1

Grc Director Jobs in Silver Spring, MD (NOW HIRING)

Cybersecurity GRC Program Manager

Arlington, VA · On-site

$148K - $180K/yr

Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program ... programs, directing multidisciplinary teams, overseeing contract performance, and delivering ...

Provide strategic guidance and insights necessary for directing the GRC and ZT Program. * Engage appropriate stakeholders as needed to meet the Program objectives and to satisfy the requirements of ...

SR TECHNICAL PROGRAM MANAGER

Arlington, VA · On-site

$133K - $134K/yr

Provide strategic guidance and insights necessary for directing the GRC and ZT Program.Engage appropriate stakeholders as needed to meet the Program objectives and to satisfy the requirements of the ...

New

Provide strategic guidance and insights necessary for directing the GRC and ZT Program. * Engage appropriate stakeholders as needed to meet the Program objectives and to satisfy the requirements of ...

New

The Senior Director of Program Excellence serves as the enterprise authority for delivery ... Work with Government, Risk & Compliance (GRC) Team to create an enterprise Process Asset Library.

Showing results 21-40

Grc Director information

What does a GRC Director do?

A GRC Director oversees an organization’s Governance, Risk, and Compliance (GRC) programs. They are responsible for developing strategies and policies to ensure the company meets regulatory requirements, manages risks effectively, and maintains strong corporate governance. This role involves coordinating cross-functional teams, implementing compliance frameworks, and reporting to senior leadership on risk exposures and controls. The GRC Director also stays updated on changing regulations and industry best practices to protect the organization from legal and reputational risks.

What are the key skills and qualifications needed to thrive as a GRC Director?

To thrive as a GRC Director, you need deep knowledge of governance, risk management, and compliance frameworks, often supported by a relevant degree and certifications such as CISA, CRISC, or CISSP. Expertise with GRC software platforms, regulatory databases, and risk assessment tools is typically required. Exceptional leadership, strategic thinking, and communication skills enable effective cross-functional collaboration and influence at the executive level. These capabilities are critical for ensuring organizational resilience, regulatory adherence, and informed decision-making across the enterprise.

What are some common challenges a GRC Director faces when aligning compliance initiatives across multiple departments?

A GRC Director often encounters challenges such as differing departmental priorities, varying levels of compliance awareness, and inconsistent processes. Successfully aligning compliance initiatives requires strong communication, the ability to build consensus, and the development of standardized frameworks that can be adapted across departments. Regular cross-functional meetings and ongoing training can help overcome these barriers and ensure that all teams are working towards the same compliance objectives.

What is the difference between Grc Director vs Compliance Manager?

AspectGrc DirectorCompliance Manager
CredentialsCertifications like CRISC, CISA, or CISM often preferredSimilar certifications, often CCEP or CISA
Work EnvironmentOversees enterprise-wide risk, governance, and compliance strategiesFocuses on specific compliance programs within organizations
Industry UsageCommon in finance, healthcare, and large corporationsWidespread across industries, especially regulated sectors
Search IntentUnderstanding high-level risk and governance rolesLooking for specific compliance responsibilities

The Grc Director typically manages enterprise risk, governance, and compliance strategies at a high level, requiring broader oversight and strategic planning. In contrast, a Compliance Manager focuses on implementing and maintaining specific compliance programs within an organization. Both roles require similar certifications and are prevalent in regulated industries, but the Grc Director has a wider scope and strategic responsibilities.

Are GRC director jobs hard to get?

GRC Director roles are competitive and typically require extensive experience in governance, risk management, and compliance, along with relevant certifications such as CISA or CISSP. Strong leadership skills and knowledge of regulatory frameworks can improve chances, but the position often demands a proven track record in managing complex security and compliance programs.

What are the most commonly searched types of Grc jobs in Silver Spring, MD?

The most popular types of Grc jobs in Silver Spring, MD are:

What are popular job titles related to Grc Director jobs in Silver Spring, MD?

For Grc Director jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Grc Director jobs in Silver Spring, MD look for?

The top searched job categories for Grc Director jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Grc Director jobs?

Cities near Silver Spring, MD with the most Grc Director job openings:

Infographic showing various Grc Director job openings in Silver Spring, MD as of August 2026, with employment types broken down into 2% As Needed, 85% Full Time, 10% Part Time, 1% Temporary, and 2% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Cybersecurity GRC Program Manager

Guidehouse

Arlington, VA • On-site

$148K - $180K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 9 days ago


Guidehouse rating

8.0

Company rating: 8.0 out of 10

Based on 28 frontline employees who took The Breakroom Quiz

35th of 72 rated business consultants


Job description

Job Family:

Cyber Consulting


Travel Required:

Up to 10%


Clearance Required:

Active Top Secret (TS)

What You Will Do

  • Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program Manager to lead a large, complex federal cybersecurity program supporting enterprise security operations, cybersecurity governance, risk management, compliance, authorization, continuous monitoring, and cyber engineering activities.

  • The Managing Consultant will serve as the primary contractor Program Manager and authorized interface between Guidehouse, the Contracting Officer's Representative (COR), Government Program Manager (GPM), government stakeholders, and customer agency leadership. The successful candidate will provide strategic leadership, program oversight, workforce management, and quality assurance across all contracted cybersecurity activities.

  • This role requires a highly experienced cybersecurity leader with demonstrated success managing large-scale federal cybersecurity programs, directing multidisciplinary teams, overseeing contract performance, and delivering mission-critical cybersecurity services in highly complex environments. This position requires onsite client support five (5) days per week in the Washington Metropolitan Area.

Key Responsibilities

  • Serve as the primary client-facing lead and trusted advisor for the cybersecurity program, managing relationships with executive stakeholders, government leadership, and customer representatives.

  • Act as the contractor's authorized representative for all programmatic, operational, technical, staffing, and contractual matters.

  • Provide overall leadership, direction, and management of program personnel, subcontractors, and program resources.

  • Formulate and enforce work standards, operating procedures, quality control processes, and performance metrics across all contract activities.

  • Manage staffing plans, workforce utilization, employee development, performance management, and resource allocation to ensure successful contract execution.

  • Plan, organize, prioritize, and oversee multiple cybersecurity initiatives, ensuring delivery of all contract requirements within schedule, scope, quality, and budget constraints.

  • Oversee program financial management, including labor forecasting, resource planning, budget monitoring, and contract performance management.

  • Lead program governance activities, including executive briefings, status reporting, risk management, issue resolution, and strategic planning discussions with government leadership.

  • Review, approve, and ensure quality of all program deliverables, reports, security documentation, and work products prior to submission to the client.

  • Coordinate enterprise cybersecurity planning, authorization, risk management, continuous monitoring, engineering, operations, and incident response activities across multiple stakeholders and technical teams.

  • Ensure alignment with federal cybersecurity mandates and frameworks including NIST Risk Management Framework (RMF), FISMA, OMB guidance, CISA directives, Zero Trust initiatives, and agency-specific cybersecurity requirements.

  • Lead cross-functional teams supporting: Cybersecurity Governance, Risk Management, Security Authorization (ATO), Continuous Monitoring, Security Control Assessments, POA&M Management, Vulnerability Management, Incident Response Coordination, Cybersecurity Engineering, Enterprise Security Operations

  • Establish and maintain effective communication channels with government stakeholders to proactively identify and resolve programmatic, operational, and technical issues.

  • Develop and maintain integrated project schedules, performance metrics, staffing plans, and program roadmaps to drive delivery excellence and customer satisfaction.

  • Identify program risks and develop mitigation strategies while ensuring compliance with contractual, regulatory, and organizational requirements.

  • Contribute to Guidehouse growth initiatives through thought leadership, proposal support, recruiting, mentoring, and business development activities.

What You Will Need

  • An ACTIVE and MAINTAINED "SECRET" Federal or DoD securityclearance

  • US citizenship is required

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, Business Administration, or related field (additional years of relevant experience may be substituted for degree requirements where applicable)

  • MINIMUM of 10 (TEN) years of progressive experience leading cybersecurity, risk management, compliance, or information security programs.

  • MINIMUM of 5 (FIVE) years of experience managing large federal cybersecurity contracts, programs, or operations.

  • Demonstrated experience serving as a Program Manager, Task Order Manager, Engagement Manager, or equivalent leadership role supporting federal government clients.

  • Proven experience leading multidisciplinary teams across cybersecurity operations, governance, risk management, compliance, engineering, and security assessment functions.

  • Strong understanding of: NIST Risk Management Framework (RMF), FISMA, NIST SP 800 Series, Continuous Monitoring Programs, Security Authorization Processes, Cybersecurity Governance and Risk Management, Enterprise Security Operations, Vulnerability Management, Federal Cybersecurity Compliance Requirements

  • Demonstrated success managing client relationships and communicating effectively with executive stakeholders, technical teams, and government leadership.

  • Exceptional leadership, organizational, analytical, and communication skills.

  • Proven ability to prioritize competing priorities and manage multiple complex workstreams in a dynamic environment.

  • DoD 8570/8140 IAM Level III Certification preferred (IAM Level II minimum required); and/or CSSP Manager Certification. Examples include: CISSP, CISM, GSLC, CCISO, CASP+, Other certifications satisfying DoD IAM Level II or III requirements

What Would Be Nice To Have

  • Master's degree in Cybersecurity, Information Technology, Information Assurance, Public Administration, Business Administration, or related discipline.

  • Project Management Professional (PMP) certification.

  • Experience supporting Cabinet-level agencies, Department of State, DHS, DoD, or other federal civilian agencies.

  • Experience leading large cybersecurity governance and compliance programs exceeding 20+ personnel.

  • Experience supporting enterprise cyber modernization, Zero Trust, Continuous Diagnostics and Mitigation (CDM), or Security Operations Center (SOC) initiatives.

  • Experience managing hybrid teams consisting of cybersecurity engineers, ISSOs, assessors, analysts, and compliance specialists.

  • Familiarity with FedRAMP, CMMC, cloud security governance, and emerging federal cybersecurity mandates.

The annual salary range for this position is $130,000.00-$216,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.


What We Offer:

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical, Rx, Dental & Vision Insurance

  • Personal and Family Sick Time & Company Paid Holidays

  • Position may be eligible for a discretionary variable incentive bonus

  • Parental Leave and Adoption Assistance

  • 401(k) Retirement Plan

  • Basic Life & Supplemental Life

  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts

  • Short-Term & Long-Term Disability

  • Student Loan PayDown

  • Tuition Reimbursement, Personal Development & Learning Opportunities

  • Skills Development & Certifications

  • Employee Referral Program

  • Corporate Sponsored Events & Community Outreach

  • Emergency Back-Up Childcare Program

  • Mobility Stipend

About Guidehouse

Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation.

Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.

If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.

All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.

If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties.

Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.


What Guidehouse employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom