Cybersecurity Governance and Risk Management (GRC) Lead
Laurel, Maryland, United States
$165k-$210k/yrRemoteFull Time
ERP International: Private U.S. federal contractor providing military healthcare staffing, medical logistics, IT modernization, and business-process services.
7+ YOE3+ MgmtRequires 7+ years of cybersecurity or related experience, 3+ years leading governance or risk activities, a relevant bachelor's degree, and ability to obtain a government Public Trust clearance.
NIST Risk Management Framework, Enterprise Risk Management, FISMA, Zero Trust
SOC 2 Type 2 Five-TSC SaaS / Cloud Compliance Lead
Silver Spring, Maryland, United States
HybridFull Time
FYI - For Your Information: Woman-owned private contractor providing federal agencies with human capital management, information technology, training, and workforce-planning services.
8+ YOE8+ years in cybersecurity/GRC/IT audit with direct SOC 2 Type 2 audit experience, GRC platform experience (Drata preferred), SaaS/cloud expertise, evidence review, strong written communication, and stakeholder coordination skills.
Presidio: Provides digital services and IT consulting.
5+ YOE5+ years in IT security/managed security services, bachelor's degree or equivalent, working knowledge of security technologies and vendor products, professional security certifications highly desirable (CISSP, CISM, CRISC, CISA, GIAC).
FYI - For Your Information: Woman-owned private contractor providing federal agencies with human capital management, information technology, training, and workforce-planning services.
8+ YOE8+ years in cybersecurity/GRC/IT audit/compliance with hands-on PCI DSS SAQ D experience, SaaS/cloud/payment familiarity, ASV/pen test and vulnerability management knowledge, and strong written communication.
Mariner Finance: Privately held U.S. consumer finance providing personal, auto, home-improvement, and other loans to nonprime consumers.
12+ YOE3+ MgmtLead cybersecurity and information security; 12+ years IT with leadership; 3+ years management; CISSP/CISM; extensive security tech and regulatory experience.