Governance, Risk & Compliance (GRC) Manager

21 hours, 56 minutes ago
Full-time
Lead
Cybersecurity
Loenbro

Loenbro

Loenbro is a leading provider of mission-critical industrial services, offering a wide range of solutions from electrical to inspection. With origins in welding, the company has expanded to provide turnkey services for new plant construction, serving i...

Construction & Engineering
251-1K
Founded 1998

Description

  • Own cybersecurity compliance initiatives, including CMMC Level 2, SOC audits, and SOX ITGC.
  • Lead governance, risk management, compliance, and audit-readiness programs.
  • Partner with business, technology, and executive stakeholders to align controls and policies with regulatory, contractual, and business requirements.
  • Conduct risk assessments and compliance gap analyses.
  • Develop remediation plans and track corrective actions.
  • Manage relationships with external auditors, assessors, and regulatory stakeholders.
  • Develop and maintain security policies, standards, and governance documentation.
  • Support regular virtual collaboration with IT, HR, business systems, vendors, and other stakeholders.
  • Occasionally travel for company meetings, training, and project activities.

Requirements

  • 10+ years of experience in GRC, information security, risk management, or related cybersecurity functions.
  • 3+ years of leadership, management, or program ownership experience.
  • Direct experience leading or supporting CMMC Level 2 compliance programs.
  • Hands-on experience managing SOC 1 and/or SOC 2 audits.
  • Experience supporting SOX compliance and IT General Controls testing and remediation.
  • Strong understanding of NIST SP 800-171 and cybersecurity control frameworks.
  • Experience conducting risk assessments, compliance gap analyses, and remediation planning.
  • Experience working with external auditors, assessors, and regulatory stakeholders.
  • Strong communication, project management, and stakeholder management skills.
  • Preferred certifications include CISSP, CISM, CRISC, CISA, CIA, or CGRC; Defense Industrial Base or regulated-environment experience is highly preferred.

Benefits

  • Colorado pay range of $165,000 annually.
  • Medical, dental, and vision insurance.
  • 401(k) retirement plan with company match.
  • Paid time off and holiday pay.
  • Life and disability insurance.
  • Professional development and training opportunities.
  • Employee assistance program (EAP).
  • Primarily remote work environment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

FOIA Analyst

TechOp Solutions International 51-250 Internet Software & Services

TechOp Solutions is hiring an experienced FOIA Analyst to process complex federal FOIA requests and support disclosure reviews, redaction, appeals, litigation, and quality assurance activities.

21 hours, 56 minutes ago

Safety Administrator

Remote Raven 11-50 Professional Services

Remote Safety, Insurance & Risk Administrator for a US multi-brand roofing and exteriors group, responsible for managing employee safety programs, OSHA compliance, workers’ compensation, and subcontractor documentation without field supervision.

21 hours, 56 minutes ago

IT Risk and Compliance Analyst

Huge 251-1K Media

Huge is seeking a remote U.S.-based Compliance Officer to execute and help rebuild its IT risk and compliance program across contracts, security, privacy, vendors, and operational controls.

1 day, 21 hours ago

Multifamily Fee Compliance Expert

ApartmentIQ, a remote PropTech SaaS company, is hiring a Solutions Consultant to help multifamily operators manage fee transparency and compliance through customer demonstrations, regulatory research, and product guidance.

1 day, 21 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers