1

Cybersecurity Grc Jobs (NOW HIRING)

Cybersecurity GRC Compliance Lead

Chicago, IL · On-site

$114K - $154K/yr

The Cybersecurity GRC Compliance Lead will act as a subject matter expert in delivering compliance and assurance initiatives, coordinating cyber controls information, and engaging with stakeholders ...

Cybersecurity GRC Analyst

Janesville, WI · On-site

$85K - $137K/yr

Performs targeted cybersecurity risk assessments to identify vulnerabilities, misconfigurations ... Experience with Governance, Risk and Compliance/ Integrated Risk Management (GRC/IRM) platforms (e ...

Cybersecurity Senior GRC Analyst

Denver, PA

$96K - $123K/yr

The GRC Cybersecurity Senior Analyst will report directly to the Global Cybersecurity Risk Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain ...

Sr. Cybersecurity GRC Analyst

$102K - $132K/yr

Degree in cybersecurity, computer science, information technology or 1+ years IT work experience in the area of Governance, Risk and Compliance. * Use or knowledge of GRC Tools * Proven experience ...

New

Cybersecurity Senior GRC Analyst

Denver, PA · On-site

$96K - $123K/yr

The GRC Cybersecurity Senior Analyst will report directly to the Global Cybersecurity Risk Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain ...

Showing results 41-60

Cybersecurity GRC information

See salary details

$38.5K

$58.2K

$87K

How much do cybersecurity grc jobs pay per year?

As of Aug 8, 2026, the average yearly pay for cybersecurity grc in the United States is $58,171.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,000.00 and $64,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Cybersecurity GRC roles, and how can they be addressed?

Professionals in Cybersecurity GRC (Governance, Risk, and Compliance) often encounter challenges such as keeping up with evolving regulatory requirements, balancing business objectives with security mandates, and fostering collaboration between IT, legal, and business teams. These challenges can be addressed by staying current with industry standards, utilizing automated tools for compliance tracking, and building strong communication channels across departments. Proactively engaging stakeholders and fostering a culture of security awareness also play a crucial role in overcoming these obstacles and ensuring effective risk management.

What is Cybersecurity GRC?

Cybersecurity GRC stands for Governance, Risk, and Compliance in the context of cybersecurity. It involves establishing frameworks and processes to ensure an organization's information security aligns with business objectives, regulatory requirements, and risk management strategies. Professionals in this field help identify and manage security risks, create policies and controls, and ensure compliance with laws and standards such as GDPR, HIPAA, or ISO 27001. The goal of Cybersecurity GRC is to protect the organization’s digital assets while enabling responsible growth and innovation.

What are the key skills and qualifications needed to thrive as a Cybersecurity GRC professional?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of cybersecurity frameworks, risk management principles, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with tools like GRC platforms (e.g., RSA Archer, ServiceNow), as well as certifications such as CISSP, CISM, or CRISC, is typically required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating with stakeholders and translating technical risks into business implications. These competencies ensure organizations can proactively manage cyber risks, meet regulatory requirements, and maintain trust with clients and partners.

What is the difference between Cybersecurity Grc vs Cybersecurity Analyst?

AspectCybersecurity GrcCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, vulnerability assessment
Employer & Industry UsageOrganizations focusing on governance and complianceSecurity operations centers, IT departments

Cybersecurity Grc professionals focus on establishing policies, managing risks, and ensuring compliance with regulations. In contrast, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the cybersecurity field, Grc roles are more strategic and policy-oriented, whereas Analysts are more technical and operational.

More about Cybersecurity GRC jobs
What cities are hiring for Cybersecurity Grc jobs? Cities with the most Cybersecurity Grc job openings:
What are the most commonly searched types of Cybersecurity Grc jobs? The most popular types of Cybersecurity Grc jobs are:
What states have the most Cybersecurity Grc jobs? States with the most job openings for Cybersecurity Grc jobs include:
What job categories do people searching Cybersecurity Grc jobs look for? The top searched job categories for Cybersecurity Grc jobs are:
Infographic showing various Cybersecurity Grc job openings in the United States as of August 2026, with employment types broken down into 91% Full Time, 4% Part Time, and 5% Contract. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution, with an average salary of $58,171 per year, or $28 per hour.

Cybersecurity GRC Compliance Lead

Northern Trust

Chicago, IL • On-site

$114K - $154K/yr

Full-time

Re-posted 7 days ago


Northern Trust rating

8.2

Company rating: 8.2 out of 10

Based on 27 frontline employees who took The Breakroom Quiz


Job description

Job Summary:
Northern Trust is a globally recognized financial institution that has been in operation since 1889. The Cybersecurity GRC Compliance Lead will act as a subject matter expert in delivering compliance and assurance initiatives, coordinating cyber controls information, and engaging with stakeholders to ensure adherence to cybersecurity regulations.
Responsibilities:
• Support the operation and enhancement of cyber compliance and assurance initiatives.
• Act as a point of coordination and subject matter expert for cyber controls information and evidence requests, including SOC2 and SOX testing and reporting for all cyber controls.
• Support Cybersecurity audits, providing expertise, consolidation, and coordination of responses.
• Facilitate the production of information and evidence on cyber controls for regulatory requests.
• Facilitate the production of information and evidence on cyber controls for client requests, supporting new client revenue generation and existing client retention.
• Oversee adherence to cyber-related regulatory requirements in all jurisdictions globally in which Northern Trust operates.
• Provide oversight, tracking, analysis, and reporting of all cybersecurity issues and findings to ensure timely, complete, and compliant remediation.
• Proactively work with the broader Cybersecurity team to ensure new products, services, and processes are built and operated in a controlled and compliant manner.
• Engage with a range of senior stakeholders across Lines of Defense to ensure cybersecurity regulations and internal control requirements are well understood and embedded in business and technology practices.
Qualifications:
Required:
• Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field.
• Minimum of 7 years of experience in cybersecurity, with a focus on assurance or audit.
• Strong knowledge of cyber regulations, risk management frameworks, and methodologies.
• Strategic thinker with a strong understanding of cyber threats, vulnerabilities, and risk mitigation options.
• Innovative thinker and adaptable to change.
• Strong communication and presentation skills, capable of translating technical risk into business terms.
• Excellent analytical, problem-solving, and decision-making skills.
• Relevant certifications such as CISSP, CISM, CRISC, or similar.
• Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future.
Company:
Northern Trust is a global leader in delivering innovative investment management, asset and fund administration, fiduciary and banking. Founded in 1889, the company is headquartered in Chicago, USA, with a team of 10001+ employees. The company is currently Late Stage.

What Northern Trust employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom