Job Requirements
Washington, DC
DoE Q or L Polygraph Unspecified
Career Level not specified
$160,000 - $170,000
Job Description
Tyto Athene is searching for a Cybersecurity GRC Manager to lead our ISSO team's compliance and risk management function. This is a critical mid-level leadership role responsible for maintaining posture but architecting a cultural shift within our security delivery pipeline. The ideal candidate excels at stabilizing programs, and can lead a cultural reset across teams, processes, technologies, and client relationships.
The GRC Manager will serve as the principal architect of our compliance, risk, and governance ecosystem , responsible for restoring discipline, transparency, and delivery excellence across all federal engagements.
This role has full authority to establish a culture of accountability and trust. You will be the face of GRC to federal clients, auditors, and internal leadership.
Responsibilities:
Qualifications
Required:
Desired:
Clearance:
About Tyto Athene
Compensation:
Benefits:
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.
At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?
Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
The GRC Manager will serve as the principal architect of our compliance, risk, and governance ecosystem , responsible for restoring discipline, transparency, and delivery excellence across all federal engagements.
This role has full authority to establish a culture of accountability and trust. You will be the face of GRC to federal clients, auditors, and internal leadership.
Responsibilities:
- Organizational Transformation: Lead a complete modernization of existing GRC processes; identify process gaps, eliminate inefficiencies, and implement quality standards for all deliverables.
- Team Leadership : Assess current capabilities, restructure roles, identify required resources, and establish a high‑performance culture.
- Client Trust: Act as the primary interface for federal stakeholders, including ISSOs, Systems Owners (SOs) and Authorizing Officials (AOs), to enhance confidence in our ability to manage the system authorization lifecycle.
- End-to-End Service Delivery: Direct all aspects of the NIST Risk Management Framework (RMF) from categorization and control selection to continuous monitoring ensuring 100% compliance with FIPS 199 H/M/L and FedRAMP standards. Possesses technical acumen and process familiarity to effectively perform ISSO tasks as needed.
- Audit Lifecycle Management: Manage the full audit lifecycle, including remediating legacy findings and leading interactions with Third-Party Assessors.
- Team Rebuilding & Mentorship: Hire, mentor, and oversee a team of GRC analysts, fostering a culture of accountability and deep technical competence.
- Integrated Risk Management: Align GRC activities with product development lifecycles, ensuring security is "built-in" and not "bolted-on".
- Executive Reporting : Deliver concise, actionable risk and compliance insights to senior leadership.
Qualifications
Required:
- Federal Expertise: 8+ years of experience in Federal GRC, with deep mastery of NIST SP 800-53, NIST 800-37 (RMF), and FedRAMP.
- Proven Leadership: Extensive experience leading team turnarounds and developing standard operating procedures (SOPs) in a high-growth environment.
- Technical Writing: Mastery in developing authorization packages, including SSPs, SARs, and POA&Ms.
- Strong communication skills with federal clients, auditors, and executives.
- Ability to operate with urgency, clarity, and authority in high‑pressure environments
- Certifications: CISM, CISA, CGRC
- Experience utilizing GRC platforms (ServiceNow, etc.)
Desired:
- Experience implementing automation within GRC tools to reduce manual audit prep and increase efficiency (StackArmor, Splunk, etc.)
- Deep understanding of cloud architectures (AWS, Azure, or GCP) within regulated GovCloud environments.
- Certifications: CISSP, PMP, CRISC
Clearance:
- Must possess an active Public Trust clearance.
About Tyto Athene
Compensation:
- Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $160,000-$170,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
Benefits:
- Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.
At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?
Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
group id: 91085617