1

Cybersecurity Governance Risk Compliance Jobs in Minnesota

Cybersecurity Advisor - Senior

Virginia, MN ยท On-site

$110 - $150/hr

... governance, risk management, and compliance objectives. This role advises stakeholders on cybersecurity priorities, policies, architectures, and operational practices to ensure alignment with mission ...

Senior Cybersecurity Analyst

Moundsview, MN ยท On-site

$106K - $136K/yr

Maintain compliance records, supporting evidence, and security artifacts within governance, risk, and compliance (GRC) platforms, including ServiceNow. * Communicate cybersecurity risks, compliance ...

Senior Cybersecurity Analyst

Moundsview, MN ยท On-site

$106K - $136K/yr

Maintain compliance records, supporting evidence, and security artifacts within governance, risk, and compliance (GRC) platforms, including ServiceNow. * Communicate cybersecurity risks, compliance ...

Senior Cybersecurity Analyst

Moundsview, MN ยท On-site

$106K - $136K/yr

Maintain compliance records, supporting evidence, and security artifacts within governance, risk, and compliance (GRC) platforms, including ServiceNow. * Communicate cybersecurity risks, compliance ...

IT Auditor

Minnetonka, MN ยท On-site

$55 - $75/hr

On their behalf, we are seeking an experienced IT Auditor to join a collaborative Internal Audit team focused on strengthening technology risk management, cybersecurity, governance, and compliance ...

Lead Cybersecurity Specialist

Minneapolis, MN ยท Remote

$125K - $165K/yr

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... Governance, Compliance & Security Strategy * Support and help shape governance, risk, and ...

Lead Cybersecurity Specialist

Minneapolis, MN ยท Remote

$125K - $165K/yr

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... Governance, Compliance & Security Strategy * Support and help shape governance, risk, and ...

Lead Cybersecurity Specialist

Minneapolis, MN ยท Remote

$125K - $165K/yr

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... Governance, Compliance & Security Strategy * Support and help shape governance, risk, and ...

IT Auditor

Minnetonka, MN ยท Hybrid

$55 - $75/hr

On their behalf, we are seeking an experienced IT Auditor to join a collaborative Internal Audit team focused on strengthening technology risk management, cybersecurity, governance, and compliance ...

Lead Cybersecurity Specialist

Minneapolis, MN ยท On-site

$125K - $165K/yr

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... Governance, Compliance & Security Strategy * Support and help shape governance, risk, and ...

Showing results 21-40

Cybersecurity Governance Risk Compliance information

What is cybersecurity governance, risk, and compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.

What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What are popular job titles related to Cybersecurity Governance Risk Compliance jobs in Minnesota?

For Cybersecurity Governance Risk Compliance jobs in Minnesota, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Governance Risk Compliance jobs in Minnesota look for?

The top searched job categories for Cybersecurity Governance Risk Compliance jobs in Minnesota are:

What cities in Minnesota are hiring for Cybersecurity Governance Risk Compliance jobs?

Cities in Minnesota with the most Cybersecurity Governance Risk Compliance job openings:

Infographic showing various Cybersecurity Governance Risk Compliance job openings in Minnesota as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, and 4% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution.

$66K - $114K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 2 days ago


Job description

Description:

Who are we?

Western National Insurance Group is a private mutual insurance company with over 120 years of experience serving customers' property-and-casualty insurance needs in the Midwestern, Northwestern, and Southwestern United States. Known as “The Relationship Company®,” we define success as a measure of the relationships we’ve built over time. In everything that we do, we know that delivering a friendly and helpful interaction makes for a better experience for everyone involved. That’s the power of “nice”. At Western National, nice is something we work to bring to every person and organization with whom we partner and serve.


Does this opportunity interest you?

Western National is seeking a Cybersecurity GRC Analyst to join our team!


The individual in this role will have the opportunity to strengthen the organization’s information security program by supporting regulatory compliance, managing third-party security risk, advancing security framework maturity, leading security awareness initiatives, and delivering meaningful security metrics that enable informed business decisions.


What are the responsibilities and opportunities of this role?

  • Supports insurance-related regulatory compliance by maintaining audit-ready documentation and coordinating timely and accurate regulatory filings across multiple states.
  • Partners with vendor management, legal, and business stakeholders to integrate security requirements throughout the vendor lifecycle.
  • Performs security risk assessments of third-party vendors and service providers and tracks remediation activities.
  • Maintains the vendor risk register and monitors progress toward risk mitigation objectives.
  • Serves as the Information Security Team's primary point of contact for state insurance departments, auditors, and compliance-related inquiries.
  • Designs, coordinates, and executes the organization's security awareness training program.
  • Develops targeted awareness campaigns focused on phishing, social engineering, and secure behaviors across the organization.
  • Creates and distributes security awareness communications, including newsletters, alerts, and announcements.
  • Tracks training participation, measures program effectiveness, and recommends continuous improvements.
  • Maps existing security controls to recognized frameworks, such as NIST Cybersecurity Framework (CSF), CIS Controls, and NYDFS requirements.
  • Conducts security framework gap assessments and develops recommendations to improve organizational maturity.
  • Supports evidence collection for internal audits, regulatory reviews, and annual maturity assessments.
  • Defines, tracks, and reports key risk indicators (KRIs) and key performance indicators (KPIs) for the information security program.
  • Develops dashboards and reports that provide leadership visibility into security compliance, awareness, incident response, and program performance.
  • Assists information security leadership with executive reporting and board presentation materials.
  • Exercises sound judgment when identifying compliance gaps, prioritizing work, and escalating security risks.
  • Recommends process improvements that strengthen governance, documentation, compliance activities, and security awareness efforts.
  • Consistently acts according to our customer experience standards, including responding quickly, maintaining a positive attitude, building rapport, demonstrating empathy, managing the customer's expectations, using the proper communication channel for the situation, and taking ownership to ensure the customer's issue is resolved.
  • Performs special projects and other duties as assigned.
Requirements:

What are the must-have qualifications for a candidate? 

  • Two-plus years of experience in governance, risk, and compliance (GRC); compliance; cybersecurity; or security awareness roles.
  • Strong understanding of security and regulatory frameworks, such as NIST CSF, CIS Controls, COBIT, and similar standards.
  • Experience supporting regulatory audits, evidence collection, or third-party compliance assessments.
  • Experience conducting vendor security risk assessments and documenting remediation activities.
  • Strong understanding of governance, risk, and compliance concepts.
  • Excellent organizational, written, verbal, and interpersonal communication skills.
  • Proficient use of Microsoft Office applications, including Excel, PowerPoint, and Word.
  • Ability to analyze information, identify trends, and communicate recommendations effectively.
  • Bachelor's degree in communications, business, or a related field or equivalent relevant experience.

What will our ideal candidate have?

  • Experience using governance, risk, and compliance platforms, such as Drata, Vanta, OneTrust, or Archer.
  • Knowledge of state insurance regulations and compliance reporting requirements.
  • Experience developing or leading security awareness and phishing simulation programs.
  • Experience supporting vendor management or third-party security review processes.
  • Experience developing executive dashboards and security performance reporting.
  • Professional certifications, such as CompTIA Security+, CISA, CRISC, or other governance, risk, and compliance-related credentials.
  • Experience within the insurance, financial services, or healthcare industry.

Compensation overview

The targeted hiring range for this role is $66,300 - $114,290 annually. However, the base pay offered may vary depending on the job-related knowledge, skills, credentials, and experience of each candidate as well as other factors such as the scope and location of the role. Candidates looking for compensation outside of the posted range are encouraged to apply and will be considered based on their individual qualifications and/or may be considered for other positions.


Culture and Total Rewards

Western National has long been known as “The Relationship Company®” and caring for our employees is part of that relationship commitment. We value connectiveness, empowerment, and accountability, and we believe that our employees are our biggest asset. 


Currently ranked as the 41st largest private company by revenue in Minnesota (Minneapolis/St. Paul Business Journal), Western National has earned accolades year-over-year as an employer of choice and garnered multiple awards for wellness in the workplace. Western National has also been named a Top Workplace by the Star Tribune for consecutive years. In addition, the Group is consistently recognized as a Ward’s 50 property-and-casualty insurance company for its outstanding financial results.


Western National offers full-time employees a significant Total Rewards Package, including:

  • Medical insurance plan options and other standard employee benefits, including dental insurance, vision benefits, life insurance, disability insurance, and more!
  • Health Savings Accounts (HSA) and Flexible Spending Accounts (FSA)
  • 401(k) Plan (participants are eligible for 100% matching on the first 6% of their contributions)
  • Wellbeing Program, including onsite fitness studio
  • Paid Time Off – including holiday, vacation, and volunteer
  • 100% company-paid tuition reimbursement for approved job-relevant coursework and access to The Institutes (Risk and insurance education)
  • Paid parental leave
  • Bonus opportunities

Western National believes in supporting balance between work and life by providing a flexible work environment, which includes a variety of hybrid and remote work arrangements designed to balance individual, job, department, and company needs. 


Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.


Western National provides employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.