Audit Remediation Project Manager
Location: 6314 Remote/Teleworker US
Time Type: Full time
Job Description
The Audit Remediation Project Manager leads audit remediation execution for the SEC ISS contract by directing project tasks, deliverables, and team performance across vulnerability and compliance workstreams. This role manages the end-to-end lifecycle of audit findings, including triage, corrective action planning, remediation, and closure tracking for iCFR, FISMA, GAO, and OIT Security audits. The position translates high-level ISS program priorities into detailed assignments, schedules, and measurable outcomes aligned to SEC governance and reporting requirements. The manager maintains visibility into risk posture, open vulnerabilities, and remediation progress, including support for Known Exploited Vulnerabilities (KEV) remediation timelines and continuous process improvement.
PRIMARY RESPONSIBILITIES
Audit Remediation Leadership
Manage and oversee the audit remediation team executing project tasks and contract deliverables across ISS security and infrastructure support areas.
Lead triage of new audit findings, assign accountable resources, and establish corrective action plans with defined closure criteria.
Coordinate remediation activities for internal and external audits, including iCFR, FISMA, GAO, and OIT Security assessments.
Ensure remediation evidence, status updates, and supporting documentation are complete, timely, and audit-ready for SEC review.
Vulnerability Management and Risk Reduction
Oversee identification, tracking, prioritization, and resolution of vulnerabilities across endpoints and infrastructure.
Direct teams in reviewing vulnerability reports, assessing severity and impact, and sequencing remediation to reduce mission risk.
Monitor closure activities and enforce remediation timelines, including KEV remediation within required timelines.
Drive proactive improvements in operational practices and standards to reduce reintroduction of vulnerabilities.
Planning, Governance, and Reporting
Translate high-level work plans into detailed assignments, milestones, dependencies, and execution schedules.
Monitor and track project progress, risks, issues, and performance deficiencies; provide recurring status reporting to stakeholders.
Create and mature standards, SOPs, and governance procedures aligned with SEC policy, change control, and federal compliance expectations.
Maintain management reporting that provides clear visibility into remediation progress and risk posture.
Team Leadership and Stakeholder Coordination
Provide day-to-day leadership for cross-functional remediation efforts involving engineers, security teams, and federal stakeholders.
Facilitate collaboration sessions to align technical decisions, priorities, and deliverables before implementation.
Set quality expectations for work products and ensure consistency, accountability, and continuous improvement across workstreams.
Coach team members on execution discipline, documentation quality, and escalation practices to meet contract objectives.
REQUIRED QUALIFICATIONS
Citizenship/Work Authorization: Must meet contract requirements.
Clearance: Ability to obtain and maintain SEC Public Trust (or higher if required).
Education: Bachelor's degree in a relevant field and 8-12 years of experience. Additional experience may be considered in lieu of a degree.
Experience:
8+ years of professional experience, including at least 7 years of related experience managing and overseeing project details and deliverables.
3+ years of experience managing projects performing vulnerability assessment for the federal government.
Demonstrated experience managing and overseeing audit remediation project tasks and deliverables.
Technical Skills:
Managing and overseeing audit remediation team tasks and deliverables.
Supporting vulnerability identification and remediation activities in federal environments.
Creating and establishing standards and procedures for project execution.
Translating high-level work plans into detailed assignments for team members.
Monitoring and tracking project and work-plan progress.
PREFERRED QUALIFICATIONS
The following are contract-context preferred qualifications that expand baseline labor-category requirements:
Experience supporting SEC or another federal financial regulatory agency environment.
Experience managing enterprise vulnerability and remediation programs across endpoint and infrastructure domains.
Familiarity with KEV requirements and POA&M reporting and closure practices in federal environments.
Experience developing executive reporting for remediation progress, risk posture, and audit readiness.
PMP, CISSP, CISM, or ITIL certification with practical application in federal IT operations.
PMP, CISSP or CISM, ITIL 4 Foundation.
WORK ENVIRONMENT / OTHER
Operational Support: May require participation in on-call or surge support activities depending on operational needs.
Location: Telework
Travel: As required per contract direction.
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
May 14, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $92,300.00 - $166,850.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say
