Job Description
This position is contingent upon award of contract
SOSi is seeking a Risk Mitigation Specialist-Expert to support our government customer in Tampa, FL. The Risk Mitigation Specialist provides near real-time support to assess and mitigate risks and threats. This includes collecting and analyzing data sets to validate people, assets, utilities, infrastructure, and the information environment associated with the customer’s priorities. RM Specialists assess global risks and threats, supporting CI analytics for SOF and HUMINT operations as well as military and commercial supply chain activities.
Essential Job Duties:
- Collaborate with CI Analysts to present new or anticipated threats and related probabilities of risks.
- Conduct comprehensive Risk Assessments for proposed intelligence operations, new technologies, or collaborative partnerships to identify potential security and counterintelligence threats.
- Analyze foreign intelligence entity (FIE) threats, tactics, and targeting patterns to inform defensive measures.
- Perform vulnerability analyses of internal processes, operational plans, and technical systems to identify potential weaknesses an adversary could exploit.
- Interview personnel involved in security incidents or anomalies to determine the root cause, scope, and potential damage of a compromise.
- Design and recommend specific countermeasures—procedural, technical, or operational—to reduce identified risks to an acceptable level.
- Create and deliver tailored security, counterintelligence, and OPSEC (Operations Security) briefings for personnel and teams based on their specific roles or mission sets.
- Collaborate with legal, policy, and technical experts to ensure proposed mitigation strategies are effective, compliant, and feasible.
- Conduct periodic inspections and reviews of ongoing activities to ensure that emplaced risk mitigation measures are being adhered to.
- Monitor and report on compliance with agency and IC-wide security policies and directives.
- Track the remediation of identified vulnerabilities and policy deviations, ensuring that corrective actions are completed and effective.
- Review after-action reports from security incidents to identify systemic issues and recommend improvements to agency-wide policy and training.
- Serve as the primary security and risk advisor to leaders and managers of operational, technical, or analytic teams.
- Prepare and present formal risk assessments, findings, and recommendations to senior decision-making bodies and oversight committees.
- Liaise with counterparts in other IC agencies to deconflict activities and share best practices and threat information.