1

Cisa Grc Jobs (NOW HIRING)

GRC Analysts I

Saint Petersburg, FL · On-site +1

$90K - $90K/yr

Junior-Level GRC Analysts Department: Governance, Risk & Compliance (GRC) Reports To: Compliance ... CISA - preferred but not required * Other cybersecurity or compliance certifications Success ...

THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the ... CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+. It is ...

Job Summary : LanceSoft, Inc. is a company seeking a GRC Analyst to assist in executing the ... CISA, CPA/CA, CISM or other equivalent professional certification preferred but not required ...

$80 - $100/hr

THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the ... CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+. #J ...

GRC Analyst

Los Angeles, CA · On-site

$100K - $135K/yr

GRC certifications such as CISA or CRISC 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team ...

One Level I certification, One Level II, and One Level III certification from the DoD 8140 (8570) Cyber Workforce Qualification Matrix pertaining to GRC (eg, SSCP, CISSP, CISM, CISA, CRISC, GSEC ...

GRC Analyst

Dallas, TX · On-site +1

THE POSITION NMC is hiring a GRC Analyst to join the Information Security team, reporting to the ... CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+. It is ...

GRC Analyst

Dallas, TX · On-site

$80 - $100/hr

THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the ... CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+. #J ...

GRC Compliance Auditor

Dallas, TX · On-site

$125 - $150/hr

THE POSITION NMC² is looking for a detail-oriented GRC Compliance Auditor to join the Information ... CISA, ISO 27001 Lead Auditor or Lead Implementer, CISM, CISSP, or CRISC. #J-18808-Ljbffr

$125 - $150/hr

THE POSITION NMC² is looking for a detail-oriented GRC Compliance Auditor to join the Information ... CISA, ISO 27001 Lead Auditor or Lead Implementer, CISM, CISSP, or CRISC. #J-18808-Ljbffr

One Level I certification, One Level II, and One Level III certification from the DoD 8140 (8570) Cyber Workforce Qualification Matrix pertaining to GRC (eg, SSCP, CISSP, CISM, CISA, CRISC, GSEC ...

GRC Compliance Auditor

Dallas, TX · On-site

$100 - $125/hr

## GRC Compliance AuditorApplylocations: Dallas, TXtime type: Full timeposted on: Posted 2 Days Agojob ... CISA, ISO 27001 Lead Auditor or Lead Implementer, CISM, CISSP, or CRISC.*It is impossible to list ...

One Level I certification, One Level II, and One Level III certification from the DoD 8140 (8570) Cyber Workforce Qualification Matrix pertaining to GRC (eg, SSCP, CISSP, CISM, CISA, CRISC, GSEC ...

NY · On-site

$150 - $200/hr

Wearelookingfora SeniorInformationSecurityConsultant(GRC/SecurityArchitect ... ProfessionalcertificationssuchasCISSP,CISM,CISA,CEH,PCIDSS,orequivalent

Showing results 21-40

Cisa Grc information

See salary details

$4.9K

$8.7K

$13.4K

How much do cisa grc jobs pay per month?

As of Sep 9, 2026, the average monthly pay for cisa grc in the United States is $8,731.92, according to ZipRecruiter salary data. Most workers in this role earn between $5,208.33 and $12,250.00 per month, depending on experience, location, and employer.

What is a CISA GRC professional?

A CISA GRC professional is an expert who holds the Certified Information Systems Auditor (CISA) credential and specializes in Governance, Risk, and Compliance (GRC). These professionals help organizations manage risks, ensure compliance with regulations, and establish effective IT governance practices. They conduct audits, assess controls, and provide recommendations to improve security and operational processes. Their role is critical in protecting organizational assets and ensuring that IT systems support business objectives while complying with legal and regulatory requirements.

What are the key skills and qualifications needed to thrive as a CISA GRC professional?

To excel as a CISA GRC (Governance, Risk, and Compliance) professional, you need expertise in IT auditing, risk assessment, compliance frameworks, and a CISA certification. Familiarity with GRC platforms (such as RSA Archer or ServiceNow), audit management tools, and knowledge of regulations like SOX or GDPR are typically required. Critical thinking, attention to detail, and strong communication skills help manage risk and ensure organizational compliance. These competencies are crucial for safeguarding information assets, meeting regulatory requirements, and supporting business objectives.

What are some common challenges faced by professionals in CISA GRC roles, and how can they be addressed?

CISA GRC (Governance, Risk, and Compliance) professionals often encounter challenges such as keeping up with constantly changing regulations, managing risk across multiple business units, and ensuring organization-wide compliance. Navigating these complexities requires strong communication skills to coordinate with various departments and a proactive approach to staying updated on regulatory changes. Leveraging automated GRC tools and maintaining continuous professional development can help mitigate these challenges and enhance efficiency in fulfilling compliance and audit responsibilities.

What is the difference between Cisa Grc vs Cisa Auditor?

AspectCisa GrcCisa Auditor
CertificationsCISA, CRISC, CISSPCISA, CPA, CIA
Work EnvironmentRisk management, compliance, governanceAudit, assessment, controls testing
Industry UsageIT governance, risk, compliance rolesAudit firms, internal audit departments

Both Cisa Grc and Cisa Auditor roles require CISA certification, but Cisa Grc focuses on risk management and compliance, while Cisa Auditor emphasizes audit and controls testing. Understanding these differences helps professionals choose the right career path in cybersecurity and IT audit fields.

Is CISA still in demand?

CISA (Certified Information Systems Auditor) professionals are in high demand due to the ongoing need for cybersecurity governance, risk management, and compliance expertise. Organizations seek CISA-certified individuals to help secure information systems, ensure regulatory compliance, and manage IT audits, making the role consistently relevant across industries.
Infographic showing various Cisa Grc job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 88% Full Time, 7% Part Time, and 4% Contract. Highlights an 68% Physical, 7% Hybrid, and 25% Remote job distribution, with an average salary of $104,783 per year, or $50.4 per hour.

GRC Analysts I

Saint Petersburg, FL • On-site, Remote

$90K - $90K/yr

Full-time

Posted 15 days ago


Job description

Junior-Level GRC Analysts
Department: Governance, Risk & Compliance (GRC)
Reports To: Compliance Manager
Location: Remote
Working Hours: U.S. Eastern Time (ET) business hours
Employment Type: Full-Time
Level: Entry / Early Career
About Jun Cyber
Jun Cyber is a cybersecurity and compliance services company focused on helping organizations strengthen their cybersecurity programs, meet regulatory and contractual requirements, and achieve and maintain compliance with frameworks such as CMMC, NIST, SOC 2, and ISO 27001.
Our team works across Governance, Risk & Compliance (GRC), managed IT services, cybersecurity, continuous monitoring, and compliance program management to help clients build secure, sustainable, and audit-ready environments.
Position Summary
Jun Cyber is seeking a Junior-Level GRC Analysts to support our Governance, Risk & Compliance team in delivering cybersecurity compliance and assessment services.
The Compliance Analyst will support routine compliance monitoring, control testing, evidence collection and validation, documentation, remediation tracking, audit preparation, and reporting activities. This is an early-career role designed for a highly organized and detail-oriented professional who is interested in developing a career in cybersecurity, GRC, and compliance.
The successful candidate will work under established procedures and guidance while collaborating with GRC analysts, compliance managers, technical teams, and client stakeholders to help ensure that cybersecurity controls are properly implemented, documented, monitored, and supported by sufficient evidence.
Key Responsibilities
Compliance Monitoring & Control Testing
  • Perform periodic reviews of cybersecurity controls against applicable requirements.
  • Conduct basic control assessments and document test results.
  • Monitor compliance activities and identify missing or incomplete requirements.
  • Assist with monthly and quarterly compliance monitoring activities.
  • Track remediation activities and outstanding compliance issues.

Evidence Management
  • Request, collect, organize, and validate compliance evidence.
  • Maintain evidence repositories and ensure documentation is complete and current.
  • Identify missing, outdated, or insufficient evidence and escalate as appropriate.
  • Maintain evidence traceability to applicable controls and requirements.

Policy & Documentation
  • Assist with maintaining cybersecurity policies, standards, procedures, and supporting documentation.
  • Review documentation for consistency with established compliance requirements.
  • Maintain compliance records, assessment workpapers, and control documentation.

Risk & Remediation Support
  • Assist with identifying compliance gaps and control deficiencies.
  • Track POA&Ms, corrective actions, and remediation activities.
  • Follow up with control owners regarding outstanding remediation items.
  • Escalate overdue or significant issues to the Compliance Manager.

Assessments & Audits
  • Support internal and external audits and assessments.
  • Prepare requested evidence and documentation.
  • Assist with auditor requests and maintain audit request trackers.
  • Participate in assessment preparation activities.

Reporting
  • Prepare routine compliance status reports and dashboards.
  • Maintain compliance metrics and tracking spreadsheets.
  • Escalate significant compliance issues or trends.

Qualifications
  • 1-3 years of experience in cybersecurity, IT, audit, risk, compliance, or a related field.
  • Basic understanding of cybersecurity concepts and controls.
  • Familiarity with one or more frameworks such as NIST CSF, NIST SP 800-53, NIST SP 800-171, CMMC, ISO 27001, SOC 2, HIPAA, or PCI DSS.
  • Strong documentation and organizational skills.
  • Ability to analyze information and identify inconsistencies or gaps.
  • Strong written and verbal communication skills.
  • Proficiency with Microsoft Office or comparable productivity tools.

Preferred Certifications
  • Security+
  • ISC2 CC
  • CISA - preferred but not required
  • Other cybersecurity or compliance certifications

Success Measures
  • Accurate and timely completion of assigned compliance activities.
  • Quality and completeness of collected evidence.
  • Timely identification and escalation of compliance gaps.
  • Accurate maintenance of compliance records.
  • Successful completion of assigned audit and assessment activities.