1

Cybersecurity Governance Risk Compliance Jobs (NOW HIRING)

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Cyber Security Analyst

Sioux Falls, SD ยท Remote

$60 - $65/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Governance, Risk & Compliance (GRC) * Support cybersecurity program maturity and governance initiatives. * Assist with cybersecurity policy, standards, and procedure development. * Research and ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Governance Risk & Compliance Analyst

Denver, CO ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote ... Monitor and analyze global regulatory developments related to cybersecurity with a focus on ...

Showing results 21-40

Cybersecurity Governance Risk Compliance information

See salary details

$23K

$113.7K

$150.5K

How much do cybersecurity governance risk compliance jobs pay per year?

As of Aug 12, 2026, the average yearly pay for cybersecurity governance risk compliance in the United States is $113,704.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

Is cybersecurity governance risk compliance a good career?

Cybersecurity Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in managing organizational security policies, risk assessments, and regulatory compliance. It requires knowledge of security frameworks, certifications like CISSP or CISM, and strong analytical skills. The role is in demand across various industries due to increasing cybersecurity threats and regulatory requirements.

Is cybersecurity governance risk compliance a good job?

Cybersecurity Governance, Risk, and Compliance (GRC) roles are in high demand due to increasing cybersecurity threats and regulatory requirements. These jobs typically require knowledge of security frameworks, risk management, and compliance standards, offering opportunities for career growth and specialization. They often involve collaboration across departments and may require certifications like CISSP or CISA.

What is cybersecurity governance, risk, and compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.
More about Cybersecurity Governance Risk Compliance jobs
What cities are hiring for Cybersecurity Governance Risk Compliance jobs? Cities with the most Cybersecurity Governance Risk Compliance job openings:
What states have the most Cybersecurity Governance Risk Compliance jobs? States with the most job openings for Cybersecurity Governance Risk Compliance jobs include:
Infographic showing various Cybersecurity Governance Risk Compliance job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, and 4% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $113,704 per year, or $54.7 per hour.

Senior Director, Cybersecurity Governance, Risk & Compliance (GRC)

Infor

Atlanta, GA โ€ข On-site

Full-time

Re-posted 8 days ago


Job description

Senior Director, Cybersecurity Governance, Risk & Compliance (GRC)
Department: Information Technology
Employment Type: Full Time
Location: Atlanta
Description
The Senior Director GRC at Infor will lead enterprise GRC at a global high-tech software company operating at the leading edge of cloud, AI, and enterprise SaaS. You'll shape the governance, risk, and compliance strategy for a complex, multi-cloud product portfolio serving customers across regulated industries worldwide - navigating an evolving global regulatory landscape that spans data privacy, AI governance, cloud sovereignty, and critical infrastructure protection.
Experience leading enterprise cybersecurity GRC programs at a high-tech, cloud-first software or SaaS company.
A Typical Day in the Life Includes:
  • Direct a high-performing GRC organization spanning risk management, compliance, audit, policy, and third-party risk. Mentor leaders, scale processes, and set the standard for operational excellence.
  • Define and execute the enterprise cybersecurity GRC strategy - aligning governance frameworks, risk appetite, and compliance priorities with business objectives, product roadmaps, and customer commitments.
  • Stay ahead of a rapidly shifting global regulatory landscape - GDPR, CCPA/CPRA, EU AI Act, NIS2, DORA, SEC cyber disclosure rules, state privacy laws, sector-specific mandates (HIPAA, PCI DSS, FedRAMP, CMMC, IRAP, C5), and emerging AI governance requirements. Translate change into actionable controls and customer-facing assurances.
  • Build and operationalize the AI risk and governance program - model risk management, responsible AI principles, training data governance, AI system inventories, and alignment with NIST AI RMF, ISO/IEC 42001, and the EU AI Act. Partner with engineering and product on AI assurance for generative and agentic features.
  • Own compliance posture across multi-cloud environments (Azure, AWS, GCP). Drive continuous control monitoring, automated evidence collection, and compliance-as-code to keep pace with rapid product innovation.
  • Operate the enterprise cyber risk program - risk identification, quantification (FAIR or equivalent), treatment, and reporting. Provide clear, decision-ready risk insights to executives, the board, and audit committees.
  • Lead external audits and certifications (SOC 1/2, ISO 27001/27701/42001, PCI DSS, FedRAMP, HITRUST, regional sovereign clouds). Build an audit-ready posture that scales with the business.
  • Mature the TPRM and software supply chain risk programs - vendor due diligence, ongoing monitoring, SBOM governance, and contractual security obligations.
  • Maintain a coherent policy and standards library aligned to NIST CSF 2.0, ISO 27001, CIS Controls, and SSDF. Drive adoption across engineering, IT, and business units.
  • Partner with sales, legal, and product to support customer trust - RFPs, security questionnaires, trust portals, DPAs, and executive customer engagements in regulated sectors.
  • Partner with security operations and legal on incident response governance, regulatory notification obligations, and breach disclosure readiness.
  • Deliver clear, business-aligned reporting to the CISO, executive leadership, and the board on risk posture, compliance health, and program maturity.

Basic Qualifications:
  • Experience across major frameworks and standards: NIST CSF 2.0, NIST 800-53, ISO 27001/27701/42001, SOC 2, PCI DSS, FedRAMP, HIPAA, GDPR, and emerging AI governance frameworks (EU AI Act, NIST AI RMF).
  • Experience of multi-cloud environments (Azure, AWS, GCP) and modern compliance automation - continuous control monitoring, GRC platforms (e.g., ServiceNow IRM, Archer, OneTrust, Drata, Vanta), and compliance-as-code.
  • Experience of AI/ML risk and governance - securing and governing generative AI, LLM-integrated products, model lifecycle, and AI supply chain.
  • Experience of enterprise risk management methodologies, risk quantification (FAIR), and translating risk into business language.
  • Experience of managing complex external audits and customer assurance programs at scale.
  • Experience briefing boards, regulators, and enterprise customers with clarity and credibility.
  • Experience balancing long-term program vision with pragmatic execution in a fast-moving product environment.

Location: Atlanta GA, Dallas TX