173 grc jobs at 90 companies in Frederick, MD

5d
Save
Mark Applied
Hide
GRC Analyst – Rockville, MD
Rockville or Falls Church
OnsiteContract
Creative Information Technology
Creative Information Technology: Provides IT solutions and software for government and healthcare sectors.
1+ YOE1 year information security/IT/GRC experience preferred; bachelor\u0002s degree in related field preferred; experience with ServiceNow and Office 365; knowledge of NIST, risk scoring, HIPAA; certifications earn points.
ServiceNow, Office 365
3w
Save
Mark Applied
Hide
RMF / GRC Lead
Bethesda, Maryland, United States
OnsiteContract
Softek International
Softek International: Provides IT modernization and systems integration for federal agencies.
Active Secret clearance required; expertise with RMF lifecycle, NIST SP 800-37/800-53 Rev.5, C-SCRM/EO 14028, SBOM review, audit support, enterprise risk governance, and QA review of authorization packages.
RMF, NIST SP 800-37, NIST SP 800-53 Rev.5, EO 14028, SBOM
1w
Save
Mark Applied
Hide
GRC Engineer III
Fairfax or Lafayette or Knoxville
$144k-$311k/yr HybridFull Time
CGI
CGINYSE: GIB: Provides information technology and business consulting services.
9+ YOEBachelor's in cyber field, 9+ years relevant experience, experience with ServiceNow/Archer/eMASS, RMF automation, FAIR, AI governance familiarity, strong communication and executive engagement skills.
ServiceNow, Archer, eMASS
3mo
Save
Mark Applied
Hide
SAP Governance Risk and Compliance (GRC) Process Controls SME
Washington, District of Columbia, United States
$86k-$176k/yr RemoteFull Time
Accenture Federal Services
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
3+ YOE3+ years SAP GRC Process Controls; SAP S/4HANA; SAP GRC-PC, Process Controls, and SAP Security; US citizenship
SAP GRC, SAP Process Controls, SAP Security, S/4HANA
2mo
Save
Mark Applied
Hide
Governance Risk Compliance (GRC) Manager
Vienna, Virginia, United States
OnsiteFull Time
Antithesis
Antithesis: Autonomous software testing platform for deterministic bug detection.
3+ YOE3–5 years GRC/compliance/IT audit; hands-on SOC 2 audits; deep tech understanding; AWS/GCP IaC; strong written comms; fast-paced environment.
AWS, GCP, Terraform
5d
Save
Mark Applied
Hide
Information Security Governance, Risk & Compliance (GRC) Analyst
Rockville, Maryland, United States
OnsiteFull Time
ASSYST
ASSYST: An award-winning IT firm that delivers digital transformation, DevSecOps, cyber security, and AI integration for government agencies.
Experience in information security governance, risk management, or compliance; strong analytical, written and verbal communication, organizational skills; ability to learn new technologies and work independently.
ServiceNow Integrated Risk Management (IRM), Microsoft Office 365
3mo
Save
Mark Applied
Hide
SIPR Governance, Risk, and Compliance (GRC) & Security Specialist
Arlington, Virginia, United States
OnsiteFull Time
Systems Planning and Analysis
Systems Planning and Analysis: Provides technical and analytical support to national security agencies.
10+ YOETS clearance; 10+ years in GRC, SAP ECC/BI Security, Audit & Compliance; MA/MS degree.
SAP ECC/BI Security, ServiceNow, DISS
1w
Save
Mark Applied
Hide
GRC Program Manager
Washington, District of Columbia, United States
$90k-$160k/yr HybridFull Time
Palantir
PalantirNasdaq: PLTR: Developing software platforms for data integration and analytics.
Proven experience managing GRC/compliance programs, familiarity with SOC 2/FedRAMP/ISO 27001 and USG frameworks, strong stakeholder management, audit coordination, and risk management; eligible for US security clearance preferred.
1w
Save
Mark Applied
Hide
Security Governance Risk & Compliance (GRC) Analyst
Washington, District of Columbia, United States
$130k-$170k/yr RemoteFull Time
Virtru
Virtru: Provides data-centric encryption and privacy control software for organizations.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
Kubernetes, GCP, AWS, Terraform, GitHub, Okta, Hyperproof, Vanta, Drata, Datadog, Splunk
19h
Save
Mark Applied
Hide
Security Engineer - GRC Fintech & Financial Services
New York or Palo Alto or Washington
$152k-$228k/yr OnsiteFull Time
xAI
xAI: Develops advanced artificial intelligence systems to understand the universe.
8+ YOE8+ years GRC/security compliance experience in fintech or financial services; hands-on PCI/NYDFS/FFIEC experience; Compliance-as-Code and GRC automation; technical fluency with cloud and security architecture.
Vanta, AWS, GCP, Azure
1d
Save
Mark Applied
Hide
Security Assessor (RMF / GRC)
Bethesda or McLean
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Provides cybersecurity, engineering, and compliance services to federal agencies.
5+ YOEBachelor's degree, 5+ years performing RMF/GRC security control assessments using NIST SP 800-53, experience supporting ATO and continuous monitoring, strong technical writing and analytical skills, U.S. citizenship and ability to obtain Tier 2 Public Trust.
NIST SP 800-53, NIST SP 800-37, FISMA, Risk Management Framework (RMF), Microsoft Office Suite, ServiceNow, Jira
5d
Save
Mark Applied
Hide
Sr Risk Manager, GRC Systems
Cedar Rapids or Baltimore or Denver
$150k-$175k/yr HybridFull Time
Transamerica
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
10+ YOE10+ years operational/enterprise risk experience, experience managing enterprise GRC platforms and risk data frameworks, strong ERM and operational risk knowledge, stakeholder influence and communication skills.
1mo
Save
Mark Applied
Hide
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yr HybridFull Time
EY
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
Oracle, Oracle Cloud, Workday
3mo
Save
Mark Applied
Hide
Senior Product Manager GRC Automation
Washington, District of Columbia, United States
$100k-$120k/yr HybridFull Time
Celestial Innovations Group
Celestial Innovations Group: Provides cybersecurity and cloud infrastructure services to government agencies.
5+ YOEMinimum 5 years product management with 2+ years in security/compliance; experience with GRC automation, federal security frameworks (FISMA, NIST, FedRAMP), Agile/DevOps collaboration, strong communication and stakeholder management.
1mo
Save
Mark Applied
Hide
Enterprise Cybersecurity GRC Governance Analyst
McLean, Virginia, United States
$99k-$225k/yr HybridFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles, experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS), knowledge of NIST frameworks and federal security standards, HS diploma/GED, U.S. citizenship required.
ServiceNow, Archer, Xacta, eMASS, RSA Archer, CSAM, Telos Xacta
1mo
Save
Mark Applied
Hide
Enterprise Cybersecurity GRC Governance Analyst
McLean or United States
$99k-$225k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles; experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS); strong process/change management, policy-to-implementation translation, and knowledge of NIST RMF/FISMA/FedRAMP; U.S. citizenship required.
ServiceNow, Archer, RSA Archer, Xacta, Telos Xacta, eMASS, CSAM, API
1d
Save
Mark Applied
Hide
Senior ESM Consultant - ServiceNow SME - GRC & IRM
Mclean or Vienna
$70k-$170k/yr RemoteFull Time
Capgemini
CapgeminiEuronext Paris: CAP: Provides global IT consulting and digital transformation services.
7+ YOE7+ years ServiceNow development, 3+ years ServiceNow GRC/IRM expertise, ServiceNow scripting (JavaScript, Glide), Flow Designer, IntegrationHub, risk framework mapping, technical leadership and mentoring experience.
ServiceNow, JavaScript, Glide, Flow Designer, IntegrationHub, ServiceNow CSDM, Azure AD, BitSight
1mo
Save
Mark Applied
Hide
GRC Lead / Cyber Risk Manager (DC, Washington)
Washington, District of Columbia, United States
OnsiteFull Time
CyberLinx Solutions
CyberLinx Solutions: Provides specialized cybersecurity and IT services to federal agencies.
8+ YOE3+ MgmtBachelor's in a related field, 8+ years in cybersecurity with 3+ years of GRC leadership, strong knowledge of NIST CSF/RMF and NIST SP 800-53/800-171, audit/compliance experience, and executive communication skills.
NIST Cybersecurity Framework (CSF), NIST Risk Management Framework (RMF), NIST SP 800-53, NIST SP 800-171, ISO 27001
2w
Save
Mark Applied
Hide
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington or Alexandria
$145k-$180k/yr HybridFull Time
Zermount
Zermount: Provider of cybersecurity and IT solutions to government agencies.
15+ YOE15+ years in database/data architecture across cloud and on-prem, strong data modeling, ETL and reconciliation, hands-on NIST SP 800-53 and POA&M/ATO experience, T-SQL and PowerShell skills, attention to detail.
Liquibase, AWS Glue, AWS DMS, Azure Data Factory, Splunk, Azure Log Analytics, T-SQL, PowerShell, OSCAL, KQL, AWS RDS, Azure SQL
3mo
Save
Mark Applied
Hide
Security Compliance Specialist, Amazon Leo Security Assurance
Redmond or Arlington
$102k-$178k/yr OnsiteFull Time
Amazon
AmazonNASDAQ: AMZN: Global online retail and cloud computing technology provider.
Experience with compliance and security standards; knowledge of GRC tools; strong collaboration with auditors and teams.
GRC Tools, SAP GRC, SAP Identity Management, ISO 27001, PCI DSS, NIST, HIPAA, SOC 2, GDPR, CCPA