87 grc manager jobs at 53 companies in Redland, MD
1d
Save
Mark Applied
Hide
1d
GRC Project Manager
Budapest or New York City or Washington or Vancouver or London or Galway or Munich or Bengaluru or Singapore or Sydney
HybridFull Time
Diligent: Provides software for corporate governance, risk, and compliance management.
Experience delivering projects for enterprise customers in complex technical or regulatory environments, with strong communication, project management, stakeholder coordination, and customer enablement skills.
AI, SaaS, large language models, LinkedIn, Facebook
Brown Advisory: Provides investment management and financial advisory services to global clients.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
Guidehouse: Provides management and technology consulting services to diverse organizations.
10+ YOE5+ MgmtBachelor's degree or equivalent experience, 10+ years leading cybersecurity programs, 5+ years managing large federal cybersecurity contracts, active Secret clearance, U.S. citizenship, and DoD IAM Level II certification minimum.
NIST Risk Management Framework (RMF), FISMA, NIST SP 800 Series, CISA, Zero Trust, Continuous Diagnostics and Mitigation (CDM), Security Operations Center (SOC), FedRAMP, CMMC, PMP
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
10+ YOE10+ years operational/enterprise risk experience, experience managing enterprise GRC platforms and risk data frameworks, strong ERM and operational risk knowledge, stakeholder influence and communication skills.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
CyberLinx Solutions: Provides specialized cybersecurity and IT services to federal agencies.
8+ YOE3+ MgmtBachelor's in a related field, 8+ years in cybersecurity with 3+ years of GRC leadership, strong knowledge of NIST CSF/RMF and NIST SP 800-53/800-171, audit/compliance experience, and executive communication skills.
Director, GRC Transformation and Enablement- Remote or Hybrid in MN or DC
United States or Minneapolis or Washington
$135k-$231k/yrRemoteFull Time
UnitedHealth GroupNYSE: UNH: Provides health insurance and technology-enabled health care services.
15+ YOE7+ Mgmt15+ years in enterprise technology/risk/compliance, 7+ years senior leadership, 4+ years leading GRC operating model and tool transformation, experience in regulated environments, Bachelor's or equivalent experience, BLS/CPR not applicable.
Anduril Industries: Defense technology building autonomous military hardware and software.
6+ YOERequires 6+ years in security engineering or GRC, programming experience, compliance framework expertise, cloud and SaaS integrations, production infrastructure-as-code experience, and eligibility for a U.S. Secret clearance.
WorkdayNASDAQ: WDAY: Provides cloud-based software for financial and human capital management.
12+ YOE12+ years GRC experience, 7+ years implementing GRC tools, BS/MS in CS/InfoSec/MIS or equivalent, expert TPRM and risk analysis, stakeholder management, and preferred advanced security certifications.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
8+ YOE8+ years in ISSO/SCA/ISSE/ISSM roles; experience configuring and automating GRC platforms (ServiceNow, Archer, Xacta, eMASS); strong process/change management, policy-to-implementation translation, and knowledge of NIST RMF/FISMA/FedRAMP; U.S. citizenship required.
ServiceNow, Archer, RSA Archer, Xacta, Telos Xacta, eMASS, CSAM, API
Neumo: Provides integrated software and payment solutions for government agencies.
7+ YOEBachelor's degree or equivalent experience, 7+ years in security compliance, GRC, or IT audit program management, and 3+ years managing FedRAMP High authorization efforts. FedRAMP, NIST, cross-functional program, and GRC platform experience required.
NIST SP 800-53, NIST SP 800-37, AWS GovCloud, Microsoft Azure Government, Xacta, Drata, Vanta, Ignyte, Smartsheet, Jira, MS Project
OracleNYSE: ORCL: Provides cloud infrastructure and enterprise software for global businesses.
6+ YOESenior program manager with experience leading NIST 800-53 Rev 5 compliance, GRC tooling (Xacta,eMASS), program budgeting, cross-functional coordination, and executive stakeholder communication.
Steampunk: Federal digital transformation and consulting services provider.
7+ YOEAbility to lead RiskOps program for federal cybersecurity, obtain Public Trust clearance, project management certification, 7+ years experience (or equivalent), familiarity with GRC, NIST 800-53, FedRAMP, CTEM, DevSecOps, and data/automation programs.
Platinum Technologies: Provides cybersecurity and digital services to government agencies.
10+ YOE10+ years managing large-scale DoD/Federal IT programs, strong leadership, stakeholder engagement, RMF/NIST/Zero Trust familiarity, cloud migration and modernization experience, and ACTIVE SECRET clearance required.
CVP: Provides technology and strategy consulting services to federal agencies.
6+ YOE6+ years cybersecurity experience, FISMA/FedRAMP A&A background, experience with risk assessments, security controls, POA&Ms, and team leadership; one of CISSP/CISA/CISM/CRISC required; familiarity with ITIL, GRC, and continuous monitoring tools.
Tharros: Provides specialized cybersecurity defense and vulnerability research services.
15+ YOEActive TS/SCI, 15+ years managing large cybersecurity/IT programs, PMP and CISSP or CISM, experience with cybersecurity program management, strong customer-facing and communication skills.
RMF, Assessment and Authorization (A&A), DevSecOps, Zero Trust, GRC, COMSEC
AmazonNASDAQ: AMZN: Global online retail and cloud computing technology provider.
5+ YOE5+ years compliance, audit, or risk management experience; Bachelor’s degree or equivalent required; deep knowledge of COSO 2013, SEC/PCAOB, ITGCs, SOX scoping, control design, testing, remediation, and GRC platforms.
Manager, Information Security Governance, Risk, and Compliance
Washington, District of Columbia, United States
$148k-$161k/yrHybridFull Time
Steptoe: Provides international legal representation, litigation, and regulatory counsel services.
7+ YOEBachelor's degree in a related field; 7–10 years in information security, including 4+ years in GRC. Requires ISO 27001 experience, risk assessments, audits, and stakeholder management.
ISO 27001, ISO 22301, CrowdStrike, Next-Gen SIEM, Microsoft 365, Identity and Access Management, GRC, KnowBe4
Capital OneNYSE: COF: Provides credit card, banking, and auto loan services.
5+ YOERequires a high school diploma or equivalent, 5+ years of risk management or human resources experience, and 2+ years of process management experience. Preferred: leadership, controls, GRC, Agile, and Design Thinking experience.