1

Cybersecurity Governance Risk Compliance Jobs in Oregon

OR · Hybrid

JOB SUMMARY The Cybersecurity GRC Analyst II plays a key role in supporting the organization's governance, risk, compliance, and audit programs while contributing to day-to-day cybersecurity ...

OR · Hybrid

JOB SUMMARY The Cybersecurity GRC Analyst II plays a key role in supporting the organization's governance, risk, compliance, and audit programs while contributing to day-to-day cybersecurity ...

OR

$125K - $168K/yr

What You'll Do Lead governance, risk, and compliance initiatives for ACH and card payment programs. Develop and maintain policies, procedures, and risk frameworks. Monitor regulatory changes and ...

Familiarity with cybersecurity governance, risk assessment, and compliance processes within regulated industries. Preferred * Advanced degree in Cybersecurity, Computer Science, Engineering, or a ...

$125K - $168K/yr

What You'll Do Lead governance, risk, and compliance initiatives for ACH and card payment programs. Develop and maintain policies, procedures, and risk frameworks. Monitor regulatory changes and ...

Position Description Valiant Solutions is seeking a Program Manager, specifically skilled in Cybersecurity Governance, Risk, and Compliance (GRC) , to join our rapidly growing and innovative ...

Partner with first-line IT and cybersecurity teams, TPRM, ERM, Legal, and Compliance to ensure ... Knowledge of AI/ML technology risk and related governance considerations in a fintech, lending, or ...

... SaaS, cybersecurity, risk, compliance, data, platform, or enterprise software. * Strong track ... Ability to understand emerging customer problems in AI governance, SaaS risk, data access, and ...

Experience supporting POA&M development, remediation tracking, and closure within Cyber Security Assessment and Management (CSAM) or a comparable governance, risk, and compliance system.

Conduct risk assessments across operational, financial, compliance, strategic, cybersecurity, and ... Governance, Reporting & Compliance * Ensure compliance with regulatory requirements and internal ...

next page

Showing results 1-20

Cybersecurity Governance Risk Compliance information

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (GRC) professional, and why are they important?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in Cybersecurity Governance, Risk, and Compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

What is Cybersecurity Governance, Risk, and Compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.
What are popular job titles related to Cybersecurity Governance Risk Compliance jobs in Oregon? For Cybersecurity Governance Risk Compliance jobs in Oregon, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Governance Risk Compliance jobs in Oregon look for? The top searched job categories for Cybersecurity Governance Risk Compliance jobs in Oregon are:
What cities in Oregon are hiring for Cybersecurity Governance Risk Compliance jobs? Cities in Oregon with the most Cybersecurity Governance Risk Compliance job openings:

Other

Posted 21 days ago


Consumer Direct Care Network rating

5.3

Company rating: 5.3 out of 10

Based on 46 frontline employees who took The Breakroom Quiz

191st of 240 rated social care providers


Job description

Description & Requirements
Culture Vision at Consumer Direct Care Network

At CDCN, we strive to create aworkplace where everyone issupported and motivated to betheir best; we collaborate onshared goals and celebrate ouraccomplishments.

WE WELCOME YOU INTO A GROWING COMPANY

Consumer Direct Care Network is all about caring for people. Care is at our core, and we strive to live up to it every day. We provide services in 14 states across the USA, and our programs grow every year. We specialize in home and community-based services that support individuals with disabilities and older adults so they can remain in their homes and communities.
 
JOB SUMMARY
 
The Cybersecurity GRC Analyst II plays a key role in supporting the organization's governance, risk, compliance, and audit programs while contributing to day-to-day cybersecurity operations. This position is responsible for coordinating audits and assessments, supporting risk management activities, maintaining security policies and compliance documentation, and tracking remediation efforts. The role also investigates security alerts, resolves cybersecurity incidents, performs root cause analysis, and assists with vulnerability management and continuous security monitoring. The Cybersecurity GRC Analyst II partners with business and technical teams to strengthen the organization's security posture, improve control effectiveness, and maintain audit readiness.
 
 
JOB DUTIES

  • Take lead role in CDCN external audit coordination for SOC2, HiTrust, and payer audits.
  • Conduct internal controls assessments.
  • Investigate and remediate malware, phishing, and endpoint alerts
  • Perform root cause analysis on moderate-level incidents and escalate as needed
  • Assist with vulnerability scanning and remediation activities
  • Provide peer mentoring and training in clear, non-technical language
  • Monitor logs and alerts to detect and respond to security events
  • Collaborate with IT teams to implement patches and strengthen system protections
  • Contribute to security-related projects from inception through completion
  • Develop and maintain documentation to ensure accurate processes and procedures
  • Comply with applicable legal requirements, standards, policies, and procedures
  • Ensure compliance with industry standards and best practices for system security and data protection
  • Stay current with emerging threats, industry best practices, and tools
  • Attend relevant conferences, seminars, and workshops as assigned
  • Demonstrates dependability
  • Other duties as assigned
 
QUALIFICATIONS

  • Bachelor's degree in IT, cybersecurity, or related field; or equivalent experience
  • 2-4 years of cybersecurity experience required
  • Security+, CGRC, CISA or equivalent entry-level cybersecurity certification preferred
  • Effective written and verbal communication skills
  • Strong decision-making and problem-solving skills
  • Ability to balance multiple priorities effectively
  • Be able to successfully pass a background screening
  • Employees must provide their own reliable internet if working a remote/hybrid position
  • Ability to work flexible and/or extended hours, if needed, to meet the job requirements
 
The incumbent typically works in an office environment and uses a computer, telephone and other office equipment as needed to perform duties. The noise level in the work environment is typical of that of an office. Incumbent may encounter frequent interruptions throughout the workday. The employee is regularly required to sit, talk, or hear; frequently required to use repetitive hand motion, handle or feel, and to stand, walk, reach, bend or lift up to 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

What Consumer Direct Care Network employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom