1

Cybersecurity Governance Risk Compliance Jobs in California

next page

Showing results 1-20

Cybersecurity Governance Risk Compliance information

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

Is cybersecurity governance risk compliance a good career?

Cybersecurity Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in managing organizational security policies, risk assessments, and regulatory compliance. It requires knowledge of security frameworks, certifications like CISSP or CISM, and strong analytical skills. The role is in demand across various industries due to increasing cybersecurity threats and regulatory requirements.

Is cybersecurity governance risk compliance a good job?

Cybersecurity Governance, Risk, and Compliance (GRC) roles are in high demand due to increasing cybersecurity threats and regulatory requirements. These jobs typically require knowledge of security frameworks, risk management, and compliance standards, offering opportunities for career growth and specialization. They often involve collaboration across departments and may require certifications like CISSP or CISA.

What is cybersecurity governance, risk, and compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.
What are popular job titles related to Cybersecurity Governance Risk Compliance jobs in California? For Cybersecurity Governance Risk Compliance jobs in California, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Governance Risk Compliance jobs in California look for? The top searched job categories for Cybersecurity Governance Risk Compliance jobs in California are:
What cities in California are hiring for Cybersecurity Governance Risk Compliance jobs? Cities in California with the most Cybersecurity Governance Risk Compliance job openings:
Infographic showing various Cybersecurity Governance Risk Compliance job openings in California as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, and 4% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.

Director, Governance, Risk & Compliance

24 Hour Home Care - Corporate Division

Los Angeles, CA โ€ข Hybrid

Other

Medical, Dental, Vision, Retirement

Re-posted 14 days ago


Job description

24 Hour Home Care is part of the TEAM Services Group family of companies. As a shared Talent Acquisition function, we are proud to support TEAM's recruiting efforts by helping to attract exceptional talent across the organization.

TEAM Services Group ("TEAM") is a national provider of home and personal care services and household employment solutions supporting the known caregiver model, which allows families and individuals with disabilities the freedom to choose the caregivers and service providers working with them in their homes.

TEAM is a mission-driven company serving over 110,000 clients and employing over 130,000 caregivers across all 50 states. We operate in a large and growing market and have grown nearly 40% annually since inception through our relentless focus on delivering best-in-class client experience. TEAM is led by a high-performing team passionate about improving access to home-based care in America.

The Role:

The Director, Governance, Risk & Compliance (GRC) leads the organization's enterprise governance, risk, and compliance program, partnering closely with the CISO to strengthen security, regulatory compliance, and risk management across a multi-brand healthcare organization. This role is responsible for building and maturing GRC frameworks, leading enterprise risk and compliance initiatives, overseeing audit readiness, and driving data governance, third-party risk management, vulnerability management, and security awareness programs that support organizational growth and regulatory requirements.

Primary Responsibilities

  • Develop and execute the enterprise GRC strategy, establishing governance, risk, and compliance frameworks aligned with ISO 27001, NIST, SOC 2, HIPAA, HITECH, and other applicable standards.
  • Lead enterprise risk management, audit readiness, and compliance activities by maintaining risk registers, coordinating assessments, managing regulatory audits, and delivering executive reporting.
  • Build and oversee enterprise programs for data governance, vulnerability management, third-party risk management, and security awareness, ensuring scalable processes and organizational adoption.
  • Partner with Legal, IT, business leaders, and external stakeholders to strengthen privacy, regulatory compliance, policy development, and enterprise security practices across all brands.
  • Lead and develop the GRC function by establishing operating models, building team capabilities, implementing governance processes, and driving continuous improvement initiatives.

This is a hybrid position, coming into the office 1x/quarter.ย 

What You Bring to the Table:

Qualifications

  • Bachelor's degree in Cybersecurity, Information Security, Information Technology, Business, or a related field required; advanced degree preferred.
  • 10+ years of progressive experience in governance, risk, and compliance, including leadership of enterprise GRC programs or teams.
  • Deep expertise in ISO 27001, NIST Cybersecurity Framework, NIST 800-series, SOC 2 Type II, HIPAA, HITECH, and enterprise risk management frameworks.
  • Proven experience building or significantly maturing GRC programs, including risk frameworks, compliance processes, audit management, and policy development within complex, multi-entity organizations.
  • Demonstrated experience managing enterprise audits, regulatory compliance, control mapping across multiple frameworks, and executive risk reporting.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, or HITRUST CCSFP preferred; experience with HITRUST, GRC platforms (Drata, ServiceNow GRC, OneTrust, Archer), healthcare compliance, or PE-backed organizations is highly desirable.

Skills

  • Governance and risk management
  • Regulatory compliance
  • Audit and control management
  • Data governance
  • Policy development
  • Executive communication
  • Cross-functional leadership
  • Strategic planning

What We Bring to the Table:

  • Comprehensive benefits package, including health, dental, vision, 401K, just to name a few!ย 
  • Wellness Program, Learning and Professional Development Program

24 Hour Home Care is an Equal Opportunity Employer that is proud of its culture of diversity and inclusion.ย  Individuals seeking employment are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation. ย Additionally, 24 Hour Home Care will consider qualified candidates with criminal histories in a manner consistent with the law.ย ย 

By completing this application, you are providing consent to receiving text messages from 24 Hour Come Care and associated vendors at the phone numbers provided. Message and data rates may apply.ย 

For California applicants: by applying for this position, you acknowledge and consent to the collection, use, and disclosure of your personal information in accordance with our privacy policy and the California Consumer Privacy Act (CCPA).