Brown Advisory: Provides investment management and financial advisory services to global clients.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
10+ YOE10+ years operational/enterprise risk experience, experience managing enterprise GRC platforms and risk data frameworks, strong ERM and operational risk knowledge, stakeholder influence and communication skills.
Platinum Technologies: Provides cybersecurity and digital services to government agencies.
10+ YOE10+ years managing large-scale DoD/Federal IT programs, strong leadership, stakeholder engagement, RMF/NIST/Zero Trust familiarity, cloud migration and modernization experience, and ACTIVE SECRET clearance required.
CVP: Provides technology and strategy consulting services to federal agencies.
6+ YOE6+ years cybersecurity experience, FISMA/FedRAMP A&A background, experience with risk assessments, security controls, POA&Ms, and team leadership; one of CISSP/CISA/CISM/CRISC required; familiarity with ITIL, GRC, and continuous monitoring tools.
Alabama or California or Colorado or Georgia or Iowa or Maryland or Michigan or Minnesota or Mississippi or Missouri or New Jersey or New York or North Carolina or Oregon or Pennsylvania or South Carolina or Texas or Utah or Virginia or Washington
$95k-$105k/yrRemoteFull Time
Prowess Consulting: Technical services and software engineering for technology enterprises.
6+ YOE6+ years in product management or security engineering; strong Windows/platform security expertise; experience with secure software supply chains, compliance frameworks (NIST,FedRAMP,CRA), and data-driven compliance reporting.
Active Directory, Group Policy, CVSS, SPDX, CycloneDX, ADO, Jira, CI/CD, Power BI, GRC
Chicago or Denver or Phoenix or Chandler or Arizona or Colorado or District of Columbia or Illinois or Maryland or Texas or Virginia or California or Florida or Massachusetts or New York or Oregon or Washington or Wisconsin or United States
$171k-$214k/yrHybridFull Time
Caribou: Connects car owners with lenders to refinance auto loans.
Owner of security and IT programs with proven SOC 2 Type II delivery, SIEM/EDR incident response, GRC controls, SaaS and identity management, vendor management, and people leadership.
Cybersecurity Governance and Risk Management (GRC) Lead
Laurel, Maryland, United States
$165k-$210k/yrRemoteFull Time
ERP International: Provider of healthcare and technology solutions for federal agencies.
7+ YOE3+ MgmtRequires 7+ years of cybersecurity or related experience, 3+ years leading governance or risk activities, a relevant bachelor's degree, and ability to obtain a government Public Trust clearance.
NIST Risk Management Framework, Enterprise Risk Management, FISMA, Zero Trust
Bethesda or New York City or Chicago or Chevy Chase or New York
$130k-$212k/yrHybridFull Time
GEICO: Provides vehicle and property insurance services to consumers.
5+ YOERequires PCIP, 5+ years in auditing, control assessment, and PCI DSS, 6+ years in GRC, cybersecurity expertise, security technology experience, and a relevant bachelor's degree.
California or Maryland or Massachusetts or Illinois or Oregon or Washington or Colorado or Texas or Florida or Pennsylvania or Louisiana or Missouri or District of Columbia or New South Wales or Tasmania
RemoteFull Time
UpGuard: AI-powered platform for managing cyber risk and security.
5+ YOE5+ years B2B SaaS implementation/professional services experience, experience with large organisations (5,000+ employees), PSA tools, API/webhook integrations, consultative stakeholder skills; GRC experience desirable.
For Your Information, Inc.: Provides HR and IT services to federal government agencies.
8+ YOE8+ years in cybersecurity/GRC/IT audit/compliance with hands-on PCI DSS SAQ D experience, SaaS/cloud/payment familiarity, ASV/pen test and vulnerability management knowledge, and strong written communication.
McCormickNYSE: MKC: Produces and sells spices, seasonings, condiments, and flavors.
10+ YOE4+ MgmtBachelor's in Information Systems, CISA/CISM/CISSP required, 10+ years technology audit/IT risk experience with 4+ years leadership, GRC platform proficiency, digital transformation and analytics experience.
Crisis24: Integrated risk management and global crisis response solutions.
5+ YOE5+ years in strategic partner sales/alliances in insurance or risk domains, proven new business development and partnership management, strong negotiation and communication skills, willingness to travel within the Americas.
Mariner Finance: Provider of personal installment and auto loans.
12+ YOE3+ MgmtLead cybersecurity and information security; 12+ years IT with leadership; 3+ years management; CISSP/CISM; extensive security tech and regulatory experience.
Presidio: Global provider of cloud, cybersecurity, and digital infrastructure solutions.
5+ YOE5+ years in IT security/managed security services, bachelor's degree or equivalent, working knowledge of security technologies and vendor products, professional security certifications highly desirable (CISSP, CISM, CRISC, CISA, GIAC).
Alaska or Alabama or Arkansas or Arizona or California or Colorado or Connecticut or District of Columbia or Florida or Georgia or Hawaii or Iowa or Idaho or Illinois or Indiana or Kentucky or Louisiana or Massachusetts or Maryland or Michigan or Minnesota or Missouri or Mississippi or North Carolina or Nebraska or New Jersey or New Mexico or Nevada or New York or Ohio or Oklahoma or Oregon or Pennsylvania or Puerto Rico or Rhode Island or South Carolina or Tennessee or Texas or Utah or Virginia or Washington or Wisconsin
$153k-$297k/yrOnsiteFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
8+ YOE3+ Mgmt8+ years platform engineering or enterprise IT experience, 3+ years management, bachelor\u0002s preferred, strong cybersecurity and AI integration experience, stakeholder and team leadership, relevant certifications (ISC2, ISACA, GIAC) preferred.
United States or Colorado or Hawaii or Illinois or Maryland or Massachusetts or Minnesota or Vermont or District of Columbia or New York or New Jersey or Washington or California or Connecticut or Pennsylvania
$129k-$189k/yrRemoteFull Time
TwilioNYSE: TWLO: Cloud communications platform for building customer engagement applications.
5+ YOE5+ years security-focused risk management experience with industry risk frameworks, quantitative and qualitative risk analysis, automation and AI tooling, cross-functional collaboration, and strong communication skills.
Rockville or McLean or United States or Washington
$98k-$163k/yrHybridFull Time
Guidehouse: Provides management and technology consulting services to diverse organizations.
5+ YOEBachelor's degree or four additional years of experience, 5+ years in cybersecurity or related fields, federal security framework knowledge, ATO, POA&M, vulnerability management, incident response, and public trust eligibility.
FISMA, NIST 800-53, FedRAMP, Jira, Azure DevOps, Confluence, Microsoft SharePoint, Microsoft Teams, AWS, GRC, DevSecOps, ITIL, SAFe
Washington or Cleveland or California or Colorado or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or New Jersey or New York or Vermont or Virginia or Washington or District of Columbia
$64k-$221k/yrHybridFull Time
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
2+ YOEManage full RMF lifecycle for federal/DoD systems; implement and assess NIST SP 800-53 controls; perform vulnerability scans, security control assessments, risk analysis, and maintain SSPs/POA&Ms. Requires 2+ years information security experience.