1

Cyber Grc Jobs (NOW HIRING)

Be Seen First

Experience: 5+ years in cyber compliance delivery, GRC consulting, or compliance focused presales, preferably serving MSP, MSSP, consultancy, or audit firm environments where you supported many ...

New

Cyber GRC Schedule: Full-Time Shift: Day Job Travel: Yes - 10% of the time Minimum Clearance Required: Secret Clearance Level Must Be Able to Obtain: None Potential for Remote Work: ORA_ON_SITE ...

Cyber GRC Schedule: Full-Time Shift: Day Job Travel: Yes - 10% of the time Minimum Clearance Required: Secret Clearance Level Must Be Able to Obtain: None Potential for Remote Work: ORA_ON_SITE ...

We don't view Governance, Risk, and Compliance (GRC) as a passive reporting function or an ... You will blend deep domain expertise across enterprise cyber risk, audit, and global compliance ...

Senior Cyber Defense Analyst

Kittery, ME ยท On-site

$120K - $160K/yr

Cyber GRC Schedule: Full-Time Shift: Day Job Travel: Yes - 10% of the time Minimum Clearance Required: Secret Clearance Level Must Be Able to Obtain: None Potential for Remote Work: ORA_ON_SITE ...

This role provides strategic oversight of cyber and IT operational risk assessments, regulatory compliance, IT audit coordination, and IT policy development. GRC Cybersecurity Analyst III serves as a ...

As a GRC Engineer here at Chubb, you will apply engineering, automation, and data analytics ... Design and implement automated control testing workflows in partnership with the Cyber Risk ...

This role provides strategic oversight of cyber and IT operational risk assessments, regulatory compliance, IT audit coordination, and IT policy development. GRC Cybersecurity Analyst III serves as a ...

Showing results 41-60

Cyber Grc information

See salary details

$38.5K

$58.2K

$87K

How much do cyber grc jobs pay per year?

As of Sep 14, 2026, the average yearly pay for cyber grc in the United States is $58,171.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,000.00 and $64,500.00 per year, depending on experience, location, and employer.

What is Cyber GRC?

Cyber GRC stands for Cyber Governance, Risk, and Compliance. It refers to the integrated collection of capabilities that enable an organization to reliably achieve objectives, address uncertainty, and act with integrity when managing cybersecurity risks. Professionals in Cyber GRC help organizations develop policies, assess risks, comply with regulations, and ensure ongoing security governance. Their work is essential for building strong cybersecurity frameworks and maintaining compliance with laws such as GDPR, HIPAA, or PCI DSS.

What are the key skills and qualifications needed to thrive as a Cyber GRC professional?

To thrive as a Cyber GRC professional, you need expertise in risk assessment, compliance frameworks (such as ISO 27001, NIST, or GDPR), and a solid understanding of cybersecurity principles, often backed by a degree in information security or related fields. Familiarity with GRC tools like Archer, ServiceNow GRC, or MetricStream, as well as certifications such as CISA, CISSP, or CRISC, is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for managing policies and engaging stakeholders. These skills ensure organizations can identify, manage, and mitigate cyber risks while maintaining regulatory compliance and protecting sensitive information.

What are some common challenges faced by professionals in Cyber GRC roles and how can they be addressed?

Professionals in Cyber GRC (Governance, Risk, and Compliance) roles often encounter challenges such as keeping up with constantly evolving regulations, ensuring company-wide compliance, and effectively communicating risk to stakeholders. To address these challenges, it's important to stay updated on industry standards, leverage automated GRC tools to streamline processes, and develop strong communication skills to translate technical risks into business terms. Collaboration with IT, legal, and business teams is also essential for creating a robust compliance culture.

What is the difference between Cyber Grc vs Cyber Security Analyst?

AspectCyber GrcCyber Security Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, risk management, compliance teamsSecurity monitoring, incident response, vulnerability assessment
Employer & Industry UsageFinancial, healthcare, government sectors focusing on governanceIT security teams across various industries

Cyber Grc professionals focus on establishing policies, managing risks, and ensuring compliance within organizations. In contrast, Cyber Security Analysts primarily monitor security systems, respond to incidents, and identify vulnerabilities. While both roles require certifications like CISSP, their daily tasks and focus areas differ significantly, with Grc emphasizing governance and analysts focusing on technical security operations.

Is GRC cybersecurity in demand?

Cyber GRC (Governance, Risk, and Compliance) roles are in high demand due to increasing cybersecurity regulations and the need for organizations to manage risk effectively. Professionals with skills in compliance frameworks, risk assessment, and security policies are sought after across various industries, often requiring certifications like CISSP or CISA. The field offers strong job growth prospects as organizations prioritize cybersecurity governance.
More about Cyber Grc jobs

What cities are hiring for Cyber Grc jobs?

Cities with the most Cyber Grc job openings:

What states have the most Cyber Grc jobs?

States with the most job openings for Cyber Grc jobs include:

Infographic showing various Cyber Grc job openings in the United States as of September 2026, with employment types broken down into 95% Full Time, 3% Part Time, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $58,171 per year, or $28 per hour.

GRC Lead / Cyber Risk Manager

Washington, DC โ€ข On-site

CyberLinx Solutions LLC
IT Servicesย โ€ขย 11 - 50 employees

$125K - $169K/yr

Full-time

Re-posted 8 days ago


Job description

CyberLinx Solutions LLC is seeking a forward thinking Cybersecurity GRC Lead / Cyber Risk Manager responsible for leading the organization's cybersecurity governance, risk, and compliance (GRC) program. This role oversees enterprise risk assessments, regulatory compliance, policy development, and security control implementation aligned to industry frameworks such as NIST CSF and NIST RMF.The ideal candidate will serve as a strategic advisor to leadership, ensuring cybersecurity risks are identified, assessed, and managed in alignment with business objectives and regulatory requirements. Key Responsibilities: Governance & Program Leadership Lead and manage the enterprise GRC program, including policies, standards, and procedures Serve as the primary advisor on cybersecurity risk and compliance matters Align cybersecurity strategy with business objectives and regulatory requirements Provide executive-level reporting on risk posture, compliance status, and remediation efforts Risk Management: Conduct enterprise and system-level cybersecurity risk assessments Develop and maintain risk registers aligned to NIST SP 800-53 and NIST SP 800-171 Define risk tolerance, scoring methodologies, and mitigation strategies Perform gap assessments and maturity evaluations using NIST CSF Compliance & Audit Ensure compliance with federal, state, and industry regulations for NIST RMF, and FISMA as applicable

Lead audit readiness efforts and coordinate internal/external audits Develop Plans of Action & Milestones (POA&M) and track remediation activities Maintain documentation supporting Authority to Operate (ATO) processes Security Controls & Frameworks Oversee implementation and validation of security controls Map controls across frameworks (NIST CSF, NIST 800-53, ISO 27001) Collaborate with technical teams to ensure control effectiveness Third-Party Risk Management Evaluate vendor and third-party cybersecurity risks Conduct security assessments and due diligence reviews Ensure contractual security and compliance requirements are met Required Qualifications: Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or related field 8+ years of experience in cybersecurity, with at least 3-5 years in GRC or risk management leadership roles Strong knowledge of: NIST Cybersecurity Framework (CSF) NIST Risk Management Framework (RMF) NIST SP 800-53 / 800-171 Experience supporting audits, compliance programs, and regulatory frameworks Proven ability to lead cross-functional teams and communicate with executive leadership