
Governance, Risk & Compliance Manager
Posted 17 hours ago

Posted 17 hours ago
This is a fully remote position, open to applicants in United States.
• Oversee and enhance the governance, risk management, compliance, and audit initiatives within the organization.
• Take charge of cybersecurity compliance efforts, including CMMC Level 2, SOC audits, and SOX IT General Controls (ITGC).
• Collaborate with business, technology, and executive stakeholders to ensure security controls, policies, and compliance activities align with regulatory, contractual, and business expectations.
• Assist with organizational risk management and ensure audit preparedness.
• Engage in hands-on GRC and compliance tasks.
• Report directly to the Senior Director of Information Security.
• Regularly collaborate with HR, IT, Business Systems, application vendors, and business stakeholders through virtual meetings and communication platforms.
• Occasionally travel for company meetings, training sessions, project activities, or other business requirements.
• A minimum of 10 years of experience in Governance, Risk & Compliance (GRC), Information Security, Risk Management, or related cybersecurity roles.
• At least 3 years of experience in leadership, management, or program ownership.
• Direct experience in leading or supporting CMMC Level 2 compliance initiatives.
• Practical experience managing SOC 1 and/or SOC 2 audits.
• Background in supporting SOX compliance and IT General Controls (ITGC) testing and remediation.
• Strong knowledge of NIST SP 800-171 requirements and various cybersecurity control frameworks.
• Experience in conducting risk assessments, compliance gap analyses, and planning for remediation.
• Familiarity with working alongside external auditors, assessors, and regulatory bodies.
• Proven experience in developing and maintaining security policies, standards, and governance documentation.
• Excellent communication, project management, and stakeholder engagement skills.
• Experience in a Defense Industrial Base (DIB) or regulated environment is strongly preferred.
• Preferred certifications include CISSP, CISM, CRISC, CISA, CIA, or CGRC.
• Medical, dental, and vision insurance
• 401(k) retirement plan with company match
• Paid time off (PTO) and holiday pay
• Life and disability insurance
• Professional development and training opportunities
• Employee assistance program (EAP)
Gainwell Technologies
Gainwell Technologies
Gainwell Technologies
Get handpicked remote jobs straight to your inbox weekly.