Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Governance, Risk, and Compliance (GRC) Functional Lead image - Rise Careers
Job details

Governance, Risk, and Compliance (GRC) Functional Lead

Overview

LMI is seeking a senior Governance, Risk, and Compliance (GRC) Lead to support LMI’s Office of the Chief Information Security Officer (OCISO). This position will work collaboratively with the Chief Information Security Officer (OCISO), Information Technology (IT), Cybersecurity Team, project teams, and business stakeholders to ensure cohesive success across LMI.

Responsibilities

The GRC Lead will be responsible for delivering all GRC-related functions in compliance with CMMC/NIST 800-171, ISO 27001, and other frameworks, and developing strategy and methodologies for success. This position will provide advice and guidance across LMI for GRC-related initiatives. The GRC Lead will provide risk management by assessing risk from system changes, new projects, vulnerabilities, and throughout the System Development Life Cycle (SDLC). The GRC Lead will prepare risk management recommendations for the CISO’s approval and work collaboratively with other technical staff to develop technical mitigations and requirements/solution development. The GRC Lead will manage continuous monitoring by ensuring all routine and scheduled continuous assessment activities are occurring through technical, manual, and automated means. This position will also utilize our GRC platform to manage/maintain control status, upload artifacts, and product reporting. The GRC

 

Lead will draft and maintain currency of all policies and ensure procedures, processes, and other documentation are current, accurate, high-quality, and acceptable for compliance and risk. The GRC Lead may support Privacy and Export Control areas.

 

This position will also perform other related duties, as assigned.

Qualifications

  • Able to attain and maintain US Secret clearance
  • Currently holds active CISSP, CISM, GSLC, C|CISO certification, or similar senior-level, GRC-related certification
  • Additional related certifications, such as PMP, CEH, CIPP, SANS, technology-specific, or others, preferred
  • Excellent verbal and written communications skills
  • Masters degree; or Bachelor’s Degree with commensurate years of experience
  • 10 years of experience as an ISSO, ISSM, or Security Controls Assessor in Federal environment under NIST 800-53 and NIST Risk Management Framework
  • Experience successfully supporting a corporate security environment under ISO 27001, ISO 20000, ISO 9001, COBIT, COSO, or similar industrial frameworks
  • Successful in highly collaborative work environments
  • Successful experience as a team lead, supervisor, or manager role preferred
  • Successful experience using GRC tools to manage compliance, perform self-assessments or audits, upload artifacts, and perform continuous monitoring
  • Experience performing risk assessments on changes, vulnerabilities, new systems/projects, data governance, and
  • Experience participating in Change Management Boards, Architecture Review Boards, Change Advisory Boards, or similar change management teams
  • Experience providing GRC functions with Controlled Unclassified Information (CUI)
  • Experience providing GRC functions with Privacy frameworks, i.e., Privacy Act of 1974, Health Insurance Portability and Accountability Act (HIPAA)

Average salary estimate

$125000 / YEARLY (est.)
min
max
$100000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs

LMI is seeking a Senior Talent Management Consultant in Tysons, VA, to lead strategic HR initiatives blending data-driven insights and innovative solutions.

An Application Developer role at LMI creating and maintaining scalable, secure applications to support government intelligence operations.

Photo of the Rise User

Manage and secure company IT systems as a bilingual (English-Korean) IT Systems and Security Engineer in Irvine, CA.

Experienced VMware Engineer needed for onsite contract work in Pocatello, specializing in VMware infrastructure deployment and support for government projects.

Photo of the Rise User
Fivesky Hybrid Alpharetta, Georgia, United States
Posted 9 days ago

Fivesky is looking for an experienced SOC Analyst to drive incident response and threat detection efforts onsite in Alpharetta within their global cybersecurity team.

Photo of the Rise User
Posted 9 hours ago

Manage technology operations for NBCUniversal’s Arizona stations, ensuring reliable broadcast and IT systems in a fast-paced media environment.

Photo of the Rise User
Pfizer Hybrid United States - Pennsylvania - Collegeville
Posted 2 days ago

Lead the SAP support services team at Pfizer to ensure system stability, vendor management, and continuous improvements within a hybrid work model.

Photo of the Rise User
Posted 10 days ago
Dental Insurance
Vision Insurance
Disability Insurance
Flexible Spending Account (FSA)
Family Medical Leave
Paid Holidays

HackerRank is looking for a skilled remote IT Admin to provide tier 1 & 2 support and manage corporate Mac environments across global teams.

Photo of the Rise User

Lead incident response and security data intelligence initiatives at CDW, driving proactive cyber threat detection and automation in a remote, dynamic environment.

Support and evolve the ServiceNow platform as an IT Service Management Engineer Co-op at Berkley Technology Services, contributing directly to enterprise IT solutions.

Posted 11 days ago

Seeking a skilled Private Cloud Support Specialist with VMware and Linux expertise for a leading multinational IT company based in Spring, Texas.

Photo of the Rise User
Posted 12 days ago

Lead enterprise business system administration and enhancements as a Systems Analyst II at Stryker, supporting critical applications in a hybrid work setting.

Photo of the Rise User
CPT Hybrid Destin, Florida, United States
Posted 8 days ago

A Cyber Range Event Engineer role at CPT to lead event execution, system deployment, and cyber operation support in a government-focused environment.

Photo of the Rise User
Posted 2 days ago

A skilled Android Vulnerability Researcher role at Accenture Federal Services, focused on reverse engineering and developing security tools to support US federal government missions.

hcmportal Hybrid US - UPS AUTOMATION LAB (GABUT)
Posted 2 days ago

A dynamic role for an OT Linux Specialist at UPS focused on ensuring seamless Linux system operations and integration in a high-tech industrial environment.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 24, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!