Talent.com
Infosec Engineering & GRC Manager
Infosec Engineering & GRC ManagerSlingshot Aerospace • Colorado Springs, CO, United States
Infosec Engineering & GRC Manager

Infosec Engineering & GRC Manager

Slingshot Aerospace • Colorado Springs, CO, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Position Summary

Slingshot Aerospace is seeking a hands-on, technical engineer focused on Information Security & GRC Manager to protect the systems, cloud infrastructure, data, and intellectual property that power our mission to make space safer, smarter, and more connected. This role blends information security engineering, platform and systems ownership, cloud and identity architecture, and governance, risk, and compliance (GRC) while partnering closely with IT and Engineering on day-to-day operations. You will serve as the senior technical escalation point for Information Security and IT, own and operate core security platforms, strengthen Zero Trust and identity controls, lead incident response, drive automation, maintain continuous audit readiness, and lead Slingshot's security awareness training program.

Information Security Engineering & IT Partnership

  • Act as the senior escalation point for Information Security, GRC, and IT across identity, endpoint, network, cloud, and SaaS ecosystems.
  • Partner with IT on joiner / mover / leaver (JML) lifecycle operations, secure configurations, patch management, device compliance, and SaaS administration.
  • Lead engineering projects including security platform buildouts, integrations, migrations, and modernization efforts.
  • Maintain runbooks, SOPs, hardening guides, operational baselines, and technical documentation aligned with CMMC 2.0, NIST 800-171, ISO 27001, SOC 2, and internal governance.
  • Provide security architecture and design guidance to Engineering, Product, Data, and Operations teams.
  • Deliver regular security metrics, risk posture reporting, and compliance status updates to leadership and customers.

Platform Ownership & Zero Trust Architecture

  • Manage and secure Azure, Microsoft 365, Entra ID, Conditional Access, Intune, Defender, and Purview DLP / Insider Risk.
  • Operate CrowdStrike Falcon (EDR, behavioral detections, OS hardening) and Zscaler ZIA / ZPA (secure web gateway, private access, posture checks, traffic inspection).
  • Oversee VPN / firewall governance, secure remote access, and enterprise browser management platforms.
  • Govern cloud posture using Wiz or similar CSPM / CNAPP tools across AWS and Azure.
  • Use modern vulnerability and configuration management tools across cloud, endpoint, and SaaS environments.
  • Manage identity & SaaS governance including Okta / Entra SSO, RBAC, and access reviews.
  • Manage MDM platforms (Intune, Addigy ) for secure configuration and OS governance.
  • Govern GitHub Enterprise security including SSO, permissions, branch protections, scanning, and CI / CD guardrails.
  • Strengthen Zero Trust across identity, device, network, and cloud.
  • Security Operations & Automation

  • Lead end-to-end incident response including detection, triage, containment, recovery, forensics, and corrective actions.
  • Maintain and refine SIEM / SOAR or equivalent log analytics for high-fidelity alerts and correlation.
  • Build automation using Python, PowerShell, or Go for evidence, monitoring, configuration validation, and remediation.
  • Govern SaaS access, vendor permissions, app approvals, and shadow IT remediation.
  • Support DNS security, certificate lifecycle management, segmentation, and secure remote connectivity.
  • Improve disaster recovery (DR) and business continuity (BCP) through structured testing and validation.
  • Data Security & AI Governance

  • Manage data classification, encryption, retention, access controls, and lifecycle protections across endpoints and cloud / SaaS.
  • Operate Microsoft Purview DLP, information protection, and insider-risk features.
  • Partner with Product, Engineering, Data, and Legal to ensure secure data handling.
  • Support AI governance including model / vendor risk assessments, data sanitization, and secure AI usage patterns.
  • Ensure secure adoption of emerging technologies (AI, automation, analytics).
  • Governance, Risk & Compliance (GRC)

    You will own compliance across CMMC 2.0, NIST 800-171, ISO 27001 and other frameworks as needed : SOC 2, Cyber Essentials Plus, GDPR, and customer-required frameworks. Maintain SSPs, POA&Ms, diagrams, inventories, control mappings, risk assessments, policies, and audit evidence. Use Vanta and Paramify for continuous monitoring and evidence readiness. Maintain submissions and scoring in SPRS and eMASS. Lead vendor and third-party risk management including assessments and supply chain documentation. Partner with Sales, Growth, Legal, and Customer teams for RFIs, RFPs, questionnaires, and assurance activities.

    Security Awareness & Training

  • Own and administer the KnowBe4 program.
  • Deliver role-based and companywide training and simulations.
  • Track participation, behavior trends, and measurable risk reduction.
  • Integrate security training into onboarding and recurring training cycles.
  • Basic Qualifications

  • CISSP certification.
  • 8+ years of experience across Information Security, IT, and GRC.
  • Hands-on experience operating and maturing CMMC 2.0 and NIST 800-171.
  • Strong experience with Azure, M365, Entra ID, Intune, Defender, Purview, AWS, CrowdStrike, Zscaler, and Wiz or similar CSPM / CNAPP.
  • Experience with GitHub Enterprise, SaaS security, enterprise browser management, and MDM (Intune / Addigy).
  • Experience with Vanta / Paramify.
  • Scripting / automation skills in Python, PowerShell, or Go.
  • Strong communication skills across technical and non-technical stakeholders.
  • U.S. citizenship and TS / SCI eligibility required.
  • Preferred Qualifications

  • CMMC Certified Professional (CCP) or ability to obtain.
  • Experience with ISO 27001, SOC 2, GDPR, and Cyber Essentials Plus.
  • Experience with secure SDLC, CI / CD, and DevSecOps.
  • Experience supporting U.K. / E.U. sovereignty requirements.
  • Experience in defense, aerospace, or other regulated environments.
  • Why Slingshot

    Slingshot Aerospace builds technology used for mission-critical decisions in national security, defense, and space operations. As the Infosec Engineering & GRC Manager, you will shape the systems, controls, engineering practices, and compliance frameworks that protect Slingshot's global mission.

    Location, Clearance & Compensation

  • Remote (United States)
  • U.S. citizenship and TS / SCI eligibility required
  • Salary Range : $120,000 - $190,000
  • US-based Candidates : we are currently only able to hire residents of the following U.S. states : AZ, CA, CO, DC, FL, GA, HI, IL, IN, KS, MD, MA, MI, MN, MO, MT, NV, NJ, NM, NY, NC, OR, RI, TN, TX, UT, VT, VA, WA, WV, and WI. We are unable to consider candidates residing in other U.S. states at this time.

    Internationally-based Candidates : we are currently only able to hire residents of the following locations : United Kingdom. We are unable to consider candidates residing in other countries at this time.

    Equity, Diversity & Inclusion are key to our success. We are an Equal Opportunity Employer and our employees are people with different strengths, experiences, and backgrounds, who share a passion for creating a safer, more connected world. Diversity not only includes race and gender identity, but also national origin, citizenship, sex, color, veteran status, disability, genetic information, or any other protected characteristic that is part of one's identity. All of our employees' points of view are key to our success, and we embrace individuality.

    [job_alerts.create_a_job]

    Engineering Manager • Colorado Springs, CO, United States

    [internal_linking.related_jobs]
    Registered Nurse (RN) Case Manager | Home Health

    Registered Nurse (RN) Case Manager | Home Health

    Interim HealthCare • Fountain, CO, US
    [job_card.full_time] +2
    Home Health Registered Nurse (RN) Case Manager.Experience a work culture where nurses are valued, management backs you and you’re empowered to be a patient’s advocate.At Interim HealthC...[show_more]
    [last_updated.last_updated_30] • [promoted]
    2026 Software Integration Engineer Grad Intern

    2026 Software Integration Engineer Grad Intern

    The Aerospace Corporation • Colorado Springs, CO, United States
    [job_card.full_time]
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    New Grad RN- Med Surg Days

    New Grad RN- Med Surg Days

    Wilson Medical Center • Fountain, CO, United States
    [job_card.full_time]
    New Grad RN- Med Surg Days at Wilson Medical Center summary : .This position is for a New Graduate Registered Nurse (RN) specializing in Medical-Surgical care at Wilson Medical Center.The role involv...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Restaurant Delivery - Sign Up and Start Earning

    Restaurant Delivery - Sign Up and Start Earning

    DoorDash • Elizabeth, CO, United States
    [job_card.full_time] +1
    DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Side Hustle Project Lead

    Side Hustle Project Lead

    Finance Buzz • Elizabeth, Colorado, US
    [job_card.full_time] +1
    We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior DevSecOps Integration Engineer

    Senior DevSecOps Integration Engineer

    Slingshot Aerospace • Colorado Springs, CO, United States
    [job_card.full_time]
    As a Senior DevSecOps Integration Engineer, you will manage the cloud security implementation for multiple cloud environments to include AWS, Azure, and classified platforms.You will also be respon...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Product / Manufacturing Engineering Co-Op - SPRING 2026 (Jan-June)

    Product / Manufacturing Engineering Co-Op - SPRING 2026 (Jan-June)

    Entegris • Colorado Springs, CO, United States
    [job_card.full_time]
    Product / Manufacturing Engineering Co-Op - SPRING 2026 (Jan-June).Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking employees who have the...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Infrastructure Engineer, Systems

    Infrastructure Engineer, Systems

    Raft • Colorado Springs, CO, United States
    [job_card.full_time]
    All of the programs we support require.All work must be conducted within the continental U.Distributed Data Systems, Platforms at Scale, and Complex Application Development, with headquarters in Mc...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Warehouse Auditor

    Warehouse Auditor

    Capstone Logistics, LLC • Fountain, CO, US
    [job_card.full_time]
    Shift Available | Monday-Friday schedule.Shift Openings | Monday-Friday schedule.This role is responsible for auditing the quality of incoming loads, ensuring compliance with established standards,...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Leader, Solutions Engineer, Global Enterprise Security

    Leader, Solutions Engineer, Global Enterprise Security

    Cisco Systems, Inc. • Colorado Springs, CO, United States
    [job_card.full_time]
    Location : Territory is Central and West U.We have an exciting opportunity to join our leadership team as a Solutions Engineering Leader within our Global Security Sales Organization! We are searchi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior DevSecOps Product

    Senior DevSecOps Product

    Slingshot Aerospace • Colorado Springs, CO, United States
    [job_card.full_time]
    As a Senior DevSecOps Engineer, you will manage the cloud security implementation for multiple cloud environments to include AWS, Azure, and classified platforms. You will also be responsible for de...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Bank Information Technology Governance Lead

    Bank Information Technology Governance Lead

    USAA • Colorado Springs, Colorado, United States
    [job_card.full_time]
    Why USAA?At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Ground Systems Concept Engineer

    Ground Systems Concept Engineer

    The Aerospace Corporation • Colorado Springs, CO, United States
    [job_card.full_time]
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Digital Innovation Division DataOps Lead

    Digital Innovation Division DataOps Lead

    The Aerospace Corporation • Colorado Springs, CO, United States
    [job_card.full_time]
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Entegris Leadership Development Program - Engineering

    Entegris Leadership Development Program - Engineering

    Entegris • Colorado Springs, CO, United States
    [job_card.permanent]
    Entegris Leadership Development Program - Engineering.Jump start your Engineering Career at Entegris.Our Entegris Leadership Development Program (ELDP) is uniquely designed to provide new to market...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Registered Nurse - Endoscopy (m / w / d)

    Registered Nurse - Endoscopy (m / w / d)

    Wilson Medical Center • Fountain, CO, United States
    [job_card.full_time]
    RN - Endo at Wilson Medical Center summary : .Registered Nurse specializing in Endoscopy providing patient care, plan-of-care interventions, and utilizing advanced technology to improve patient outco...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Remote Side Hustle Developer

    Remote Side Hustle Developer

    Finance Buzz • Elizabeth, Colorado, US
    [filters.remote]
    [job_card.full_time] +1
    This position is for individuals who want to develop a side income stream while still working full time.You will test different small-scale remote opportunities, learn what works, and grow what pro...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Infrastructure Engineer, Hardware

    Senior Infrastructure Engineer, Hardware

    Raft • Colorado Springs, CO, United States
    [job_card.full_time]
    All of the programs we support require.All work must be conducted within the continental U.Distributed Data Systems, Platforms at Scale, and Complex Application Development, with headquarters in Mc...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]