Verified 2 days ago
Senior GRC Engineer
About the role
Security & IT – IT team focuses on strengthening cybersecurity programs through governance, risk management, and engineering. The Senior GRC Engineer leads risk management framework activities, develops security documentation, and integrates GRC practices into DevSecOps pipelines. Remote work from India, collaborating with technical teams and leadership to advance security maturity.
What you’ll bring
- 7+ years cybersecurity governance risk management experience
- 3+ years ISSO responsibilities in federal environments
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity or equivalent
- Strong knowledge of NIST RMF and Cybersecurity Framework
- Experience with FedRAMP, Azure, Microsoft 365, ServiceNow
- Proficiency in DevSecOps, CI/CD, Zero Trust architectures
- Familiarity with SAST, DAST, SCA tools
- Relevant certifications such as CISSP, CISM, CISA