Loenbro Logo

Loenbro

Governance, Risk & Compliance (GRC) Manager

Posted 10 Hours Ago
Remote
Hiring Remotely in USA
165K-165K Annually
Expert/Leader
Remote
Hiring Remotely in USA
165K-165K Annually
Expert/Leader
Leads and matures governance, risk, compliance, and audit programs, with primary ownership of CMMC Level 2, SOC, and SOX ITGC initiatives. Conducts risk assessments, gap analyses, remediation planning, policy development, and audit readiness activities. Partners with business, technology, executives, auditors, and assessors to align security controls with regulatory, contractual, and business requirements. This hands-on remote role may require occasional travel.
The summary above was generated by AI


 

Job Title: Governance, Risk & Compliance Manager

Company: Loenbro, LLC - IT

Business Unit/Department: Information Technology

Location: Remote

Reports to: Senior Director of Information Security

Employment Type: Full-Time

FLSA Classification: Exempt

About Loenbro

Loenbro is a trusted, long-term construction lifecycle partner to thousands of customers across the U.S. Our market spans all industries, and our service offerings include Critical Electrical, Mechanical & Structural, Soft Crafts, Inspection, Underground Maintenance and Installation, and Fabrication. Our expertise lies in simplifying the complex and establishing long-standing relationships with our partners. We have a national presence but a local approach—every customer benefits from our capabilities and our care.


At Loenbro, we don’t just offer jobs—we build careers grounded in integrity, teamwork, excellence, and purpose. Join a team where your expertise is valued, your growth is supported, and your work helps maintain and enhance the critical infrastructure that powers communities across the nation.

Job Summary
The Governance, Risk & Compliance (GRC) Manager is responsible for leading and maturing the organization's governance, risk management, compliance, and audit programs. This role serves as the primary owner for cybersecurity compliance initiatives, including CMMC Level 2, SOC audits, and SOX IT General Controls (ITGC). The GRC Manager will partner with business, technology, and executive stakeholders to ensure security controls, policies, and compliance activities align with regulatory, contractual, and business requirements while supporting organizational risk management and audit readiness. This will be a hands on role.


Minimum Qualifications

  • 10+ years of experience in Governance, Risk & Compliance (GRC), Information Security, Risk Management, or related cybersecurity functions.
  • 3+ years of leadership, management, or program ownership experience.
  • Required: Direct experience leading or supporting CMMC Level 2 compliance programs.
  • Required: Hands-on experience managing SOC 1 and/or SOC 2 audits.
  • Required: Experience supporting SOX compliance and IT General Controls (ITGC) testing and remediation.
  • Strong understanding of NIST SP 800-171 requirements and cybersecurity control frameworks.
  • Experience conducting risk assessments, compliance gap analyses, and remediation planning.
  • Experience working with external auditors, assessors, and regulatory stakeholders.
  • Experience developing and maintaining security policies, standards, and governance documentation.
  • Strong communication, project management, and stakeholder management skills.
  • Preferred certifications: CISSP, CISM, CRISC, CISA, CIA, or CGRC.
  • Experience in a Defense Industrial Base (DIB) or regulated environment is highly preferred.

Physical Demands and Work Environment

The physical demands and work environment described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

 

Work Environment:

  • Remote/Home Office: Primarily remote work requiring regular use of computers, virtual collaboration tools, and business applications.
  • Collaboration: Regular interaction with HR, IT, Business Systems, application vendors, and business stakeholders through virtual meetings and communication platforms.
  • Travel: Occasional travel may be required for company meetings, training, project activities, or other business needs.

This role requires compliance with all applicable safety regulations, personal protective equipment (PPE) requirements, and Loenbro's Environmental Health and Safety (EH&S) policies.


Benefits

Loenbro offers a competitive salary, comprehensive benefits package, and rewards to those who join our team:

  • Medical, dental, and vision insurance
  • 401(k) retirement plan with company match
  • Paid time off (PTO) and holiday pay
  • Life and disability insurance
  • Professional development and training opportunities
  • Employee assistance program (EAP)

Benefits eligibility may vary based on employment classification and hours worked.

Guided by Core Values (LEAD), grounded in grit and a commitment to excellence, Loenbro betters our families, customers, and local communities.  If you’re ready to be part of a company that LEADS by:

  • Living with Integrity
  • Exceeding Expectations
  • Acting with Urgency
  • Delivering Excellence

…we want to hear from you.


Loenbro is an Equal Opportunity Employer

Colorado Pay Range
$165,000—$165,000 USD

Similar Jobs

21 Days Ago
Remote
United States
115K-140K Annually
Senior level
115K-140K Annually
Senior level
eCommerce • Manufacturing
Own end-to-end remediation projects addressing SOC 2, ITGC, security, privacy, AI governance, and regulatory requirements. Coordinate cross-functional stakeholders, translate compliance requirements into technical work, manage risks and dependencies, track risk treatment plans, and report progress to executives. Support annual risk assessments, auditor coordination, GRC tooling, dashboards, and process improvements across concurrent projects.
Top Skills: AgileAPIsCloud InfrastructureGrc/Irm PlatformsItgcJIRAMs ProjectOptroSoc 2Software Development LifecycleWaterfall
30 Minutes Ago
Remote
USA
125K-220K Annually
Senior level
125K-220K Annually
Senior level
Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Lead Runpod’s security organization and own the security posture of its cloud platform, infrastructure, and corporate environments. Responsibilities include security strategy, cloud and application security, SecOps, GRC, compliance certifications, secure software development, threat modeling, vulnerability management, incident response, vendor risk, security automation, and infrastructure security. Build and mentor a distributed security team while partnering with Engineering, Infrastructure, Product, GTM, and Legal to protect customer AI workloads and support scalable growth.
Top Skills: Ci/CdCloud InfrastructureGpu ClustersHipaaIamIso 27001KubernetesLinuxNetworkingSoc 2VirtualizationZero-Trust Architecture
36 Minutes Ago
Remote
USA
223K-279K Annually
Junior
223K-279K Annually
Junior
Consumer Web • Healthtech • Professional Services • Social Impact • Software
Build and lead product and application security efforts, partnering with Product and Engineering on secure design, development, code reviews, vulnerability discovery, and security guardrails. Develop AI-native security tooling and support incident response, vulnerability management, penetration testing, and security operations. Help establish secure development practices and scalable security systems across Headway’s platform.
Top Skills: AWSDatadogEcsFargateFastapiGitKafkaLaceworkPagerdutyPostgresPython 3ReactRedisS3SemgrepSnykSparkSqlalchemyTypescript

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account