What are the responsibilities and job description for the Senior GRC Consultant position at Gray Beard Cybersecurity?
Gray Beard Cybersecurity is a leader in cybersecurity, compliance, and IT solutions, specializing in serving government contractors, defense organizations, and highly regulated industries. We help our clients navigate complex security frameworks such as NIST SP 800-53, NIST SP 800-171, and CMMC to ensure compliance and protect critical data.
We go beyond standard compliance consulting by leveraging cutting-edge technology, including AI-driven solutions, to streamline cybersecurity and risk management processes. Our team is composed of industry experts, many of whom have military and government experience, allowing us to offer unparalleled insight and tailored security solutions. If you’re passionate about cybersecurity, compliance, and mentoring the next generation of professionals, we’d love to have you on our team.
Position Overview
We are seeking a Senior Governance, Risk, and Compliance (GRC) Consultant with extensive experience in government cybersecurity frameworks. This role is critical in ensuring our clients achieve and maintain compliance with federal security requirements, including NIST SP 800-53, NIST SP 800-171, and CMMC.
In addition to leading compliance efforts, this role will be responsible for mentoring and training junior consultants, reviewing their work, and ensuring high-quality deliverables. The ideal candidate will have hands-on experience conducting audits, developing security policies, and guiding organizations through complex security assessments.
This position will also contribute to training a Large Language Model (LLM) to assist with compliance documentation and reporting. By providing expert feedback and refining AI-generated content, the Senior GRC Consultant will help enhance automation and efficiency in compliance workflows.
Key Responsibilities
• Compliance & Risk Management: Lead compliance engagements for government and defense contractors, ensuring adherence to NIST SP 800-53, NIST SP 800-171, DFARS, and other federal regulations.
• Audit Preparation & Documentation: Develop and review key compliance documents such as System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), and Risk Assessments.
• Mentorship & Training: Guide junior consultants, review their work products, and help develop their skills in cybersecurity compliance.
• Quality Assurance: Ensure all deliverables meet high standards of accuracy, completeness, and compliance requirements.
• AI-Driven Compliance Support: Assist in training an LLM to improve automation in compliance documentation, refining AI-generated security policies, reports, and audit findings.
• Policy Development & Advisory: Create and update security policies and best practices tailored to client needs.
• Client Engagement: Work directly with clients to assess their security posture, recommend improvements, and support them through audits and assessments.
Qualifications
• Experience: 5 years in cybersecurity, GRC consulting, or government compliance, with a strong focus on NIST frameworks.
• Technical Knowledge: Deep understanding of NIST SP 800-53, NIST SP 800-171, DFARS, FAR, and CMMC compliance requirements.
• Leadership & Mentorship: Experience training and mentoring junior consultants, with strong attention to reviewing work products.
• Audit & Risk Management: Hands-on experience conducting security assessments, preparing for audits, and addressing compliance gaps.
• Military Background (Highly Preferred): Prior experience in cybersecurity, IT, or compliance within military or government settings.
Preferred Certifications
• CISSP (Certified Information Systems Security Professional)
• CISM (Certified Information Security Manager)
• CISA (Certified Information Systems Auditor)
• CyberAB CP (Certified Professional) or CyberAB CA (Certified Assessor)
Geographic Work Eligibility:
This position requires candidates to be based in or able to perform work within the 50 United States and Washington, D.C. (District of Columbia). Exceptions for U.S. territories may be considered on a case-by-case basis.
Additional Requirements
• U.S. Citizenship Required (due to federal contract requirements).
• Must pass a background check and drug screening.