ForgeApply
Try it free

ForgeApply · Job listing

Cybersecurity GRC Program Manager

Guidehouse

US - VA, Arlington | US - DC, US$130k – $216konsite

See all 240 open roles at Guidehouse

Tailor your resume for this Guidehouse job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Guidehouse's site. Free trial, no card required.

About this role

Job Family : Cyber Consulting Travel Required : Up to 10% Clearance Required : Active Top Secret (TS)

What You Will Do • Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program Manager to lead a large, complex federal cybersecurity program supporting enterprise security operations, cybersecurity governance, risk management, compliance, authorization, continuous monitoring, and cyber engineering activities.

• The Managing Consultant will serve as the primary contractor Program Manager and authorized interface between Guidehouse, the Contracting Officer's Representative (COR), Government Program Manager (GPM), government stakeholders, and customer agency leadership. The successful candidate will provide strategic leadership, program oversight, workforce management, and quality assurance across all contracted cybersecurity activities.

• This role requires a highly experienced cybersecurity leader with demonstrated success managing large-scale federal cybersecurity programs, directing multidisciplinary teams, overseeing contract performance, and delivering mission-critical cybersecurity services in highly complex environments. This position requires onsite client support five (5) days per week in the Washington Metropolitan Area.

​ Key Responsibilities • Serve as the primary client-facing lead and trusted advisor for the cybersecurity program, managing relationships with executive stakeholders, government leadership, and customer representatives.

• Act as the contractor's authorized representative for all programmatic, operational, technical, staffing, and contractual matters.

• Provide overall leadership, direction, and management of program personnel, subcontractors, and program resources.

• Formulate and enforce work standards, operating procedures, quality control processes, and performance metrics across all contract activities.

• Manage staffing plans, workforce utilization, employee development, performance management, and resource allocation to ensure successful contract execution.

• Plan, organize, prioritize, and oversee multiple cybersecurity initiatives, ensuring delivery of all contract requirements within schedule, scope, quality, and budget constraints.

• Oversee program financial management, including labor forecasting, resource planning, budget monitoring, and contract performance management.

• Lead program governance activities, including executive briefings, status reporting, risk management, issue resolution, and strategic planning discussions with government leadership.

• Review, approve, and ensure quality of all program deliverables, reports, security documentation, and work products prior to submission to the client.

• Coordinate enterprise cybersecurity planning, authorization, risk management, continuous monitoring, engineering, operations, and incident response activities across multiple stakeholders and technical teams.

• Ensure alignment with federal cybersecurity mandates and frameworks including NIST Risk Management Framework (RMF), FISMA, OMB guidance, CISA directives, Zero Trust initiatives, and agency-specific cybersecurity requirements.

• Lead cross-functional teams supporting: Cybersecurity Governance, Risk Management, Security Authorization (ATO), Continuous Monitoring, Security Control Assessments, POA&M Management, Vulnerability Management, Incident Response Coordination, Cybersecurity Engineering, Enterprise Security Operations

• Establish and maintain effective communication channels with government stakeholders to proactively identify and resolve programmatic, operational, and technical issues.

• Develop and maintain integrated project schedules, performance metrics, staffing plans, and program roadmaps to drive delivery excellence and customer satisfaction.

• Identify program risks and develop mitigation strategies while ensuring compliance with contractual, regulatory, and organizational requirements.

• Contribute to Guidehouse growth initiatives through thought leadership, proposal support, recruiting, mentoring, and business development activities.

What You Will Need • An ACTIVE and MAINTAINED "SECRET" Federal or DoD security clearance

• US citizenship is required

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, Business Administration, or related field (additional years of relevant experience may be substituted for degree requirements where applicable)

• MINIMUM of 10 (TEN) years of progressive experience leading cybersecurity, risk management, compliance, or information security programs.

• MINIMUM of 5 (FIVE) years of experience managing large federal cybersecurity contracts, programs, or operations.

• Demonstrated experience serving as a Program Manager, Task Order Manager, Engagement Manager, or equivalent leadership role supporting federal government clients.

• Proven experience leading multidisciplinary teams across cybersecurity operations, governance, risk management, compliance, engineering, and security assessment functions.

• Strong understanding of: NIST Risk Management Framework (RMF), FISMA, NIST SP 800 Series, Continuous Monitoring Programs, Security Authorization Processes, Cybersecurity Governance and Risk Management, Enterprise Security Operations, Vulnerability Management, Federal Cybersecurity Compliance Requirements

• Demonstrated success managing client relationships and communicating effectively with executive stakeholders, technical teams, and government leadership.

• Exceptional leadership, organizational, analytical, and communication skills.

• Proven ability to prioritize competing priorities and manage multiple complex workstreams in a dynamic environment.

• DoD 8570/8140 IAM Level III Certification preferred (IAM Level II minimum required); and/or CSSP Manager Certification. Examples include: CISSP, CISM, GSLC, CCISO, CASP+, Other certifications satisfying DoD IAM Level II or III r

Salary insight

The midpoint of this range ($173k) is about 30% above the median disclosed salary for Washington DC roles listed on ForgeApply ($133k across 1,956 jobs).

See full Security Engineer salary data for Washington DC

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this Guidehouse role before you apply.

Tailor my resume for this job

Similar jobs

More like this: Security & Cybersecurity Jobs · Security & Cybersecurity Jobs in Washington DC · Browse all jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)