Job Closed
This listing is no longer active.
CDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.
SR GRC Consultant I
Location
United States
Posted
53 days ago
Salary
$88K - $122.4K / year
Seniority
Senior
Job Description
SR GRC Consultant I
CDW
Description At CDW, we make it happen, together. Trust, connection, and commitment are at the heart of how we work together to deliver for our customers. It's why we're coworkers, not just employees. Coworkers who genuinely believe in supporting our customers and one another. We collectively forge our path forward with a level of commitment that speaks to who we are and where we're headed. We're proud to share our story and Make Amazing Happen at CDW. Job Summary As a Sr. Government Compliance Analyst, you will support CDW's Global Information Security organization in maintaining continuous compliance with Cybersecurity Maturity Model Certification (CMMC), NIST 800-171, and related government security requirements. You will perform detailed technical, documentation, and evidence-gathering activities to support assessments, audits, and system onboarding. This includes developing remediation plans, validating control execution, documenting system architectures and connections, reviewing contractual security requirements, and ensuring accurate compliance records in the GRC platform. Your work directly contributes to audit readiness, risk reduction, and the overall effectiveness of CDW's Security Risk Management program. What you will do: * Work with control owners to ensure timely execution and effectiveness of controls. * Conduct interviews for security controls and collect objective evidence for compliance assessment. * Develop and update Operational Plan of Action (OPA) to address gaps and compliance issues. * Remediate findings, track progress, and reassess post-remediation. * Draft, update, and finalize System Security Plan (SSP) for systems in scope and new systems under evaluation. * Use the GRC platform to manage controls effectiveness status, documentation, and evidence. * Update or create policies and procedures to support compliance. * Develop detailed architecture and data flow diagrams for all in-scope systems. * Review and document all connections (APIs, ports, protocols, services) for in-scope systems and physical locations. * Identify and document all external and cloud service providers associated with in-scope environments. * Review Government contracts and RFPs to identify obligations, assess feasibility, and ensure security requirements are met before commitment. * Independently review and revise information security clauses in customer and vendor contractual agreements to ensure compliance with company policies. * Perform other work as assigned to support overall Security Risk Management team objectives. What we expect of you: * Bachelor's degree with 5 years of experience in security risk management, audit, or compliance, or related roles, to include 2-year hands on experience with CMMC Level 2, NIST SP 800-171, or similar frameworks, OR * 9 years of total Information Technology experience including 5 years of experience in security risk management, audit, compliance or related roles, to include 2-year hands on experience with CMMC Level 2, NIST SP 800-171, or similar frameworks. * Experience with SSP, documentation and remediation activities, and compliance evidence gathering. * Experience with architecture documentation and data flow diagrams. * Understanding of APIs, ports, protocols, and system interconnections. * Knowledge of cloud service provider compliance requirements. * We value experience, skills, drive, aptitude, and attitude towards university degrees and certifications. * Strong analytical, documentation, critical thinking, and problem-solving skills. * Strong attention to detail and ability to understand legal requirements in contracts. * Ability to conduct interviews and communicate effectively with technical and non-technical stakeholders. * CCMC Certified Professional (CCP), CCA, CISSP, CISA or similar compliance/security certifications, a plus. * Master's degree, a plus. This role requires access to Controlled Unclassified Information (CUI), as well as information subject to U.S. export-control laws such as the International Traffic in Arms Regulations (ITAR) and the Export Administration Regulations (EAR). Under these laws and applicable data security requirements in CDW's U.S. government contracts, CDW must assess whether individuals in this role are legally permitted to access export-controlled technical data and certain categories of CUI. After CDW extends a conditional offer of employment, you will be asked to provide information and/or documentation needed to determine whether you are a "U.S. Person" as defined under ITAR (U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee) or otherwise eligible for authorized access under applicable federal regulations, including U.S. government contract requirements for restricted or export-controlled CUI and related personnel-screening obligations. Pay range: $88,000 - $122,400 depending on experience and skill set Annual bonus target of 5% subject to terms and conditions of plan Benefits overview: [https://cdw.benefit-info.com/](https://cdw.benefit-info.com/) Salary ranges may be subject to geographic differentials * We make technology work so people can do great things. * CDW is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. Together, we unite. Together, we win. Together, we thrive. CDW is an equal opportunity employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status or any other basis prohibited by state and local law. CDW is committed to fostering an equitable, transparent, and respectful hiring process for all applicants. During our application process, CDW's goal is to get to know you as an applicant and understand your experience, strengths, skills, and qualifications. While AI can help you present yourself more clearly and effectively, the essence of your application should be authentically yours. To learn more, please review [CDW's AI Applicant Notice](https://www.cdwjobs.com/pages/ai-applicant-notice).
Benefits
- 401(K), 401(K) matching, Adoption Assistance, Childcare benefits, Commuter benefits, Company-sponsored outings, Dental insurance, Disability insurance, Volunteer in local community, Employee stock purchase plan, Flexible Spending Account (FSA), Flexible work schedule, Generous parental leave, Health insurance, Job training & conferences, Life insurance, Charitable contribution matching, Paid volunteer time, Onsite gym, Paid holidays, Paid sick days, Partners with nonprofits, Promote from within, Remote work program, Team workouts, Tuition reimbursement, Unlimited vacation policy, Vision insurance, Wellness programs, Mental health benefits, Fertility benefits, Employee resource groups, Quarterly engagement surveys, Hybrid work model, Employee awards, Transgender health care benefits, Wellness days, Mother's room, Personal development training, Virtual coaching services, Flexible time off, Bereavement leave benefits, Company-wide vacation
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
Senior Analyst, Regulatory Operations
OscarAward-winning recruitment consultancy; delivering talent across Tech, Digital, Life-Sciences, Energy & Construction
• Manage the preparation and filing of Oscar's commercial insurance products through the annual Form & Binder Filings for assigned states and regions, serving as an advisor to teams • Develop processes for internal tracking and monitoring annual and ad hoc filings with diverse teams, including maintaining a repository of previously received objections to decrease YOY objection totals • Build and support successful relationships with regulatory bodies, including state insurance regulators (e.g., DMHC in California, Arizona Department of Insurance, Texas Department of Insurance), state-based exchanges (e.g., Covered California), and federal insurance regulators (CMS, CCIIO, etc.) • Serve as a subject matter expert on assigned states and contribute to the development of a repository of internal procedural guides on annual filing obligations to support teams and retain institutional knowledge • Track and share filing objections received and guide overall resolution together with impacted teams • Develop sustainable processes which simplify our growing team's outputs while ensuring high quality deliverables • Compliance with all applicable laws and regulations • Other duties as assigned
Company Description Position Title: Manager, Grants and Compliance Reports to: Director, Grants and Compliance Team: Grants and Compliance Salary Range: $72,000 – $80,000 and commensurate with experience Location: Washington, D.C. or Remote FLSA Status: Exempt Employee Classification: Full-time Union Status: Bargaining Unit Member NASTAD Position Level and Job Family: Manager, Program/Operations Technical Specialists Work Requirements: This position offers flexibility for in-person, remote, or hybrid work arrangements in Washington, D.C., while adhering to Eastern Time (ET) hours. Occasional travel may be necessary as needed. About NASTAD NASTAD is a leading non-partisan, non-profit association that represents public health officials who administer HIV and hepatitis programs in the U.S. Our mission is to advance the health and dignity of people living with and impacted by HIV/AIDS, viral hepatitis, and intersecting epidemics by strengthening governmental public health systems and leveraging community partnerships. Our vision is a world committed to ending HIV/AIDS, viral hepatitis, and intersecting epidemics. NASTAD represents public health officials in all 50 U.S. states, the District of Columbia, Puerto Rico, the U.S. Virgin Islands, seven local jurisdictions, and the U.S. Pacific Island jurisdictions. Job Description Position Summary This role is essential to the Operations Team. The Manager, Grants and Compliance, will help NASTAD advance its vision of a world committed to ending HIV/AIDS, viral hepatitis, and intersecting epidemics by ensuring organizational compliance with federal and corporate awards. By reviewing and processing procurement and contract requests and supporting the full lifecycle of subawards, from fiscal analysis to subrecipient monitoring, the Manager will help safeguard NASTAD by reducing risk and supporting strong governance. Essential Duties - Ensure assigned grants, cooperative agreements, contract awards, and procurement are fully compliant with federal grant regulations, such as 2 CFR Part 200. - Own cross-collaboration among Program and Finance staff to ensure the closeout requirements of awards are met. - *Process internal procurement, contracts and subaward requests utilizing NASTAD’s online procurement/contracts system (Salesforce). - Ensure compliance with NASTAD internal policies, in the end-to-end management of subawards, from fiscal analysis to subrecipient monitoring. - Provide analysis and propose revisions on a variety of types of contracts. - Stay current on regulatory updates. - Contribute to organizational learning and training efforts for internal and external stakeholders. - Collaborate with the Grants & Compliance and Program team members on risk-based subrecipient monitoring in accordance with 2 CFR § 200.331(d), including desk reviews, site visits, and oversight of Corrective Action Plans (CAPs). - Review and analyze financial documentation to assess allowability, budget alignment, and potential financial risk. - Provide technical assistance and support to subrecipients and staff related to compliance requirements, desk review processes, and subaward agreement terms and conditions throughout the subaward cycle. - Track monitoring activities, compliance issues, and Corrective Action Plans (CAPs) progress to ensure timely resolution. - Identify, document, and escalate compliance or financial risks as appropriate. - Ensure compliance and internal audit readiness through the maintenance of accurate records and documentation. - Proactively contribute to continuous improvement of grants and compliance processes, tools, and internal controls. - Provide documentation or analysis for responding to audit matters. - Complete other duties and special projects as assigned. Qualifications Minimum Qualifications Skills/Knowledge/Abilities - Quantitative and Qualitative Analytical skills - Ability to manage multiple priorities and competing deadlines in a fast-paced environment - In-depth knowledge of 2 CFR Part 200 - Strong Customer Service skills - Ability to simplify and convey complex compliance and financial information - Ability to work both independently and collaboratively - Training and Facilitation skills Experience/Education - Bachelor’s degree or higher or any equivalent combination of training, education, and experience that demonstrates the candidate’s ability to perform the position’s duties. Advanced degree (e.g., MBA or CPA) is a plus. - At least 4 years progressively responsible for the management of funding awards, contracts and subawards, including the associated contracts, subawards and risk based subrecipients monitoring from those funding awards. - At least 4 years of experience utilizing financial methods, procedures, and practices to assess the financial stability of subrecipients of federal funding as well as providing guidance and capacity building assistance in collaboration with cross functional internal teams. - At least 2 years of experience working with cross-functional internal teams. - At least 2 years of experience using grants or procurement management systems. - Significant experience reviewing federal grant regulations and requirements and interpreting those requirements for internal and external stakeholders. - Salesforce experience is a plus. NASTAD Competencies - Leadership – Integrates in their work and at the team level a strategic vision and critical analysis that optimizes success for projects, staff, and organizational priorities as applicable. - Communications – Strategically communicates internally and externally in a transparent, concise, respectful, and trauma-informed manner; simplifies complicated concepts and communicates them regardless of the situation or audience. - Teamwork –Proactively contributes toward the completion of team tasks and team building. Champions a collaborative and supportive organizational team culture. - Reliability and Adaptability –Takes ownership of own objectives and performance. Independently completes tasks in a timely and consistent manner. Adapts to, and integrates in own tasks, changes in work environment, priorities, and organizational needs. - Problem-solving and analytical thinking – Takes a solutions-focused approach to problem-solving identifies a problem, finds the root cause, and structures logical solutions. Able to solve problems by analyzing situations and applying critical thinking to resolve them. Additional Information Additional Information - Full-time, 40 hours/week role. - Willing to travel as needed, up to 30% - Remote work is possible. We are an Equal Opportunity Employer, and we comply with all applicable federal, state, and local laws. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, disability, age, or protected veteran status. - Interest in working with a national HIV/AIDS and viral hepatitis public health organization and with the communities most impacted by these epidemics. - Compensation: USD 72000 - USD 80000 - yearly
Director, Submission Sciences – Regulatory Operations
BiogenWe are a global team with a commitment to excellence, and a pioneering spirit. As a mid-sized biotechnology company, we provide the stability and resources of a well-established business while fostering an environment where individual contributions make a significant impact. Our team encompasses some of the most talented and passionate achievers who have unparalleled opportunities for learning, growth, and expanding their skills. Above all, we work together to deliver life-changing medicines, with every role playing a vital part in our mission. Caring Deeply. Achieving Excellence. Changing Lives. At Biogen, we are committed to building on our culture of inclusion and belonging that reflects the communities where we operate and the patients we serve. We know that diverse backgrounds, cultures, and perspectives make us a stronger and more innovative company, and we are focused on building teams where every employee feels empowered and inspired.
• Operational leadership for Submission Manager Deliverables: Accountable across the portfolio, ensures that all aspects of global electronic submissions and documents meet regulatory agency and Biogen submission standards and technical requirements. • Demonstrates expert knowledge of submission or technology-related Global Health authority guidelines/regulations. • Interacts with regulatory authorities for technical inquiries. • Responsible for operating model, project assignments and work allocations. • Financial Responsibilities: Develops and manages budgets related to Annual Operating Plan (AOP). Creates purchase orders and performs invoice review. • Drive organizational excellence and process Improvements: Leads Regulatory process improvement initiatives and actively engages stakeholders across the enterprise. • Responsible for the current and future state of submission sciences, influencing business, and identifying new technologies to meet the demands of a rapidly changing industry. • Develops technical strategies that maximize the effectiveness of the systems (those planned, as well as those in place) to ensure efficiency and accuracy to driving change, both internally and externally, while maintaining the company’s best interest. • People Leadership: Demonstrates leadership within Submission Sciences and GRA and SABR teams while developing each team member by mentoring, providing feedback, seeking opportunities for new experiences, and living the Biogen values. • Ensures appropriate and robust training for team members to execute job functions. • Manages the day-to-day submission sciences responsibilities, including the overall planning and management of resources to effectively support timely and quality submissions/deliverables to global regulatory authorities.
Risk Management Consultant – GRC Practice
Artemis ConnectionWe help clients develop entrepreneurial strategies that achieve actionable and sustainable performance improvement.
• Lead enterprise risk assessments • Facilitate risk identification workshops with senior leadership • Help clients design or mature their ERM frameworks • Assess technology and information risk practices • Assess governance structures • Contribute meaningfully to the practice's pipeline




