Emergent
Other - United States
View Company Profile /
<< Go Back
Emergent, LLC is seeking an experienced Cyber Security \& GRC Engineer to lead and mature an enterprise-wide cybersecurity, governance, risk, and compliance program. This senior-level role involves developing a unified security and compliance framework while engaging with stakeholders and managing risks across multiple organizations.Responsibilities:Own and mature the enterprise cybersecurity and risk management program across a multi-entity organizationDesign, implement, and maintain a harmonized control framework supporting NIST CSF 2.0, GDPR, and SOX ITGC requirementsLead enterprise governance activities, including risk reviews, KPI/KRI reporting, executive reporting, and steering committee meetingsServe as the primary liaison for auditors, assessors, clients, and internal stakeholders regarding security and compliance mattersAdminister and optimize Vanta as the enterprise GRC system of recordConfigure controls, integrations, tests, evidence collection, continuous monitoring, and audit workflows within VantaDevelop, maintain, and manage enterprise security policies, standards, procedures, exceptions, and policy lifecycle processesLead SOX ITGC readiness and compliance effortsOperationalize GDPR requirements, including records of processing, DPIAs, data subject rights management, vendor oversight, and breach responseConduct NIST CSF 2.0 assessments, maturity reviews, gap analyses, and remediation planningManage enterprise risk assessments, risk registers, third-party vendor risk programs, and remediation initiativesOversee vulnerability management, patch coordination, access reviews, and technical security controls across cloud and on-premises environmentsLead incident response activities, including preparation, detection, containment, recovery, and post-incident reviewsProvide security architecture guidance for new systems, integrations, cloud solutions, and data platformsBuild and manage security awareness, phishing simulation, and employee training programsPartner with business and project teams to ensure security and privacy requirements are incorporated into solution designRequirements:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or equivalent experience7 years of information security, cybersecurity, or risk management experience with progression into senior program ownership responsibilitiesHands-on experience administering a GRC platform, preferably VantaExperience implementing, operating, or auditing against NIST CSF, SOX ITGC, and GDPR requirementsDemonstrated success developing and implementing security policies, controls, and governance programsOne or more of the following certifications: CISSP, CISM, CRISC, or CISAStrong technical knowledge of cloud security, identity and access management, endpoint security, vulnerability management, logging, and security operationsExcellent communication skills with the ability to engage technical teams, business leaders, auditors, and executivesProven ability to work independently, manage multiple priorities, and drive accountability across stakeholdersDirect Vanta administration experienceExperience supporting a publicly traded company and SOX Section 404 compliance requirementsExperience leading security programs across multiple organizations or business entitiesISO 27001 Lead Implementer or Lead Auditor certificationSANS/GIAC certificationsConstruction, engineering, energy, power generation, or EPC industry experienceFamiliarity with AI/ML governance, data security, and secure AI deployment practices
© 2026 engineeringjobs.net, Inc. All Rights Reserved.
Terms of Service | Privacy
Powered by JOBBEX