Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
An established industry player is seeking a senior Governance, Risk, and Compliance (GRC) Lead to join their dynamic team. This pivotal role involves collaborating with the Chief Information Security Officer and various stakeholders to ensure compliance with critical frameworks like CMMC and ISO 27001. The GRC Lead will assess risks, manage continuous monitoring activities, and draft essential policies and procedures. Ideal candidates will possess significant experience in a Federal environment and hold relevant certifications. This is a fantastic opportunity to make a meaningful impact in a collaborative and innovative setting.
LMI is seeking a senior Governance, Risk, and Compliance (GRC) Lead to support LMI’s Office of the Chief Information Security Officer (OCISO). This position will work collaboratively with the Chief Information Security Officer (CISO), Information Technology (IT), Cybersecurity Team, project teams, and business stakeholders to ensure cohesive success across LMI.
The GRC Lead will be responsible for delivering all GRC-related functions in compliance with CMMC/NIST 800-171, ISO 27001, and other frameworks, and developing strategy and methodologies for success. This position will provide advice and guidance across LMI for GRC-related initiatives. The GRC Lead will assess risks from system changes, new projects, vulnerabilities, and throughout the System Development Life Cycle (SDLC). They will prepare risk management recommendations for the CISO’s approval and collaborate with technical staff to develop mitigations and solutions. The GRC Lead will manage continuous monitoring activities to ensure routine assessments are performed via technical, manual, and automated means, utilizing our GRC platform to maintain control status, upload artifacts, and generate reports.
The GRC Lead will also draft and maintain current policies, procedures, and documentation, ensuring they are accurate and compliant. Support for Privacy and Export Control areas may be required. Additional duties may be assigned as needed.