Position Overview The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research ... The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ...
Position Overview The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research ... The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ...
Governance, Risk & Compliance (GRC) Manager
Beavercreek, OH ยท On-site
$145K - $170K/yr
Position Overview The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research ... The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ...
Governance, Risk & Compliance (GRC) Manager
Beavercreek, OH ยท On-site
$145K - $170K/yr
Position Overview The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research ... The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ...
Governance, Risk & Compliance (GRC) Manager
Beavercreek, OH ยท On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead Riverside Research's Governance, Risk, and Compliance (GRC) program supporting the enterprise ...
Governance, Risk & Compliance (GRC) Manager
Beavercreek, OH ยท On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead Riverside Research's Governance, Risk, and Compliance (GRC) program supporting the enterprise ...
Cybersecurity Analyst - Governance, Risk, and Compliance
Beavercreek, OH ยท Hybrid
$104K - $149K/yr
S. Citizenship. Position Overview Riverside Research is seeking a Cybersecurity Governance, Risk and Compliance (GRC) Analyst for the company's corporate enterprise information systems. The ...
Cybersecurity Analyst - Governance, Risk, and Compliance
Beavercreek, OH ยท Hybrid
$104K - $149K/yr
S. Citizenship. Position Overview Riverside Research is seeking a Cybersecurity Governance, Risk and Compliance (GRC) Analyst for the company's corporate enterprise information systems. The ...
Site Cyber Security Leader
$107K - $145K/yr
Lead site governance, risk management, compliance, and cybersecurity assessment activities. * Ensure sustainable execution of cybersecurity programs and regulatory requirements. Build a Strong ...
Site Cyber Security Leader
$107K - $145K/yr
Lead site governance, risk management, compliance, and cybersecurity assessment activities. * Ensure sustainable execution of cybersecurity programs and regulatory requirements. Build a Strong ...
Cybersecurity (ISSM)
Dayton, OH ยท On-site
Overview Cybersecurity (ISSM) LOCATION: WPAFB, Dayton, OH JOB STATUS: Full-Time CLEARANCE: Top ... in Governance, Risk, & Compliance) and it is highly recommended to have CISSP (Certified ...
Cybersecurity (ISSM)
Dayton, OH ยท On-site
Overview Cybersecurity (ISSM) LOCATION: WPAFB, Dayton, OH JOB STATUS: Full-Time CLEARANCE: Top ... in Governance, Risk, & Compliance) and it is highly recommended to have CISSP (Certified ...
Cybersecurity (ISSM)
$125K - $155K/yr
Overview Cybersecurity (ISSM) LOCATION: WPAFB, Dayton, OH JOB STATUS: Full-Time CLEARANCE: Top ... in Governance, Risk, & Compliance) and it is highly recommended to have CISSP (Certified ...
Quick apply
Cybersecurity (ISSM)
$125K - $155K/yr
Overview Cybersecurity (ISSM) LOCATION: WPAFB, Dayton, OH JOB STATUS: Full-Time CLEARANCE: Top ... in Governance, Risk, & Compliance) and it is highly recommended to have CISSP (Certified ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
PLEASE APPLY DIRECTLY ON OUR WEBSITE: www.siertek.com/careers Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance ...
Quick apply
PLEASE APPLY DIRECTLY ON OUR WEBSITE: www.siertek.com/careers Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance with DoD frameworks (likely RMF/NIST 800-53) * Work heavily ...
PLEASE APPLY DIRECTLY ON OUR WEBSITE: www.siertek.com/careers Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance ...
PLEASE APPLY DIRECTLY ON OUR WEBSITE: www.siertek.com/careers Essential Job Functions Cybersecurity Governance & Compliance * Develop and enforce cybersecurity policies across AFRL * Track compliance ...
... with Cybersecurity, Privacy, Legal, Risk, Engineering, and Data Science teams. A successful ... compliance and controls, AI product risk, model risk management, or technology risk consulting.
... with Cybersecurity, Privacy, Legal, Risk, Engineering, and Data Science teams. A successful ... compliance and controls, AI product risk, model risk management, or technology risk consulting.
DevSecOps Engineer
Kettering, OH ยท On-site
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network, and Cybersecurity design changes ...
DevSecOps Engineer
Kettering, OH ยท On-site
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network, and Cybersecurity design changes ...
DevSecOps Engineer
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network and Cybersecurity design changes ...
Quick apply
DevSecOps Engineer
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network and Cybersecurity design changes ...
DevSecOps Engineer
Kettering, OH ยท On-site
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network and Cybersecurity design changes ...
DevSecOps Engineer
Kettering, OH ยท On-site
$160K - $175K/yr
... Governance Risk & Compliance, Oracle Discoverer, User Productivity Kit, Service Oriented ... Monitor and evaluate the impact of software, hardware, network and Cybersecurity design changes ...
Cyber Data Protection/PKI Manager
Dayton, OH ยท On-site
$107K - $145K/yr
... governance, and risk assessments. Qualifications Required: * Bachelor's degree in Cybersecurity ... and compliance monitoring programs * Strong client leadership skills, including executive ...
Cyber Data Protection/PKI Manager
Dayton, OH ยท On-site
$107K - $145K/yr
... governance, and risk assessments. Qualifications Required: * Bachelor's degree in Cybersecurity ... and compliance monitoring programs * Strong client leadership skills, including executive ...
... reducing cyber risk, and advancing secure, compliant operations across the enterprise ... Bachelor's degree or master's degree in computer science, cybersecurity, information security ...
... reducing cyber risk, and advancing secure, compliant operations across the enterprise ... Bachelor's degree or master's degree in computer science, cybersecurity, information security ...
Manager - ServiceNow
Dayton, OH ยท On-site +1
Experience with RSA Archer or other governance, risk, and compliance platforms, including migration ... Master's degree in Computer Science, Cyber Security, Information Security, Engineering, or ...
Manager - ServiceNow
Dayton, OH ยท On-site +1
Experience with RSA Archer or other governance, risk, and compliance platforms, including migration ... Master's degree in Computer Science, Cyber Security, Information Security, Engineering, or ...
Cybersecurity Governance Risk Compliance information
See Springfield, OH salary details
$20.7K - $31.2K
0% of jobs
$31.2K - $41.6K
0% of jobs
$41.6K - $52K
1% of jobs
$52K - $62.5K
2% of jobs
$62.5K - $72.9K
2% of jobs
$72.9K - $83.4K
8% of jobs
$90K is the 25th percentile. Wages below this are outliers.
$83.4K - $93.8K
18% of jobs
The median wage is $103.4K / yr.
$93.8K - $104.2K
20% of jobs
$114.3K is the 75th percentile. Wages above this are outliers.
$104.2K - $114.7K
24% of jobs
$114.7K - $125.1K
18% of jobs
$125.1K - $135.6K
6% of jobs
$20.7K
$102.4K
$135.6K
How much do cybersecurity governance risk compliance jobs pay per year?
What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?
| Aspect | Cybersecurity Governance Risk Compliance | Cybersecurity Analyst |
|---|---|---|
| Certifications | CISA, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Policy development, audits, compliance frameworks | Monitoring security systems, incident response |
| Employer & Industry Usage | Organizations with compliance needs, regulatory bodies | IT security teams, cybersecurity firms |
While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.
What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?
What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?
Is cybersecurity governance risk compliance a good career?
Is cybersecurity governance risk compliance a good job?
What is cybersecurity governance, risk, and compliance (GRC)?

Other
Posted 25 days ago
Job description
The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research's Governance, Risk, and Compliance program supporting the organization's unclassified enterprise and research information systems. Reporting to the Director of Information Security, this position is responsible for maintaining and continuously maturing Riverside's cybersecurity governance framework, enterprise risk management program, and regulatory compliance initiatives.
This role serves as both a people leader and technical contributor, providing leadership for a team of GRC professionals while partnering across Information Security, Information Technology, Contracts, Human Resources, Finance, Legal, and Business Operations to ensure cybersecurity and compliance objectives align with organizational and customer requirements.
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading continuous readiness activities, regulatory assessments, governance initiatives, and enterprise risk management efforts to maintain the organization's strong cybersecurity posture and support Department of Defense mission requirements.
Responsibilities- Lead Riverside Research's Governance, Risk, and Compliance (GRC) program supporting the enterprise cybersecurity strategy, governance framework, and compliance objectives.
- Own Riverside's Cybersecurity Maturity Model Certification (CMMC) program, ensuring continuous readiness for annual affirmations and Certified Third-Party Assessment Organization (C3PAO) assessments.
- Lead and mentor a team of GRC Analysts, establishing priorities, developing staff, and fostering a culture of accountability, collaboration, and continuous improvement.
- Develop, maintain, and govern enterprise cybersecurity policies, standards, procedures, and supporting documentation.
- Lead Riverside's Enterprise Risk Management (ERM) program by facilitating risk identification, assessment, mitigation planning, and executive reporting.
- Drive continuous monitoring activities through operational oversight, technical auditing, internal control assessments, and compliance reviews to ensure adherence to regulatory, contractual, and organizational security requirements.
- Manage corrective action plans, findings, Plans of Action & Milestones (POA&Ms), and remediation activities through closure.
- Provide governance oversight for cybersecurity programs including identity and access management, vulnerability management, configuration management, incident response, security awareness, external information sharing, third-party risk management, and data protection.
- Partner with Information Technology and Information Security teams to ensure enterprise architecture and technology solutions align with cybersecurity strategy, regulatory requirements, and organizational risk tolerance.
- Maintain awareness of evolving FAR, DFARS, CMMC, NIST, and Department of Defense cybersecurity requirements, advising leadership on regulatory changes and organizational impacts.
- Develop executive dashboards, metrics, and reports that communicate cybersecurity posture, enterprise risk, and compliance status to senior leadership.
- Collaborate with business stakeholders including Contracts, Human Resources, Finance, Legal, Marketing, and Business Operations to integrate cybersecurity governance into business processes.
- Serve as a trusted advisor to leadership by translating cybersecurity, compliance, and enterprise risk into actionable business recommendations.
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Assurance, Business, or a related discipline.
- Twelve (12) years of progressively responsible experience in cybersecurity, information assurance, governance, risk, compliance, or related disciplines, including at least three (3) years of leadership experience managing technical teams or enterprise cybersecurity programs.
- Demonstrated success leading external security assessments, regulatory audits, or certification efforts within a regulated industry such as the Defense Industrial Base, government contracting, financial services, healthcare, or telecommunications.
- Strong knowledge of Cybersecurity Maturity Model Certification (CMMC), NIST SP 800-171, Department of Defense Controlled Unclassified Information (CUI) requirements, and applicable FAR and DFARS cybersecurity clauses.
- Experience developing and maintaining cybersecurity governance programs, policies, standards, and enterprise compliance initiatives.
- Strong understanding of enterprise information technology including Microsoft 365, Microsoft Entra ID, Microsoft Azure, Amazon Web Services (AWS), virtualization, and hybrid infrastructure.
- Excellent written, verbal, and presentation skills with the ability to communicate complex technical concepts to executive leadership and non-technical stakeholders.
- Demonstrated ability to lead cross-functional initiatives, influence organizational change, and build collaborative relationships across multiple business functions.
Must live or relocate to a commutable distance of Beavercreek, Ohio
- Experience maintaining a certified CMMC Level 2 environment.
- Experience leading Certified Third-Party Assessment Organization (C3PAO) assessments and/or DIBCAC assessments.
- Experience leading Enterprise Risk Management (ERM) programs.
- Experience with cloud security, Data Loss Prevention (DLP), Third-Party Risk Management, Cyber Supply Chain Risk Management (C-SCRM).
- Industry certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Certified in Governance, Risk and Compliance (CGRC), or Certified Cloud Security Professional (CCSP).