Demo

Federal GRC Compliance Specialist

Tyto Athene, LLC
Reston, VA Full Time
POSTED ON 6/29/2026
AVAILABLE BEFORE 7/26/2026
Tyto Athene has an opening for a Federal GRC Compliance Specialist. The Federal GRC Compliance Specialist will be responsible for the continued development, implementation, and maintenance of the organization’s business systems and compliance programs associated with FAR (Federal Acquisition Regulation), DFARS (Defense Federal Acquisition Regulation Supplement), and other agency-specific requirements. The Compliance Associate will have the knowledge, experience, and skills to support the implementation of new compliance initiatives from development of process documentation, to training personnel, to analyzing internal audit activities in order to ensure compliance with external regulatory audits and assessments.

This is a full-time, remote work position.

Responsibilities

  • Develop, maintain, and implement GRC-related plans, policies, processes, procedures, templates, control documentation, and compliance artifacts in the following subject areas
    • Cybersecurity Maturity Model Certification (CMMC)
    • Supply Chain Risk Management (SCRM)
    • Cyber Supply Chain Risk Management (C-SCRM)
    • Accounting System (AS)
    • Estimating System (ES)
    • Purchasing System (CPSR)
    • ISO 27001
    • ISO 20000-1
  • Monitor and support compliance with federal regulations, contract terms, and internal policies, and applicable governance frameworks and control requirements.
  • Conduct periodic internal reviews and audits to ensure ongoing adherence to applicable laws and standards, contractual obligations, and internal control requirements.
  • Assist with preparing for external audits, reviews, or investigations conducted by government agencies or third-party auditors.
  • Track and report on compliance metrics and issues, risks, deficiencies, corrective actions, and improvement activities.
  • Provide training and awareness materials to staff on compliance-related topics associated with the programs listed above and promote consistent understanding of GRC requirements across business functions.
  • Collaborate with internal departments (e.g., IT, Supply Chain, HR, Pricing, Finance, Program Management) to ensure cross-functional compliance and effective control implementation.
  • Stay current with changes in relevant federal regulations, including FAR, DFARS, and agency-specific guidance.
  • Support the development and implementation of corrective action plans when compliance deficiencies are identified, including tracking remediation status and assessing corrective action effectiveness.
  • Collaborate with senior leadership to align process improvement efforts with organizational goals and objectives, ensuring strategic alignment and driving compliance a compliance and risk-aware culture throughout the company.

Requirements

  • Bachelor's degree in Business, Law, Public Administration, Information Systems, Cybersecurity or a related field.
  • 5 years of relevant experience in a GRC, compliance, regulatory, legal, internal audit, cybersecurity compliance, or government contracting compliance function.
  • Working knowledge of federal government contracting regulations, including FAR, DFARS, and related agency-specific requirements.
  • Experience working for a federal government contractor.
  • Excellent attention to detail and organizational skills.
  • Strong analytical and problem-solving skills.
  • Demonstrated excellence in written and verbal communication skills.
  • Ability to manage multiple tasks and meet deadlines.
  • Demonstrated experience leading GRC or compliance-related initiatives with minimal supervision.
  • Experience supporting internal/external compliance audits to include responding to deficiencies, implementing corrective action plans, and assessing their effectiveness.
  • Demonstrated ability to design and implement cross-functional processes, controls, and documentation to meet regulatory, contractual, audit, and governance requirements.
  • Advanced proficiency in MS Office products and Adobe Acrobat.


Additional Requirements

  • Extensive knowledge of NIST SP 800-171, NIST SP 800-53 and/or NIST SP 800-161 highly desired but not required.
  • Previous participation and/or experience with Certified Third-Party Assessment Organization (C3PAO) CMMC assessments highly desired but not required.
  • Previous participation and/or experience with Defense Contract Management Agency (DCMA) Contractor Purchasing System Reviews (CPSR) highly desired but not required.
  • Previous participation and/or experience with Defense Contract Audit Agency (DCAA) Accounting system audits highly desired but not required.
  • Previous participation and/or experience with Defense Contract Management Agency (DCMA) Estimating system audits highly desired but not required.
  • ISO Internal Auditor (Any Standard), desired but not required.
  • Experience supporting the development, implementation and management of ISO 27001 and ISO 20000-1 programs a plus.
  • Experience with Export Control requirements such as International Traffic in Arms Regulations (ITAR) Export Administration Regulations (EAR) and Office of Foreign Assets Control (OFAC) a plus.
  • Experience with Earned Value Management System (EVMS) requirements and implementation a plus.
  • Experience drafting and supporting compliance related proposal responses a plus.


Compensation

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.


Benefits

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.


Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.

At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?

Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Salary.com Estimation for Federal GRC Compliance Specialist in Reston, VA
$96,949 to $128,887
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Federal GRC Compliance Specialist?

Sign up to receive alerts about other jobs on the Federal GRC Compliance Specialist career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$73,707 - $95,263
Income Estimation: 
$91,142 - $116,690
Income Estimation: 
$80,876 - $132,043
Income Estimation: 
$80,876 - $132,043
Income Estimation: 
$116,347 - $154,557
Income Estimation: 
$150,417 - $183,047
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Tyto Athene, LLC

  • Tyto Athene, LLC Washington, DC
  • Tyto Athene is searching for a Cyber Event Monitoring Lead to support threat monitoring, detection, event analysis, and incident reporting. The Security Op... more
  • 12 Days Ago

  • Tyto Athene, LLC Baltimore, MD
  • Tyto Athene is seeking a MS Teams Subject Matter Expert to support the Social Security Administration (SSA). The Subject Matter Expert (SME) serves as the ... more
  • 12 Days Ago

  • Tyto Athene, LLC Colorado, CO
  • Tyto Athene is searching for an experienced Oracle EBS R12.2 Financials Business Analyst / Tester to support the Defense Health Agency (DHA) Enterprise Ope... more
  • 12 Days Ago

  • Tyto Athene, LLC Colorado, CO
  • Tyto Athene is seeking an experienced Oracle EBS Developer to join the Oracle Federal Financials (OFF) team in support of the Defense Health Agency (DHA) E... more
  • 12 Days Ago


Not the job you're looking for? Here are some other Federal GRC Compliance Specialist jobs in the Reston, VA area that may be a better fit.

  • Accenture Federal Services Washington, DC
  • At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. O... more
  • 14 Days Ago

  • Hispanic Technology Executive Council Arlington, VA
  • Organization: Accenture Federal Services Location: Arlington, VA We are: Accenture Federal Services, bringing together commercial innovation with the lates... more
  • 8 Days Ago

AI Assistant is available now!

Feel free to start your new journey!