As the state’s IT leader, DoIT manages information technology and telecommunications services and provides critical support to state agencies, the Executive Office of the Governor, coordinating offices, and independent Executive Branch agencies. The agency provides cybersecurity, digital, data governance, AI enablement, infrastructure, and platform services to its partner agencies, ensuring the State of Maryland is more secure, productive, and accessible. GRADE STD 0023. The purpose of this position is to support the development of the Department of Information Technology’s (DoIT) Third-Party Risk Management (TPRM) program while providing cross-functional support for enterprise cybersecurity risk assessments and the policy lifecycle. As the primary analyst for third-party oversight, this role ensures that all vendors, contractors, and cloud service providers comply with the State of Maryland’s security standards. Additionally, this position serves as a GRC generalist, facilitating the Authority to Operate (ATO) process and ensuring that cybersecurity policies are implemented, and maintained in alignment with NIST frameworks and state legislative mandates.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level