Location: Richland, Washington
Title: Manager of Cybersecurity Governance, Risk, and Compliance
Schedule (FT/PT): Regular Full Time
Travel Required: No
Clearance: Ability to Obtain
North Wind Solutions is a Government contracting small business with operations at military and civilian installations across the United States. The company’s focus is on facilities operation and maintenance, waste management and radiological services, security control and force protection, and environmental services.
North Wind Solutions is seeking a Manager of Cybersecurity Governance, Risk, and Compliance (GRC) to lead a critical function within our cybersecurity program. This leadership role is pivotal in ensuring the robust security posture of customer sites by overseeing all aspects of cybersecurity governance, risk management, and compliance with federal mandates and best practices. The successful candidate will be a visionary leader, an exceptional mentor, and a skilled program manager with a deep understanding of the federal cybersecurity landscape. This role is a hybrid work-from-home position. Approximately 50% of work will be remote and 50% will be performed in-person at the office or customer locations in Richland, Washington.
EDUCATION AND EXPERIENCE:
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Management Information Systems, Business Administration, or similar.
- 8+ years of relevant work experience, including:
- 5+ years of progressive experience in cybersecurity
- Management and leadership experience (e.g., manager/supervisor, team lead, project lead, program lead, or similar experiences in a formal or informal leadership capacity)
SKILLS AND ABILITIES:
- In-depth knowledge of federal cybersecurity regulations, frameworks, and guidelines, including but not limited to:
- Federal Information Security Modernization Act (FISMA)
- National Institute of Standards and Technology (NIST) Special Publications (e.g., SP 800-53, SP 800-37, SP 800-30)
- Federal Risk and Authorization Management Program (FedRAMP
- Familiarity with cybersecurity tools and technologies used for GRC activities (e.g., GRC platforms, vulnerability scanners, security information and event management (SIEM) systems).
- Excellent written and verbal communication skills, with the ability to articulate complex technical concepts to diverse audiences.
- Ability to manage multiple priorities and meet deadlines.
SPECIAL REQUIREMENTS:
- Must pass pre-employment background check.
- Must pass pre-employment drug screening.
- Applicants are required to have REAL ID ACT compliant documentation at time of hire and nothing on record that would prohibit you from gaining access to Department of Energy sites.
- In accordance with Homeland Security Presidential Directive 12 (HSPD-12) and Department of Energy (DOE) Order 473.1A, this role is required to obtain and maintain a HSPD-12 Personal Identity Verification (PIV) Credential. To obtain this credential, new employees must successfully complete and pass a federal background check investigation. This investigation encompasses multiple areas of eligibility and includes a declaration of illegal drug activities, including use, supply, possession, or manufacture within the last year. This includes marijuana and cannabis derivatives, which are still considered illegal under federal law, regardless of state laws.
- US citizenship required.
- Must reside within the US; work cannot be performed from outside the US.
- Ability to work approximately 50% remote and 50% in-person at the office and customer locations in Richland, Washington.
PREFERRED QUALIFICATIONS:
- Master’s degree in a relevant field such as Cybersecurity, Information Technology, Computer Science, Management Information Systems, Business Administration, or similar.
- Relevant professional certifications such as CISSP, CISM, CISA, PMP, or similar.
- Experience working at a large federal civilian agency or national laboratory.