Governance, Risk, and Compliance Engineer
US101 Guidehouse Inc.
Job Family: Cyber Consulting Travel Required: Up to 10% Clearance Required: Active Public Trust What You Will Do Guidehouse’s Cybersecurity practice helps organizations modernize governance, risk, and compliance (GRC) capabilities to improve transparency, decision‑making, and resilience in complex regulatory environments. Our teams work at the intersection of cybersecurity strategy, enterprise risk management, and technology enablement to help clients operationalize compliance and aggregate risk across the enterprise. As a GRC Engineer, you will architect and lead enterprise GRC integration and compliance automation initiatives for federal and commercial clients, designing scalable GRC platform architectures, establishing automated security control evidence ingestion and normalization processes, and defining enterprise data integration standards that enable real‑time compliance visibility and risk aggregation. Key Responsibilities Architect and lead enterprise GRC modernization programs, providing technical leadership across strategy, platform design, integration, and implementation. Design scalable GRC platform architectures that support automated control management, continuous monitoring, compliance reporting, and enterprise risk aggregation. Define and implement automated control evidence ingestion pipelines, integrating data from security, IT, cloud, and operational systems into centralized GRC platforms. Establish enterprise data integration standards for governance and risk data, including data models, interfaces, normalization rules, and quality controls. Lead initiatives that enhance compliance transparency, enable near‑real‑time insight into control effectiveness, and reduce manual assessment and reporting burdens. Translate regulatory, policy, and control requirements into implementable technical designs aligned to enterprise architectures. Oversee mapping and operationalization of security controls and requirements aligned to standards and frameworks such as NIST SP 800‑53, NIST SP 800‑37, FISMA, ISO 27001, and organizational policies. Provide technical direction for risk aggregation and reporting, ensuring executives can understand cumulative risk, trends, and remediation priorities across business units and systems. Implement quality assurance, performance measurement, and risk management processes for GRC engineering and automation initiatives. Review and approve architectural designs, integration patterns, and technical deliverables to ensure scalability, security, and maintainability. Collaborate with cybersecurity engineering, cloud, data, and audit stakeholders to ensure cohesive enterprise implementation. Mentor and develop engineers, consultants, and managers; set technical standards and reinforce delivery excellence. Support business development activities, including proposal development, solution shaping, and technical reviews, as a GRC subject matter expert. What You Will Need Must be able to obtain and maintain a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field (additional relevant experience may substitute for formal education). Minimum of nine (9) or more years of progressively responsible experience in cybersecurity GRC, compliance engineering, risk management, or related enterprise technology roles. Active Certified in Governance, Risk and Compliance (CGRC) and Certified Information Systems Security Professional (CISSP). Demonstrated experience designing and implementing enterprise GRC platforms and compliance automation solutions. Strong working knowledge of cybersecurity governance, risk management, and assessment processes within regulated environments. Experience translating complex regulatory and control requirements into technical architectures and automated workflows. Experience with leading GRC platforms (e.g., ServiceNow, Qmulos, Archer, or similar enterprise tools). Excellent written and verbal communication skills, including the ability to brief senior executives and technical stakeholders. Nice to Have Experience supporting federal civilian, defense, or regulated commercial clients. Additional certifications such as CISM, CISA, CCSP, or cloud security credentials. Experience integrating GRC platforms with cloud, DevSecOps, SIEM, asset management, and identity systems. Prior consulting experience with responsibility for client engagement, delivery assurance, and team leadership. Benefits Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend Guidehouse is an Equal Opportunity Employer—Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. #J-18808-Ljbffr
- ...Senior Compliance Engineer, AI Governance True Anomaly seeks those with the talent and ambition to build the technology that secures space. True... ...and export compliance background to join our Governance, Risk, and Compliance (GRC) team. This role is responsible for...SuggestedPermanent employment
$105.4k - $142.6k
Risk & Compliance Incident Response Engineer The firm is actively seeking a Risk & Compliance Incident Response Engineer to join the IT department. This... ...direction of the Director of Information Security Governance, Risk & Compliance. This position will also work closely...SuggestedFull time- ...POSITION DESCRIPTION (PD) SECURITY & COMPLIANCE ENGINEERING (SCE) POSITION OVERVIEW Zermount Inc.... ...Compliance Engineering (SCE) to support system risk analysis and ensure that federal... ...experience supporting U.S. Government systems 4+ years performing RMF, ISSO...SuggestedRemote work
$107.9k - $195.05k
...experienced M365 Security and Compliance Administrator to join our... ...5 environment within a GCC (Government Community Cloud) tenant, particularly... ...agency context. This senior engineering role sits at the center of... ..., outages, and operational risks. The successful candidate...SuggestedLocal areaImmediate startNight shiftDay shift$129k - $198k
...THE ROLE We are seeking a Cybersecurity Compliance Engineer to serve as a technical leader and strategic driver within our Cyber Risk and Compliance Team. This is a high‑impact... ...systems operations and enterprise‑level governance. The ideal candidate has strong technical...SuggestedFull timeWork experience placement- ...ProSidian provides enterprise services/solutions for Risk Management, Compliance, Business Process, IT Effectiveness, Engineering, Environmental, Sustainability, and Human... ...for public and private, defense and civilian government, and non-profit organizations. Our solution-...Full timeContract workFor contractorsWork at officeRemote work
- ...candidate to join our talented Team. Position Job Title : Domain Boundary Compliance (DBCP) Engineer Location : Mclean, VA Position Overview The Domain Boundary Compliance Program exists to manage the risk associated with business applications that need to establish network...
$124k - $280k
...: Up to 60% At PwC, our people in risk and compliance focus on maintaining regulatory compliance... ...manage strategy, transformation and engineering projects and teams Design and... ...implement enterprise-wide cyber risk governance frameworks Develop thorough business...Full timeH1b- ...ProSidian provides enterprise services/solutions for Risk Management, Compliance, Business Process, IT Effectiveness, Engineering, Environmental, Sustainability, and Human... ...for public and private, defense and civilian government, and non-profit organizations. Our solution-...Full timeContract workFor contractorsWork at officeRemote work
$200k - $220k
...workstreams, coordinating with government stakeholders, ISSOs, and... ...checklists, deviation requests, and risk acceptance documentation.... ..., ensuring continuous compliance alignment with NIST RMF steps... ...vulnerability remediation with engineering teams. Interface directly...Temporary workLocal area- Zermount, Inc. is looking for a System Compliance Engineer in Arlington, VA. This remote role involves ensuring federal information systems meet... ...standards by performing technical validations and risk assessments. Candidates should have 5+ years of experience in...Remote job
- ...work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence, and... ...Responsibilities: - Experience supporting documentation, reporting, and compliance activities - Understanding of network monitoring tools and...Minimum wageFull timeContract workTemporary workWork experience placementRemote work
$200k - $220k
...workstreams in Arlington, Virginia. This position requires an active TS/SCI clearance and involves operationalizing DISA STIGs, ensuring compliance with NIST RMF standards, and managing security assessments. Ideal candidates will have over 5 years of relevant experience,...- ...more. Who were looking for: We are seeking Compliance and Continuous Monitoring Engineer - Vulnerability Management (Top Secret Clearance)with... ...Develop and maintain Security Assessment Reports (SARs) and Risk Assessment Reports (RARs). Employ a scan-patch-scan...
$131k - $271.6k
...SAP Concur manages security compliance and FedRAMP operations through... ...compliance, controls engineering, and automation to improve the... ...efficiency, visibility, and risk reduction through automation... ...to security operations and governance. What you bring Required...Permanent employmentFull timeWorldwideFlexible hours$90k - $150k
...children, and more. The Role As a Compliance Engineer, you will help our engineers implement... ...champion a robust & nimble approach to risk management across the company. You will navigate & interpret complex US Government regulatory frameworks (e.g. FedRAMP, CMMC...Work experience placementWork at officeRemote workWork from homeRelocation package$77.6k - $176k
Data Quality Engineer Leverage your expertise to shape and implement a comprehensive data quality strategy aligned with the organization's mission and enterprise governance in a cloud environment. You will define the target future state, develop monitoring and tracking...Full timePart timeLocal area$128.89k - $184.12k
...Zero Trust Compliance Officer (Engineer Info Assurance 4) Location: Fairfax, VA, Virginia, United States Requisition... ...authorization decisions and mission risk awareness. Supports inspections, penetration testing reviews, and governance boards through structured documentation...Full timeContract workWork at officeLocal area$87.1k - $157.45k
...Divison at Leidos currently has an opening for a Signal Processing Engineer to support EW programs in Arlington, VA or San Diego, CA... ...Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital...Local areaImmediate startFlexible hours- Koitecc Solutions is seeking a seasoned M365 Security and Compliance Administrator to enhance the security posture of the Microsoft 365... ...agency setting. This role includes duties such as leading security governance, implementing email security policies, and managing compliance...
- ...faster. We enable a wide range of clients across the Federal government, from senior level policy makers to program managers, to... ...Corner, VA. Description: We are seeking a Junior Cyber Risk Data Engineer/Analyst . This role focuses on the data side of cyber risk...InternshipShift work
$77.6k - $176k
Data Quality Engineer The Opportunity: Create a long-term data quality strategy that aligns with the organization's mission, with a special focus on enterprise governance with data stored in a cloud environment. Define the target future-state for a repeatable data quality...Full timeContract workPart timeWork at officeLocal areaRemote work$60 - $75 per hour
KellyMitchell Group is looking for a Process Engineer to streamline and design processes crucial for Bank and Card Core Modernization. You... ...of relevant experience in process and project management or risk management. This is a remote position with an hourly pay rate between...Remote jobHourly pay- Leidos is looking for a Junior Signal Processing Engineer to support electronic warfare (EW) programs. This role is vital in protecting national security against evolving threats. You'll develop algorithms in MATLAB, analyze data, and support ongoing EW programs. A Bachelor...
- Job Description: Quartermaster AI is seeking an experienced RF/DSP Engineer to build the digital signal processing foundation of our radiofrequency sensing platform. This is a ground-floor role: our DSP pipeline is early-stage, and you will build the primary architecture...
- A veteran-owned firm is seeking a Process Improvement Engineer/Specialist. The role requires expertise in web development and SharePoint technologies with a minimum of 7 years of experience. You will work to improve business processes for the Intelligence Community, ensuring...Full time
- Forterra in Arlington, VA, is seeking a highly experienced Signal Processing Engineer to develop RF and radar signal processing capabilities for autonomous systems. This hands-on role involves algorithm design, field testing, and integrating systems with partner technologies...
- ...warfighter and our national security against ever-adapting threats. Leidos currently has an opening for a Junior Signal Processing Engineer to support EW programs in Arlington, VA or San Diego, CA. As part of our team, you will focus on improving the robustness and...
- Position: Process Improvement Engineer/Specialist / Level 4 Location: Onsite Springfield, VA Position Type: Full Time Employment About the Organization GSX is a veteran-owned firm that designs, implements, and manages innovative workforce strategies and solutions that...Full timeContract workTemporary workPart timeFlexible hours
$180k - $270k
...CA) currently has an opening for a Senior Signal Processing Engineer . As a EW Senior Signal Processing Engineer, you will... ...members and peers within the division as well as our external Government customers. Regular tasks will include a mix of the following...Local areaImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk, and Compliance Engineer. Be the first to apply!



