1

Cybersecurity Grc Specialist Jobs (NOW HIRING)

GRC Specialist II

Chicago, IL · On-site

$116K - $144K/yr

GRC Specialist II Salary: $116,000-$144,000 As a Security GRC Specialist II , you'll be a key ... Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity ...

Be Seen First

GRC Cybersecurity Specialist

Austin, TX · On-site

$115K - $144K/yr

Citizen or Green Card Holder required Our client is seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Specialist II to join its Information Security organization in Austin.

Bachelor's degree in cyber security, information systems, risk management, business, or a relevant field preferred; equivalent professional experience will be considered. * 3-6 years of experience in ...

Cyber GRC Specialist

Washington, DC · On-site

$90 - $130/hr

Bachelor's degree in cyber security, information systems, risk management, business, or a relevant ... Experience with GRC or trust-management platforms such as Vanta, Archer, ServiceNow GRC, OneTrust ...

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our ... Experience with IT and information security technologies and controls including cybersecurity ...

Bachelor's degree in cyber security, information systems, risk management, business, or a relevant field preferred; equivalent professional experience will be considered. * 3-6 years of experience in ...

IT GRC Specialist

Tucson, AZ · On-site

$95 - $140/hr

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our ... Experience with IT and information security technologies and controls including cybersecurity ...

GRC Specialist

Plano, TX · On-site

$65 - $80/hr

Description Financial client is seeking a senior-level IT Governance, Risk, and Compliance (GRC ... FFIEC IT Examination Handbook NIST Cybersecurity Framework NIST 800-53 IT General Controls (ITGCs ...

New

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our ... Experience with IT and information security technologies and controls including cybersecurity ...

GRC Specialist

Plano, TX · Remote

$65 - $80/hr

... practices, cybersecurity governance, and financial services compliance. This is not a project ... GRC Experience Must possess experience in at least one of: • IT Audit • Information Security ...

New

Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in ... Experience with IT and information security technologies and controls including cybersecurity ...

We are seeking an experienced Security Compliance Specialist to support security, privacy, risk ... Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Security ...

next page

Showing results 1-20

Cybersecurity Grc Specialist information

See salary details

$45K

$93.2K

$145K

How much do cybersecurity grc specialist jobs pay per year?

As of Aug 29, 2026, the average yearly pay for cybersecurity grc specialist in the United States is $93,170.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,500.00 and $112,000.00 per year, depending on experience, location, and employer.

What is a Cybersecurity GRC Specialist?

Cybersecurity GRC (Governance, Risk, and Compliance) Specialists are professionals responsible for ensuring that an organization’s information security policies and procedures comply with regulatory requirements and industry standards. They assess risks, develop and implement security controls, and monitor ongoing compliance. These specialists also work to align cybersecurity strategies with business objectives and help manage audits, risk assessments, and incident response plans.

How does a Cybersecurity GRC Specialist typically collaborate with other departments to ensure compliance?

A Cybersecurity GRC (Governance, Risk, and Compliance) Specialist frequently works closely with IT, legal, and business operations teams to interpret regulatory requirements and translate them into actionable security policies. This role involves facilitating risk assessments, coordinating audits, and providing guidance to ensure that all departments understand and adhere to compliance frameworks. Effective communication and relationship-building are key, as GRC Specialists often lead training sessions, respond to compliance inquiries, and act as liaisons between technical and non-technical staff. Collaboration ensures that security controls are integrated seamlessly into business processes, minimizing risk and supporting organizational objectives.

What are the key skills and qualifications needed to thrive as a Cybersecurity GRC Specialist, and why are they important?

To thrive as a Cybersecurity GRC Specialist, you need a strong understanding of risk management, cybersecurity frameworks (such as NIST and ISO 27001), and compliance regulations, often backed by a relevant degree and certifications like CISSP or CISA. Familiarity with GRC platforms (like RSA Archer), vulnerability management tools, and audit software is typically required. Excellent analytical thinking, attention to detail, and communication skills help you assess risks and convey complex compliance requirements to varied stakeholders. These competencies are crucial for ensuring organizational security, regulatory compliance, and effective risk mitigation in a constantly evolving threat landscape.

What is the difference between Cybersecurity Grc Specialist vs Cybersecurity Analyst?

AspectCybersecurity Grc SpecialistCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, system monitoring
Employer & Industry UsageOrganizations focusing on governance and complianceOrganizations focusing on security operations and threat mitigation

The main difference is that a Cybersecurity Grc Specialist focuses on governance, risk management, and compliance, ensuring organizations meet security standards. In contrast, a Cybersecurity Analyst primarily handles threat detection and incident response. Both roles require similar certifications but serve different functions within cybersecurity teams.

More about Cybersecurity Grc Specialist jobs

What cities are hiring for Cybersecurity Grc Specialist jobs?

Cities with the most Cybersecurity Grc Specialist job openings:

What states have the most Cybersecurity Grc Specialist jobs?

States with the most job openings for Cybersecurity Grc Specialist jobs include:

Infographic showing various Cybersecurity Grc Specialist job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 12% Part Time, and 2% Contract. Highlights an 79% Physical, 2% Hybrid, and 19% Remote job distribution, with an average salary of $93,170 per year, or $44.8 per hour.

Cybersecurity GRC Specialist

Request Technology, LLC

Chicago, IL • On-site

Other

Posted 3 days ago

New


Job description

NO SPONSORSHIP - NO OPT

Cybersecurity GRC Specialist II

SALARY: $116,000 - $144,000 plus bonus

LOCATION: CHICAGO, IL

Hybrid 3 days onsite

SELLING POINTS: governance risk compliance across the enterprise client third party vendor risk management bs degree ISO 27001 NIST, SOC, AI, RISK

As a Security GRC Specialist II, you ll be a key member of the Governance, Risk, and Compliance (GRC) team, leading and executing core GRC programs while serving as a trusted Information Security subject matter expert. This role blends strategic oversight with hands-on execution partnering with technical teams, business stakeholders, clients, and vendors to ensure security controls, policies, and risk practices are effective, compliant, and clearly communicated.

What You ll Do

  • Client & Third-Party Assessments: Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
  • Policy & Standards Management: Create, maintain, and evolve security policies, standards, guidelines, and supporting documentation through strong technical writing.
  • Risk & Compliance Assurance: Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.
  • Security Consulting & SME Support: Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
  • Vendor Risk Management: Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
  • Exception & Risk Treatment: Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.
  • Security Awareness Program: Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
  • GRC Platform Administration: Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
  • Controls & Compliance Evaluations: Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.

Qualifications:

  • Education: Bachelor's degree or equivalent with five (5) years of work experience in IT Security is required.
  • Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), Advanced in AI Audit (AAIA), Advanced in AI Risk (AAIR), Advanced in AI Security Management (AAISM) or other relevant training and certifications are preferred.
  • Information Security Experience: Four (4) or more years of Information Security experience, with handson technical experience strongly preferred.
  • Framework & GRC Knowledge: Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG) is required.
  • AI Risk: Experience in Artificial Intelligence (AI) governance, security, and risk management is required.
  • Technical Writing & Communication: Proven ability to produce clear, well-structured security documentation and communicate complex technical topics to varied audiences.
  • Risk & Vendor Management Skills: Experience leading risk assessments, vendor security reviews, and client-facing security discussions with professionalism and tact.
  • GRC Tools & Technologies: Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.
  • Analytical & Organizational Strength: Strong problem-solving, project management, and time management skills with the ability to work independently or collaboratively.
  • Technical Acumen: Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.
  • Collaboration & Professionalism: Client-focused mindset with strong interpersonal skills, attention to detail, and a commitment to maintaining accurate records and documentation.