GRC Consultant

NetCov

United States

On-site

USD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A cybersecurity company is seeking a GRC Consultant to manage compliance deliverables and provide expertise in regulatory frameworks. Candidates should have 3-5 years of experience in Information Security, strong communication skills, and relevant certifications such as CMMC CCP or CCA. This remote position requires client-facing interaction and project management skills. Applicants must have a good understanding of the IT security landscape and be capable of traveling to client locations when needed.

Qualifications

  • 3-5 years of experience in Information Security or Compliance.
  • Client-facing experience preferred.
  • Understanding of security regulatory frameworks.

Responsibilities

  • Interface with clients for onboarding and checks.
  • Conduct risk assessments and security audits.
  • Manage client projects and deliverables.

Skills

Problem-solving
Analytical skills
Customer service skills
Communication skills
Organizational skills
Interpersonal skills
Ability to understand vulnerabilities

Education

CMMC CCP or CCA
CompTIA Security+

Tools

Microsoft Office 365
Azure Active Directory

Job description

At NetCov, we specialize in delivering cutting‑edge IT and cybersecurity solutions designed to protect and optimize the digital infrastructure for the industries we serve. We differentiate ourselves from our competition through our deep and intimate knowledge of our customers’ business.

About the Role

As a GRC Consultant at Network Coverage, you will be part of the GRC Team and your expertise will be an integral part of our all‑encompassing compliance deliverables. You be working closely with team members and clients in various locations across the US and overseas and will fulfill the role of subject matter expert, advising upon the on the most effective approach to security, regulatory compliance and continuously developing and helping to implement Network Coverage’s targeted approach. As a GRC Consultant, you will be responsible for CMMCSecurity Auditing, Readiness Assessment, Policy Writing, Risk Assessment, client onboarding and coordination of implementation treatment resulting from GAP assessment. As a technical solution provider, you will function as the subject matter expert and deliver a highly comprehensive Plan of Action and Milestones and may be expected to report on a scheduled cadence in a client facing capacity, under the guidance of the Director of CMMC Compliance and Chief Advisory Officer.

Due to the nature of the work, flexible work hours may also be required if requested for client onsite or after‑hours support of accounts in differing regions.

Primary/Essential Duties and Key Responsibilities
  • Interface with client points of contact as required for onboarding/post sales activity and/or recurring check ins and inquiries.
  • Continuously monitor and triage requests flowing through an inbound ticket queue.
  • Participate in the design and execution of risk assessments and security audits.
  • Participate in the management of employee awareness campaigns for both staff and clients, including phishing simulations and awareness training.
  • Perform CMMC Readiness against 110 controls, delivering a comprehensive SSP and POAM with assisted attestation and SPRS reporting.
  • Manage client projects from start to finish, defining milestones and deliverables and meeting determined deadlines.
  • Maintain up‑to‑date detailed knowledge of the IT security industry including awareness of new or revised security solutions, regulatory requirements, improved security processes, and the development of new attacks and threat vectors.
  • Document best practices and user guides using available collaboration tools and workspaces.
  • Develop and maintain both internal and client‑facing documentation, policy libraries and delivery metrics for end‑to‑end client security and compliance.
  • Provide timely, detailed, and complete reports on vulnerabilities, security events and incidents in a client facing setting.
  • Triage internal security and permissions requests from staff, including but not limited to systems access and employee terminations.
  • Oversee upkeep of internal SOP, ensuring adjustments to protocol are made as tools and methods evolve.
  • Perform QA workflow as necessary to improve upon consistency of product and client experience.
  • Coordinate resources and/or route audit requests appropriately for high volume or regulated client points of contact.
  • Ability to manage a changing and evolving workload and function as decision‑maker where needed.
  • Provide after‑business hours support if requested and as applicable to geographically distributed client base.
  • Perform other duties and tasks as assigned.
Knowledge, Skills and Abilities (KSAs) Required:
  • CMMC CCP or CCA is a requirement for this role.
  • Strong problem‑solving and analytical skills.
  • Excellent customer service skills, including understanding how to de‑escalate, how to soothe and how to deliver the most efficient solution.
  • Strong communication skills, both verbal and written.
  • Familiarity with regulatory frameworks such as NIST/CMMC, ISO 27001, HIPAA/Hitech, GDPR are a big plus.
  • Strong organizational, operational, and inter‑personal skills
  • Strong familiarity with Windows desktop and server operating systems.
  • Strong familiarity with Microsoft Office 365 and Azure Active Directory support and implementation.
  • Strong understanding of networking concepts, familiarity with routers, firewalls, access points, IDS/IPS and VPN.
  • Familiarity with Email threat protection tools and concepts.
  • Familiarity with RMM and asset management tools are a big plus.
  • Understanding of tools and processes used in security monitoring and incident response
  • Experience with Endpoint Detection & Response (EDR) tools
  • Ability to understand vulnerabilities at a technical level and capable of recommending and effectively communicating mitigation strategy
  • Ability to communicate and write in English professionally
  • Reliable personal transportation for use in traveling to clients' offices is essential.
Minimum Experience and Education Required:
  • 3-5 years of experience working in an Information Security and/or Compliance capacity
  • Customer service and client facing experience preferred.
  • CMMC CCP or CCA is a requirement for this role.
  • CMMC RPA will be considered preferentially.
  • CompTIA Security+

Work is primarily performed in a remote capacity and will require use of video conferencing software along with a company issued webcam. Work involves operation of computer equipment for 8 hours or more daily.

Occasionally, GRC Consultants will be required to travel onsite to a client office location and will be expected to dress, act and present themselves professionally as a representation of the Network Coverage commitment to excellence.

Network Coverage remote team members must ensure the availability of a stable, reliable, and secure internet connection with adequate bandwidth to support video calls as needed throughout the course of their shift and while performing on‑call duties.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote GRC Consultant: CMMC & Compliance Expert
Remote GRC Consultant: CMMC & Compliance Expert

NetCov • United States

Remote
USD 80,000 - 100,000
Remote GRC Analyst: CMMC & Security Compliance Expert
Remote GRC Analyst: CMMC & Security Compliance Expert

NetCov • United States

On-site
USD 70,000 - 90,000
Practice Lead, GRC Advisory for Shellproof Security
Practice Lead, GRC Advisory for Shellproof Security

The ProActive Technology Group • New York (NY)

On-site
USD 100,000 - 150,000
Competitive salary
Health, vision, and dental benefits
Performance-based incentives
+3
GRC Analyst II
GRC Analyst II

Frontgrade Technologies • Colorado Springs (CO)

On-site
USD 70,000 - 90,000
Immediate Medical, Dental, and Vision
401K Match with 100% immediate vesting
Tuition Reimbursement/Student Loan Repayment
+2
Senior Governance, Risk & Compliance (GRC) Analyst
Senior Governance, Risk & Compliance (GRC) Analyst

Cianbro • North Stonington (CT)

On-site
USD 90,000 - 110,000
Employee-owned company
CMMC Compliance Specialist
CMMC Compliance Specialist

On Call Computer Solutions, LLC • United States

On-site
USD 110,000 - 160,000
Health insurance
Legal services
Retirement
+6
Senior Governance, Risk & Compliance (GRC) Analyst
Senior Governance, Risk & Compliance (GRC) Analyst

Cianbro • Pittsfield (ME)

On-site
Employee-owned
Equal opportunity employer
Consultant, GRC Services
Consultant, GRC Services

InfoHedge Technologies LLC • Tampa (FL)

On-site
USD 75,000 - 90,000
Manager, IT Risk & Compliance 2
Manager, IT Risk & Compliance 2

Celestica • United States

On-site
USD 107,000 - 147,000
Cybersecurity GRC Professional
Cybersecurity GRC Professional

duvari group • United States

On-site
USD 120,000 - 190,000