GRC & Cybersecurity Leader — CMMC & ERM Champion

Riverside Research

Beavercreek (OH)

On-site

USD 140,000 - 170,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Riverside Research is seeking a Manager of Governance, Risk & Compliance in Beavercreek, OH. You will lead the GRC program, own the CMMC program, and mentor a team of analysts to ensure regulatory and contractual cybersecurity compliance across the organization.

You will partner with IT, Legal, Contracts, HR, and Finance to integrate security controls with business processes, maintain enterprise risk management, and communicate risk to executives.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Information Assurance, Business, or a related discipline.
  • Twelve (12) years of progressively responsible experience in cybersecurity, information assurance, governance, risk, compliance, or related disciplines, including at least three (3) years of leadership experience managing technical teams or enterprise cybersecurity programs.
  • Demonstrated success leading external security assessments, regulatory audits, or certification efforts within a regulated industry such as the Defense Industrial Base, government contracting, financial services, healthcare, or telecommunications.
  • Strong knowledge of Cybersecurity Maturity Model Certification (CMMC), NIST SP 800-171, Department of Defense CUI requirements, and applicable FAR and DFARS cybersecurity clauses.
  • Experience developing and maintaining cybersecurity governance programs, policies, standards, and enterprise compliance initiatives.
  • Strong understanding of enterprise information technology including Microsoft 365, Microsoft Entra ID, Microsoft Azure, Amazon Web Services (AWS), virtualization, and hybrid infrastructure.
  • Excellent written, verbal, and presentation skills with the ability to communicate complex technical concepts to executive leadership and non-technical stakeholders.
  • Demonstrated ability to lead cross-functional initiatives, influence organizational change, and build collaborative relationships across multiple business functions.

Responsibilities

  • Lead the GRC program supporting enterprise cybersecurity strategy, governance framework, and compliance objectives.
  • Own the CMMC program, ensuring readiness for annual affirmations and C3PAO assessments.
  • Lead and mentor a team of GRC Analysts, establishing priorities and fostering accountability and improvement.
  • Develop, maintain, and govern enterprise cybersecurity policies, standards, procedures, and documentation.
  • Lead ERM program by facilitating risk identification, assessment, mitigation planning, and executive reporting.
  • Drive monitoring activities through auditing, internal controls, and compliance reviews.
  • Manage corrective action plans, findings, POA&Ms, and remediation activities.
  • Provide governance oversight for IAM, vulnerability management, configuration management, incident response, and data protection.
  • Partner with IT and Security to ensure architecture aligns with regulatory requirements and risk tolerance.
  • Maintain awareness of evolving FAR, DFARS, CMMC, NIST, and DoD cybersecurity requirements; advise leadership on changes.
  • Develop executive dashboards and reports communicating cybersecurity posture and risk to senior leadership.
  • Collaborate with Contracts, HR, Finance, Legal, Marketing, and Ops to integrate governance into business processes.
  • Serve as trusted advisor translating cybersecurity, compliance, and risk into actionable business recommendations.

Skills

Leadership
Communication
Strategic thinking
Cross-functional collaboration
Regulatory understanding

Education

Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Assurance, Business, or related discipline

Tools

Microsoft 365
Microsoft Entra ID
Microsoft Azure
Amazon Web Services (AWS)
Virtualization
Hybrid infrastructure

Job description

Riverside Research is seeking a Manager of Governance, Risk & Compliance in Beavercreek, OH. You will lead the GRC program, own the CMMC program, and mentor a team of analysts to ensure regulatory and contractual cybersecurity compliance across the organization.

You will partner with IT, Legal, Contracts, HR, and Finance to integrate security controls with business processes, maintain enterprise risk management, and communicate risk to executives.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Governance, Risk & Compliance (GRC) Manager
Governance, Risk & Compliance (GRC) Manager

Riverside Research • Beavercreek (OH)

On-site
USD 140,000 - 170,000
GRC Manager: Cybersecurity Risk & Compliance Leader
GRC Manager: Cybersecurity Risk & Compliance Leader

Path Robotics • Columbus (OH)

On-site
USD 100,000 - 130,000
Daily free lunch
Flexible PTO
Comprehensive medical, dental, and vision coverage
+3
Senior Program Manager - R&D Growth & DoD Partnerships
Senior Program Manager - R&D Growth & DoD Partnerships

Riverside Research • Beavercreek (OH)

On-site
USD 130,000 - 190,000
Senior GRC Analyst: CMMC, Risk & Audit Readiness
Senior GRC Analyst: CMMC, Risk & Audit Readiness

Cianbro • North Stonington (CT)

On-site
USD 90,000 - 110,000
Employee-owned company
Remote GRC Lead: Cybersecurity Governance & Risk
Remote GRC Lead: Cybersecurity Governance & Risk

ERP International, LLC • Laurel (MD)

On-site
USD 165,000 - 210,000
Health Benefits
Retirement Plan
Training & Development
+2
Senior GRC Specialist
Senior GRC Specialist

Franklin Fitch • United States

Remote
USD 100,000 - 130,000
Senior GRC Consultant — Remote, Strategic Risk & Compliance
Senior GRC Consultant — Remote, Strategic Risk & Compliance

Cyberr • United States

On-site
USD 90,000 - 130,000
GRC Program Architect: Federal Compliance & Security Controls
GRC Program Architect: Federal Compliance & Security Controls

Onebrief • United States

Hybrid
USD 150,000 - 230,000
Enterprise Cybersecurity & GRC Leader
Enterprise Cybersecurity & GRC Leader

Emergent Staffing • Hartford (CT)

On-site
USD 130,000 - 180,000
Cyber GRC Leader - Strategy, Risk & Compliance
Cyber GRC Leader - Strategy, Risk & Compliance

Regions Bank • Birmingham (AL)

On-site
USD 187,000 - 229,000