Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Barnes Aerospace

Global Security Governance, Risk & Compliance Manager

Barnes Aerospace

. Drive and sustain governance, risk, and compliance across engineering, manufacturing, and corporate environments .

Posted 9/18/2026full-timeRemote • United StatesSeniorLeadWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Governance, Risk, and Compliance (GRC) management, with a focus on CMMC, NIST SP 800-171, and vendor security risk lifecycle. Proven ability to lead diverse teams, drive cultural change, and leverage AI technologies to enhance compliance processes and operational efficiency.

Highest-signal resume keywords
Governance, Risk, And Compliance (GRC)CMMC Compliance ManagementTeam Leadership And MentoringVendor Security Risk ManagementGenerative AI Utilization

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
CMMCNIST SP 800-171DFARS ReadinessRisk AssessmentCompliance Program ManagementEvidence OperationsData Protection GovernanceDisaster Recovery ReadinessCorrective-Action PlanningAudit Execution
Soft Skills
Strong Communication SkillsProblem-Solving SkillsOrganizational SkillsInfluencing SkillsCultural Change Leadership
Tools & Technologies
AI TechnologiesAutomation ToolsKnowledge Management SystemsWorkflow Efficiency Tools
Certifications & Qualifications
CISSPCISMCRISCCGEITGRCPCGRCGSLCPMP
Industry Keywords
GovernanceRisk ManagementComplianceInformation SecurityExport-Control RequirementsControlled-Information AccessSecurity CultureAudit PreparationRegulatory ComplianceBusiness Continuity

Tech Stack

Tools & technologies
CloudPMP

About the role

Key responsibilities & impact
  • Drive and sustain governance, risk, and compliance across engineering, manufacturing, and corporate environments
  • Report to the CISO and lead a team of GRC professionals
  • Lead enterprise-wide IT execution of CMMC and other compliance program lifecycles
  • Define scope, SSP/POA&M, evidence quality and refresh cadence, assessor coordination, corrective-action closure, and site-level readiness
  • Coordinate control owners through a global matrix model
  • Translate policies and strategic objectives into standardized processes across plants, engineering teams, and corporate functions
  • Drive remediation programs and provide transparency into readiness, progress, and risk
  • Mentor team members, prioritize workload, develop capability, and foster global collaboration
  • Own preparation for and participation in customer and third-party audits and security questionnaires
  • Leverage AI technologies to reduce manual GRC effort
  • Maintain a business-impact view of risk, track remediation commitments, and escalate gaps to leadership
  • Coordinate evidence, close findings, and establish sustainable corrective-action plans
  • Champion a global security culture and promote accountability and risk ownership
  • Translate regulatory topics into clear employee expectations
  • Partner with HR and stakeholders to deliver targeted training, awareness, and role-based education
  • Manage the end-to-end vendor security risk lifecycle, including assessments, treatment, remediation, and monitoring
  • Operate supplier security expectations with key stakeholders and escalate systemic vendor-risk trends
  • Govern data protection for intellectual property, manufacturing processes, export-controlled data, and cloud workloads
  • Validate classification, DLP, access-control, and retention standards
  • Govern security and compliance aspects of business continuity and disaster recovery readiness
  • Define resilience-control requirements and validate recovery playbooks, exercises, and evidence
  • Partner with technology and business service owners to close identified gaps

Requirements

What you’ll need
  • Minimum of 7 years of IT GRC, information security, or regulated compliance experience
  • Preferably 2 years managing a geographically diverse team
  • Demonstrated ability to use generative AI and automation responsibly to improve analysis, evidence operations, knowledge management, and workflow efficiency
  • Experience evaluating AI risk and governance preferred
  • Defense experience strongly preferred
  • Demonstrated experience with CMMC, NIST SP 800-171, and/or DFARS readiness and audit execution
  • Strong oral and written communication skills
  • Ability to lead cultural changes, influence people, and provide technical strategic direction
  • Demonstrated problem-solving and organizational skills
  • Ability to work on multiple programs at one time
  • Bachelor's degree from an accredited college/university or equivalent experience
  • CISSP, CISM, CRISC, CGEIT, GRCP, CGRC, GSLC, PMP, or other relevant certification preferred
  • Must meet applicable U.S. export-control requirements; controlled-information access may require U.S. Person status or an export-control license

Benefits

Comp & perks
  • Reasonable accommodation for applicants with disabilities
  • Full-time remote work arrangement