user avatar

Cybersecurity GRC Manager

Tyto Athene, LLC

Posted today

Job Requirements

Washington, DC
DoE Q or L Polygraph Unspecified
Career Level not specified
$160,000 - $170,000

Job Description

Tyto Athene is searching for a Cybersecurity GRC Manager to lead our ISSO team's compliance and risk management function. This is a critical mid-level leadership role responsible for maintaining posture but architecting a cultural shift within our security delivery pipeline. The ideal candidate excels at stabilizing programs, and can lead a cultural reset across teams, processes, technologies, and client relationships.

The GRC Manager will serve as the principal architect of our compliance, risk, and governance ecosystem , responsible for restoring discipline, transparency, and delivery excellence across all federal engagements.

This role has full authority to establish a culture of accountability and trust. You will be the face of GRC to federal clients, auditors, and internal leadership.

Responsibilities:
  • Organizational Transformation: Lead a complete modernization of existing GRC processes; identify process gaps, eliminate inefficiencies, and implement quality standards for all deliverables.
  • Team Leadership : Assess current capabilities, restructure roles, identify required resources, and establish a high‑performance culture.
  • Client Trust: Act as the primary interface for federal stakeholders, including ISSOs, Systems Owners (SOs) and Authorizing Officials (AOs), to enhance confidence in our ability to manage the system authorization lifecycle.
  • End-to-End Service Delivery: Direct all aspects of the NIST Risk Management Framework (RMF) from categorization and control selection to continuous monitoring ensuring 100% compliance with FIPS 199 H/M/L and FedRAMP standards. Possesses technical acumen and process familiarity to effectively perform ISSO tasks as needed.
  • Audit Lifecycle Management: Manage the full audit lifecycle, including remediating legacy findings and leading interactions with Third-Party Assessors.
  • Team Rebuilding & Mentorship: Hire, mentor, and oversee a team of GRC analysts, fostering a culture of accountability and deep technical competence.
  • Integrated Risk Management: Align GRC activities with product development lifecycles, ensuring security is "built-in" and not "bolted-on".
  • Executive Reporting : Deliver concise, actionable risk and compliance insights to senior leadership.


Qualifications

Required:
  • Federal Expertise: 8+ years of experience in Federal GRC, with deep mastery of NIST SP 800-53, NIST 800-37 (RMF), and FedRAMP.
  • Proven Leadership: Extensive experience leading team turnarounds and developing standard operating procedures (SOPs) in a high-growth environment.
  • Technical Writing: Mastery in developing authorization packages, including SSPs, SARs, and POA&Ms.
  • Strong communication skills with federal clients, auditors, and executives.
  • Ability to operate with urgency, clarity, and authority in high‑pressure environments
  • Certifications: CISM, CISA, CGRC
  • Experience utilizing GRC platforms (ServiceNow, etc.)

Desired:
  • Experience implementing automation within GRC tools to reduce manual audit prep and increase efficiency (StackArmor, Splunk, etc.)
  • Deep understanding of cloud architectures (AWS, Azure, or GCP) within regulated GovCloud environments.
  • Certifications: CISSP, PMP, CRISC

Clearance:
  • Must possess an active Public Trust clearance.


About Tyto Athene

Compensation:
  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $160,000-$170,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:
  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.


Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.

At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?

Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
group id: 91085617
Find Tyto Athene, LLC on Social Media
Network Employers
user avatar
About Us
At Tyto Athene, we harness the power of technology to provide solutions that shape the future. With over 50 years of experience providing mission-focused digital transformation, our team of experts offers a broad range of expertise in four major technology domains: Network Modernization, Hybrid Cloud, Cyber Security, and Enterprise IT. We connect people with technologies to seamlessly integrate and manage systems to provide the greatest value to Defense, National Security, Space, Intelligence, and Public Safety for the people who matter the most. To learn more about our mission, visit us at: www.gotyto.com
job ad2 image

Tyto Athene, LLC Jobs


Job Category
IT - Security
Clearance Level
DoE Q or L