Senior Governance, Risk, and Compliance

1 week ago


Washington, Washington, D.C., United States Spire Full time
About the Role

We are seeking a highly skilled Governance, Risk, and Compliance (GRC) Engineer to join our team at Spire. As a GRC Engineer, you will play a crucial role in ensuring our compliance with various regulations and standards, including Export Administration Regulations (EAR), International Trafficking in Arms Regulations (ITAR), ISO 27001, and NIST.

Key Responsibilities
  • Conduct thorough assessments and audits to ensure continued compliance with EAR/ITAR, ISO 27001, NIST, and any additional future security frameworks or contractual security requirements.
  • Operate Spire's Information Security Management System by outlining projects, executing workflows, and coordinating tasks with other teams as needed.
  • Design, implement, and manage GRC tools and technologies to streamline processes for risk assessment, compliance monitoring, and incident management, including development of automation tools and automating auditing tasks.
  • Develop and implement GRC and cybersecurity strategies and policies in line with regulatory and certification requirements.
  • Provide guidance and training to staff on compliance matters related to export controls and security standards.
  • Collaborate with cross-functional teams to address compliance issues and develop corrective action plans.
  • Work with Spire's Legal department to incorporate new legislative requirements into existing policies and procedures.
  • Monitor applicable cybersecurity regulations for changes and incorporate new requirements into existing policies and procedures.
  • Generate new documentation and maintain existing documentation such as stakeholder analyses, scope statements, risk assessment and treatment procedures, performance monitoring and measurement plans, etc.
  • Conduct risk assessments and develop risk mitigation strategies.
  • Prepare and submit compliance reports to regulatory agencies and internal stakeholders, including NIST SSPs and POAMs.
  • Participate in external and internal audits including gathering audit evidence both directly and indirectly through coordination with other teams.
Qualifications
  • Bachelor's degree in Information Security, Cyber Security, Computer Science, Computer Engineering, Software Development, or a related field, or equivalent experience in a relevant area.
  • Minimum of 3-5 years of hands-on technical experience in an IT, engineering, GRC, or security role, preferably in the aerospace, satellite, or Government industries.
  • In-depth knowledge of EAR, ITAR, ISO 27001, NIST, and NIST.
  • Professional certifications such as CISSP, CISA, CRISC, or similar are highly desirable.
  • Ability to automate security control, compliance, and configuration audits utilizing scripting languages such as bash, Python, Go, or similar.
  • Experience implementing and managing GRC tools and technologies, such as GRC platforms, SIEM solutions, and vulnerability management systems.
  • Experience reviewing risk analyses, drafting corrective action plans, and driving the risk treatment process.
  • Relevant experience working and communicating with internal and external systems and process auditors.
  • In-depth knowledge of security framework controls as they apply to public cloud (AWS preferred), hybrid, self-hosted, and SaaS environments.
  • Ability to transform and communicate organizational compliance requirements into internal engineering requirements for various teams including engineering and security.
  • Ability to partner with colleagues, independently manage and run complex projects, and prioritize efforts for risk reduction.
  • Excellent analytical and problem-solving skills.
  • Develop clear and concise written content.
  • Excellent project and task management skills, preferably using Jira.
  • Strong communication and interpersonal abilities.
  • Ability to work independently and as part of a team.
About Spire

We improve life on Earth with data from space.

Spire Global is a space-to-cloud analytics company that owns and operates the largest multi-purpose constellation of satellites. Its proprietary data and algorithms provide the most advanced maritime, aviation, and weather tracking in the world. In addition to its constellation, Spire's data infrastructure includes a global ground station network and 24/7 operations that provide real-time global coverage of every point on Earth.

Spire is Global and our success draws upon the diverse viewpoints, skills, and experiences of our employees. We are proud to be an equal opportunity employer and are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender identity, or veteran status.



  • Washington, Washington, D.C., United States Washington Metropolitan Area Transit Authority Full time

    General Hybrid Work Statement: This opportunity is a hybrid opportunity allowing for flexibility between virtual and in-person work subject to the Authority's telework policy. Marketing Statement: Audit and Compliances mandate is to provide independent and objective internal auditing, risk assurance and risk advisory services to Metro management that add...


  • Washington, Washington, D.C., United States Capgemini Government Solutions Full time

    Capgemini Government Solutions (CGS) LLC is seeking a highly motivated Senior Security Compliance Analyst/ISSO to join our team in the Washington, D.C. metro to support our government clients.The Senior Security Compliance Analyst/ISSO is a multifaceted role that collaborates with other teams across the business.This role requires a Security Compliance...


  • Washington, Washington, D.C., United States Block Full time

    Company DescriptionBlock is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams - People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more - provide support and guidance at the corporate level. They work across business groups...


  • Washington, Washington, D.C., United States Convergenz Full time

    We are looking for an accomplished and driven IT Security Governance, Risk, and Compliance (GRC) Project Manager to oversee our GRC initiatives. The successful candidate will collaborate with federal clients and internal teams to ensure robust governance, risk management, and compliance across all IT projects and services. This position demands a strategic...


  • Washington, Washington, D.C., United States Convergenz Full time

    We are looking for an accomplished and driven IT Security Governance, Risk, and Compliance (GRC) Project Manager to oversee our initiatives in this critical area. The successful candidate will spearhead GRC projects, collaborating with federal clients and internal stakeholders to ensure robust governance, risk management, and compliance across all IT...


  • Washington, Washington, D.C., United States Convergenz Full time

    We are looking for a proficient and driven IT Security Governance, Risk, and Compliance (GRC) Project Manager to oversee critical GRC initiatives. The successful candidate will collaborate with federal clients and internal stakeholders to ensure robust governance, risk management, and compliance across all IT endeavors. This position demands a strategic...


  • Washington, Washington, D.C., United States Action Against Hunger Full time

    Job SummaryAction Against Hunger is seeking a highly skilled and experienced Associate Director – Compliance and Risk Management to join our team. As a key member of our organization, you will be responsible for designing, implementing, and overseeing our Compliance and Risk program, ensuring that we maintain the highest standards of integrity and...


  • Washington, Washington, D.C., United States Cherokee Nation Businesses LLC Full time

    Position Overview:* *Must possess an active Secret Clearance**Senior Compliance Specialist - Washington, DCCompensation:$177,251.41(Salary based on experience)Role Summary:The Senior Compliance Specialist is responsible for strategizing and executing compliance initiatives, resolving conflicts, collaborating with team members, and independently interpreting...


  • Washington, Washington, D.C., United States Export-Import Bank Of The United States Full time

    Please Note: Employees will be required to report to their assigned office location at least 2 day per week for non-supervisory positions and 3 days per week for supervisory/managerial positions unless the position advertised is designated as a remote-only position.The Office of Compliance (OC) is responsible for illicit finance compliance, EXIM Charter...


  • Washington, Washington, D.C., United States Cognizant Full time

    About Cognizant's Cloud, Infrastructure, and Security Services PracticeCognizant's Cloud, Infrastructure, and Security Services Practice is dedicated to driving digital transformation by modernizing infrastructure and workplaces to meet the evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the RoleWe are seeking a highly skilled Senior Risk Management Specialist to join our team at Booz Allen Hamilton. As a key member of our program management team, you will be responsible for identifying, analyzing, and mitigating risks associated with complex programs and projects.Key ResponsibilitiesDevelop and implement risk management strategies to...


  • Washington, Washington, D.C., United States Strategic Resolution Experts (SRE) Full time

    Senior Staff AccountantStrategic Resolution Experts (SRE) is in search of a proficient Senior Staff Accountant to enhance our financial team and oversee the accounting operations of the organization. The ideal candidate should possess a robust background in comprehensive Government contracting and demonstrate expertise in job cost accounting. Candidates with...


  • Washington, Washington, D.C., United States Simple Technology Solutions Full time

    Job Description**About Simple Technology Solutions**We are a forward-thinking company that values innovation, employee-centricity, and collaboration. Our team of experts delivers remarkable solutions to our Federal Government clients, leveraging our in-depth experience in Agile Software Development, DevOps, and Cloud Migration.**Our Mission**We strive to...


  • Washington, Washington, D.C., United States TestPros Full time

    Job OverviewCompany OverviewTestPros is a well-established and expanding organization, founded in 1988, dedicated to providing Information Technology (IT) technical support services to a diverse array of Commercial and U.S. Federal, State, and Local Government clients. Our expertise encompasses Program Management, Oversight, Process Auditing, Intelligence...


  • Washington, Washington, D.C., United States DCG Communications Full time

    Job DescriptionDCG Communications is a leading strategic communications, research, and marketing firm dedicated to promoting awareness, engagement, and support for federal policies and programs. With over a decade of experience delivering innovative solutions across the federal government, our focus is on delivering comprehensive communications services...


  • Washington, Washington, D.C., United States TEKsystems Full time

    Position Overview:We are looking for a Cyber Risk Manager to join our team at TEKsystems. This role is fully remote, with occasional office visits required.Key Qualifications:The ideal candidate must possess:Hands-on experience in technical security across various Azure services.Certification as a Microsoft Certified: Cybersecurity Architect Expert.In-depth...


  • Washington, Washington, D.C., United States Amentum Full time

    Job SummaryAmentum is seeking a highly skilled Global Risk Management Specialist to join our team as a Foreign Transaction Risk Analyst on the Risk Mitigation and Compliance Monitoring (RMCM) team within the Department of Homeland Security's (DHS) Office of Trade and Economic Security (TES).Key Responsibilities:Support the development of risk mitigation...


  • Washington, Washington, D.C., United States Fannie Mae Full time

    Job OverviewCompany OverviewAt Fannie Mae, we are dedicated to shaping the future of housing finance. Our mission is to provide opportunities for millions of homeowners and renters, and we pride ourselves on fostering an inclusive and dynamic work environment where innovation thrives.Position SummaryAs a key member of our Compliance and Ethics team, you will...


  • Washington, Washington, D.C., United States Dexis Consulting Group Full time

    Position OverviewDexis Consulting Group is a leading professional services firm dedicated to addressing significant social challenges in intricate environments, fostering a more secure and prosperous global community.We prioritize diversity, equity, and inclusion, striving to cultivate a safe workplace that honors diverse backgrounds and treats every...

  • Corporate Counsel

    2 weeks ago


    Washington, Washington, D.C., United States RAND Corporation Full time

    Position Overview The RAND Corporation is in search of a dedicated and skilled attorney to join our Office of the General Counsel (OGC) as an Assistant General Counsel, specializing in Government Contracting and Business Agreements. This position reports directly to the Vice President, General Counsel, and Corporate Secretary. Key Qualifications The ideal...