Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Senior Cybersecurity GRC - US Federal image - Rise Careers
Job details

Senior Cybersecurity GRC - US Federal - job 2 of 2

Your work days are brighter here.

At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. And when we began to rise, one thing that really set us apart was our culture. A culture which was driven by our value of putting our people first. And ever since, the happiness, development, and contribution of every Workmate is central to who we are. Our Workmates believe a healthy employee-centric, collaborative culture is the essential mix of ingredients for success in business. That’s why we look after our people, communities and the planet while still being profitable. Feel encouraged to shine, however that manifests: you don’t need to hide who you are. You can feel the energy and the passion, it's what makes us unique. Inspired to make a brighter work day for all and transform with us to the next stage of our growth journey? Bring your brightest version of you and have a brighter work day here.

At Workday, we value our candidates’ privacy and data security.  Workday will never ask candidates to apply to jobs through websites that are not Workday Careers. 

  

Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.

  

In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.

About the Team

The Workday Cybersecurity Governance, Risk, Compliance & Trust (cGRCT) team enables business agility while maintaining a strong security posture via intelligent The Workday’s National Security Group (NSG) is responsible for all aspects of cybersecurity and compliance for Workday’s US Department of Defense and Intelligence Community customer regions. The NSG Governance, Risk, Compliance (GRC) Team enables business agility while maintaining a strong security posture via intelligent risk-taking, optimized controls management, and iterative security governance. The NSG GRC team’s mission is to enable and maintain Workday’s National Security offerings through certification, continuous monitoring, consultation and deep stakeholder alignment. We act as a trusted advisor across Workday to help maintain and enhance our customer's trust.

About the Role

This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native).

This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States Citizens (naturalized or native).
The Senior Cybersecurity GRC role is a critical part of Workday’s GRC function and will work as a key team member leading the design, implementation and assessment of Workday's US National Security offerings. You will play a vital role in ensuring continued compliance across public sector frameworks, assist in prioritizing future system changes and manage the audit lifecycle for the various DoD and IC programs. You will lead security and compliance related interactions with Workday's National Security customers and advise internal business partners on risk and compliance requirements related to the product development lifecycle and other strategic organizational initiatives.

About You

Basic Qualifications

  • 8+ years of experience in an equivalent governance, risk & compliance and/or related engineering role
  • 5+ years direct experience with the FedRAMP and RMF assessment and authorization processes
  • This position requires a TS/SCI with CI POLY security clearance. Applicants must already possess a valid and active TS/SCI with CI POLY security clearance.

Other Qualifications

  • A solid understanding of the FedRAMP Framework and DoD Impact levels IL4, IL5 and IL6
  • Bachelor's degree or equivalent experience
  • Experience prioritizing technical changes to a FedRAMP system and apply controls to ensure audit readiness and acceptability
  • Experience leading system design with engineering to provide technical guidance documentation
  • Experience designing federal SaaS cloud computing systems including source control management, logging & monitoring systems, FIPS encryption methods, access controls and vulnerability management
  • Strong communications skills (written and verbal) and attention to detail
  • Proven program/project management experience (especially audit management)
  • Ability to lead multiple projects and organize time effectively
  • Organized, adaptable, and able to gain support and consensus with cross-functional partners
  • CISA, CISSP, PMP, CIPP or other related certifications


Workday Pay Transparency Statement

The annualized base salary ranges for the primary location and any additional locations are listed below.  Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate’s compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things. For more information regarding Workday’s comprehensive benefits, please click here.

Primary Location: USA.VA.McLean (Tyson's Corner)


 

Primary Location Base Pay Range: $139,000 USD - $208,500 USD


 

Additional US Location(s) Base Pay Range: $125,800 USD - $223,400 USD



Our Approach to Flexible Work
 

With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.

Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.

Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.

Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!

Workday Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Workday DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Workday
Workday CEO photo
Aneel Bhusri | Carl Eschenbach
Approve of CEO

Average salary estimate

$173750 / YEARLY (est.)
min
max
$139000K
$208500K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Cybersecurity GRC - US Federal, Workday

At Workday, we’re all about creating a vibrant work environment where innovation and creativity thrive. Join us as a Senior Cybersecurity Governance, Risk, Compliance (GRC) specialist and play a vital role in ensuring the security and compliance of our offerings for our US Federal Government contracts. With over eight years of experience in governance and compliance, you’ll be instrumental in leading the design and implementation of security measures that protect sensitive information. This role invites you to collaborate with our National Security Group as you help navigate the FedRAMP frameworks and support our clients’ needs. You’ll also take charge of managing the audit lifecycle, engaging with stakeholders, and providing crucial insights to enhance our risk and compliance strategies. Here at Workday, we believe that our people are our greatest asset, and we’re committed to fostering a diverse, inclusive atmosphere that encourages individuality. If you’re ready to embrace a rewarding challenge and contribute to the evolving landscape of federal cybersecurity, we’d love to hear from you. Let’s bright up your workdays together at Workday!

Frequently Asked Questions (FAQs) for Senior Cybersecurity GRC - US Federal Role at Workday
What are the primary responsibilities of a Senior Cybersecurity GRC at Workday?

As a Senior Cybersecurity GRC at Workday, you will be tasked with leading the design, implementation, and assessment of our US National Security offerings. Your role will involve managing compliance with public sector frameworks, prioritizing system changes, and overseeing the audit lifecycle for DoD and IC programs while advising internal teams on risk and compliance related to product development.

Join Rise to see the full answer
What qualifications are required for the Senior Cybersecurity GRC position at Workday?

For the Senior Cybersecurity GRC role at Workday, candidates should have at least 8 years of experience in governance, risk, and compliance, with a minimum of 5 years’ direct experience with FedRAMP and RMF processes. A valid TS/SCI with CI POLY security clearance is also required, along with strong communication skills and a relevant Bachelor's degree or equivalent experience.

Join Rise to see the full answer
How does the Senior Cybersecurity GRC role support the U.S. Federal Government at Workday?

The Senior Cybersecurity GRC role is crucial in supporting Workday's contracts with the U.S. Federal Government. You'll ensure compliance with stringent security requirements, facilitate ongoing communication with federal customers, and help maintain a strong security posture while enabling business agility through optimized controls management.

Join Rise to see the full answer
What experience is essential for the Senior Cybersecurity GRC position at Workday?

Candidates for the Senior Cybersecurity GRC position at Workday should possess significant experience in governance, risk, and compliance, particularly in handling audit management and leading compliance assessments. Familiarity with DoD Impact levels and designing federal SaaS cloud systems is also beneficial for success in this role.

Join Rise to see the full answer
What is Workday’s approach to employee flexibility in the Senior Cybersecurity GRC role?

Workday embraces a flexible work model known as Flex Work, enabling employees in the Senior Cybersecurity GRC role to balance in-person and remote work. This approach allows for deeper connections within teams while providing the ability to manage schedules according to business and personal needs.

Join Rise to see the full answer
Common Interview Questions for Senior Cybersecurity GRC - US Federal
Can you describe your experience with FedRAMP and how it relates to being a Senior Cybersecurity GRC?

In answering this question, focus on specific projects or tasks where you have applied the FedRAMP framework. Highlight any direct involvement in assessments and authorization processes and discuss your understanding of its importance in ensuring security for government contracts.

Join Rise to see the full answer
How do you prioritize technical changes to maintain audit readiness?

To effectively answer this question, illustrate your approach to prioritization through examples. Describe how you've assessed risks and compliance requirements and how you collaborated with cross-functional teams to ensure that all changes align with both security goals and operational needs.

Join Rise to see the full answer
What is your process for managing the audit lifecycle effectively?

Discuss your structured approach to audit management, including planning, execution, and follow-up. Share your strategies for ensuring thorough documentation, team engagement, and timely responses to findings or recommendations from audits.

Join Rise to see the full answer
Give an example of how you’ve led compliance discussions with federal clients.

Provide a concise narrative showcasing a specific instance where you facilitated compliance discussions, emphasizing your role as a trusted advisor. Discuss the outcomes of these discussions and how they helped strengthen the relationship with the client.

Join Rise to see the full answer
What relevant certifications do you hold and how do they aid your work as a Senior Cybersecurity GRC?

List your certifications, such as CISA, CISSP, or PMP, and explain how each certification contributes to your competence as a Senior Cybersecurity GRC. Highlight the skills and knowledge acquired from each certification that you've applied in your previous roles.

Join Rise to see the full answer
How do you ensure that cross-functional partners are aligned with compliance strategies?

In your response, talk about your collaboration methods, such as regular meetings or workshops, to educate peers on compliance strategies. Highlight experiences where you successfully garnered buy-in from stakeholders on compliance initiatives.

Join Rise to see the full answer
What methods do you use to stay up-to-date with cybersecurity regulations?

Share your practices for keeping informed about evolving regulations, such as attending industry conferences, participating in webinars, or following relevant cybersecurity journals and articles. Mention how this knowledge helps you proactively address compliance challenges.

Join Rise to see the full answer
Discuss a challenge you faced in cybersecurity compliance and how you overcame it.

Present a specific challenge you encountered and describe the steps you took to address it. Focus on your problem-solving skills, creativity, and the collaborative efforts you employed to turn a challenge into a learning opportunity.

Join Rise to see the full answer
How do you handle multiple projects as a Senior Cybersecurity GRC?

Explain your time management strategies, such as using project management tools to track progress. Discuss your ability to delegate tasks and prioritize projects based on urgency and importance in a fast-paced environment.

Join Rise to see the full answer
What role does communication play in your ability to succeed in cybersecurity compliance?

Empathetically discuss how communication fosters teamwork and understanding around compliance issues. Share examples of communication strategies you’ve employed to effectively engage stakeholders and facilitate successful compliance initiatives.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Join Workday as a part-time Senior Legal AI Product Specialist and help revolutionize contract management through innovative AI solutions.

Photo of the Rise User

Join Workday as a Senior Technical Consultant, specializing in delivering innovative technical solutions to the State & Local Government sector.

Photo of the Rise User
Posted 10 days ago

Paxos is searching for an experienced Technical Program Manager to spearhead innovative security programs that safeguard their cutting-edge financial infrastructure.

InterDev Remote Roswell, Georgia, United States
Posted 13 days ago

Join InterDev as a Systems Engineer I, where you'll play a vital role in designing and supporting cutting-edge IT systems while fostering a fun and collaborative work culture.

Photo of the Rise User
Posted 13 days ago

Become a vital member of the healthcare team at Oak Street Health as a Medical Scribe, contributing to improved patient care documentation and outcomes.

Photo of the Rise User

Take your IT career to new heights with DenaliTek as a Systems Administrator focused on proactive support and client relationships.

Photo of the Rise User
Posted 2 hours ago

Join Block as an IT Vendor Management Analyst to drive strategic vendor partnerships and ensure optimal performance within a dynamic customer operations environment.

Photo of the Rise User

Join Experian's Global Security Office as a Cyber Incident Response Lead and play a key role in managing and mitigating cybersecurity incidents remotely.

Photo of the Rise User

Become an integral part of CeLeen as a Junior Network and Computer Systems Administrator, enhancing IT support for the Department of Defense.

Photo of the Rise User
Inclusive & Diverse
Growth & Learning
Customer-Centric
Collaboration over Competition
Medical Insurance
Maternity Leave
Flex-Friendly
401K Matching

As a Senior IT Operations Engineer at Vanta, you will play a crucial role in supporting international employees and optimizing IT operations.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Rapid Growth
Passion for Exploration
Dare to be Different
Dental Insurance
Life insurance
Health Savings Account (HSA)
Disability Insurance
Flexible Spending Account (FSA)
Vision Insurance
Mental Health Resources
401K Matching
Paid Time-Off
Snacks
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Customer-Centric
Fast-Paced
Growth & Learning
Medical Insurance
Dental Insurance
401K Matching
Paid Time-Off
Maternity Leave
Paternity Leave
Mental Health Resources
Flex-Friendly
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

Workday brings finance, HR, and planning into one system, making it possible for enterprises of all sizes to shed their disparate systems and build better businesses. We serve over 7,900 of the world’s largest companies, educational institutions, ...

291 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 11, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Westerville just viewed Summer Internship - Public Health Data Science at Cotiviti
V
Someone from OH, Cincinnati just viewed Part-Time Executive/Personal Assistant at VirtuHire
Photo of the Rise User
Someone from OH, Chillicothe just viewed Area Manager at The Hemp Co by Curaleaf at Curaleaf
Photo of the Rise User
Someone from OH, Cincinnati just viewed VP, B2B/Integrated Marketing at TEGNA Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director, Marketing and GTM Strategy at Aspen Dental
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Vice President, JLLIPT Marketing at JLL
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President of Marketing at Forum Health
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President of Marketing at Beacon
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director of Growth Marketing at Sundays for Dogs
P
Someone from OH, Cincinnati just viewed Vice President of Marketing at ProCaps Labs
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President, Marketing at Inmagine
Photo of the Rise User
Someone from OH, Cincinnati just viewed VP of Marketing at IDIQ
Photo of the Rise User
Someone from OH, Cincinnati just viewed VP of Marketing at Vultron
Photo of the Rise User
Someone from OH, Cincinnati just viewed Marketing Manager (Remote - US) at Jobgether
F
Someone from OH, Cincinnati just viewed Head of Marketing at FoodHealth Company
Photo of the Rise User
Someone from OH, Cincinnati just viewed VP, Paid Marketing (Remote - US) at Jobgether
Photo of the Rise User
Someone from OH, Cincinnati just viewed Hospital Marketing at Datadog
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President, Institutional Marketing at Tutor.com
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director, Marketing Campaign Management at Humana
Photo of the Rise User
18 people applied to SOC Analyst I at CBIZ