Home › Companies › Sosi1 › Risk Mitigation Specialist
Risk Mitigation Specialist
Sosi1 · Washington, DC, United States · Active · SmartRecruiters
Job facts
| Field | Value |
|---|---|
| Company | Sosi1 |
| Title | Risk Mitigation Specialist |
| Normalized title | - |
| Department / team | Analyst |
| Location | Washington, DC, United States |
| Work model | - |
| Employment type | Full Time |
| Salary | - |
| Status | active |
| ATS provider | SmartRecruiters |
| Posted / first seen | 2026-05-07 / 2026-05-31 |
| Changed / last seen | 2026-05-31 / 2026-06-06 |
Related slices
| Page | What it contains | Open |
|---|---|---|
| Company jobs | Active postings from Sosi1. | Open |
| Company breakdowns | Role, location, ATS, and work model facets for this company. | Open |
| ATS provider jobs | Active postings observed through SmartRecruiters. | Open |
| Provider filtered search | The same provider as a filtered job collection. | Open |
| City jobs | Active postings in Washington. | Open |
| Department jobs | Active postings in Analyst. | Open |
| Lifecycle events | Open, update, close, and reopen events for this posting. | Open |
| Original posting | Canonical source or apply URL captured from the ATS. | Open |
Linked records
| Company | Sosi1 |
| Source | 034d3260-e727-4450-bb59-4990471b7cb8 |
| ATS provider | SmartRecruiters |
Description
Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.
**This position is contingent upon award of contract**
SOSi is seeking a highly qualified Risk Mitigation Specialist to support an Intelligence government customer. The Risk Mitigation Specialist supports the planning, implementation, and oversight of risk management activities associated with Foreign Ownership, Control, or Influence (FOCI) across the customer's business processes and systems. This position conducts risk assessments, internal control testing, corrective action plan development and execution, and continuous risk monitoring in accordance with DoD Risk Management Internal Control (RMIC) policy. The specialist curates and maintains risk management data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) applications, and applies DoD and DCSA FOCI policies to ensure compliance with emplaced mitigation plans. The Risk Mitigation Specialist also prepares detailed correspondence on FOCI matters, supports audit and assurance reporting, and conducts stakeholder outreach and engagement.
Essential Job Duties
Perform risk assessments on business processes and systems supporting the integrated development and execution of FOCI management strategies. Conduct internal control testing and document results in accordance with DoD RMIC policy, including DoD Instruction 5010.40, the annual DoD Statement of Assurance handbook, the Chairman’s risk assessment process, and related audit requirements. Develop, document, and execute corrective action plans to remediate identified control weaknesses, and track remediation status through closure. Continuously curate, analyze, and maintain risk management–related data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) software applications. Help coordinate multiple risk and assurance reports, including the annual Statement of Assurance and other DIA and DoD governance reporting requirements. Apply broad DoD policy and DCSA direction for the FOCI program by monitoring performance reports, workload/utilization metrics, and other statistical documentation to ensure compliance with FOCI policies and emplaced mitigation plans. Perform oversight and monitoring functions related to emplaced FOCI mitigation measures, including the collection, validation, and maintenance of legal business entities’ security data. Identify emerging FOCI risks, trends, and vulnerabilities, and recommend updates to mitigation plans, controls, or processes. Prepare clear, detailed written correspondence, briefings, and reports on FOCI matters for senior leadership, oversight bodies, and external stakeholders. Conduct outreach engagements, training, and coordination with internal and external stakeholders to reinforce FOCI awareness, compliance expectations, and risk mitigation best practices. Support audit readiness and audit response activities by providing documentation, evidence, and subject matter input related to FOCI risk management and internal controls.
Active DoD security clearance (at the level required by the contract, typically Secret or TS/SCI) or the ability to obtain and maintain one. Bachelor’s degree in Business, Finance, Accounting, Risk Management, Security Studies, International Relations, or a related field. Minimum of 5 years of experience in risk management, internal controls, compliance, audit, security, or related functions within the DoD, Intelligence Community, or federal sector. Demonstrated experience conducting risk assessments, internal control testing, and corrective action plan development and tracking. Familiarity with DoD RMIC policy and guidance, including DoD Instruction 5010.40 and the DoD Statement of Assurance process. Experience working with, or supporting, FOCI-related programs, national security, industrial security, or related regulatory frameworks. Ability to analyze quantitative and qualitative data, prepare risk reports, and present findings and recommendations clearly to leadership. Strong written and verbal communication skills, including the ability to draft detailed correspondence and formal documentation. Proficiency with common office productivity tools (e.g., Microsoft Excel, Word, PowerPoint) and comfort working with enterprise systems or GRC/IRM tools. Preferred Qualifications
Master’s degree in Business Administration, Public Policy, Security Studies, Risk Management, or a related discipline. Direct experience supporting the intel community, DCSA, or other Defense Intelligence Enterprise organizations. Hands-on experience with ServiceNow Integrated Risk Management (IRM), Governance Risk and Compliance (GRC), or Strategic Portfolio Management (SPM) modules. In-depth knowledge of FOCI concepts, NISPOM/industrial security requirements, and DCSA FOCI mitigation instruments (e.g., SSA, SCA, Proxy, Voting Trust). Experience supporting or leading the preparation of the annual Statement of Assurance or similar enterprise assurance products. Professional certifications in risk, audit, or security (e.g., CRISC, CISA, CIA, CGAP, CISSP, CPP, or similar). Demonstrated experience supporting audit readiness, audit response, and remediation activities in a DoD or IC environment. Experience developing and delivering outreach, training, or briefings on risk management, FOCI, or internal control topics to diverse stakeholder groups.
Working Conditions
Normal office conditions. The primary performance location for this contract will be Washington, D.C. The Government reserves the right to require contract performance at alternate locations, as dictated by mission requirements; these locations may be subject to change. Occasional travel may be required to support global engagement activities and coordination efforts. Working at SOSi
All interested individuals will receive consideration and will not be discriminated against for any reason.
Full job record
| Job ID | 65b6264d2acbdc0cc6fb9305f90d645c0e9f7cef |
| Org ID | 5a59924f-82b0-46db-a713-0bb2cbbe3d35 |
| Source ID | 034d3260-e727-4450-bb59-4990471b7cb8 |
| Board ID | 034d3260-e727-4450-bb59-4990471b7cb8 |
| Provider | smartrecruiters |
| Provider Job Key | 3743990013019786 |
| Title | Risk Mitigation Specialist |
| Normalized Title | — |
| Status | active |
| Active | yes |
| Location Text | Washington, DC, United States |
| Department | Analyst |
| Team | — |
| Employment Type | full_time |
| Workplace Type | — |
| Remote Policy | — |
| Country | United States |
| Region | DC |
| City | Washington |
| Salary Raw | Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide. **This position is contingent upon award of contract** SOSi is seeking a highly qualified Risk Mitigation Specialist to support an Intelligence government customer. The Risk Mitigation Specialist supports the planning, implementation, and oversight of risk management activities associated with Foreign Ownership, Control, or Influence (FOCI) across the customer's business processes and systems. This position conducts risk assessments, internal control testing, corrective action plan development and execution, and continuous risk monitoring in accordance with DoD Risk Management Internal Control (RMIC) policy. The specialist curates and maintains risk management data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) applications, and applies DoD and DCSA FOCI policies to ensure compliance with emplaced mitigation plans. The Risk Mitigation Specialist also prepares detailed correspondence on FOCI matters, supports audit and assurance reporting, and conducts stakeholder outreach and engagement. Essential Job Duties Perform risk assessments on business processes and systems supporting the integrated development and execution of FOCI management strategies. Conduct internal control testing and document results in accordance with DoD RMIC policy, including DoD Instruction 5010.40, the annual DoD Statement of Assurance handbook, the Chairman’s risk assessment process, and related audit requirements. Develop, document, and execute corrective action plans to remediate identified control weaknesses, and track remediation status through closure. Continuously curate, analyze, and maintain risk management–related data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) software applications. Help coordinate multiple risk and assurance reports, including the annual Statement of Assurance and other DIA and DoD governance reporting requirements. Apply broad DoD policy and DCSA direction for the FOCI program by monitoring performance reports, workload/utilization metrics, and other statistical documentation to ensure compliance with FOCI policies and emplaced mitigation plans. Perform oversight and monitoring functions related to emplaced FOCI mitigation measures, including the collection, validation, and maintenance of legal business entities’ security data. Identify emerging FOCI risks, trends, and vulnerabilities, and recommend updates to mitigation plans, controls, or processes. Prepare clear, detailed written correspondence, briefings, and reports on FOCI matters for senior leadership, oversight bodies, and external stakeholders. Conduct outreach engagements, training, and coordination with internal and external stakeholders to reinforce FOCI awareness, compliance expectations, and risk mitigation best practices. Support audit readiness and audit response activities by providing documentation, evidence, and subject matter input related to FOCI risk management and internal controls. Active DoD security clearance (at the level required by the contract, typically Secret or TS/SCI) or the ability to obtain and maintain one. Bachelor’s degree in Business, Finance, Accounting, Risk Management, Security Studies, International Relations, or a related field. Minimum of 5 years of experience in risk management, internal controls, compliance, audit, security, or related functions within the DoD, Intelligence Community, or federal sector. Demonstrated experience conducting risk assessments, internal control testing, and corrective action plan development and tracking. Familiarity with DoD RMIC policy and guidance, including DoD Instruction 5010.40 and the DoD Statement of Assurance process. Experience working with, or supporting, FOCI-related programs, national security, industrial security, or related regulatory frameworks. Ability to analyze quantitative and qualitative data, prepare risk reports, and present findings and recommendations clearly to leadership. Strong written and verbal communication skills, including the ability to draft detailed correspondence and formal documentation. Proficiency with common office productivity tools (e.g., Microsoft Excel, Word, PowerPoint) and comfort working with enterprise systems or GRC/IRM tools. Preferred Qualifications Master’s degree in Business Administration, Public Policy, Security Studies, Risk Management, or a related discipline. Direct experience supporting the intel community, DCSA, or other Defense Intelligence Enterprise organizations. Hands-on experience with ServiceNow Integrated Risk Management (IRM), Governance Risk and Compliance (GRC), or Strategic Portfolio Management (SPM) modules. In-depth knowledge of FOCI concepts, NISPOM/industrial security requirements, and DCSA FOCI mitigation instruments (e.g., SSA, SCA, Proxy, Voting Trust). Experience supporting or leading the preparation of the annual Statement of Assurance or similar enterprise assurance products. Professional certifications in risk, audit, or security (e.g., CRISC, CISA, CIA, CGAP, CISSP, CPP, or similar). Demonstrated experience supporting audit readiness, audit response, and remediation activities in a DoD or IC environment. Experience developing and delivering outreach, training, or briefings on risk management, FOCI, or internal control topics to diverse stakeholder groups. Working Conditions Normal office conditions. The primary performance location for this contract will be Washington, D.C. The Government reserves the right to require contract performance at alternate locations, as dictated by mission requirements; these locations may be subject to change. Occasional travel may be required to support global engagement activities and coordination efforts. Working at SOSi All interested individuals will receive consideration and will not be discriminated against for any reason. |
| Salary Min | — |
| Salary Max | — |
| Salary Currency | — |
| Salary Period | — |
| Source URL | https://jobs.smartrecruiters.com/SOSi1/3743990013019786-risk-mitigation-specialist- |
| Apply URL | https://jobs.smartrecruiters.com/SOSi1/3743990013019786-risk-mitigation-specialist-?oga=true |
| First Seen At | 2026-05-31 17:30:46Z |
| Last Seen At | 2026-06-06 18:47:58Z |
| Last Checked At | 2026-06-06 18:47:58Z |
| Last Changed At | 2026-05-31 17:30:46Z |
| Inactive At | — |
| Source Posted At | 2026-05-07 14:20:51Z |
| Source Updated At | — |
| Raw Payload Uri | s3://job-postings-prod-raw-590183727216/raw/provider=smartrecruiters/board=sosi1/date=2026-06-06/2026-06-06T18-47-51-315Z-e7a3ea412d9b99d4f42d3f44c8b48282949638fd36dfd8acce6ba827260faf78.json |
Event Fields
{
"content_hash": "6bdebf162afbd13dcf2ab1d07d8830bb545d10b4c722fb42ee788a7f63f5413e",
"source_hash": "a2e60fab3a3f3511c6a3da197ade3913745c766cf49983e050b76e1e37369397",
"last_changed_at": "2026-05-31T17:30:46.715Z",
"active_status": "active"
}Parsed Structured
{
"language": "en",
"location": {
"raw": "Washington, DC, United States",
"city": "Washington",
"region": "DC",
"country": "United States",
"is_remote": false,
"confidence": 0.8
},
"salary_max": null,
"salary_min": null,
"inferred_at": "2026-06-06T18:47:58.308Z",
"launch_scope": {
"reason": "english_us_canada",
"included": true,
"language": "en",
"location": {
"raw": "Washington, DC, United States",
"city": "Washington",
"region": "DC",
"country": "United States",
"is_remote": false,
"confidence": 0.8
},
"countries": [
"United States"
]
},
"remote_policy": null,
"salary_period": null,
"workplace_type": null,
"salary_currency": null
}Extensions
{}Native Structured
{
"id": "3743990013019786",
"ref": "https://api.smartrecruiters.com/v1/companies/sosi1/postings/3743990013019786",
"name": "Risk Mitigation Specialist ",
"uuid": "6a89c622-ab1a-4e8e-b90d-527eaf8ca82c",
"detail": {
"id": "3743990013019786",
"name": "Risk Mitigation Specialist ",
"uuid": "6a89c622-ab1a-4e8e-b90d-527eaf8ca82c",
"jobAd": {
"sections": {
"jobDescription": {
"text": "<p><strong>**This position is contingent upon award of contract**</strong> </p><p>SOSi is seeking a highly qualified Risk Mitigation Specialist to support an Intelligence government customer. The Risk Mitigation Specialist supports the planning, implementation, and oversight of risk management activities associated with Foreign Ownership, Control, or Influence (FOCI) across the customer's business processes and systems. This position conducts risk assessments, internal control testing, corrective action plan development and execution, and continuous risk monitoring in accordance with DoD Risk Management Internal Control (RMIC) policy. The specialist curates and maintains risk management data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) applications, and applies DoD and DCSA FOCI policies to ensure compliance with emplaced mitigation plans. The Risk Mitigation Specialist also prepares detailed correspondence on FOCI matters, supports audit and assurance reporting, and conducts stakeholder outreach and engagement.</p><p><strong>Essential Job Duties</strong></p><ul><li>Perform risk assessments on business processes and systems supporting the integrated development and execution of FOCI management strategies.</li><li>Conduct internal control testing and document results in accordance with DoD RMIC policy, including DoD Instruction 5010.40, the annual DoD Statement of Assurance handbook, the Chairman’s risk assessment process, and related audit requirements.</li><li>Develop, document, and execute corrective action plans to remediate identified control weaknesses, and track remediation status through closure.</li><li>Continuously curate, analyze, and maintain risk management–related data in support of Intel governance, leveraging ServiceNow Integrated Risk Management (IRM) and Strategic Portfolio Management (SPM) software applications.</li><li>Help coordinate multiple risk and assurance reports, including the annual Statement of Assurance and other DIA and DoD governance reporting requirements.</li><li>Apply broad DoD policy and DCSA direction for the FOCI program by monitoring performance reports, workload/utilization metrics, and other statistical documentation to ensure compliance with FOCI policies and emplaced mitigation plans.</li><li>Perform oversight and monitoring functions related to emplaced FOCI mitigation measures, including the collection, validation, and maintenance of legal business entities’ security data.</li><li>Identify emerging FOCI risks, trends, and vulnerabilities, and recommend updates to mitigation plans, controls, or processes.</li><li>Prepare clear, detailed written correspondence, briefings, and reports on FOCI matters for senior leadership, oversight bodies, and external stakeholders.</li><li>Conduct outreach engagements, training, and coordination with internal and external stakeholders to reinforce FOCI awareness, compliance expectations, and risk mitigation best practices.</li><li>Support audit readiness and audit response activities by providing documentation, evidence, and subject matter input related to FOCI risk management and internal controls.</li></ul>",
"title": "Job Description"
},
"qualifications": {
"text": "<ul><li>Active DoD security clearance (at the level required by the contract, typically Secret or TS/SCI) or the ability to obtain and maintain one.</li><li>Bachelor’s degree in Business, Finance, Accounting, Risk Management, Security Studies, International Relations, or a related field.</li><li>Minimum of 5 years of experience in risk management, internal controls, compliance, audit, security, or related functions within the DoD, Intelligence Community, or federal sector.</li><li>Demonstrated experience conducting risk assessments, internal control testing, and corrective action plan development and tracking.</li><li>Familiarity with DoD RMIC policy and guidance, including DoD Instruction 5010.40 and the DoD Statement of Assurance process.</li><li>Experience working with, or supporting, FOCI-related programs, national security, industrial security, or related regulatory frameworks.</li><li>Ability to analyze quantitative and qualitative data, prepare risk reports, and present findings and recommendations clearly to leadership.</li><li>Strong written and verbal communication skills, including the ability to draft detailed correspondence and formal documentation.</li><li>Proficiency with common office productivity tools (e.g., Microsoft Excel, Word, PowerPoint) and comfort working with enterprise systems or GRC/IRM tools.</li></ul><p><strong>Preferred Qualifications</strong></p><ul><li>Master’s degree in Business Administration, Public Policy, Security Studies, Risk Management, or a related discipline.</li><li>Direct experience supporting the intel community, DCSA, or other Defense Intelligence Enterprise organizations.</li><li>Hands-on experience with ServiceNow Integrated Risk Management (IRM), Governance Risk and Compliance (GRC), or Strategic Portfolio Management (SPM) modules.</li><li>In-depth knowledge of FOCI concepts, NISPOM/industrial security requirements, and DCSA FOCI mitigation instruments (e.g., SSA, SCA, Proxy, Voting Trust).</li><li>Experience supporting or leading the preparation of the annual Statement of Assurance or similar enterprise assurance products.</li><li>Professional certifications in risk, audit, or security (e.g., CRISC, CISA, CIA, CGAP, CISSP, CPP, or similar).</li><li>Demonstrated experience supporting audit readiness, audit response, and remediation activities in a DoD or IC environment.</li><li>Experience developing and delivering outreach, training, or briefings on risk management, FOCI, or internal control topics to diverse stakeholder groups.</li></ul>",
"title": "Qualifications"
},
"companyDescription": {
"text": "<p>Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.</p>",
"title": "Company Description"
},
"additionalInformation": {
"text": "<p><strong>Working Conditions</strong></p><ul><li>Normal office conditions.</li><li>The primary performance location for this contract will be Washington, D.C.</li><li>The Government reserves the right to require contract performance at alternate locations, as dictated by mission requirements; these locations may be subject to change.</li><li>Occasional travel may be required to support global engagement activities and coordination efforts.</li></ul><p><strong>Working at SOSi</strong></p><p>All interested individuals will receive consideration and will not be discriminated against for any reason.</p>",
"title": "Additional Information"
}
}
},
"jobId": "b4555a25-0bbc-4018-8bbd-17efcd05fd74",
"active": true,
"company": {
"name": "SOSi",
"identifier": "SOSi1"
},
"creator": {
"name": "",
"avatarUrl": ""
},
"jobAdId": "064ab136-05ca-4db6-9f5b-991d78dfa436",
"applyUrl": "https://jobs.smartrecruiters.com/SOSi1/3743990013019786-risk-mitigation-specialist-?oga=true",
"function": {
"id": "analyst",
"label": "Analyst"
},
"industry": {
"id": "it_and_services",
"label": "Information Technology And Services"
},
"language": {
"code": "en",
"label": "English",
"labelNative": "English (US)"
},
"location": {
"city": "Washington",
"hybrid": false,
"region": "DC",
"remote": false,
"country": "us",
"latitude": "38.9072873",
"longitude": "-77.0369274",
"fullLocation": "Washington, DC, United States"
},
"refNumber": "REF1425W",
"postingUrl": "https://jobs.smartrecruiters.com/SOSi1/3743990013019786-risk-mitigation-specialist-",
"visibility": "PUBLIC",
"customField": [
{
"fieldId": "COUNTRY",
"valueId": "us",
"fieldLabel": "Country/Region",
"valueLabel": "United States"
},
{
"fieldId": "68e4d02c62144b064540ba4f",
"valueId": "default",
"fieldLabel": "Brands",
"valueLabel": "SOSi"
},
{
"fieldId": "69095be8735039a20bdb3506",
"valueId": "dc86b3ab-f058-4ecd-8700-e1835dd74fd9",
"fieldLabel": "Clearance Requirement",
"valueLabel": "Top Secret/SCI"
}
],
"referralUrl": "https://jobs.smartrecruiters.com/external-referrals/company/SOSi1/publication/6a89c622-ab1a-4e8e-b90d-527eaf8ca82c?dcr_ci=SOSi1",
"defaultJobAd": true,
"releasedDate": "2026-05-07T14:20:51.026Z",
"experienceLevel": {
"id": "mid_senior_level",
"label": "Mid-Senior Level"
},
"typeOfEmployment": {
"id": "permanent",
"label": "Full-time"
}
},
"company": {
"name": "SOSi",
"identifier": "SOSi1"
},
"jobAdId": "064ab136-05ca-4db6-9f5b-991d78dfa436",
"function": {
"id": "analyst",
"label": "Analyst"
},
"industry": {
"id": "it_and_services",
"label": "Information Technology And Services"
},
"language": {
"code": "en",
"label": "English",
"labelNative": "English (US)"
},
"location": {
"city": "Washington",
"hybrid": false,
"region": "DC",
"remote": false,
"country": "us",
"latitude": "38.9072873",
"longitude": "-77.0369274",
"fullLocation": "Washington, DC, United States"
},
"refNumber": "REF1425W",
"department": {},
"visibility": "PUBLIC",
"customField": [
{
"fieldId": "69095be8735039a20bdb3506",
"valueId": "dc86b3ab-f058-4ecd-8700-e1835dd74fd9",
"fieldLabel": "Clearance Requirement",
"valueLabel": "Top Secret/SCI"
},
{
"fieldId": "COUNTRY",
"valueId": "us",
"fieldLabel": "Country/Region",
"valueLabel": "United States"
},
{
"fieldId": "68e4d02c62144b064540ba4f",
"valueId": "default",
"fieldLabel": "Brands",
"valueLabel": "SOSi"
}
],
"defaultJobAd": true,
"releasedDate": "2026-05-07T14:20:51.026Z",
"detail_errors": [],
"experienceLevel": {
"id": "mid_senior_level",
"label": "Mid-Senior Level"
},
"typeOfEmployment": {
"id": "permanent",
"label": "Full-time"
}
}Get this page with API
Rendered from the bluedoor Job Postings API. Reproduce it:
GET https://api.bluedoor.sh/job-postings/v1/jobs/65b6264d2acbdc0cc6fb9305f90d645c0e9f7cef?include=descriptionJSONGET https://api.bluedoor.sh/job-postings/v1/orgs/5a59924f-82b0-46db-a713-0bb2cbbe3d35JSONGET https://api.bluedoor.sh/job-postings/v1/sources/034d3260-e727-4450-bb59-4990471b7cb8JSONGET https://api.bluedoor.sh/job-postings/v1/jobs/65b6264d2acbdc0cc6fb9305f90d645c0e9f7cef/eventsJSON