Familiarity with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer . * Experience supporting cybersecurity audits, inspections, policy compliance assessments, and governance reviews.
Familiarity with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer . * Experience supporting cybersecurity audits, inspections, policy compliance assessments, and governance reviews.
Senior Cybersecurity Engineer / (SME) Level III with Security Clearance
Washington, DC · On-site
$129K - $177K/yr
... GRC) platform administration, and emerging technology integration across classified and ... The Senior Cybersecurity Engineer is responsible for designing secure enterprise architectures ...
Senior Cybersecurity Engineer / (SME) Level III with Security Clearance
Washington, DC · On-site
$129K - $177K/yr
... GRC) platform administration, and emerging technology integration across classified and ... The Senior Cybersecurity Engineer is responsible for designing secure enterprise architectures ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
PS_GRC Security Consultant
Ashburn, VA · On-site
PS_GRC Security Consultant. Location: Ashburn, VA. * Bachelor's degree or relevant work experience ... Relevant work experience related to Cyber Security assessment. * Experience of supporting the ...
PS_GRC Security Consultant
Ashburn, VA · On-site
PS_GRC Security Consultant. Location: Ashburn, VA. * Bachelor's degree or relevant work experience ... Relevant work experience related to Cyber Security assessment. * Experience of supporting the ...
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Director, Cybersecurity Compliance
Arlington, VA · On-site
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Director, Cybersecurity Compliance
Arlington, VA · On-site
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Director, Cybersecurity Compliance
Arlington, VA · On-site
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organizations information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Director, Cybersecurity Compliance
Arlington, VA · On-site
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organizations information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Director, Cybersecurity Compliance
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Quick apply
Director, Cybersecurity Compliance
$151K - $288K/yr
The Director of Cybersecurity Compliance leads the healthcare organization's information security governance, risk, and compliance (GRC) program. This role is accountable for defining regulatory ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Collaborate cross-functionally with Infinitive and client teams including cybersecurity, data, and ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800-53, ISO 27001/27002, SOC 2, COBIT, CMMC ...
Quick apply
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Collaborate cross-functionally with Infinitive and client teams including cybersecurity, data, and ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800-53, ISO 27001/27002, SOC 2, COBIT, CMMC ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
Collaborate cross‑functionally with Infinitive and client teams including cybersecurity, data ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800‑53, ISO 27001/27002, SOC 2 ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
Collaborate cross‑functionally with Infinitive and client teams including cybersecurity, data ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800‑53, ISO 27001/27002, SOC 2 ...
Cybersecurity Governance & Policy Specialist Level II with Security Clearance
Washington, DC · On-site
Familiarity with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer. * Experience supporting cybersecurity audits, inspections, policy compliance assessments, and governance reviews.
Cybersecurity Governance & Policy Specialist Level II with Security Clearance
Washington, DC · On-site
Familiarity with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer. * Experience supporting cybersecurity audits, inspections, policy compliance assessments, and governance reviews.
Experience supporting enterprise GRC platforms and security workflow automation technologies ... Other relevant cybersecurity, cloud, architecture, or AI-related certifications Application ...
Experience supporting enterprise GRC platforms and security workflow automation technologies ... Other relevant cybersecurity, cloud, architecture, or AI-related certifications Application ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Collaborate cross-functionally with Infinitive and client teams including cybersecurity, data, and ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800-53, ISO 27001/27002, SOC 2, COBIT, CMMC ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Collaborate cross-functionally with Infinitive and client teams including cybersecurity, data, and ... Knowledge of IT GRC frameworks including NIST CSF, NIST 800-53, ISO 27001/27002, SOC 2, COBIT, CMMC ...
Experience implementing security automation, workflow automation, GRC modernization, or compliance ... Experience designing, developing, or implementing AI-enabled cybersecurity, governance, compliance ...
Experience implementing security automation, workflow automation, GRC modernization, or compliance ... Experience designing, developing, or implementing AI-enabled cybersecurity, governance, compliance ...
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington, VA · On-site
$145K - $180K/yr
Compliance Data Architect / GRC Reconciliation Engineer Position Overview We are looking for a ... cyber security, or a related field. * Another major will be considered, provided it clearly ...
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington, VA · On-site
$145K - $180K/yr
Compliance Data Architect / GRC Reconciliation Engineer Position Overview We are looking for a ... cyber security, or a related field. * Another major will be considered, provided it clearly ...
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington, VA · Remote
$145K - $180K/yr
Compliance Data Architect / GRC Reconciliation Engineer Position OverviewWe are looking for a ... technology, cyber security, or a related field.Another major will be considered, provided it ...
Quick apply
COMPLIANCE DATA ARCHITECT / GRC RECONILIATION ENGINEER
Arlington, VA · Remote
$145K - $180K/yr
Compliance Data Architect / GRC Reconciliation Engineer Position OverviewWe are looking for a ... technology, cyber security, or a related field.Another major will be considered, provided it ...
Senior Cybersecurity Governance & Policy Specialist Level II with Security Clearance
Washington, DC · On-site
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Senior Cybersecurity Governance & Policy Specialist Level II with Security Clearance
Washington, DC · On-site
Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence ...
Professional Services - GRC Security Consultant. Location: Ashburn, VA. Description: * Bachelor ... Relevant work experience related to Cyber Security assessment. * Experience in supporting the ...
Professional Services - GRC Security Consultant. Location: Ashburn, VA. Description: * Bachelor ... Relevant work experience related to Cyber Security assessment. * Experience in supporting the ...
Cyber Security Grc information
See Reston, VA salary details
$42.8K - $56.2K
0% of jobs
$56.2K - $69.6K
0% of jobs
$69.6K - $83K
4% of jobs
$83K - $96.4K
9% of jobs
$109.3K is the 25th percentile. Wages below this are outliers.
$96.4K - $109.8K
13% of jobs
$109.8K - $123.2K
20% of jobs
The median wage is $126.8K / yr.
$123.2K - $136.6K
16% of jobs
$147.1K is the 75th percentile. Wages above this are outliers.
$136.6K - $150K
17% of jobs
$150K - $163.4K
12% of jobs
$163.4K - $176.8K
6% of jobs
$176.8K - $190.2K
3% of jobs
$42.8K
$129.9K
$190.2K
How much do cyber security grc jobs pay per year?
Is cyber security GRC a good job?
What are some common challenges faced by Cyber Security GRC professionals, and how do they typically overcome them?
Cyber Security GRC professionals often face the challenge of keeping up with evolving regulations, adapting controls for new technologies, and coordinating between security teams and business units. To overcome these challenges, professionals stay current with industry standards, participate in ongoing training, and actively communicate policy changes and risk assessments to stakeholders across the organization. They also leverage robust GRC tools to streamline compliance processes and documentation. Working collaboratively with IT, legal, and compliance teams allows them to better identify risks and implement effective, practical security controls. This approach ensures a well-integrated and proactive risk management posture for the organization.
What is a Cyber Security GRC?
A Cyber Security GRC (Governance, Risk, and Compliance) job focuses on ensuring an organization's security policies, risk management strategies, and regulatory compliance. Professionals in this role develop and enforce security policies, assess risks, and ensure adherence to industry regulations like GDPR, HIPAA, or ISO 27001. They collaborate with different teams to mitigate cybersecurity threats while aligning security practices with business goals. This role is critical for maintaining an organization's security posture and reducing potential risks.
Is cyber security GRC in high demand?
What are the key skills and qualifications needed to thrive in the Cyber Security GRC position?
To thrive as a Cyber Security GRC professional, a solid understanding of information security frameworks, risk management, and regulatory compliance is essential, often supported by a degree in information security or a related field. Familiarity with GRC platforms (such as Archer, ServiceNow, or LogicGate), and certifications like CISSP, CISM, or CRISC, are highly valued. Excellent analytical skills, attention to detail, and the ability to communicate complex risks to non-technical stakeholders are critical soft skills. These capabilities ensure organizations remain secure, compliant, and able to effectively manage evolving cyber risks.

Full-time
Posted 4 days ago
Job description
The Cybersecurity Governance & Policy Specialist ? Level II supports the development, implementation, and maintenance of cybersecurity governance, policy, and compliance activities for the Department of Homeland Security (DHS) Intelligence Enterprise (DHS IE). Working under the direction of the Senior Security Governance and Policy Analyst, this position assists with researching emerging cybersecurity requirements, analyzing Federal and Intelligence Community (IC) guidance, and ensuring DHS IE cybersecurity policies remain aligned with current Federal laws, Executive Orders, DHS directives, and IC cybersecurity standards.
The ideal candidate possesses strong analytical, research, technical writing, and organizational skills, with experience supporting cybersecurity governance initiatives within classified Federal or Intelligence Community environments. This role collaborates closely with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), cybersecurity leadership, and Government stakeholders to promote policy compliance and effective cybersecurity governance across the enterprise.
Key Responsibilities
- Support the Senior Cybersecurity Governance and Policy Analyst in reviewing, analyzing, and implementing changes to Federal, DHS, and Intelligence Community cybersecurity policies, directives, standards, and guidance.
- Research newly issued Executive Orders (EOs), National Security Memoranda (NSMs), Office of Management and Budget (OMB) guidance, DHS directives, and IC cybersecurity policies; prepare summaries and recommendations for leadership review.
- Draft stakeholder notifications regarding cybersecurity policy changes, updates, and rescissions for review and distribution by the Chief Information Security Officer (CISO).
- Assist in developing Policy Addenda, implementation guidance, and policy rescission documentation for Cybersecurity Division leadership.
- Maintain the cybersecurity governance compliance tracker and update policy implementation status on a weekly basis.
- Maintain SharePoint sites and centralized repositories containing cybersecurity policies, governance documentation, meeting records, and reference materials.
- Support the preparation of executive briefings, decision papers, white papers, presentation materials, and governance reports for senior leadership.
- Assist with Intelligence Community Oversight Program (ICOP) briefings and governance working group presentations.
- Monitor DHS Component compliance with cybersecurity policy requirements and assist in compiling compliance status reports and metrics.
- Support Government data calls, taskers, audits, inspections, and special reporting requirements.
- Coordinate governance meetings, working groups, and stakeholder communications; document meeting minutes and track action items.
- Maintain centralized records of governance decisions, policy changes, waivers, and compliance documentation.
- Assist with quality assurance reviews of governance documents to ensure consistency with Federal and Intelligence Community requirements.
- Collaborate with cybersecurity teams to promote policy awareness and governance best practices throughout the enterprise.
Minimum Qualifications
- Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
- Minimum 5 years of experience supporting cybersecurity governance, policy analysis, information assurance, or cybersecurity compliance within the Federal Government or Intelligence Community.
- Working knowledge of:
- NIST SP 800-53
- NIST Risk Management Framework (RMF)
- CNSSI 1253
- DHS Sensitive Systems Policy Directive 4300C
- Intelligence Community cybersecurity directives and governance requirements
- Experience researching cybersecurity regulations and translating technical guidance into policy recommendations and implementation documentation.
- Experience preparing executive correspondence, policy memoranda, briefing materials, reports, and technical documentation.
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Political Science, Public Administration, Information Assurance, or a related discipline.
- Excellent analytical, organizational, technical writing, verbal communication, and presentation skills.
- Proficiency with Microsoft Office 365, including Word, Excel, PowerPoint, Outlook, and Teams.
Preferred Qualifications
- Current Certified Information Systems Security Professional (CISSP), CompTIA Security+, or Certified Authorization Professional (CAP) certification.
- Experience supporting DHS Intelligence & Analysis (I&A) or other Intelligence Community cybersecurity organizations.
- Experience administering or maintaining SharePoint sites and collaboration platforms.
- Familiarity with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer.
- Experience supporting cybersecurity audits, inspections, policy compliance assessments, and governance reviews.
- Knowledge of Executive Orders, National Security Memoranda (NSMs), OMB Circulars, FISMA, and other Federal cybersecurity mandates.
Required Certifications
One or more of the following certifications are preferred and may be required based on contract needs:
- CompTIA Security+
- Certified Information Systems Security Professional (CISSP)
- Certified Authorization Professional (CAP)
Clearance Requirement
Active Top Secret/Sensitive Compartmented Information (TS/SCI) Clearance Required
About Rividium
Sourced by ZipRecruiter
Industry
It services
Company size
11 - 50 Employees
Headquarters location
Manassas, VA, US
Year founded
2008