Charlotte or Chicago or New York City or Blue Bell or Philadelphia
$107k-$215k/yrOnsiteFull Time
RSM: Provides audit, tax and consulting services to middle-market businesses.
5+ YOEBachelor's degree and 5+ years cyber compliance or cybersecurity risk experience in financial services; relevant credentials (CISSP,CISA,CISM,QSA) preferred; regulatory and program experience; people leadership and client-facing skills.
Altera: Manufacturer of field-programmable gate arrays and programmable logic devices.
10+ YOEBachelor's degree in a technical field and 10+ years in product compliance, cybersecurity, quality, regulatory compliance, engineering governance, or semiconductor development; extensive CRA and cross-functional program leadership experience.
ISO/IEC 27001, IEC 62443, ISO/SAE 21434, ISO 26262, ISO 9001, AS9100, IEC 61508, NIST Cybersecurity Framework, Common Criteria, Software Bill of Materials (SBOM)
GDITNYSE: GD: Delivers IT and mission services to government agencies.
4+ YOE4+ years cybersecurity experience with hands-on RMF Steps 0–6, active Secret clearance, DoD 8570 IAM-I credential (e.g., Security+ CE), ability to support RMF, eMASS, STIGs, DISA and Army security requirements.
California State University: Public university system providing higher education and academic research.
5+ YOEBachelor's degree or equivalent education and experience, 5+ years in information security, governance, risk, compliance, auditing, or IT, including 3+ years in GRC functions and cross-stakeholder coordination.
NIST, PCI DSS, GLBA, HIPAA, CISM, CISA, CRISC, CISSP, E-Verify, Microsoft Form 700
Cyber Compliance Administrator (RMF A&A) (Active Top Secret Clearance Required)
Summerville, South Carolina, United States
OnsiteFull Time
Akima: Delivers mission-critical services and technology to federal agencies.
10+ YOEActive Top Secret clearance and US citizenship, Bachelor's in IT/cyber, ~10 years IT/cyber experience with 5+ years in RMF/A&A or cybersecurity, DoD 8570 IAT II, experience with eMASS and ACAS.
DISA Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS), NIST SP 800-37, DoN Risk Management Framework (RMF) Process Guide v2.0, STIGs
Marc-Henry Cruise Holdings: Operates ultra-luxury yachting experiences under the Four Seasons brand.
5+ YOEBachelor's in CS/IT, 5+ years information security experience, experience with security frameworks, assessments, incident response, risk management, budgeting, and strong communication skills.
PCI, ISO 27001, SOX, GDPR, CPAA, PAM, IPAM, IAM Solutions, Web Proxy Filtering, EDR, WAF
York Space SystemsNYSE: YSS: Designs and manufactures modular spacecraft platforms and mission solutions.
3+ YOE3+ years cybersecurity/GRC experience; familiarity with NIST SP 800-171, CMMC, RMF, ISO 27001, SOC 2; experience with GRC platforms (Hyperproof); strong documentation and communication; US citizenship and ability to obtain a security clearance; onsite Greenwood Village, CO.
Hyperproof, Microsoft GCC High, NIST SP 800-171, NIST CSF, CMMC, RMF, ISO 27001, SOC 2
Brown Advisory: Provides investment management and financial advisory services to global clients.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
Oasys International: Provides technology consulting and systems engineering for federal agencies.
6+ YOEMinimum 6 years information security experience with RMF, NIST 800-53, FISMA, SIEM, POA&M management, auditing, and compliance; Security+ required; active DoD Secret clearance required.
Security Information and Event Management (SIEM), GRC, Active Directory, Linux/UNIX, Windows, relational databases, CI/CD
Hoover or Birmingham or Charlotte or Nashville or Atlanta
$208k-$299k/yrHybridFull Time
Regions BankNYSE: RF: Provides retail, commercial banking, wealth management, and mortgage services.
15+ YOEBachelor's in CS/MIS (or HS with extensive experience), 15+ years related experience (or 19+ with HS), leadership/management experience, strong cyber security knowledge, and ability to develop enterprise security strategy and manage teams.
Azure AD, Okta, CyberArk, AWS, Azure, RiskRecon, Microsoft Excel, Microsoft Word, Microsoft PowerPoint, Microsoft Outlook, GenAI
VistraNYSE: VST: Generates power and sells retail electricity to consumers.
7+ YOE7+ years experience with NERC CIP/ERCOT/ISO 27001/NIST/SOX/PCI/NACHA/NRC knowledge; college degree or equivalent; strong written communication; coding familiarity (VBA, PowerShell, Python, Ruby, C++); able to design controls and lead remediation.
ERCOT, NERC-CIP, ISO 27001, NIST 800-53, SOX, PCI, NACHA, VBA, PowerShell, Python, Ruby, C++
Lockton: Provides insurance brokerage and global risk management solutions.
10+ YOE10+ years in cyber/professional liability claims, expertise in cyber, tech E&O, MPL, ransomware and AI exposures; strong negotiation, leadership, coaching, and collaboration skills.
LenovoHKSE: 992: Manufactures personal computers, mobile devices, and server infrastructure.
12+ YOEBachelor's degree and 12+ years in cybersecurity/compliance with people-management experience; EU CRA knowledge preferred; audit/certification leadership; strong communication and escalation skills; professional certs preferred.
Hartford or Tampa or Alpharetta or Naperville or Downers Grove or Chicago or Overland Park or Cockeysville or Annapolis or Baltimore or Braintree or Boston or Grand Rapids or Minneapolis or Saint Paul or Kansas City or Morristown or Edison or Melville or New York or Houston or Chantilly
$112k-$184k/yrHybridFull Time
TravelersNew York Stock Exchange: TRV: Provider of commercial and personal property casualty insurance.
2+ YOEJuris Doctor and bar admission required; minimum 2 years legal/claim experience; experience handling cyber/privacy claims, litigation management, negotiation, coverage analysis, and effective communication.
Covington & Burling: Global law firm providing legal and regulatory counseling services.
15+ YOE10+ Mgmt15+ years cybersecurity experience with 10+ years running GRC functions; Bachelor's required; CISSP/CISM/CRISC/CISA preferred; experience with NIST, ISO 27001, GDPR, HIPAA, CMMC; strong communication and stakeholder leadership.
GRC, NIST CSF, ISO 27001, EU/UK GDPR, HIPAA, CMMC, ITAR/EAR