5 grc manager jobs at 2 companies in Orange, VA

5d
Save
Mark Applied
Hide
Information Systems Security Officer (ISSO) ? Subject Matter Expert, Level I (VA, Quantico)
Quantico, Virginia, United States
OnsiteFull Time
RiVidium
RiVidium: Provides cybersecurity software and IT services to federal agencies.
5+ YOEActive TS/SCI clearance, 5+ years ISSO/ISSM or comparable federal cybersecurity experience, required GRC certification (CISM/CAP/GRC), RMF and vulnerability management expertise, SCIF compliance and cloud security experience.
NIST Risk Management Framework (RMF), NIST SP 800-53, RSA Archer, Nessus, ACAS, Windows, Linux, DevSecOps, Cross Domain Solutions (CDS)
5d
Save
Mark Applied
Hide
Continuous Monitoring Specialist (SCA)? Level III (VA, Quantico)
Quantico, Virginia, United States
OnsiteFull Time
RiVidium
RiVidium: Provides cybersecurity software and IT services to federal agencies.
Active TS/SCI clearance,7+ years cybersecurity experience, expertise with NIST RMF/continuous monitoring, vulnerability management, GRC and SIEM use, and producing security metrics and executive reports.
Nessus, ACAS, Tenable Security Center, RSA Archer, SIEM, PowerShell, Python
1mo
Save
Mark Applied
Hide
Head of Technology Risk, Governance, and Controls
New York or Charlottesville or Princeton or Raleigh
$220k-$350k/yr HybridFull Time
S&P Global
S&P GlobalNYSE: SPGI: Provides independent credit ratings, market benchmarks, and financial analytics.
15+ YOE15+ years in technology risk management with people management; experience with SOX ITGC, NIST CSF, ISO 27001, COBIT; GRC tooling experience preferred; familiarity with AI/ML, cloud, and data privacy; must be local to an office and able to be onsite 2+ days/week.
ServiceNow GRC, Archer, Microsoft Copilot, Claude, ChatGPT
1mo
Save
Mark Applied
Hide
Head of Technology Risk, Governance, and Controls
New York or Raleigh or Princeton or Charlottesville
$220k-$350k/yr HybridFull Time
S&P Global
S&P GlobalNYSE: SPGI: Provides financial data, analytics, and credit ratings worldwide.
15+ YOE15+ years in technology risk management and internal controls, SOX/ITGC experience, familiarity with NIST CSF/ISO 27001/COBIT, GRC platform experience preferred, strong stakeholder and communication skills, must be local to an office and on-site at least 2 days/week.
NIST CSF, ISO 27001, COBIT, SOX IT General Controls, ServiceNow GRC, Archer, Microsoft Copilot, Claude, ChatGPT
5d
Save
Mark Applied
Hide
Senior Cybersecurity Engineer / (SME) ? Level III (VA, Quantico)
Quantico, Virginia, United States
OnsiteFull Time
RiVidium
RiVidium: Provides cybersecurity software and IT services to federal agencies.
10+ YOEActive TS/SCI clearance, 10+ years cybersecurity engineering experience, expert in cloud security, DevSecOps, Zero Trust, enterprise security, security automation, and GRC; CISSP and AWS cert required; Scrum/CSM required; bachelor\u000degree in related technical field.
ACAS, Nessus, SonarQube, GitLab, SCAP Compliance Checker, Nmap, WebInspect, RSA Archer, Terraform, CloudFormation, Docker, Kubernetes, SOAR, Vulnerability management platforms, Code scanning platforms