OverviewLocation
Remote (U.S.) | Occasional Travel May Be Required
ERP International, LLC (www.erpinternational.com) is currently seeking a Full Time Cybersecurity Governance and Risk Management (GRC) Lead to support the Centers for Medicare & Medicaid Services. Qualified candidates are urged to apply to learn more about this great opportunity! The successful candidate will provide strategic and operational support across cybersecurity program management, control assessments, continuous monitoring, audit readiness, risk analysis, policy development, and stakeholder engagement activities in highly regulated environments.
Pay Range: $165,000 – $210,000
The salary range for this position is determined based on a variety of factors, including but not limited to, experience, qualifications, skill level, and location. The final salary offer will fall within this range and will be commensurate with the candidate’s background and the specific demands of the role.
Responsibilities
Job Specific Details and Tasks:
- Support enterprise cybersecurity governance and compliance programs.
- Conduct security control assessments and risk analyses.
- Review and maintain security authorization documentation.
- Support implementation of NIST, FISMA, and agency cybersecurity requirements.
- Assist with continuous monitoring, vulnerability management, and remediation tracking.
- Develop executive reports, dashboards, and risk briefings.
- Participate in audit readiness and compliance activities.
- Coordinate with technical teams, security stakeholders, and executive leadership.
- Evaluate cybersecurity processes and recommend improvements.
- Support cybersecurity modernization and transformation initiatives.
Qualifications
Minimum Qualifications:
- 7+ years of cybersecurity, governance, compliance, auditing, risk management, or related experience.
- 3+ years leading governance, compliance, risk management, or cybersecurity oversight activities.
- Experience supporting federal, healthcare, defense, financial services, or other highly regulated environments.
- Experience with:
- NIST Risk Management Framework
- Enterprise Risk Management
- Cybersecurity Governance
- Compliance Assessments
- Audit Readiness
- Policy Development
- Security Metrics and Reporting
- Strong analytical, communication, and stakeholder engagement skills.
Education:
- Bachelor's degree in Cybersecurity, Information Systems, Public Policy, Business Administration, Computer Science, or related discipline.
License/Certification and Training:
Desired Certifications
Desired Experience:
- Experience supporting enterprise cybersecurity transformation initiatives.
- Experience working with executive governance organizations or leadership councils.
- Experience supporting privacy programs or data governance initiatives.
- Experience developing cybersecurity maturity assessments and improvement roadmaps.
- Experience supporting cloud governance, Zero Trust, or enterprise modernization efforts.
- Experience supporting large-scale federal technology or business transformation programs.
Clearance Requirements:
- Must be able to obtain a government publc trust Clearance/background check
Standard Interview & Selection Process:
- Recruiter Pre-Screen
- If selected, Interview with Hiring Manager and/or Technical Lead