Senior Cybersecurity Governance & Risk Consultant
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Optomi, in partnership with an enterprise client, is seeking a Senior Cybersecurity Governance & Risk Consultant to help mature and strengthen their enterprise cybersecurity program. The Sr GRC Consultant role is ideal for a seasoned GRC professional who can advise leadership, develop cybersecurity governance, improve organizational security posture, and establish long‑term security standards and best practices.
This role starts as a full time (40 hours per week) 6 month contract on W2 that will extend or convert after that. Benefits like medical, dental and 401K will be offered through Optomi during the contract duration.
Conversion only possible close to the client's office locations:
Charlotte, NC, Hartford, CT, or Short Hills, NJ
Responsibilities
- Develop and enhance enterprise cybersecurity governance processes.
- Create and maintain security policies, standards, and documentation.
- Conduct cybersecurity risk assessments and recommend remediation strategies.
- Evaluate organizational security posture and identify opportunities for improvement.
- Advise executive leadership on cybersecurity governance, risk, and compliance initiatives.
- Review Active Directory security, Group Policy configurations, identity controls, and MFA strategy, providing recommendations to improve security.
- Support compliance initiatives and align security programs with industry frameworks such as NIST, ISO 27001, and CIS Controls.
- Develop strategic cybersecurity roadmaps that improve organizational maturity.
- Partner with technical teams to implement governance and security best practices.
Qualifications
- Extensive experience in Cybersecurity Governance, Risk, and Compliance (GRC) building a program from scratch or building out parts of a program
- Strong background developing enterprise security policies, standards, and governance programs.
- Experience working with One Trust
- Experience performing enterprise security and risk assessments.
- Working knowledge of Active Directory security, Group Policy, identity management, and MFA (preferred)
- Experience supporting regulatory or compliance frameworks such as NIST CSF, NIST 800-53, ISO 27001, CIS Controls, or comparable standards.
- Excellent communication skills with experience presenting to executive leadership.
- Ability to translate technical security concepts into business‑focused recommendations.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).