Governance, Risk, and Compliance; GRC Manager
Arlington, Arlington County, Virginia, 22201, USA
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, IT Consultant, Information Security, IT Project Manager
Overview
Iviry, LLC is affiliated with Anglicotech, LLC.
Iviry is seeking an energetic, self-motivated technically proficient Compliance Manager with immediate availability who wants to take ownership of our existing cyber compliance program and take it to the next level. The role blends governance, risk, and compliance (GRC) expertise with hands-on technical implementation and project management execution, enabling the individual to both recommend and execute remediation activities tied to compliance findings.
We’re looking for someone who will thrive in a challenging and rewarding process-oriented operational environment and share our culture of teamwork, collaboration, growth, and dedication to mission. This role will offer ample independent and team-based opportunities for the qualified candidate to exercise their technical cyber/sysadmin skills as well as demonstrate and grow their project management capability. Limited travel may be required.
LocationThis position is a remote position, with a preference for close proximity to Arlington, Virginia.
- A salary range of $90, is available for this position commensurate with education, years of experience, and qualifications.
- Lead compliance assessments and gap analyses against established frameworks, primarily NIST SP 800-171 and CMMC.
- Develop, review, and maintain security policies, standards, procedures, and system security documentation.
- Identify control deficiencies and generate detailed POA&Ms, including root cause analysis, remediation steps, ownership, and timelines.
- Track POA&M progress and provide status reporting to internal stakeholders and customers.
- Perform risk assessments and assist with control selection, tailoring, and implementation guidance.
- Support audit readiness efforts, including evidence collection, control validation, and assessor coordination.
- Provide subject matter expertise to customers on compliance requirements and best practices.
- Assist with compliance roadmaps, maturity planning, and long-term risk reduction strategies.
- Work directly with customers to implement technical and procedural remediation activities tied to POA&M findings.
- Execute security and compliance-related projects such as:
- Identity and access management improvements
- Endpoint security and configuration hardening
- Logging, monitoring, and alerting enhancements
- Secure configuration of Microsoft 365, Entra , Intune, or similar platforms
- Validate implemented controls to ensure compliance objectives are met.
- Provide technical guidance and hands-on support when customers lack internal resources.
- Document implemented solutions and align them with compliance control requirements.
- Must be a U.S. Citizen.
- High School Diploma or equivalent required.
- 3+ years of experience in cybersecurity, GRC, or compliance-focused roles.
- Hands-on experience performing compliance gap analyses and developing POA&Ms.
- Strong working knowledge of at least one major compliance framework (NIST, CMMC, ISO, SOC 2, HIPAA, etc.).
- Ability to translate compliance requirements into practical, technical solutions.
- Experience working directly with customers or stakeholders in advisory or implementation roles.
- Strong documentation, organization, and project coordination skills.
- Experience supporting regulated or government-aligned environments.
- Familiarity with Microsoft security and compliance tooling.
- Experience managing remediation projects or acting as a technical project lead.
- Relevant certifications such as:
- CompTIA Security+, CySA+, CASP+/ SecurityX
- CISM, CRISC, CISSP
- Cyber AB RP/CCA/CCP (if applicable)
- Bachelor's or Master's Degree in Computer Science, Information Technology, Business, Education, Information Security, Information Systems, Engineering, Technical, Management Information Systems, Technology preferred but significant experience in a complex learning environment can be substituted.
- Must be a U.S. Citizen.
- Timeliness and accuracy of work is essential.
- A passion for Information Technology, Security and Compliance.
- Strong understanding of how technical controls map to compliance requirements.
- Abil…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).