Creative Information Technology: Provides IT solutions and software for government and healthcare sectors.
1+ YOE1 year information security/IT/GRC experience preferred; bachelor\u0002s degree in related field preferred; experience with ServiceNow and Office 365; knowledge of NIST, risk scoring, HIPAA; certifications earn points.
CGINYSE: GIB: Provides information technology and business consulting services.
9+ YOEBachelor's in cyber field, 9+ years relevant experience, experience with ServiceNow/Archer/eMASS, RMF automation, FAIR, AI governance familiarity, strong communication and executive engagement skills.
Information Security Governance, Risk & Compliance (GRC) Analyst
Rockville, Maryland, United States
OnsiteFull Time
ASSYST: An award-winning IT firm that delivers digital transformation, DevSecOps, cyber security, and AI integration for government agencies.
Experience in information security governance, risk management, or compliance; strong analytical, written and verbal communication, organizational skills; ability to learn new technologies and work independently.
ServiceNow Integrated Risk Management (IRM), Microsoft Office 365
Virtru: Provides data-centric encryption and privacy control software for organizations.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
xAI: Develops advanced artificial intelligence systems to understand the universe.
8+ YOE8+ years GRC/security compliance experience in fintech or financial services; hands-on PCI/NYDFS/FFIEC experience; Compliance-as-Code and GRC automation; technical fluency with cloud and security architecture.
Digital Global Connectors: Provides cybersecurity, engineering, and compliance services to federal agencies.
5+ YOEBachelor's degree, 5+ years performing RMF/GRC security control assessments using NIST SP 800-53, experience supporting ATO and continuous monitoring, strong technical writing and analytical skills, U.S. citizenship and ability to obtain Tier 2 Public Trust.
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
10+ YOE10+ years operational/enterprise risk experience, experience managing enterprise GRC platforms and risk data frameworks, strong ERM and operational risk knowledge, stakeholder influence and communication skills.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
Celestial Innovations Group: Provides cybersecurity and cloud infrastructure services to government agencies.
5+ YOEMinimum 5 years product management with 2+ years in security/compliance; experience with GRC automation, federal security frameworks (FISMA, NIST, FedRAMP), Agile/DevOps collaboration, strong communication and stakeholder management.
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles, experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS), knowledge of NIST frameworks and federal security standards, HS diploma/GED, U.S. citizenship required.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles; experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS); strong process/change management, policy-to-implementation translation, and knowledge of NIST RMF/FISMA/FedRAMP; U.S. citizenship required.
ServiceNow, Archer, RSA Archer, Xacta, Telos Xacta, eMASS, CSAM, API
CyberLinx Solutions: Provides specialized cybersecurity and IT services to federal agencies.
8+ YOE3+ MgmtBachelor's in a related field, 8+ years in cybersecurity with 3+ years of GRC leadership, strong knowledge of NIST CSF/RMF and NIST SP 800-53/800-171, audit/compliance experience, and executive communication skills.
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington or Alexandria
$145k-$180k/yrHybridFull Time
Zermount: Provider of cybersecurity and IT solutions to government agencies.
15+ YOE15+ years in database/data architecture across cloud and on-prem, strong data modeling, ETL and reconciliation, hands-on NIST SP 800-53 and POA&M/ATO experience, T-SQL and PowerShell skills, attention to detail.