Demo

Senior Manager Governance, Risk, and Compliance

CACI
National, MD Full Time
POSTED ON 12/12/2025
AVAILABLE BEFORE 2/12/2026

Job Profile:

Information Technology Management M3

JR Type:

Indirect

Job Category:

Information Technology

Minimum Clearance Required to Start:

None

Percentage of Travel Required:

Up to 10%

Type of Travel:

Continental US

Program/Opportunity Name:

Corporate Indirect

Referral Bonus Plan:

$1,000 - Standard

* * *


 

Job Description:


The Opportunity:
CACI Enterprise Services is seeking a Senior Manager of Governance, Risk, and Compliance.  This role is pivotal in ensuring that our organization adheres to stringent regulatory requirements and maintains a robust control environment. You will manage a team of 5 Information Assurance and Compliance Analysts and one Team Lead, driving compliance initiatives while fostering a culture of continuous improvement and risk management.


Responsibilities:

Compliance Management:

  •   Coordinate, facilitate, and supervise compliance and assurance processes, including ISO 27001 internal and external assessments, internal and external IT SOX audits, and third-party compliance assessments for IT-relevant services (including NIST SP800-171 and CMMC).
  • Oversee corporate and program-specific system security plan (SSP) reviews and associated NIST SP800-171a assessments
  • Manage the review and assessment of Outside Service Provider SOC 1 and SOC 2 reports to ensure compliance with contractual obligations and industry standards.
  • Conduct formal reviews of SOC reports, identifying any gaps or areas for improvement and working with service providers to address these issues.
  • Be responsible for responding to cyber attestations solicitations from contracts, ensuring that all required documentation and evidence are provided in a timely and accurate manner.
  • Collaborate with internal teams and external partners to gather necessary information and evidence to support cyber attestations

Remediation and Monitoring:

  •  Monitor remediation and corrective action plans at the Corporate and program enclave level to ensure timely and effective resolution of compliance issues.


Collaboration and Communication:

  •  Communicate and collaborate with IT teams to improve security compliance, manage risk, and enhance the effectiveness of the systems control environment.
  • Build and maintain strong relationships with Internal Audit, Cyber Security, and Risk Management teams at all levels in the organization.
     

Regulatory and Industry Standards:

  • Remain current on IT regulatory requirements (SOX, SEC) and gain exposure to cybersecurity practices (NIST 800.X) and industry regulations (DFARS, CMMC).


Documentation and Communication:

  •  Maintain high standards for internal communication through email, company portals, and management of knowledge base and policy documentation.


Qualifications:

Required: 

  • Bachelor’s degree in Auditing, Management Information Systems, Information Assurance, Cybersecurity, or related area.
  • 5 years of progressive experience in Information Technology Auditing, Consulting, or a related field, with at least 2 years in a managerial role.
  • Experience with CMMC, DFARS 252.204-7012, 7019, 7020, and 7021, ISO 27001, NIST SP800-171a, and/or Sarbanes Oxley (SOX).
  • Proven experience leveraging auditing principles and methods to evaluate policies, processes, and systems to identify risks and control gaps.
  • Experience documenting, understanding, and evaluating IT governance and risk management concepts and IT general controls and practices, such as IT infrastructure, cybersecurity, change management, and application control processes.
  • Experience creating and maintaining policies and procedures.
  • Clear articulation and exceptional written and verbal communication skills.


Desired:

  • CISSP, CIA, CISA, CRISC, or other relevant certifications.
  • Security Clearance
  • Experience in a regulated industry such as Government Contracting.

Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.

The proposed salary range for this position is:

$120,800 - $265,800

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Salary : $120,800 - $265,800

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Manager Governance, Risk, and Compliance?

Sign up to receive alerts about other jobs on the Senior Manager Governance, Risk, and Compliance career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$220,784 - $286,649
Income Estimation: 
$142,209 - $179,056
Income Estimation: 
$177,932 - $225,503
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at CACI

  • CACI Washington, DC
  • Job Profile: Product Support Analysis T4 JR Type: Conditional Job Category: Logistics Minimum Clearance Required to Start: Secret Percentage of Travel Requ... more
  • 14 Days Ago

  • CACI Washington, DC
  • Job Profile: Software Development T1 JR Type: Conditional Job Category: Information Technology Minimum Clearance Required to Start: Secret Percentage of Tr... more
  • 14 Days Ago

  • CACI Fort Washington, MD
  • Technical Security Education Curriculum (TSCM) Instructor Job Category: Training Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Poly... more
  • 14 Days Ago

  • CACI Annapolis, MD
  • Information Systems Security Officer (ISSO) Skill Level 3 Job Category: Security Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Poly... more
  • 14 Days Ago


Not the job you're looking for? Here are some other Senior Manager Governance, Risk, and Compliance jobs in the National, MD area that may be a better fit.

  • Johns Hopkins Applied Physics Laboratory Laurel, MD
  • Description Are you interested in being part of a forward thinking Cybersecurity program? Are you inquisitive and analytical with expertise in Cybersecurit... more
  • 27 Days Ago

  • Capital One Mc Lean, VA
  • Senior Manager, Risk Governance As the Risk Governance Senior Manager, you will collaborate with Agency leadership, Legal and Commercial Risk in the develo... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!