2

Cyber Security Grc Remote Jobs (NOW HIRING)

Be Seen First

As a Cybersecurity Analyst you will work with a well-developed team of professionals to help ensure ... Navigating the VA GRC tool to quickly progress systems through the RMF process. * Developing ...

Remote (Dallas-Fort Worth, TX preferred) Assignment Type: 6-Month Contract (Strong likelihood of ... Understanding of cybersecurity governance, risk, and compliance (GRC) concepts. * Exposure to ...

Staff Security Analyst II (GRC)

Coppell, TX · On-site +1

$130K - $163K/yr

US Remote Synonymous Business Title (s): Sr. Program Manager, Security Overview: Blue Yonder is a ... As we shape the future of global cybersecurity, our GRC team is seeking a talented Staff Security ...

Be Seen First

Experience with Governance, Risk, and Compliance (GRC) * Experience with Assessment and ... Fully remote workforce - work from anywhere in the US! * You'll get lots of work done, and work ...

Staff Security Analyst II (GRC)

Dallas, TX · On-site +1

$130K - $163K/yr

US Remote Synonymous Business Title (s): Sr. Program Manager, Security Overview: Blue Yonder is a ... As we shape the future of global cybersecurity, our GRC team is seeking a talented Staff Security ...

Staff Security Analyst II (GRC)

Dallas, TX · On-site +1

$130K - $163K/yr

US Remote Synonymous Business Title (s): Sr. Program Manager, Security Overview: Blue Yonder is a ... As we shape the future of global cybersecurity, our GRC team is seeking a talented Staff Security ...

Senior Cyber Security Analyst

$102K - $132K/yr

Proven track record of scaling GRC programs, often using tools like ServiceNow GRC, Archer, or ... REMOTE Americans with Disability Specifications The physical demands described here are ...

GRC Security Compliance Advisor

Plano, TX · On-site +1

$106K - $177K/yr

The GRC Security Compliance Specialist works closely with cybersecurity, infrastructure, cloud ... While many positions offer remote or hybrid work options, these arrangements are subject to change ...

GRC Security Compliance Advisor

Plano, TX · On-site +1

$106K - $177K/yr

The GRC Security Compliance Specialist works closely with cybersecurity, infrastructure, cloud ... While many positions offer remote or hybrid work options, these arrangements are subject to change ...

Experience in compliance, cybersecurity, GRC, or adjacent markets - you understand the buyer and ... Remote-first. Work from anywhere in the US * Direct line to the CRO and meaningful influence on GTM ...

... location for this role is remote.   About Envestnet   Envestnet is an ... Enterprise Risk, AI GRC & Roadmap Alignment -- Define and execute the enterprise security roadmap ...

Showing results 41-60

Cyber Security Grc Remote information

See salary details

$40.5K

$122.9K

$180K

How much do cyber security grc remote jobs pay per year?

As of Aug 11, 2026, the average yearly pay for cyber security grc remote in the United States is $122,890.00, according to ZipRecruiter salary data. Most workers in this role earn between $102,000.00 and $142,000.00 per year, depending on experience, location, and employer.

What is a cyber security GRC remote job?

A Cyber Security GRC (Governance, Risk, and Compliance) remote job involves managing an organization's cybersecurity policies, risk assessments, and compliance requirements from a remote location. Professionals in this role assess threats, develop security frameworks, ensure compliance with industry regulations, and help implement best practices to protect data and systems. Working remotely, they use digital tools to analyze risks, document controls, and communicate with stakeholders to maintain the organization's security posture.

What are the key skills and qualifications needed to thrive as a cyber security GRC professional in a remote role?

To thrive as a Cyber Security GRC professional remotely, you need a solid understanding of risk management, security frameworks (such as NIST, ISO 27001), compliance regulations, and typically a degree in information security or a related field. Familiarity with GRC platforms (e.g., Archer, ServiceNow), risk assessment tools, and certifications like CISSP or CISM are highly valued. Strong analytical thinking, proactive communication, and the ability to work independently are essential soft skills for success in a remote environment. These competencies are vital for effectively identifying risks, ensuring regulatory compliance, and collaborating with cross-functional teams without direct in-person supervision.

How does a cyber security GRC professional typically collaborate with other departments in a remote work setting?

Cyber Security GRC professionals often work closely with departments such as IT, legal, compliance, and risk management to ensure that security policies and regulatory requirements are consistently met. In a remote setting, collaboration relies heavily on digital communication tools like video conferencing, project management software, and secure document-sharing platforms. Regular virtual meetings and clear documentation help maintain alignment across teams, while building strong relationships remotely is essential for fostering trust and effective information flow. Being proactive in communication and staying organized are key to overcoming the challenges of remote collaboration.

What is the difference between Cyber Security Grc Remote vs Cyber Security Analyst?

AspectCyber Security Grc RemoteCyber Security Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentRemote, policy-focusedOffice or remote, technical focus
Employer & IndustryOrganizations with compliance needsIT firms, security teams

Cyber Security Grc Remote roles primarily focus on governance, risk management, and compliance, often working remotely to develop policies and ensure regulatory adherence. Cyber Security Analysts concentrate on technical security measures, monitoring threats, and incident response. While both roles require security certifications, GRC roles emphasize policy and compliance, whereas Analysts focus on technical security operations.

More about Cyber Security Grc Remote jobs
What cities are hiring for Cyber Security Grc Remote jobs? Cities with the most Cyber Security Grc Remote job openings:
What are the most commonly searched types of Cyber Security Grc jobs? The most popular types of Cyber Security Grc jobs are:
What states have the most Cyber Security Grc Remote jobs? States with the most job openings for Cyber Security Grc Remote jobs include:
Infographic showing various Cyber Security Grc Remote job openings in the United States as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $122,890 per year, or $59.1 per hour.

Principal Cybersecurity Analyst - Risk Mgmt & AI Security

MD Anderson

Houston, TX • On-site, Remote

$123K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 4 days ago


MD Anderson Cancer Center rating

8.4

Company rating: 8.4 out of 10

Based on 170 frontline employees who took The Breakroom Quiz

23rd of 887 rated healthcare providers


Job description

The University of Texas MD Anderson Cancer Center is seeking a highly skilled Principal Cybersecurity Analyst to serve as a technical authority within its Cybersecurity department. The Principal Cybersecurity Analyst plays a critical role in shaping and advancing enterprise-wide governance, risk, and compliance (GRC) programs, with expanded accountability for emerging AI security and governance initiatives. This role operates at a strategic and architectural level while also ensuring operational effectiveness across cybersecurity risk management practices.
The Principal Cybersecurity Analyst contributes directly to safeguarding sensitive data, maintaining regulatory compliance, and strengthening the organization's security posture through innovative, data-driven risk management and governance strategies. The Principal Cybersecurity Analyst serves as a trusted advisor, architect, and leader within the cybersecurity function.
The ideal candidate brings advanced education in information systems or cybersecurity, extensive experience leading enterprise risk management or GRC programs, and strong knowledge of frameworks such as NIST, HIPAA, and HITRUST. Preferred candidates will also have hands-on experience assessing AI/ML risk, strong executive communication skills, and certifications such as CISSP, CISM, or PMP.
Minimum $123,000 - Midpoint $154,000 - Maximum $185,000
Work Location: Remote 100%
Why Us?
At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role in advancing cybersecurity innovation in a mission-driven healthcare environment. This position offers the opportunity to shape enterprise risk strategy, influence executive decision-making, and lead emerging AI governance practices, all while supporting an organization dedicated to saving lives. Employees benefit from a collaborative culture, professional development opportunities, and a strong commitment to work-life balance.
• Employer-paid medical coverage starting day one for employees working 30+ hours/week, plus optional group dental, vision, life, AD&D, and disability insurance.
• Accruals for PTO and Extended Illness Bank, plus paid holidays, wellness, childcare, and other leave options.
• Tuition Assistance Program after six months of service and access to extensive wellness, fitness, and employee resource groups.
• Defined-benefit pension through the Teachers Retirement System, voluntary retirement plans, and employer-paid life and reduced salary protection programs.
Responsibilities
Governance, Risk & Compliance (GRC) Architecture & Risk Management Program Leadership
• Serve as principal architect and subject matter expert for enterprise GRC and cybersecurity risk programs
• Define and maintain risk assessment methodologies, control frameworks, and risk scoring models
• Establish workflows across development, staging, and production environments
• Develop SOPs, roles, segregation of duties, and change management processes
• Lead design and execution of enterprise risk management strategies
Security & Risk Platform Integration and Automation
• Architect and maintain integrations across Archer, Tenable, ServiceNow, Microsoft Configuration Manager (SCCM/MECM), and Medigate
• Design automated workflows consolidating asset, vulnerability, and risk data
• Enable enterprise-wide risk visibility and reporting through data-driven systems
• Ensure data quality, reconciliation, and interoperability across platforms and CMDB
Regulatory & Compliance Framework Management
• Apply frameworks including NIST CSF, NIST 800-53, HIPAA, and HITRUST
• Conduct control mapping, gap assessments, and compliance reporting
• Advise stakeholders on remediation strategies and regulatory requirements
• Align institutional policies with regulatory and accreditation standards
AI Security & Governance
• Establish and mature AI security and governance programs
• Develop AI risk assessment criteria and governance standards
• Align controls to NIST AI Risk Management Framework and institutional policies
• Evaluate AI/ML tools and vendors for data protection and compliance risks
• Partner with data governance, privacy, and legal teams on AI initiatives
Strategic Risk Visioning, Assessment & Executive Advisory
• Develop multi-year roadmaps, milestones, and resource plans
• Lead enterprise and project-level risk assessments
• Translate technical findings into executive-level reporting and dashboards
• Advise leadership on risk posture and investment prioritization
• Provide technical leadership and mentorship across teams
EDUCATION
  • Required: Bachelor's Degree Computer Information Systems, Business Information Systems, Computer Science or related field.
  • Preferred: Master's Degree Information Security, Computer Science or related field

WORK EXPERIENCE
  • Required: 7 years In information security and/or cybersecurity experience including multiple security domains, to include two years lead/supervisory experience.
  • May substitute required education degree with additional years of equivalent experience on a one to one basis.
  • Preferred: At least 7-8 years of progressive cybersecurity experience, hands-on risk management (risk assessment, risk register ownership, control evaluation, or risk quantification), led or owned a security risk management program or framework implementation (e.g., NIST RMF/CSF, ISO 27005, FAIR, or equivalent), direct hands-on experience assessing the security or risk posture of AI/ML systems or GenAI deployments, ability to translate technical risk into business-level language for executive and governance audiences (e.g., briefing a CISO, risk committee, or board), experience using Archer, excellent communication skills, risk management, and cybersecurity framework is a must.

LICENSES AND CERTIFICATIONS
  • Preferred: CISSP - Cert IS Security Professional Issued by the International Information Systems Security Certification Consortium ((ISC).
  • Preferred: CISM - Cert Info Security Manager Issued by Information Systems Audit and Control Association (ISACA).
  • Preferred: PMP - Project Mgt Professional Issued by the Project Management Institute (PMI).
  • Preferred: Other applicable security industry certifications.

The University of Texas MD Anderson Cancer Center offers excellent benefits, including medical, dental, paid time off, retirement, tuition benefits, educational opportunities, and individual and team recognition.
This position may be responsible for maintaining the security and integrity of critical infrastructure, as defined in Section 113.001(2) of the Texas Business and Commerce Code and therefore may require routine reviews and screening. The ability to satisfy and maintain all requirements necessary to ensure the continued security and integrity of such infrastructure is a condition of hire and continued employment.
It is the policy of The University of Texas MD Anderson Cancer Center to provide equal employment opportunity without regard to race, color, religion, age, national origin, sex, gender, sexual orientation, gender identity/expression, disability, protected veteran status, genetic information, or any other basis protected by institutional policy or by federal, state, or local laws unless such distinction is required by law.http://www.mdanderson.org/about-us/legal-and-policy/legal-statements/eeo-affirmative-action.html
Additional Information
  • Requisition ID: 181706
  • Employment Status: Full-Time
  • Employee Status: Regular
  • Work Week: Days
  • Minimum Salary: US Dollar (USD) 123,000
  • Midpoint Salary: US Dollar (USD) 154,000
  • Maximum Salary : US Dollar (USD) 185,000
  • FLSA: exempt and not eligible for overtime pay
  • Fund Type: Hard
  • Work Location: Remote (within Texas only)
  • Pivotal Position: Yes
  • Referral Bonus Available?: Yes
  • Relocation Assistance Available?: Yes

#LI-Remote

What MD Anderson Cancer Center employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom