1

Cybersecurity Governance Risk Compliance Jobs in Novi, MI

Be Seen First

Senior Security & Compliance Analyst

Northville, MI · On-site

$94K - $121K/yr

Senior Security & Compliance Analyst Company: AISIN World Corp. of America Department: DX ... Understanding of cybersecurity risk assessment methodologies and governance processes. * Working ...

About the Role As a member of the Information Security team, the IS GRC - Risk & Compliance Senior Analyst will support the firm's Governance, Risk, and Compliance (GRC) program by managing security ...

... a collection of cybersecurity capabilities, including security strategy, governance, risk ... compliance requirements. * Support the execution of cybersecurity threat and risk assessments ...

Strong understanding of cybersecurity risk frameworks, controls, and governance practices. * Hands ... Ability to collaborate effectively with cybersecurity, IT, compliance, audit, and business teams.

Strong understanding of cybersecurity risk frameworks, controls, and governance practices. * Hands ... Ability to collaborate effectively with cybersecurity, IT, compliance, audit, and business teams.

next page

Showing results 1-20

Cybersecurity Governance Risk Compliance information

See Novi, MI salary details

$21.6K

$106.7K

$141.2K

How much do cybersecurity governance risk compliance jobs pay per year?

As of Aug 31, 2026, the average yearly pay for cybersecurity governance risk compliance in Novi, MI is $106,676.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,800.00 and $121,000.00 per year, depending on experience, location, and employer.

What is cybersecurity governance, risk, and compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.

What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What job categories do people searching Cybersecurity Governance Risk Compliance jobs in Novi, MI look for?

The top searched job categories for Cybersecurity Governance Risk Compliance jobs in Novi, MI are:

What cities near Novi, MI are hiring for Cybersecurity Governance Risk Compliance jobs?

Cities near Novi, MI with the most Cybersecurity Governance Risk Compliance job openings:

Infographic showing various Cybersecurity Governance Risk Compliance job openings in Novi, MI as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 13% Part Time, and 4% Contract. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $106,676 per year, or $51.3 per hour.

Manager of Cybersecurity Strategy and Governance

Huntington

Detroit, MI • On-site

$109K - $148K/yr

Full-time

Medical, Life, Retirement, PTO

Posted 11 days ago


Huntington National Bank rating

8.1

Company rating: 8.1 out of 10

Based on 173 frontline employees who took The Breakroom Quiz

65th of 173 rated banks


Job description

Description

This position is an onsite position and available to be filled at any Huntington Corporate office location:

  • Birmingham, AL
  • Tupelo, MS
  • Atlanta, GA
  • Houston, Tx
  • Dallas/Houston, TX
  • Minnetonka, MN
  • Detroit, MI

Job Summary:
The Manager of Cybersecurity Strategy and Governance is responsible for supporting the execution of strategic cybersecurity initiatives, maintaining governance processes, and collaborating with Cybersecurity teams to identify improvements to enhance the organization's overall security posture. Reporting to the Director of Cybersecurity Strategy, Innovation, and Governance (DCSIG), this role acts as a key leader responsible for translating strategic direction into actionable workstreams, partnering across cybersecurity and business units to promote governance discipline, control maturity, and innovation enablement.

The ideal candidate is detail-oriented, execution-focused, and capable of managing cross-functional efforts to ensure successful delivery of cybersecurity initiatives, reporting, and process enhancements.

Key Responsibilities:

Strategic Program Execution

  • Support the collaborative design and execution of a comprehensive cybersecurity strategy aligned with business objectives, risk management goals, regulatory and industry guidance, and long-term growth.
  • Operationalize components of the cybersecurity Strategy, Governance, and Innovation roadmap in close partnership with the DCSIG and Cybersecurity Leadership team.
  • Track progress against defined maturity goals and report key milestones, risks, and dependencies to leadership.
  • Continuously assess and refine the strategy to stay ahead of emerging threats, technologic advancements, banking trends, business direction, and evolving regulatory requirements.

Cybersecurity Governance & Policy Management

  • Support the lifecycle of cybersecurity policies and standards, including drafting, reviews, socialization, and periodic updates, in alignment with applicable regulations and industry standards (e.g., FFIEC, NIST, GLBA, SOX, PCI, DSS, CRI, ISO 27001).
  • Support the implementation of governance processes to ensure alignment with regulatory requirements and internal risk frameworks.
  • Coordinate inputs to governance forums, including meeting materials, charters, and action item follow-ups.

Risk & Compliance Support

  • Maintain and update the cybersecurity risk and control matrix (RCM) to reflect current-state control environment and ownership.
  • Partner with internal stakeholders to collect and validate cybersecurity-related inputs into enterprise risk assessments, RCSAs, and self-assessments.
  • Track and support closure of cybersecurity audit issues, regulatory findings, and control remediation items.

Continuous Improvement

  • Collaborate with cyber operations, engineering, and architecture teams to pilot and integrate innovative capabilities.
  • Participate in process improvement efforts, including current state mapping, metric tracking, and performance analysis.

Cybersecurity Metrics & Reporting

  • Develop, maintain, and operationalize cybersecurity metrics and dashboards to support executive and risk committee reporting.
  • Ensure data accuracy and alignment of metrics with business outcomes and program maturity goals.
  • Help automate and streamline reporting processes, reducing manual data collection efforts.

Stakeholder Engagement & Coordination

  • Coordinate working groups, task forces, and project teams related to cybersecurity governance and strategy implementation.
  • Facilitate collaboration across Legal, Compliance, Risk, and Technology functions to ensure cohesive program execution.
  • Serve as a resource for teams seeking clarification or support related to cybersecurity policies, controls, or governance processes.

Basic Qualifications:

  • Bachelor's degree in Cybersecurity, Risk Management, Information Systems, or a related field or 4+ additional years of equivalent experience.
  • 5+ years of experience in cybersecurity, risk, compliance, or governance functions.
  • 3+ years' experience utilizing cybersecurity frameworks (e.g., NIST CSF, FFIEC CAT, ISO 27001, CRI).
  • 3+ years' experience with regulatory and risk management practices, particularly in financial services or regulated industries.

Preferred Qualifications:

  • Proven experience managing cross-functional projects and delivering results in matrixed environments.
  • Strong communication and interpersonal skills, with the ability to translate technical concepts into business terms.
  • Proficiency in GRC platforms, data visualization tools, and metrics reporting.
  • Detail-oriented with strong organizational and execution skills.
  • Ability to thrive in a fast-paced environment with shifting priorities and multiple workstreams.


Exempt Status: (Yes= not eligible for overtime pay) (No= eligible for overtime pay)

Yes

Workplace Type:

Office

Our Approach to Office Workplace Type

Certain positions outside our branch network may be eligible for a flexible work arrangement. We're combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.

Compensation Range:

$102,000 - $208,000 Annual Salary

The compensation range represents the anticipated low and high end of the base compensation range for this position. Actual compensation will vary based on various factors including but not limited to location, experience, and education. Colleagues in this position are also eligible to participate in an applicable incentive compensation plan. In addition, Huntington provides a variety of benefits to colleagues, including health insurance coverage, wellness program, life and disability insurance, retirement savings plan, paid leave programs, paid holidays and paid time off (PTO).


Huntington is an Equal Opportunity Employer.


Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.


Note to Agency Recruiters: Huntington will not pay a fee for any placement resulting from the receipt of an unsolicited resume. All unsolicited resumes sent to any Huntington colleagues, directly or indirectly, will be considered Huntington property. Recruiting agencies must have a valid, written and fully executed Master Service Agreement and Statement of Work for consideration.



What Huntington National Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom