2 часа назад
Governance, Risk & Compliance (GRC) Manager (Cybersecurity)
165 000 - 165 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Governance, Risk & Compliance (GRC) Manager (Cybersecurity): Leading and maturing cybersecurity governance, risk management, compliance, and audit programs with an accent on CMMC Level 2, SOC audits, and SOX IT General Controls. Focus on conducting risk assessments, closing compliance gaps, managing remediation, and maintaining audit readiness across business and technology stakeholders.
Location: Remote; occasional travel may be required for company meetings, training, project activities, or other business needs.
Salary: $165,000 USD annually (Colorado pay range).
Company
is a U.S. construction lifecycle partner providing critical electrical, mechanical, structural, inspection, underground maintenance and installation, soft craft, and fabrication services.
What you will do
- Lead and mature governance, risk management, compliance, and audit programs.
- Own cybersecurity compliance initiatives, including CMMC Level 2, SOC audits, and SOX IT General Controls.
- Align security controls, policies, and compliance activities with regulatory, contractual, and business requirements.
- Conduct risk assessments, compliance gap analyses, and remediation planning.
- Partner with business, technology, executive stakeholders, external auditors, assessors, and regulatory stakeholders.
- Develop and maintain security policies, standards, governance documentation, and audit-readiness materials.
Requirements
- 10+ years of experience in GRC, information security, risk management, or related cybersecurity functions.
- 3+ years of leadership, management, or program ownership experience.
- Direct experience with CMMC Level 2 compliance programs.
- Hands-on experience managing SOC 1 and/or SOC 2 audits.
- Experience supporting SOX compliance and ITGC testing and remediation.
- Strong understanding of NIST SP 800-171, cybersecurity control frameworks, project management, communication, and stakeholder management.
Nice to have
- CISSP, CISM, CRISC, CISA, CIA, or CGRC certification.
- Experience in a Defense Industrial Base or other regulated environment.
Culture & Benefits
- Primarily remote work from a home office with virtual collaboration.
- Medical, dental, and vision insurance.
- 401(k) retirement plan with company match.
- Paid time off, holiday pay, life insurance, and disability insurance.
- Professional development, training opportunities, and an employee assistance program.
- Work guided by integrity, teamwork, excellence, urgency, and purpose.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
GRC Lead (Cybersecurity)
140 000 - 185 000$
5 дней назад
Senior IT Governance & Compliance Manager (AI GRC)
115 000 - 140 000$
2 часа назад
Staff Security Analyst - GRC
150 000 - 164 000$
6 дней назад
Lead Security Analyst - GRC (Cybersecurity)
138 000 - 215 625$
10 часов назад
Security Engineer IV (AI/LLM Security)
119 583 - 175 388$
5 дней назад