1

Cgrc Jobs in Silver Spring, MD (NOW HIRING)

ISC2 CC or CGRC * CompTIA Security+, CySA+, PenTest+, CASP+ * CEH * Microsoft SC-900 * System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced ...

ISC2 CC or CGRC * CompTIA Security+, CySA+, PenTest+, CASP+ * CEH * Microsoft SC-900 * System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced ...

ISC2 CC or CGRC * CompTIA Security+, CySA+, PenTest+, CASP+ * CEH * Microsoft SC-900 * System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced ...

CAP/CGRC * CISSP * CISM * Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity ...

CAP/CGRC * CISSP * CISM * Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity ...

CAP/CGRC * CISSP * CISM * Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity ...

CAP/CGRC * CISSP * CISM * Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity ...

CGRC (formerly CAP) * CISSP * Experience supporting HHS or other Federal civilian agencies. * Experience supporting research, scientific, healthcare, or biomedical environments. * Knowledge of ...

CGRC (ISC2 Certified Governance, Risk And Compliance) * GSLC (GIAC Security Leadership Certification) * CISM (Certified Information Security Manager) * CISSP (Associate or Full) * CASP+ (CompTIA ...

CAP/CGRC * CISSP * CISM * Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity ...

Showing results 21-40

Cgrc information

What is a CGRC professional?

CGRC professionals, or Certified in Governance, Risk and Compliance, are experts who help organizations manage risk, ensure regulatory compliance, and establish effective governance frameworks. They analyze processes, identify potential risks, and develop policies to maintain compliance with laws and industry standards. CGRC certification, previously known as CAP (Certified Authorization Professional), is offered by (ISC)² and validates knowledge in governance, risk management, and compliance best practices. These professionals often work in cybersecurity, IT, or regulatory roles across various industries.

What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (CGRC) professional?

To thrive as a CGRC professional, you need a solid understanding of cybersecurity frameworks, risk management, and regulatory compliance, typically supported by a relevant degree and certifications such as CISSP, CISA, or CGRC (formerly CAP). Familiarity with GRC platforms like Archer, ServiceNow GRC, or RSA, as well as knowledge of NIST, ISO, or HIPAA standards, is commonly required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for interpreting regulations and collaborating across teams. These competencies ensure organizations remain secure and compliant, minimizing risk and avoiding costly penalties.

What are some common challenges CGRC professionals face when managing compliance across multiple frameworks?

CGRC (Cybersecurity Governance, Risk, and Compliance) professionals often encounter the challenge of aligning organizational policies with the requirements of various regulatory frameworks, such as NIST, ISO 27001, and GDPR. This can involve interpreting overlapping or conflicting controls and ensuring consistent documentation and reporting. Additionally, they must facilitate communication and collaboration between IT, legal, and business teams to ensure all stakeholders understand and meet compliance obligations. Keeping up with the evolving regulatory landscape and adapting internal processes accordingly is also a key aspect of the role.

What is the difference between Cgrc vs Compliance Analyst?

AspectCgrcCompliance Analyst
CertificationsCertifications like CFE, CISA, or CMMC often preferredCertifications such as CCEP, CISA, or CIA common
Work EnvironmentTypically in cybersecurity, risk management, or compliance teams within organizationsUsually in corporate compliance departments, auditing firms, or regulatory agencies
Industry UsageUsed in industries like finance, healthcare, and government for cybersecurity and risk managementCommon across various industries for regulatory compliance and risk assessment

The Cgrc (Certified Government Risk Compliance) focuses on government-specific regulations and cybersecurity risk management, while a Compliance Analyst generally handles broader regulatory compliance across industries. Both roles require understanding of compliance frameworks, but Cgrc emphasizes government standards and cybersecurity, making it more specialized in those areas.

What are popular job titles related to Cgrc jobs in Silver Spring, MD?

For Cgrc jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Cgrc jobs in Silver Spring, MD look for?

The top searched job categories for Cgrc jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Cgrc jobs?

Cities near Silver Spring, MD with the most Cgrc job openings:

Infographic showing various Cgrc job openings in Silver Spring, MD as of August 2026, with employment types broken down into 38% Part Time, and 62% Contract. Highlights an 100% In-person job distribution.

Information Systems Security Officer (ISSO)

Altus Consulting Corp

Herndon, VA • On-site

Other

Re-posted 29 days ago


Job description

Altus Consulting Seeks an Information Systems Security Officer to Champion Cybersecurity
If you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore this impactful opportunity. As our Information Systems Security Officer (ISSO), you'll become a pillar of our cybersecurity defenses, protecting client systems and their valuable data.
The Mission
At Altus Consulting, we understand the critical importance of robust cybersecurity. As an ISSO, you'll play a vital role in ensuring client systems meet rigorous security and compliance standards. This role offers a unique chance to expand your expertise, working closely with stakeholders as you identify vulnerabilities and contribute to a strong cybersecurity posture.
Your Day-to-Day Contributions
Imagine days filled with assessments using industry-standard frameworks (like NIST RMF and ICD 503) and advanced tools (Nessus, Rapid7). You'll analyze system packages, identifying risks and contributing to in-depth technical reviews of products for our customer base. Be ready to jump into action with our cybersecurity incident response team, tackling real-world security breaches.
Skills to Succeed
We're seeking a highly analytical and proactive individual with a strong interest in cybersecurity. You'll thrive in both collaborative and independent work environments, always eager to learn and expand your knowledge. While experience with security frameworks, methodologies, tools, and technologies is a plus, this role is a fantastic entry point to building a strong cybersecurity foundation.
The Essentials
To make the biggest impact, you'll need an active TS/SCI security clearance with a polygraph and a Bachelor's degree in Cyber Security, Information Systems, Engineering, or a related field. This is complemented by at least 2 years of experience in security assessments, documentation, advising system administrators, and in-depth knowledge of networking, system hardening, and Windows/Linux environments. While a relevant cybersecurity certification (Security+, SSCP, CGRC, CISM, CISSP, etc.) is preferred, we'll support you in obtaining the required certification within three months of joining our team.
Active TS/SCI security clearance with polygraph is required.
Disclaimer:
The information provided in this job description is accurate and truthful to the best of our knowledge. However, it is not intended to be a contract, and we reserve the right to modify the job description at any time.
Altus Consulting is dedicated to diversity and inclusion, building a work environment where everyone feels respected and valued. We firmly believe in equal opportunity, guaranteeing fair and unbiased treatment for all individuals in all aspects of employment, regardless of race, color, religion, national origin, gender, sexual orientation, gender identity, pregnancy, childbirth or related medical conditions, age, protected veteran status, or disability status. We oppose discrimination in any form, and our commitment is evident in every interaction.