10 grc specialist jobs at 9 companies in McLean, VA
1w
Save
Mark Applied
Hide
1w
Cyber GRC Specialist
Baltimore, Maryland, United States
$95k-$115k/yrOnsiteFull Time
Brown Advisory: Provides investment management and financial advisory services to global clients.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
United States Senate: The upper chamber of the United States federal legislature.
7+ YOERequires 7–10 years of cybersecurity experience, cybersecurity domain expertise, leadership of project teams, strategic policy and framework development, high school diploma or GED, and eligibility for a Secret clearance as a U.S. citizen.
Second Front Systems: Secure cloud hosting and automated compliance for government software.
5+ YOE5+ years in security compliance/GRC with FedRAMP experience; experience authoring SSPs/POA&Ms; knowledge of NIST 800-53/800-37 and FedRAMP; TS/SCI eligibility; CISSP/CISM/Security+; strong written communication.
AnaVation: Providing technical engineering and cybersecurity solutions for federal agencies.
6+ YOE6+ years working with NIST, FISMA, RMF, and SA&A; FedRAMP and multi-cloud (Azure, AWS, OCI) experience; CISSP required; ability to obtain/maintain Public Trust; experience with GRC tools, vulnerability and endpoint tools, and presenting to leadership.
Azure, AWS, Oracle (OCI), Nessus, BigFix, SCCM, ePO, eMASS, JCAM, CSAM, Microsoft Excel, Microsoft Power BI
Rockville or McLean or United States or Washington
$98k-$163k/yrHybridFull Time
Guidehouse: Provides management and technology consulting services to diverse organizations.
5+ YOEBachelor's degree or four additional years of experience, 5+ years in cybersecurity or related fields, federal security framework knowledge, ATO, POA&M, vulnerability management, incident response, and public trust eligibility.
FISMA, NIST 800-53, FedRAMP, Jira, Azure DevOps, Confluence, Microsoft SharePoint, Microsoft Teams, AWS, GRC, DevSecOps, ITIL, SAFe
BDR Solutions: Provider of IT, engineering, and consulting for federal agencies.
5+ YOEActive MBI (required), U.S. citizenship, 5+ years in FedRAMP High or comparable AWS environments, CISSP/CCSP/Security+ (current), AWS Security experience, POA&M/GRC and ATO support, bachelor's degree in cybersecurity/IT.
Washington or Cleveland or California or Colorado or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or New Jersey or New York or Vermont or Virginia or Washington or District of Columbia
$64k-$221k/yrHybridFull Time
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
2+ YOEManage full RMF lifecycle for federal/DoD systems; implement and assess NIST SP 800-53 controls; perform vulnerability scans, security control assessments, risk analysis, and maintain SSPs/POA&Ms. Requires 2+ years information security experience.
SOSi: Provides technology and mission solutions for national security.
5+ YOEActive Top Secret/SCI clearance, Bachelor’s degree, 5+ years in risk management/internal controls or related DoD/IC experience; experience with DoD RMIC, FOCI, ServiceNow IRM/SPM, and Microsoft Office.
ServiceNow Integrated Risk Management (IRM), Strategic Portfolio Management (SPM), Microsoft Excel, Microsoft Word, Microsoft PowerPoint, GRC
Continuous Monitoring Specialist (SCA)? Level III (DC, Washington)
Washington, District of Columbia, United States
OnsiteFull Time
RiVidium: Provides cybersecurity software and IT services to federal agencies.
7+ YOEActive TS/SCI clearance, 7+ years cybersecurity/continuous monitoring experience, expertise with NIST RMF and vulnerability management, experience with Nessus/ACAS/Tenable and GRC/SIEM platforms, bachelor's degree required.