FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive expertise in Governance, Risk Management, and Compliance (GRC) with a strong focus on cybersecurity compliance initiatives such as CMMC Level 2 and SOC audits. Proven ability to lead compliance programs, conduct risk assessments, and develop security policies while collaborating with various stakeholders.
Highest-signal resume keywords
Governance, Risk & Compliance (GRC)CMMC Level 2 ComplianceSOC 1 and SOC 2 AuditsSOX Compliance and IT General Controls (ITGC)NIST SP 800-171 Requirements
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Risk ManagementCompliance Gap AnalysisRemediation PlanningSecurity Policy DevelopmentAudit Management
Soft Skills
Strong CommunicationProject ManagementStakeholder Management
Certifications & Qualifications
CISSPCISMCRISCCISACIACGRC
Industry Keywords
CybersecurityDefense Industrial Base (DIB)Regulated EnvironmentAudit ReadinessGovernance Documentation
Tech Stack
Tools & technologiesCyber Security
About the role
Key responsibilities & impact- Lead and mature the organization's governance, risk management, compliance, and audit programs.
- Own cybersecurity compliance initiatives, including CMMC Level 2, SOC audits, and SOX IT General Controls (ITGC).
- Partner with business, technology, and executive stakeholders to align security controls, policies, and compliance activities with regulatory, contractual, and business requirements.
- Support organizational risk management and audit readiness.
- Conduct hands-on GRC and compliance work.
- Report to the Senior Director of Information Security.
- Collaborate regularly with HR, IT, Business Systems, application vendors, and business stakeholders through virtual meetings and communication platforms.
- Travel occasionally for company meetings, training, project activities, or other business needs.
Requirements
What you’ll need- 10+ years of experience in Governance, Risk & Compliance (GRC), Information Security, Risk Management, or related cybersecurity functions.
- 3+ years of leadership, management, or program ownership experience.
- Direct experience leading or supporting CMMC Level 2 compliance programs.
- Hands-on experience managing SOC 1 and/or SOC 2 audits.
- Experience supporting SOX compliance and IT General Controls (ITGC) testing and remediation.
- Strong understanding of NIST SP 800-171 requirements and cybersecurity control frameworks.
- Experience conducting risk assessments, compliance gap analyses, and remediation planning.
- Experience working with external auditors, assessors, and regulatory stakeholders.
- Experience developing and maintaining security policies, standards, and governance documentation.
- Strong communication, project management, and stakeholder management skills.
- Experience in a Defense Industrial Base (DIB) or regulated environment is highly preferred.
- Preferred certifications: CISSP, CISM, CRISC, CISA, CIA, or CGRC.
Benefits
Comp & perks- Medical, dental, and vision insurance
- 401(k) retirement plan with company match
- Paid time off (PTO) and holiday pay
- Life and disability insurance
- Professional development and training opportunities
- Employee assistance program (EAP)
