Talent.com
Governance, Risk, and Compliance Lead (GRC)
Governance, Risk, and Compliance Lead (GRC)Mach Industries • Huntington Beach, California, USA
Governance, Risk, and Compliance Lead (GRC)

Governance, Risk, and Compliance Lead (GRC)

Mach Industries • Huntington Beach, California, USA
[job_card.variable_hours_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

About Mach Industries

Founded in 2022 Mach Industries is a rapidly growing defense technology company focused on developing next-generation autonomous defense platforms . At the core of our mission is the commitment to delivering scalable decentralized defense systems that enhance the strategic capabilities of the United States and its allies. With a workforce of approximately 180 employees we operate with startup agility and ambition.

Our vision is to redefine the future of warfare through cutting-edge manufacturing innovation at speed and unwavering focus on national security. We are dedicated to solving the next generation of warfare with lethal systems that deter kinetic conflict and protect global security.

The Role

Were seeking a Governance Risk and Compliance Lead (GRC) to own our security and compliance initiatives across the organization. This role will drive the execution of key certifications such as CMMC ISO 27001 and other industry-related standards ensuring readiness through audit prep documentation and cross-functional coordination.

The ideal candidate has a background in cybersecurity cyber assurance or software engineering with deep expertise in security compliance. The GRC Lead develops and enforces governance policies conducts risk assessments manages the organizations System Security Plan (SSP) and Plan of Action and Milestones (POA&M) and leads efforts to achieve and maintain CMMC certification. This role is critical in safeguarding the companys systems and data. They will also monitor internal controls track remediation efforts and help align teams with regulatory and contractual requirements. Ideal candidates have a strong understanding of compliance frameworks excellent communication skills and experience managing audits in fast-paced environments.

Key Responsibilities

Develop and maintain System Security Plans (SSPs) and supporting documentation aligned with NIST 800-171 and CMMC practices.

Conduct regular security control assessments perform gap analyses and update Plans of Action and Milestones (POA&Ms).

Lead audit preparation execution and remediation efforts for certifications such as CMMC ISO 27001 and other industry-aligned standards.

Collaborate with cross-functional teams (Security IT Legal Engineering) to implement and track control requirements.

Monitor regulatory obligations and maintain audit readiness through continuous assessment and documentation.

Collaborate with engineering and manufacturing teams to establish and enforce secure handling and operational processes.

Recommend remediation strategy track remediation efforts and collaborate closely with IT DevOps and business teams.

Conduct comprehensive cybersecurity audits to ensure compliance with CMMC DFARS 7012 NIST 800-171 STIG and other relevant regulations.

Analyze and assess various data types including Controlled Unclassified Information (CUI) Controlled Technical Information (CTI) Federal Contract Information (FCI) International Traffic in Arms Regulations (ITAR) and Export Administration Regulation (EAR99).

Support the development and rollout of security awareness training to ensure users understand responsibilities and best practices.

Ensure training completion and maintain accurate compliance records; other duties as assigned.

Required Qualifications

710 years of cybersecurity risk compliance audit or GRC program experience.

Experience managing or contributing to ISO 27001 NIST 800-171 DFARS 1017 or STIGs.

Extensive knowledge of multiple federal government network security processes and procedure

Technical background with understanding or hands-on experience in Information Technology environments and web technologies.

Proven track record building testing and delivering production-grade embedded and / or Linux-based systems.

Cybersecurity Risk Management or Information Assurance related certifications

Comfortable owning large initiatives end-to-end with minimal oversight.

Eligible to obtain and maintain an active U.S. Secret security clearance.

Preferred Qualifications

Professional certifications such as Security CISSP CISA ISO Lead Auditor or CRISC.

Knowledge of security architectures for embedded aerospace and cyber-physical systems.

Experience with implementing CMMC security controls within Google Workspaces.

Experience in infrastructure-as-code (e.g. Terraform CloudFormation).

Proven track record of leading engineers through complex hands-on work.

Disclosures

This position may require access to information protected under U.S. export control laws and regulations including the Export Administration Regulations (EAR) and the International Traffic in Arms Regulations (ITAR). Please note that any offer for employment may be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations without sponsorship for an export license.

Mach participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.

The salary range for this role is an estimate based on a wide range of compensation factors inclusive of base salary only. Actual salary offers may vary based on (but not limited to) work experience education and training critical skills and business considerations. Highly competitive equity grants are included in most offers and are considered part of Machs total compensation package. Mach offers benefits such as health insurance retirement plans and opportunities for professional development.

Mach is an equal opportunity employer committed to creating a diverse and inclusive workplace. All qualified applicants will be treated with respect and receive equal consideration for employment without regard to race color creed religion sex gender identity sexual orientation national origin disability uniform service Veteran status age or any other protected characteristic per federal state or local law including those with a criminal history in a manner consistent with the requirements of applicable state and local laws. If youd like to defend the American way of life please reach out!

Key Skills

Abinitio,Apprentice,Dermatology,Cost Estimation,Data Networking,Liaison

Employment Type : Full-Time

Department / Functional Area : Legal

Experience : years

Vacancy : 1

Monthly Salary Salary : 120 - 190

[job_alerts.create_a_job]

Lead Governance Risk Compliance • Huntington Beach, California, USA

[internal_linking.related_jobs]
Risk Management HC Professional 3 - Risk Management - FT Days

Risk Management HC Professional 3 - Risk Management - FT Days

University Of California Irvine • Orange, CA, United States
[job_card.full_time]
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus, UCI Medical Center, a 459-bed, acute care hospital in in Ora...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Executive Director, Revenue Cycle - Finance & Value Transformation

Executive Director, Revenue Cycle - Finance & Value Transformation

University of California - Irvine Health • Orange, CA, United States
[job_card.full_time]
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus,. UCI Health Community Network in Orange and Los Angeles count...[show_more]
[last_updated.last_updated_30] • [promoted]
Compliance and Internal Controls Auditor

Compliance and Internal Controls Auditor

Government Jobs • Fullerton, CA, US
[job_card.full_time]
Compliance And Internal Controls Auditor.The Compliance And Internal Controls Auditor is responsible for developing, executing, and overseeing a comprehensive audit program to ensure the organizati...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
FP&A Manager

FP&A Manager

Vaco by Highspring • Santa Ana, California, United States
[job_card.full_time]
The Director / FP&A Manager consultant will serve as a key consultant within the Financial Planning & Analysis team, focusing on. This role requires a hands-on, analytical professional who is highly...[show_more]
[last_updated.last_updated_30] • [promoted]
Resident Director

Resident Director

InsideHigherEd • Orange, California, United States
[job_card.full_time] +1
Fair Labor Standard Act Classification : .Chapman University is required to provide a reasonable estimate of the compensation range for this position. This range takes into account a variety of factor...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Risk Management HC Professional 3 - Risk Management - FT Days

Risk Management HC Professional 3 - Risk Management - FT Days

University of California • Orange, CA, United States
[job_card.full_time]
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus, UCI Medical Center, a 459-bed, acute care hospital in in Ora...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Risk & Fraud Lead

Risk & Fraud Lead

Easyship • Anaheim, CA, US
[job_card.full_time]
Easyship is revolutionizing logistics for eCommerce.With our all-in-one cloud based shipping software, businesses of all shapes and sizes have the tools needed to scale globally.At Easyship we beli...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director of Credit and Collections Strategy

Director of Credit and Collections Strategy

Athens Services • La Puente, CA, United States
[job_card.full_time]
We are seeking a strategic and analytical Director of Credit and Collections Strategy to lead the assessment, development, and evolution of our credit and collections function in alignment with our...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Clinical Risk Manager

Clinical Risk Manager

CareAgents by K&B • Anaheim, CA, US
[job_card.full_time]
The Clinical Risk Manager is a dynamic professional who leverages their extensive risk management expertise to enhance resident safety and reduce the risk of future litigation, improving operationa...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Specialist II Catastrophe Risk Management

Specialist II Catastrophe Risk Management

Marsh McLennan • Norwalk, California, USA
[job_card.full_time]
We are seeking a talented individual to join our Catastrophe Risk Management team at Guy Carpenter.This role will be based in Norwalk CT. This is a hybrid role that has a requirement of working at l...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Interim Risk Manager

Interim Risk Manager

HCT Healthcare Transformation • Anaheim, CA, US
[job_card.temporary]
HCT seeks an experienced nursing professional to serve as the Interim Risk Manager for a 250+ bed hospital in California. The Risk Manager plays an important role in developing and implementing Risk...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Specialist Series Pool Ad

Specialist Series Pool Ad

University of California - Irvine • Orange, CA, United States
[job_card.full_time]
A reasonable estimate for this position is $55,000-$194,800.See table Specialist Series - Exempt.Friday, Nov 7, 2025 at 11 : 59pm (Pacific Time). Applications received after this date will be reviewed...[show_more]
[last_updated.last_updated_30] • [promoted]
Risk Management HC Professional 3 - Risk Management - FT Days

Risk Management HC Professional 3 - Risk Management - FT Days

University of California - Irvine Health • Orange, CA, United States
[job_card.full_time]
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus,. UCI Health Community Network in Orange and Los Angeles count...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Schwab Wealth Advisory, Regional Leader

Schwab Wealth Advisory, Regional Leader

Charles Schwab • Newport Beach, CA, US
[job_card.full_time]
Position Type : Regular Your opportunity Your Opportunity : Investor Advice Solutions consists of Schwab Wealth Advisory (SWA), and SWA Centralized Service & Operations. Schwab Wealth Advisory is a pr...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Healthcare Process Risk Senior Associate (Internal Audit)

Healthcare Process Risk Senior Associate (Internal Audit)

Grant Thornton LLP • Newport Coast, CA, US
[job_card.full_time]
Focus on the core content of the job post, removing all extra metadata, navigation mentions, and redundant headers.Keep the formatting beautiful and high signal to noise ratio.Remove all emojis, sp...[show_more]
[last_updated.last_updated_30] • [promoted]
Director, Credit Strategy

Director, Credit Strategy

Mogo Finance Technology • Anaheim, CA, US
[job_card.full_time]
Location : Remote (Canada) Department : Risk & Decision Science Base Salary for this role : $140,000 - $170,000 CAD.As Director of Credit Risk, you will play a critical role in shaping and leading Mog...[show_more]
[last_updated.last_updated_30] • [promoted]
Model Risk Governance Analyst

Model Risk Governance Analyst

Cathay Bank - Headquarters • El Monte, CA, United States
[job_card.full_time]
Are you enthusiastic, highly motivated, and have a strong work ethic? If yes, come join our team! At Cathay Bank - we strive to provide a caring culture that supports your aspirations and success....[show_more]
[last_updated.last_updated_30] • [promoted]
CDM Lead / PM

CDM Lead / PM

GovCIO • Anaheim, CA, US
[job_card.full_time]
GovCIO is currently hiring for CDM Lead / PM for our NIH Cybersecurity Operations Services proposal.Directs all phases of programs from inception through completion. Responsible for the cost, schedule...[show_more]
[last_updated.last_updated_30] • [promoted]