Mission Critical Facilities International LLC Logo

Mission Critical Facilities International LLC

Director, IT Governance, Risk & Compliance (GRC)

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in US
Expert/Leader
Remote
Hiring Remotely in US
Expert/Leader
Lead enterprise IT governance, risk, and compliance by developing GRC strategy and frameworks, managing risk assessments and remediation, ensuring regulatory compliance and audit readiness, overseeing IT controls and third-party risk, and building a high-performing GRC team that reports to executive leadership.
The summary above was generated by AI
Company Description

Mission Critical Group (MCG) is an end-to-end power solutions and services provider that accelerates time-to-power and delivers scalable, resilient infrastructure for mission critical environments. By integrating engineering, manufacturing, modular deployment, and lifecycle services under one platform, we streamline execution and bring complex projects online faster - without compromising performance. With more than 1.5 million square feet of U.S. manufacturing capacity, MCG supports data centers, power generation, healthcare, oil & gas, pharmaceuticals, semiconductors, and industrial facilities where uptime is non-negotiable. Mission Critical Group designs, manufactures and provides value-added services for customers requiring critical power solutions. Powering a new electric world for a brighter, more secure future.

Job Description

Key Responsibilities

Governance & Strategy

  • Develop and maintain the enterprise IT GRC strategy, framework, and roadmap.
  • Establish governance structures, policies, standards, and procedures for IT and cybersecurity.
  • Present risk, compliance, and governance updates to executive leadership and governance committees.
  • Align IT risk management initiatives with business objectives and organizational priorities.
  • Drive continuous improvement of governance and control processes.

Risk Management

  • Lead enterprise IT risk assessments and risk treatment programs.
  • Identify, assess, monitor, and report technology and cybersecurity risks.
  • Maintain IT risk registers and oversee remediation efforts.
  • Facilitate third-party/vendor risk management programs.
  • Develop key risk indicators (KRIs) and risk reporting metrics.

Compliance Management

  • Ensure compliance with applicable regulations and frameworks such as:
    • NIST Cybersecurity Framework (CSF)
    • NIST 800-53
    • ISO 27001
    • SOC 1 / SOC 2
    • PCI-DSS
    • HIPAA
    • GDPR
    • SOX IT General Controls (ITGC)
    • CIS Controls
  • Manage compliance assessments, audits, and certification activities.
  • Track regulatory changes and evaluate organizational impact.
  • Coordinate remediation plans for compliance findings.

Audit & Controls

  • Serve as the primary liaison for internal and external auditors.
  • Develop and maintain IT control frameworks and documentation.
  • Oversee testing of IT General Controls (ITGCs) and security controls.
  • Monitor corrective actions resulting from audits and assessments.
  • Ensure evidence collection and audit readiness across IT functions.

Security Governance

  • Collaborate with cybersecurity leadership on security governance initiatives.
  • Support security awareness and policy compliance programs.
  • Measure control effectiveness through metrics and reporting.
  • Participate in incident response reviews and post-incident risk assessments.
  • Promote a culture of security and accountability throughout the organization.

Leadership & Team Management

  • Build, mentor, and lead IT GRC professionals.
  • Establish departmental goals, KPIs, and performance metrics.
  • Manage GRC budgets, vendors, and consulting engagements.
  • Foster collaboration among IT, Security, Legal, Privacy, Internal Audit, and business units.

Qualifications

Required Qualifications

Education

  • Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Risk Management, Business Administration, or related field.
  • Master's degree preferred.

Experience

  • 10+ years of progressive IT, cybersecurity, audit, risk, or compliance experience.
  • 5+ years in a leadership or management role.
  • Experience leading enterprise GRC programs.
  • Demonstrated experience with regulatory compliance and security frameworks.
  • Experience working with executive leadership and audit committees.

Certifications (Preferred)

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CRISC (Certified in Risk and Information Systems Control)
  • CGEIT (Certified in Governance of Enterprise IT)
  • CISA (Certified Information Systems Auditor)
  • ISO 27001 Lead Auditor or Lead Implementer

Technical Competencies

  • Enterprise Risk Management (ERM)
  • IT Governance Frameworks
  • Cybersecurity Risk Assessment Methodologies
  • Audit and Control Testing
  • Third-Party Risk Management
  • Policy Development and Management
  • Security and Compliance Monitoring Tools
  • Governance, Risk & Compliance Platforms (Archer, ServiceNow GRC, OneTrust, AuditBoard, LogicGate, etc.)
  • Metrics, Reporting, and Executive Dashboard Development

Leadership Competencies

  • Strategic Thinking
  • Executive Communication
  • Cross-Functional Collaboration
  • Program Management
  • Change Management
  • Decision-Making Under Risk
  • Team Development and Coaching
  • Stakeholder Relationship Management

Additional Information

A Note to our Recruitment Partners: We really appreciate the interest, but MCG currently manages hiring through our internal team. We love getting to know our candidates directly! Because of this, we don’t accept unsolicited resumes from agencies at this time. If we ever need an extra hand, we’ll be sure to reach out to the community. Thanks for understanding!

 

MCG is an equal opportunity employer prohibiting discrimination based on race, color, creed, religion, sex, marital status, physical or mental disability, and any other protected classes stated by applicable federal and state laws. DVM is committed to providing equal employment opportunities to qualified individuals with disabilities and to act in accordance with regulations and guidance issued by the Equal Employment Opportunity Commission (EEOC).

Similar Jobs

6 Minutes Ago
Remote or Hybrid
118K-201K Annually
Senior level
118K-201K Annually
Senior level
Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Lead supplier quality for Printed Wiring Boards: audit suppliers, perform source and first-article inspections, drive root-cause analysis and corrective actions, implement process improvements, and ensure compliance with PWB and aerospace standards to deliver first-time quality.
Top Skills: ApqpAs9100As9102Asme Y14.5Asme Y15.1Black BeltControl PlanFirst Article InspectionGreen BeltIpc-6012Ipc-6013Ipc-6018Ipc-A-600Ipc-A-610Ipc-Tm-650Lean Six SigmaMil-Prf-31032Mil-Prf-38534Mil-Prf-55110Mil-Std-883PfmeaPpapSource Inspection
6 Minutes Ago
Remote or Hybrid
District of Columbia, USA
127K-215K Annually
Mid level
127K-215K Annually
Mid level
Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Support and maintain complex applications and infrastructure for a government customer: monitor and triage events, troubleshoot Linux/Windows servers, deploy and integrate software (AWS, CloudFormation, RDS), use Salt for configuration management, work with databases (Oracle, MongoDB, PostgreSQL, MySQL), write SOPs, manage security groups, and support after-hours deployments. Requires strong communication and collaboration with developers and vendors.
Top Skills: AWSCloudFormationElasticsearchJavaScriptLinuxMongoDBMySQLOraclePostgresPythonRdsSaltstackWindows Server
6 Minutes Ago
Remote or Hybrid
118K-201K Annually
Expert/Leader
118K-201K Annually
Expert/Leader
Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Lead supplier quality for printed wiring boards (PWBs): audit and assess suppliers, drive failure analysis and corrective actions, perform source and first-article inspections, implement quality tools (PPAP/FAI, PFMEA), and deliver supplier improvement plans. Requires PWB manufacturing expertise, IPC certifications, MIL and AS standards knowledge, and frequent supplier travel.
Top Skills: ApqpAs9100As9102Asme Y14.5Control PlanFaiGreen/Black BeltIpc-6012Ipc-6013Ipc-6018Ipc-A-600Ipc-A-610Ipc-Tm-650Lean Six SigmaMil-Prf-31032Mil-Prf-38534Mil-Prf-55110Mil-Std-883PfmeaPpapProduction Part Approval ProcessSource Inspection

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account