1

Cybersecurity Governance Risk Compliance Jobs (NOW HIRING)

Director of Cybersecurity - GRC

Newark, NJ

$116K - $156K/yr

Job Summary The Director, Cybersecurity Governance, Risk, and Compliance leads the development, implementation, and ongoing coordination of enterprise-wide Cybersecurity Governance, Risk, and ...

next page

Showing results 1-20

Cybersecurity Governance Risk Compliance information

See salary details

$23K

$113.7K

$150.5K

How much do cybersecurity governance risk compliance jobs pay per year?

As of Jun 12, 2026, the average yearly pay for cybersecurity governance risk compliance in the United States is $113,704.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?

AspectCybersecurity Governance Risk ComplianceCybersecurity Analyst
CertificationsCISA, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, audits, compliance frameworksMonitoring security systems, incident response
Employer & Industry UsageOrganizations with compliance needs, regulatory bodiesIT security teams, cybersecurity firms

While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (GRC) professional, and why are they important?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of information security frameworks, risk management principles, and regulatory compliance, often supported by a degree in cybersecurity or related fields. Familiarity with tools like GRC platforms (e.g., Archer, ServiceNow), and certifications such as CISSP, CISM, or CRISC are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you interpret regulations and collaborate with stakeholders. These skills ensure organizations can manage cybersecurity risks proactively while meeting regulatory and industry standards.

What are some typical challenges faced by professionals in Cybersecurity Governance, Risk, and Compliance (GRC) roles?

Professionals in Cybersecurity GRC roles often navigate the challenge of keeping up with rapidly changing regulatory requirements while ensuring company policies align with both business objectives and security best practices. Balancing the need for robust security controls with operational efficiency, educating non-technical stakeholders about risk, and managing audits are common aspects of the job. Additionally, GRC professionals frequently collaborate with IT, legal, and business teams to ensure a cohesive approach to risk management and compliance. This dynamic environment requires strong communication skills, adaptability, and a commitment to continuous learning.

What is Cybersecurity Governance, Risk, and Compliance (GRC)?

Cybersecurity Governance, Risk, and Compliance (GRC) refers to a framework used by organizations to align their IT and security strategies with business objectives, manage risks, and ensure compliance with laws and regulations. Governance involves setting policies and procedures, risk focuses on identifying and addressing threats, and compliance ensures adherence to required standards. Professionals in this field help organizations protect sensitive data, avoid regulatory penalties, and build trust with stakeholders. GRC is essential for maintaining effective cybersecurity and demonstrating due diligence.
More about Cybersecurity Governance Risk Compliance jobs
What cities are hiring for Cybersecurity Governance Risk Compliance jobs? Cities with the most Cybersecurity Governance Risk Compliance job openings:
What states have the most Cybersecurity Governance Risk Compliance jobs? States with the most job openings for Cybersecurity Governance Risk Compliance jobs include:
Infographic showing various Cybersecurity Governance Risk Compliance job openings in the United States as of June 2026, with employment types broken down into 10% As Needed, 39% Full Time, 3% Part Time, 3% Temporary, and 45% Contract. Highlights an 81% Physical, 8% Hybrid, and 11% Remote job distribution, with an average salary of $113,704 per year, or $54.7 per hour.
Intern - Governance, Risk, and Compliance (GRC)

Intern - Governance, Risk, and Compliance (GRC)

Institute for Building Technology and Safety

Ashburn, VA โ€ข On-site

$40K - $49K/yr

Other

Posted 3 days ago


Job description

Responsibilities

Location: Ashburn, VA - Onsite

Duration: This is a temporary, part-time position not to exceed 29 hours per week.ย 

Position Summary

We are seeking a motivated and detail-oriented Governance, Risk, and Compliance (GRC) Intern to support cybersecurity governance, compliance, risk management, and data protection initiatives across the organization. The intern will work closely with cybersecurity and IT teams to assist with policy management, audit readiness, compliance tracking, documentation management, and security governance operations supporting frameworks such as SOC 2 and CMMC 2.0. This role provides hands-on experience in enterprise security governance, compliance operations, and modern data protection initiatives.

Key Responsibilities

  • Assist with reviewing, organizing, and maintaining security policies, standards, and procedures
  • Support compliance tracking, audit preparation, and evidence collection activities
  • Maintain risk registers, control documentation, and governance records
  • Assist with security awareness and governance-related initiatives
  • Support data governance and protection efforts including Microsoft Purview, Data Loss Prevention (DLP), Information Protection, and Insider Risk Management processes
  • Help review and organize access control, documentation, and compliance-related records
  • Assist with reporting, documentation updates, and process improvement initiatives
  • Collaborate with cybersecurity and IT teams to support ongoing compliance and governance operations
Qualifications

Preferred Qualifications

  • Pursuing or recently completed a degree in Cybersecurity, Information Systems, Information Assurance, Business, Risk Management, or a related field
  • Strong written communication, analytical, and organizational skills
  • Attention to detail and ability to manage documentation accurately
  • Familiarity with Microsoft 365, Excel, SharePoint, and Teams
  • Interest in governance, risk management, audit support, security controls, and compliance frameworks such as SOC 2 and CMMC 2.0
  • Collaborate professionally across teams

Nice-to-Have Skills

  • Exposure to Microsoft Purview, Data Loss Prevention (DLP), Information Protection, or Insider Risk Management concepts
  • Familiarity with cybersecurity governance or compliance processes
  • Understanding of security policies, audit procedures, or risk assessments
  • Experience with documentation management
  • Basic understanding of Microsoft Azure or cloud security concepts

Learning Opportunities

Interns will gain hands-on experience in:

  • Governance, Risk, and Compliance (GRC) operations
  • Security policy and standards management
  • Audit readiness and compliance tracking
  • Risk assessment and control documentation
  • SOC 2 and CMMC 2.0 aligned governance processes
  • Data protection and governance initiatives
  • Microsoft Purview, DLP, Information Protection, and Insider Risk Management concepts
  • Enterprise cybersecurity and IT governance collaboration

Example Projects

  • Assisting with audit evidence collection and compliance tracking activities
  • Organizing and updating cybersecurity policies and governance documentation
  • Supporting data classification and information protection initiatives
  • Reviewing shared file access and data governance reporting
  • Supporting risk register maintenance and control documentation updates
  • Helping improve documentation consistency and compliance readiness processes

Internship Details

  • Duration: 3-6 months (flexible)
Company Overview

Bring your passion, expertise, and experience to IBTS, where we appreciate and are committed to our employees. We offer outstanding benefits, growth opportunities, and work hard to maintain a culture that values our employees.ย 

The Institute for Building Technology and Safety (IBTS) is a 501(c) (3) non-profit organization established to provide unbiased professional building code compliance services, while enhancing the communities in which we work. At IBTS, our mission is to deliver quality services to meet the challenges of governance at all levels while enhancing public safety, economic development, and the general welfare of the community. Our services includeย Building and Community Development, Energy and Sustainability Services, Disaster Planning and Recovery, Quality Assurance, as well as Compliance and Risk Monitoring.

IBTS is headquartered in Ashburn, VA, with additional offices in Louisiana, Missouri, New York, Puerto Rico, and Washington, DC.

We are committed to building a community of experts with diverse backgrounds, disciplines, and perspectives who are passionate about our mission.ย IBTS is proud to be an Equal Opportunity and Affirmative Action Employer that maintains a diverse and inclusive workforce.ย  All qualified applicants will receive equal consideration for employment without regard to race, color, religion, sex, national origin, age, disability or sexual orientation. This opportunity is open to Section S3 Residents.ย  Veterans and individuals with disabilities are encouraged to apply.

Explore the opportunities!

Employment Type: OTHER