1

Grc Project Manager Jobs in Silver Spring, MD (NOW HIRING)

... management. The successful candidate will be self-motivated, detail-oriented, and capable of ... projects, tasks and/or workflows. Desired Skills: · Strong analytical thinking · Excellent ...

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Management Office (PMO), as well as maintenance of the System Security Plan (SSP) and Plan of ...

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Management Office (PMO), as well as maintenance of the System Security Plan (SSP) and Plan of ...

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Management Office (PMO), as well as maintenance of the System Security Plan (SSP) and Plan of ...

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Management Office (PMO), as well as maintenance of the System Security Plan (SSP) and Plan of ...

Be Seen First

... Projects. Desired Skills/Experience: * Experience working with various departments heads and technical leaders (IT Security, GRC, IT Operations, C-Level management) surrounding Infrastructure ...

New

... Project Management Plans • Monthly Administrative Reports • Ensure compliance with NIH, HHS ... or comparable GRC platforms • ServiceNow • Enterprise cybersecurity governance • Risk ...

Showing results 21-40

Grc Project Manager information

See Silver Spring, MD salary details

$46K

$99.8K

$159.7K

How much do grc project manager jobs pay per year?

As of Jul 26, 2026, the average yearly pay for grc project manager in Silver Spring, MD is $99,821.00, according to ZipRecruiter salary data. Most workers in this role earn between $77,500.00 and $116,800.00 per year, depending on experience, location, and employer.

What is a GRC project manager?

A GRC project manager oversees governance, risk management, and compliance initiatives within an organization. They coordinate efforts to ensure regulatory requirements are met, often using tools like GRC software, and require strong project management and risk assessment skills.

How does a GRC Project Manager typically collaborate with cross-functional teams to implement compliance initiatives?

A GRC Project Manager works closely with departments such as IT, Legal, Risk, and Internal Audit to ensure that governance, risk management, and compliance initiatives are effectively integrated across the organization. This role involves facilitating regular meetings, aligning project goals with organizational policies, and clearly communicating regulatory requirements to various stakeholders. The GRC Project Manager often serves as a liaison, translating technical or legal concepts into actionable tasks for different teams, and ensuring that project milestones are met while maintaining compliance standards.

Is GRC a good career?

A GRC Project Manager oversees governance, risk management, and compliance initiatives within organizations, requiring knowledge of regulations, risk assessment, and project management skills. The role is in demand across industries such as finance, healthcare, and technology, often offering opportunities for certification and career advancement. It can be a stable and rewarding career path for those interested in organizational security and compliance management.

What are the key skills and qualifications needed to thrive as a GRC Project Manager, and why are they important?

To thrive as a GRC Project Manager, you need expertise in governance, risk management, compliance frameworks, and project management methodologies, often supported by a bachelor's degree and certifications like PMP or CISA. Familiarity with GRC software platforms, risk assessment tools, and regulatory compliance systems is typically required. Exceptional organizational, leadership, and stakeholder communication skills help drive cross-functional projects and adapt to changing regulatory landscapes. These competencies are crucial for ensuring projects meet compliance objectives, mitigate risks, and deliver organizational value.

Is GRC an entry level job?

GRC Project Manager roles are typically not entry-level positions; they usually require several years of experience in governance, risk management, or compliance, along with relevant certifications such as CISA or CISSP. Entry-level positions in GRC may include roles like GRC analyst or coordinator, which focus on supporting GRC functions and gaining industry knowledge before advancing to management roles.

What is the role of a GRC manager?

A GRC (Governance, Risk, and Compliance) manager oversees an organization’s compliance with regulations, manages risk assessments, and develops policies to ensure effective governance. They often utilize tools like GRC software and require knowledge of industry standards, risk management, and regulatory frameworks to support organizational security and compliance efforts.

What is the difference between Grc Project Manager vs Grc Analyst?

AspectGrc Project ManagerGrc Analyst
CertificationsISO 27001 Lead Implementer, PMP, CISACISA, CRISC, CISSP
Work EnvironmentOversees projects, manages teams, coordinates compliance effortsAnalyzes risks, assesses controls, supports compliance activities
Employer & Industry UsageFinancial, healthcare, technology sectorsFinancial institutions, consulting firms, tech companies
Search & Comparison IntentUnderstanding project management roles in GRCUnderstanding analytical roles supporting GRC projects

The Grc Project Manager focuses on leading GRC initiatives, managing teams, and ensuring project delivery. The Grc Analyst supports these efforts by analyzing risks, evaluating controls, and providing compliance insights. Both roles require similar certifications and are integral to GRC efforts, but they differ in scope and responsibilities within organizations.

What are popular job titles related to Grc Project Manager jobs in Silver Spring, MD? For Grc Project Manager jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Grc Project Manager jobs in Silver Spring, MD look for? The top searched job categories for Grc Project Manager jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Grc Project Manager jobs? Cities near Silver Spring, MD with the most Grc Project Manager job openings:
Infographic showing various Grc Project Manager job openings in Silver Spring, MD as of July 2026, with employment types broken down into 58% Full Time, 7% Part Time, 2% Contract, 31% Nights, and 2% Summer. Highlights an 77% Physical, 8% Hybrid, and 15% Remote job distribution, with an average salary of $99,821 per year, or $48 per hour.
Technical Project Manager - IT Security

Technical Project Manager - IT Security

Network Designs Inc.

Washington, DC • On-site

$100K - $120K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 5 days ago


Job description

About NDi:

Network Designs, Inc. (NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firmly defined core values have driven all aspects of the business, which have been paramount to our company's success and the establishment of an enjoyable workplace atmosphere. At NDi, we believe that our people are the cornerstone of our success, and we value collaboration, career growth, and winning ideas. Military Veterans Encouraged to Apply.

Job Description:

Network Designs, Inc. (NDI) is seeking a PMP-certified Technical Project Manager to lead cybersecurity initiatives supporting a Federal customer. This role is responsible for planning, coordinating, and overseeing security-focused projects and operational activities, including vulnerability remediation, Plan of Action and Milestones (POA&M) management, Authority to Test (ATT) and Authorization to Operate (ATO) activities, security compliance, and risk mitigation.
The Technical Project Manager serves as the primary interface between customer stakeholders, cybersecurity teams, infrastructure teams, and vendor partners to ensure successful execution of cybersecurity projects, timely remediation of security findings, and achievement of Federal security authorization milestones. The successful candidate will provide leadership in coordinating vulnerability management efforts, tracking remediation activities, supporting ATT and ATO processes, and ensuring compliance with Federal cybersecurity requirements while maintaining project schedules, quality standards, and performance objectives.
This position requires a strong combination of project management expertise, cybersecurity operations experience, stakeholder engagement, and knowledge of Federal cybersecurity governance and compliance frameworks.

Requirements:

  • U.S. Citizenship is required
  • Must be able to obtain a Public Trust clearance
  • This position requires working onsite in Washington D.C., 5 days per week

Qualifications and Experience:

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, Business, or a related field, or equivalent experience.
  • Project Management Professional (PMP) certification is required.
  • Minimum of five (5) years of experience managing IT or cybersecurity projects, preferably supporting Federal Government customers.
  • Experience managing cybersecurity initiatives involving vulnerability remediation, POA&M management, ATT/ATO activities, security compliance, or risk management.
  • Experience supporting Federal system authorization activities, including Authority to Test (ATT), Authorization to Operate (ATO), and continuous monitoring under the NIST Risk Management Framework (RMF).
  • Experience coordinating cross-functional technical teams, customer stakeholders, and vendor partners.
  • Strong knowledge of Federal cybersecurity frameworks, including NIST RMF and FISMA.
  • Strong project management skills, including scope, schedule, budget, risk, issue, and resource management.
  • Excellent written, verbal, and presentation skills with the ability to communicate effectively with technical and executive audiences.
  • Strong analytical, organizational, and problem-solving skills with attention to detail.

Preferred Qualifications:

  • Five (5) years of experience managing IT or cybersecurity projects, preferably supporting Federal Government customers.
  • Experience managing or coordinating ATT and ATO packages through the NIST RMF lifecycle.
  • Familiarity with security authorization artifacts, including the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Security Control Traceability Matrix (SCTM), and POA&M documentation.
  • Experience using eMASS or similar Governance, Risk, and Compliance (GRC) platforms.
  • Experience using vulnerability management tools such as Tenable, Qualys, Rapid7, or Microsoft Defender.
  • Familiarity with ServiceNow, Jira, Microsoft Project, or similar project and workflow management tools.
  • Security+, CISSP, CISM, or other cybersecurity certifications are preferred.
  • Experience supporting Federal civilian or Department of Defense customers

Key Competencies:

  • Technical Project Management
  • Cybersecurity Program Management
  • Vulnerability Management
  • POA&M Management
  • Authority to Test (ATT) & Authorization to Operate (ATO)
  • NIST Risk Management Framework (RMF)
  • Federal Security Compliance (FISMA)
  • Risk Assessment and Mitigation
  • Stakeholder and Executive Communications
  • Cross-Functional Team Leadership
  • Project Planning and Scheduling
  • Continuous Monitoring
  • Metrics, Reporting, and Dashboard Development
  • Customer Relationship Management
  • Process Improvement and Governance

Responsibilities

Cybersecurity Project Management:

  • Manage multiple cybersecurity projects and operational initiatives supporting enterprise IT environments.
  • Develop and maintain project plans, schedules, milestones, resource allocations, risks, dependencies, and deliverables.
  • Coordinate activities across cybersecurity, infrastructure, cloud, application, and operations teams to ensure timely completion of remediation efforts and project objectives.
  • Coordinate security authorization activities to support ATT and ATO milestones, ensuring project schedules align with assessment and authorization timelines.
  • Monitor project performance and provide regular status updates to customer leadership and program management.
  • Ensure cybersecurity initiatives are delivered on time, within scope, and aligned with customer priorities and contractual requirements.

Vulnerability and POA&M Management:

  • Coordinate enterprise vulnerability remediation efforts across infrastructure, cloud, applications, endpoints, and network environments.
  • Track, manage, and report vulnerability remediation activities to ensure timely closure of security findings.
  • Manage Plans of Action and Milestones (POA&Ms), including documentation, prioritization, status tracking, reporting, and closure activities.
  • Facilitate remediation planning meetings and coordinate resolution of identified security risks with technical teams.
  • Monitor remediation metrics and identify risks that could impact compliance, ATT/ATO milestones, or project timelines.
  • Escalate overdue findings and coordinate corrective actions to support continuous monitoring objectives.

Security Compliance and Authorization:

  • Support the planning, coordination, and execution of activities required to obtain and maintain **Authority to Test (ATT)** and
  • Authorization to Operate (ATO)** for Federal information systems.
  • Coordinate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), system owners, assessors, and technical teams to ensure timely completion of security authorization activities.
  • Track and manage security authorization deliverables, milestones, dependencies, and POA&M items throughout the ATT and ATO lifecycle.
  • Support compliance with Federal cybersecurity requirements and security frameworks, including the NIST Risk Management Framework (RMF), FISMA, and agency-specific security policies.
  • Coordinate activities supporting security assessments, audits, security control validation, penetration testing, and continuous monitoring.
  • Develop executive dashboards and metrics that communicate security posture, remediation progress, authorization readiness, and compliance status.

Stakeholder Engagement:

  • Serve as the primary point of contact for cybersecurity project status, remediation efforts, security authorization activities, and compliance initiatives.
  • Coordinate with customer leadership, Authorizing Officials (AOs), Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), system owners, technical teams, and vendor partners.
  • Lead project status meetings, remediation reviews, governance boards, and operational planning sessions.
  • Communicate project risks, issues, dependencies, mitigation strategies, and impacts to stakeholders.
  • Manage customer expectations while ensuring alignment with mission objectives and cybersecurity priorities.

Risk, Quality, and Process Management:

  • Identify, assess, and manage cybersecurity project risks and dependencies.
  • Develop mitigation strategies for delayed remediation activities, compliance gaps, and project issues.
  • Support implementation of quality assurance and process improvement initiatives that enhance vulnerability management, security authorization, compliance tracking, and operational efficiency.
  • Ensure project documentation and reporting support audit readiness and contractual requirements.
  • Promote best practices for project governance, cybersecurity risk management, and service delivery.

Reporting and Documentation:

  • Prepare project management plans, schedules, executive briefings, status reports, and meeting materials.
  • Develop dashboards and metrics related to vulnerabilities, POA&Ms, remediation progress, project performance, ATT/ATO readiness, and compliance status.
  • Maintain project documentation, action items, meeting minutes, risk registers, and security tracking artifacts.
  • Track security authorization artifacts and milestones supporting ATT, ATO, and continuous monitoring activities.
  • Capture lessons learned and support organizational knowledge management and continuous improvement initiatives.

Compensation and Benefits:

At NDi, we value our team and are committed to retaining top talent by offering competitive benefits and compensation packages. Our employee benefits package includes comprehensive health, dental, vision, pet, and legal insurance. Our corporate benefits include 401(k) retirement matching, paid leave, paid holidays, and health and wellness programs. In addition, we provide employer-paid life and disability insurance, professional development, education benefits, and much more to ensure our team has the resources they need to thrive on and off the job.

Veterans First Commitment:

As a Service-Disabled Veteran-Owned Small Business (SDVOSB), NDi is dedicated to hiring veterans and providing a supportive work environment that honors their service while recognizing the unique skills and experiences they bring to our organization.

Our Commitment:

Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status or other characteristics protected by law.

Apply Now: Take advantage of this unique opportunity to join one of the fastest-growing companies in Federal contracting!