Cybersecurity GRC Program Manager
Guidehouse · Arlington, VA · Yesterday
On-siteInformation Technology$130k–$216k/yrFull-time
About the role
The Managing Consultant will serve as the primary contractor Program Manager and authorized interface between Guidehouse, the Contracting Officer's Representative (COR), Government Program Manager (GPM), government stakeholders, and customer agency leadership.
Responsibilities
- Serve as the primary client-facing lead and trusted advisor for the cybersecurity program, managing relationships with executive stakeholders, government leadership, and customer representatives.
- Act as the contractor's authorized representative for all programmatic, operational, technical, staffing, and contractual matters.
- Provide overall leadership, direction, and management of program personnel, subcontractors, and program resources.
- Formulate and enforce work standards, operating procedures, quality control processes, and performance metrics across all contract activities.
- Manage staffing plans, workforce utilization, employee development, performance management, and resource allocation to ensure successful contract execution.
- Plan, organize, prioritize, and oversee multiple cybersecurity initiatives, ensuring delivery of all contract requirements within schedule, scope, quality, and budget constraints.
- Oversee program financial management, including labor forecasting, resource planning, budget monitoring, and contract performance management.
- Lead program governance activities, including executive briefings, status reporting, risk management, issue resolution, and strategic planning discussions with government leadership.
- Review, approve, and ensure quality of all program deliverables, reports, security documentation, and work products prior to submission to the client.
- Cover enterprise cybersecurity planning, authorization, risk management, continuous monitoring, engineering, operations, and incident response activities across multiple stakeholders and technical teams.
- Ensure alignment with federal cybersecurity mandates and frameworks including NIST Risk Management Framework (RMF), FISMA, OMB guidance, CISA directives, Zero Trust initiatives, and agency-specific cybersecurity requirements.
- Lead cross-functional teams supporting: Cybersecurity Governance, Risk Management, Security Authorization (ATO), Continuous Monitoring, Security Control Assessments, POA&M Management, Vulnerability Management, Incident Response Coordination, Cybersecurity Engineering, Enterprise Security Operations.
- Establish and maintain effective communication channels with government stakeholders to proactively identify and resolve programmatic, operational, and technical issues.
- Develop and maintain integrated project schedules, performance metrics, staffing plans, and program roadmaps to drive delivery excellence and customer satisfaction.
- Identify program risks and develop mitigation strategies while ensuring compliance with contractual, regulatory, and organizational requirements.
- Contribute to Guidehouse growth initiatives through thought leadership, proposal support, recruiting, mentoring, and business development activities.
Requirements
- An ACTIVE and MAINTAINED "SECRET" Federal or DoD security clearance.
- US citizenship is required.
- A Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, Business Administration, or related field (additional years of relevant experience may be substituted for degree requirements where applicable).
- A MINIMUM of 10 (TEN) years of progressive experience leading cybersecurity, risk management, compliance, or information security programs.
- A MINIMUM of 5 (FIVE) years of experience managing large federal cybersecurity contracts, programs, or operations.
- Demonstrated experience serving as a Program Manager, Task Order Manager, Engagement Manager, or equivalent leadership role supporting federal government clients.
- Prominent experience leading multidisciplinary teams across cybersecurity operations, governance, risk management, compliance, engineering, and security assessment functions.
- A strong understanding of: NIST Risk Management Framework (RMF), FISMA, NIST SP 800 Series, Continuous Monitoring Programs, Security Authorization Processes, Cybersecurity Governance and Risk Management, Enterprise Security Operations, Vulnerability Management, Federal Cybersecurity Compliance Requirements.
- Exceptional leadership, organizational, analytical, and communication skills.
- Prominent ability to prioritize competing priorities and manage multiple complex workstreams in a dynamic environment.
- DoD 8570/8140 IAM Level III Certification preferred (IAM Level II minimum required); and/or CSSP Manager Certification.
Qualifications
- Master's degree in Cybersecurity, Information Technology, Information Assurance, Public Administration, Business Administration, or related discipline.
- Project Management Professional (PMP) certification.
- Experience supporting Cabinet-level agencies, Department of State, DHS, DoD, or other federal civilian agencies.
- Experience leading large cybersecurity governance and compliance programs exceeding 20+ personnel.
- Experience supporting enterprise cyber modernization, Zero Trust, Continuous Diagnostics and Mitigation (CDM), or Security Operations Center (SOC) initiatives.
- Experience managing hybrid teams consisting of cybersecurity engineers, ISSOs, assessors, analysts, and compliance specialists.
- Familiarity with FedRAMP, CMMC, cloud security governance, and emerging federal cybersecurity mandates.
Skills
- CISSP, CISM, GSLC, CCISO, CASP+, Other certifications satisfying DoD IAM Level II or III requirements.
Benefits
- The annual salary range for this position is $130,000.00-$216,000.00.
- Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
About Guidehouse
Guidehouse is an Equal Opportunity Employer–Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.