Engineer – InfoSec GRC (Governance, Risk, and Compliance)
USD 85K-98K (estimate) Mid-level Full Time
Tasks
- Conduct periodic audit reviews
- Continuously improve audit and due diligence procedures
- Develop security standards and procedures
- Enforce regulatory control requirements
- Identify control gaps and recommend mitigations
- Implement audit compliance controls
- Lead IT GRC training for business units
- Maintain GRC control framework scoping and interpretations
- Maintain audit documentation and diagrams
- Manage audit automation tools
- Operationalize compliance requirements
- Optimize control testing procedures
- Support Change Management compliance
- Support asset management and inventory
- Support patch management compliance reporting
- Support third party assessor inquiries
- Support vulnerability management reporting
- Track remediation against SLAs
- Validate production change compliance
Perks/Benefits
- N/A
Skills/Tech-stack
Application Inventory | Asset Management | Audit Procedures | Audit automation | Change Management | Compliance Management | Control Framework | Control Testing | Due Diligence | GRC | Governance | HIPAA | Information Security Governance | Information Security Management | Information security | NIST | PCI DSS | Patch Management | Regulatory Compliance | Risk Based Auditing | Risk Management | Risk-based | SOX | Security Governance | Security Management | Security assessment | Security controls | Security standards | Service Level | Service Level Agreements | Splunk | Vulnerability Management
Education
Associate Degree | Bachelor of Engineering | Bachelor of Science
Related jobs
-
Senior-level Full TimeDallas, TX, United States18h ago
-
Staff Product Security Engineer USD 184K-241KAI Security | AWS | Automation | Azure | CI/CD401k matching | Commuter benefits | Disability insurance | Family planning support | Fertility supportSenior-level Full TimeNew York City19h ago
-
Staff Product Security Engineer USD 184K-241KAI Security | AWS | Automation | Azure | CI/CD401k match | Commuter benefits | Dental insurance | Disability insurance | Fertility and family planning supportSenior-level Full TimeAtlanta, Georgia, United States19h ago
-
Senior Security Engineer USD 120K-136KAlerting | CIS Critical Security | CIS Critical Security Controls | Cloud Security | Correlation rulesOn-call support | Remote work | US Security ClearanceSenior-level Full TimeWork from home, VA, United States R21h ago
-
Security Engineer USD 80K-145KAccess Management | Alerting | CIS Critical Security | CIS Critical Security Controls | Cloud SecurityOn-call support | Remote workMid-level Full TimeWork from home, VA, United States R21h ago
-
Senior-level Full TimePortland, OR, United States21h ago
-
AWS | ArcSight | Azure | Cisco Firepower | Cloud platformOnsite position | US citizen or green card requiredSenior-level ContractWashington, United States1d ago
-
API Integration | AWS | Access Control | Attack Path | Attack Path AnalysisCorporate holidays | Dental insurance | Flexible time off | Home internet allowance | Medical insuranceMid-level Full TimeRemote R1d ago
-
Lead Info Sec Engineer USD 151K-252KAccess Management | Active Directory | Asset Management | Change governance | Configuration ManagementDay shift | Full-time employment | Remote workSenior-level Full TimeDistrict of Columbia-Washington1d ago
-
SYSTEM ENGINEER - Data Management - 10+ yrs of Experience - TS/SCI w/Poly clearance is required - ES A USD 168K-173KCybersecurity | Data Analysis | Data Modeling | Data Objects | Data Science401k | Dental insurance | Disability insurance | Life insurance | Medical insuranceMid-level Full TimeLinthicum Heights, United States1d ago
-
Lead Info Sec Engineer USD 151K-252KAccess Management | Active Directory | Asset Management | Change governance | Configuration ManagementRemote workSenior-level Full TimeDistrict of Columbia-Washington1d ago
-
Lead Security Engineer II, Cyber PM (TS/SCI, Onsite) USD 124K-207KCybersecurity | Project Management | Risk Management | Security Architecture | Stakeholder managementSenior-level Full TimeColorado Springs, Colorado, United States1d ago
-
Access Control | Archer Collaborate | Data Feeds | Data Imports | Data ManagementSenior-level Full TimeArlington/Rosslyn, Virginia, United States1d ago
-
Security Engineer II, Policy Lead (TS/SCI, Onsite) USD 97K-171KBehavior Analysis | Incident Response | Insider Threat | Policy Development | Risk MitigationCompetitive benefits package | Mentorship | Onsite work | Professional development opportunitiesSenior-level Full TimeArlington/Rosslyn, Virginia, United States1d ago
-
Cybersecurity Systems Engineer, ISSO, with an active TS/SCI with a Full Scope Polygraph Security Clearance Required, Onsite A USD 100K-131KCertification and accreditation | Configuration Management | Cybersecurity | Encryption | Impact AssessmentMedical insurance | Paid time off | Retirement planMid-level Full TimeAnnapolis Junction, MD, United States1d ago
-
Staff Privacy Engineer, Google Ads USD 207K-300KBy Design | Compliance Engineering | Data Engineering | Data Science | Privacy EngineeringSenior-level Full TimeMountain View, CA, USA; New York, …1d ago
-
Business Continuity | Cloud Security | Cloud services | Firewalls | IT Governance401k matching | Career growth opportunities | Dental insurance | Employee ownership program | Employee referral programExecutive-level Full TimeCharlotte, NC, US1d ago
-
Lead Cyber Security Engineer | $140K-$175K + Remote + Equity | Exciting High growth AI Operational Intelligence Startup A USD 140K-175KAPI Security | Cloud Security | Governance | ISO 27001 | ISO 42001Equity | Health medical and vision coverage | PTO | Paid Holidays | Remote workExecutive-level Full TimePhiladelphia, PA, United States R1d ago
-
Systems Engineer USD 72K-100KActive Directory | Azure AD | Backup and Restore | Entra ID | Exchange OnlineMid-level Full TimeSan Mateo, Rizal, Philippines R1d ago
-
800-53 | 800-53A | AWS Security | Azure Security | Cloud SecuritySenior-level Full TimeWashington, DC, United States1d ago
-
Audit Support | Cloud Security | Continuous Monitoring | Control assessments | Incident ResponseSenior-level Full TimeWashington, DC, United States1d ago
-
Continuous Monitoring | Incident Response | NIST | RMF | Risk ManagementSenior-level Full TimeHuntsville, AL, United States1d ago
-
Authorization | Continuous Monitoring | Control Assessment | Incident Response | NISTSenior-level Full TimeWashington, DC, United States1d ago
-
800-53 | 800-53A | Detection Systems | EMASS | EncryptionSenior-level Full TimeWashington, DC, United States1d ago
-
Cyber analysis | Cybersecurity | Data Engineering | Forensic Imaging | Information securityPolygraph clearance | TS/SCI clearanceMid-level Full TimeDulles, Virginia, United States1d ago