GRC Lead
Acuren Inspection, Inc. · Houston, TX, US · United States · Hybrid
Posted Sep 10, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Position Summary
TIC Solutions are seeking an experienced, strategic, and hands-on GRC Lead to lead the organization’s governance, risk, and compliance program. This role will own and mature key compliance, risk-management, policy-governance, audit, and third-party vendor management processes, while partnering across business units and executive leadership.The GRC Lead will manage compliance initiatives including CMMC, GDPR, and other applicable regulatory, contractual, and customer assurance requirements. The ideal candidate combines strong knowledge of security and privacy frameworks with practical program-management, communication, and leadership skills. Position Details:
Monday-Friday, full time position
Hybrid (Defined as 4 days a week in office)
Office location is Houston, TX (Galleria)
Responsibilities
• Lead and mature the organization’s GRC program, including CMMC, GDPR, and other applicable regulatory, contractual, and customer requirements.• Translate requirements into controls, policies, procedures, compliance roadmaps, and evidence-collection processes.• Coordinate internal and external audits, assessments, certifications, customer questionnaires, remediation plans, and compliance reporting.• Build and manage a third-party vendor-risk program, including vendor due diligence, risk assessments, security and privacy reviews, ongoing monitoring, and remediation tracking.• Own the lifecycle of security, privacy, and compliance policies, including review, approval, publication, employee acknowledgment, training, and exception management.• Develop executive dashboards and reports covering compliance posture, audit readiness, control effectiveness, vendor risk, and remediation progress.• Partner with Legal, Privacy, Procurement, IT, Information Security, and business stakeholders to integrate GRC requirements into organizational processes.• Support related programs such as security awareness, business continuity, incident-response governance, data protection, and customer security reviews.• Lead or mentor GRC personnel and serve as the primary contact for auditors, assessors, vendors, customers, and internal stakeholders.
Requirements
• Professional certifications such as CISA, CRISC, CISSP, CISM, ISO 27001 Lead Implementer or Lead Auditor, CDPSE, CIPM, CIPP/US, CIPP/E, or similar.• Experience supporting CMMC assessments or implementing controls aligned with NIST SP 800-171.• Experience with privacy-impact assessments, data-protection impact assessments, or GDPR compliance programs.• Familiarity with GRC, audit-management, vendor-risk-management, and workflow tools.• Experience in a regulated industry, government contracting environment, SaaS organization, or other security-sensitive business environment.• Experience leading or mentoring GRC analysts or cross-functional working groups.• Bachelor’s degree in cybersecurity, information systems, business, risk management, law, or a related field; equivalent relevant…