IT Audit Consultant

Contract Performance Period : September 14, 2026 - December 31, 2027
Job Location : Washington, DC location(s) (Metro Access) remote.
Direct Hire : Term: through 31/12/2027, with a possibility of extension
Pay Range : Depending on Experience
Travel Requirements : Telework available
Working Remotely :

Project Description :
We are seeking two to three (2–3) External Audit Consultants to provide compliance and information security support in preparation for annual FISMA audits, conduct independent verification and validation (IV&V) of current policies and procedures, and assist with remediation and process improvements.

This is a high-impact compliance role supporting ongoing IV&V assessments, audit readiness, and the continuous improvement of information security practices within a large, regulated organization.

Location: Washington, DC  |  Openings: 2–3  |  US Citizenship is Required

Qualification Requirements :
  • Minimum 10 years of progressively responsible experience in IT as an IT Auditor, IT Security Analyst, IT Manager, Business Analyst, System Administrator, or a combination thereof
  • Experience assessing financial systems leveraging NIST 800 series or FISMA compliance frameworks strongly desired
  • CISSP or CISA certification strongly desired
  • Experience leading and developing audit and security-related system documentation and requirements
  • Experience with cloud and on-premises applications desirable
  • Clear, concise, and effective verbal and written communication skills
  • Strong project management skills with ability to function in an unstructured matrix management environment
  • Ability to simultaneously manage several complex assignments requiring analysis of intricately related variables


Skills Requirements :
  • FISMA audit preparation and compliance program management
  • Independent Verification & Validation (IV&V) assessments
  • Knowledge of NIST 800 series, FISMA, CISA, and FedRAMP standards and procedures
  • Information security and internal controls advisory
  • Design and implementation of audit mechanisms and monitoring reports
  • Vulnerability detection and remediation planning
  • Development of compliance-related policies, processes, procedures, and standards
  • Automated compliance and auditing solution implementation
  • Audit trail documentation and evidentiary material evaluation


Responsibilities :
  • Participate in evaluating, developing, maintaining, and updating the technology compliance program; advise technology officers and managers on compliance, information security, and internal controls
  • Prepare the technology departments for annual FISMA audits and assist in developing required supporting documentation
  • Conduct IV&V assessments to validate audit findings for identified systems of record against applicable policies; document findings and recommendations
  • Crosswalk evidence and information security program documentation against CISA and FedRAMP standards and procedures; document results
  • Develop solutions with team members to minimize vulnerabilities and advise on compliance issues with recommended remediation
  • Design, test, and implement audit mechanisms to detect non-compliance and support evaluation of evidentiary materials; ensure proper audit trails are recorded
  • Recommend and help implement automated solutions in the areas of compliance, auditing, and vulnerability detection
  • Provide weekly status reports documenting concerns, issues, risks, and progress
  • Create audit and monitoring reports for team use as directed
  • Document updates to compliance-related policies, processes, procedures, and standards as directed


Job ID : 1583

Submit your resume for this position

"*" indicates required fields

This field is for validation purposes and should be left unchanged.
Your Name*
Accepted file types: pdf, doc, docx, txt, Max. file size: 1 MB.
Note : accepted file types are pdf,doc,docx and txt up to 1MB