
Manager, Functional Team Lead
Posted Sep 19

Posted Sep 19
This is a fully remote position, open to applicants in United States.
• Oversee and manage the delivery of a team of around 10 resources who support cybersecurity audits and data requests, GRC/RMF activities, privacy operations, training, reporting, policy management, and process enhancement.
• Direct cybersecurity audits and data requests from the initial intake to final submission, which includes requirements analysis, collaboration with stakeholders, collection and validation of artifacts, quality control, risk escalation, metrics tracking, and provision of audit-ready responses.
• Administer and support CSAM and other GRC solutions selected by the USPTO; maintain systems, sites, programs, inventories, security categorizations, SSPPs, POA&Ms, control assessments, and RMF reporting.
• Provide System Security Status Reporting and recommendations utilizing DOC and USPTO data sources, privacy documentation, and GRC data.
• Lead the support for the Privacy Program, which encompasses policy development, assessments, documentation, risk management, training, reporting, stakeholder engagement, and compliance monitoring.
• Create, deliver, maintain, and update cybersecurity and privacy training that covers GRC tools, RMF, privacy, FedRAMP, cybersecurity awareness, ISSO topics, POA&M development, security categorization, and reporting.
• Manage the OCISO training schedule and online resources, track compliance metrics, ensure adherence to Section 508 compliance, and coordinate eLearning conversion.
• Formulate recommendations and draft documents for government approval.
• Develop, maintain, and update USPTO IT security and cybersecurity policies, procedures, handbooks, guides, and templates to ensure compliance with federal requirements.
• Annually review policies and guides, coordinate stakeholder input, prepare updates for approval, monitor regulatory changes, and provide quarterly executive summaries.
• Collaborate with automation teams and subject-matter experts to implement process automation and prompt-based document repositories.
• Report directly to the Program Manager and Deputy Program Manager.
• Minimum of four years of experience in supporting cybersecurity audits and data requests.
• Practical experience in administering or supporting GRC tools and RMF activities, including system inventories, security categorization, SSPPs, POA&Ms, control assessments, and reporting.
• Familiarity with federal cybersecurity and privacy requirements and frameworks, such as FISMA, OMB directives, DHS Binding Operational Directives, DISA STIGs, NIST publications, FedRAMP, and agency-level policies.
• Experience in developing and maintaining cybersecurity or privacy policies, procedures, guidance, templates, assessments, executive reports, and other governance documentation.
• Proven experience in designing and delivering instructor-led and on-demand cybersecurity or privacy training, tracking compliance metrics, and creating Section 508-compliant content.
• Strong skills in leadership, analytical thinking, quality assurance, project management, technical writing, presentation, and stakeholder engagement.
• Excellent collaboration, people management, interpersonal, and communication skills, including the capacity to build trust, guide teams, resolve conflicts, and work effectively with USPTO senior leadership and cross-functional stakeholders.
• Ability to manage competing priorities, coordinate cross-functional teams, identify and escalate risks, make actionable recommendations, and produce accurate work products under tight deadlines.
• Required certification: CompTIA Security+.
• 20 Days PTO + 40 Hours of Paid Sick & Safe Time.
• 11 Federal Holidays + 2 Corporate Holidays.
• Health, Vision, Dental, and Life Insurance.
• 401(k) with Tiered Match & 100% Vesting.
• Parental Leave for Birthing and Non-Birthing Parents.
• Professional Development Reimbursement Program.
Mercor
ICF
ICF
The Cigna Group
Get handpicked remote jobs straight to your inbox weekly.