment of any kind. To support a fair and efficient hiring process, AI tools may be used to assist with application review or resume screening. These tools do not replace human decision-making. Final hiring decisions are made by people.

If you have questions about how your data is used, please contact us directly.

Negotiate a higher salary! Check the salary ranges for this job type in your area.

View My Salary Range