33 grc jobs at 28 companies in Maryland

1w
Save
Mark Applied
Hide
Cyber GRC Specialist
Baltimore, Maryland, United States
$95k-$115k/yr OnsiteFull Time
Brown Advisory
Brown Advisory: Provides investment management and financial advisory services to global clients.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
1mo
Save
Mark Applied
Hide
Senior GRC Engineer, Trust
New York City or Maryland or Massachusetts or Virginia or Georgia or New York
$97k-$184k/yr OnsiteFull Time
Chainalysis
Chainalysis: Blockchain data platform for cryptocurrency investigation and compliance.
Experience implementing and operating security and compliance controls in cloud/SaaS environments; built evidence collection, control testing, or remediation workflows; supported SOC 2/ISO 27001 or similar; strong written/verbal communication; US citizenship required.
AWS, Terraform, Vanta, Jira, Okta
2w
Save
Mark Applied
Hide
Security Assessor (RMF / GRC)
Bethesda or McLean
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Provides cybersecurity, engineering, and compliance services to federal agencies.
5+ YOEBachelor's degree, 5+ years performing RMF/GRC security control assessments using NIST SP 800-53, experience supporting ATO and continuous monitoring, strong technical writing and analytical skills, U.S. citizenship and ability to obtain Tier 2 Public Trust.
NIST SP 800-53, NIST SP 800-37, FISMA, Risk Management Framework (RMF), Microsoft Office Suite, ServiceNow, Jira
3w
Save
Mark Applied
Hide
Sr Risk Manager, GRC Systems
Cedar Rapids or Baltimore or Denver
$150k-$175k/yr HybridFull Time
Transamerica
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
10+ YOE10+ years operational/enterprise risk experience, experience managing enterprise GRC platforms and risk data frameworks, strong ERM and operational risk knowledge, stakeholder influence and communication skills.
1mo
Save
Mark Applied
Hide
Principal Sales Engineer – Cyber Risk and GRC
United States or Illinois or Colorado or Hawaii or District of Columbia or Maryland or Minnesota or New York or Washington or New Jersey or Vermont or Massachusetts or California or Kansas
$97k-$227k/yr RemoteFull Time
Comcast
ComcastNASDAQ: CMCSA: Provides global telecommunications, media content, and entertainment services.
5+ YOE5+ years enterprise sales engineering experience in B2B SaaS, GRC/cyber risk expertise, data fluency including SQL, strong PoV/demo/communication skills, ability to travel and influence product direction.
DataBee, SQL, Business Intelligence (BI) Reporting Tools
4d
Save
Mark Applied
Hide
Cybersecurity Governance and Risk Management (GRC) Lead
Laurel, Maryland, United States
$165k-$210k/yr RemoteFull Time
ERP International
ERP International: Provider of healthcare and technology solutions for federal agencies.
7+ YOE3+ MgmtRequires 7+ years of cybersecurity or related experience, 3+ years leading governance or risk activities, a relevant bachelor's degree, and ability to obtain a government Public Trust clearance.
NIST Risk Management Framework, Enterprise Risk Management, FISMA, Zero Trust
1mo
Save
Mark Applied
Hide
SOC 2 Type 2 Five-TSC SaaS / Cloud Compliance Lead
Silver Spring, Maryland, United States
HybridFull Time
For Your Information, Inc.
For Your Information, Inc.: Provides HR and IT services to federal government agencies.
8+ YOE8+ years in cybersecurity/GRC/IT audit with direct SOC 2 Type 2 audit experience, GRC platform experience (Drata preferred), SaaS/cloud expertise, evidence review, strong written communication, and stakeholder coordination skills.
Drata, Vanta, SecureFrame, Hyperproof, Jira, Confluence, AWS, Azure, GCP, CI/CD, SAST, DAST, SCA, IAM, MFA, vulnerability management, PCI DSS
4d
Save
Mark Applied
Hide
PCI DSS Internal Controls, Senior Manager
Bethesda or New York City or Chicago or Chevy Chase or New York
$130k-$212k/yr HybridFull Time
GEICO
GEICO: Provides vehicle and property insurance services to consumers.
5+ YOERequires PCIP, 5+ years in auditing, control assessment, and PCI DSS, 6+ years in GRC, cybersecurity expertise, security technology experience, and a relevant bachelor's degree.
PCI DSS, NIST 800-53, GLBA, FFIEC, ITIL, NIST, MITRE, COBIT, COSO, HITRUST, SOC, CSF, ISO, GDPR, firewalls, intrusion detection and prevention systems, encryption technologies
1mo
Save
Mark Applied
Hide
Cybersecurity Information System Security Officer (ISSO)
Aberdeen Proving Ground, Maryland, United States
$96k-$140k/yr OnsiteFull Time
Nakupuna
Nakupuna: Provides professional services and technical solutions for federal agencies.
2+ YOEUS citizen with active Secret clearance, 2+ years ISSO experience in DoD, eMASS/RMF proficiency, cloud and GRC experience, risk assessments, and executive reporting skills.
Enterprise Mission Assurance Support Service (eMASS), SIPRNet
1mo
Save
Mark Applied
Hide
Manager Corporate Technology (Security & IT)
Chicago or Denver or Phoenix or Chandler or Arizona or Colorado or District of Columbia or Illinois or Maryland or Texas or Virginia or California or Florida or Massachusetts or New York or Oregon or Washington or Wisconsin or United States
$171k-$214k/yr HybridFull Time
Caribou
Caribou: Connects car owners with lenders to refinance auto loans.
Owner of security and IT programs with proven SOC 2 Type II delivery, SIEM/EDR incident response, GRC controls, SaaS and identity management, vendor management, and people leadership.
SIEM, CrowdStrike, Wiz, DLP, Google Workspace, Slack, Atlassian, Asana, 1Password, Adobe, EDR, CSPM
1mo
Save
Mark Applied
Hide
Mid-Level RMF Controls / ConMon Analyst
Washington or Maryland
$75k-$90k/yr RemoteContract
K2United
K2United: Provides cybersecurity advisory and online workforce safety training.
4+ YOE4+ years RMF/continuous monitoring experience, POA&M and control assessment expertise, GRC platform experience, bachelor’s degree or equivalent, ability to meet federal background investigation.
JCAM, CSAM, eMASS, Xacta, Power BI, Splunk
3w
Save
Mark Applied
Hide
Director, Technology & Digital Enablement
Hunt Valley, Maryland, United States
$141k-$253k/yr HybridFull Time
McCormick
McCormickNYSE: MKC: Produces and sells spices, seasonings, condiments, and flavors.
10+ YOE4+ MgmtBachelor's in Information Systems, CISA/CISM/CISSP required, 10+ years technology audit/IT risk experience with 4+ years leadership, GRC platform proficiency, digital transformation and analytics experience.
Optro, Workiva, Archer
1mo
Save
Mark Applied
Hide
Senior Implementation Consultant
California or Maryland or Massachusetts or Illinois or Oregon or Washington or Colorado or Texas or Florida or Pennsylvania or Louisiana or Missouri or District of Columbia or New South Wales or Tasmania
RemoteFull Time
UpGuard
UpGuard: AI-powered platform for managing cyber risk and security.
5+ YOE5+ years B2B SaaS implementation/professional services experience, experience with large organisations (5,000+ employees), PSA tools, API/webhook integrations, consultative stakeholder skills; GRC experience desirable.
REST APIs, webhooks, ITSM, SIEM, SSO, Rocketlane, Certinia, Productive
2mo
Save
Mark Applied
Hide
Systems Engineer
Linthicum Heights, Maryland, United States
$128k-$214k/yr OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
12+ YOERequires US citizenship and active TS/SCI with Polygraph; minimum 12 years relevant SE experience (bachelor's+), ServiceNow implementation experience, systems engineering leadership, GRC/IRM experience, and reporting/dashboard development.
ServiceNow
3mo
Save
Mark Applied
Hide
Certified CMMC Professional
Columbia, Maryland, United States
HybridFull Time
DigiFlight
DigiFlight: Provides cybersecurity, aerospace, and systems engineering for government agencies.
4+ YOE3–5 years in cybersecurity, IT audit/compliance, and GRC; knowledge of CMMC Level 1/2, NIST 800-171, CAP, FedRAMP, SOC 2; experience with security assessments and DoD/CUI environments; strong communication.
2mo
Save
Mark Applied
Hide
Risk Manager
Rockville, Maryland, United States
$155k-$165k/yr HybridFull Time
CVP
CVP: Provides technology and strategy consulting services to federal agencies.
6+ YOE6+ years cybersecurity experience, FISMA/FedRAMP A&A background, experience with risk assessments, security controls, POA&Ms, and team leadership; one of CISSP/CISA/CISM/CRISC required; familiarity with ITIL, GRC, and continuous monitoring tools.
CSAM, Tenable Nessus, DBProtect, Wireshark, WebInspect, ITIL
2mo
Save
Mark Applied
Hide
VP of Cybersecurity & Information Security
Nottingham, Maryland, United States
$160k-$225k/yr OnsiteFull Time
Mariner Finance
Mariner Finance: Provider of personal installment and auto loans.
12+ YOE3+ MgmtLead cybersecurity and information security; 12+ years IT with leadership; 3+ years management; CISSP/CISM; extensive security tech and regulatory experience.
SIEM, EDR, IAM, PAM, Vulnerability Management, Cloud Security, DevSecOps, Identity Security, Zero Trust, GRC
5d
Save
Mark Applied
Hide
Cybersecurity Specialist
Rockville or McLean or United States or Washington
$98k-$163k/yr HybridFull Time
Guidehouse
Guidehouse: Provides management and technology consulting services to diverse organizations.
5+ YOEBachelor's degree or four additional years of experience, 5+ years in cybersecurity or related fields, federal security framework knowledge, ATO, POA&M, vulnerability management, incident response, and public trust eligibility.
FISMA, NIST 800-53, FedRAMP, Jira, Azure DevOps, Confluence, Microsoft SharePoint, Microsoft Teams, AWS, GRC, DevSecOps, ITIL, SAFe
1mo
Save
Mark Applied
Hide
Cleared Hybrid Information System Security Officer (5420)
Hanover, Maryland, United States
$103k-$172k/yr HybridFull Time
SMX
SMX: Providing cloud, cybersecurity, and mission-focused technology solutions to government.
5+ YOEActive Secret clearance, 5+ years cybersecurity/RMF experience, ISSO/ATO support, SSP/POA&M development, NIST 800-53/800-37 and federal compliance knowledge, vulnerability and continuous monitoring experience, strong communication skills.
Tenable Nessus, Security Center, SIEM Platforms, Vulnerability Management Tools, Endpoint Detection and Response (EDR) Solutions, GRC platforms
2w
Save
Mark Applied
Hide
Senior Analyst, Security Risk
United States or Colorado or Hawaii or Illinois or Maryland or Massachusetts or Minnesota or Vermont or District of Columbia or New York or New Jersey or Washington or California or Connecticut or Pennsylvania
$129k-$189k/yr RemoteFull Time
Twilio
TwilioNYSE: TWLO: Cloud communications platform for building customer engagement applications.
5+ YOE5+ years security-focused risk management experience with industry risk frameworks, quantitative and qualitative risk analysis, automation and AI tooling, cross-functional collaboration, and strong communication skills.
NIST RMF, AI RMF, COSO, ISO 31000, GRC, AI