1

Cybersecurity Grc Jobs in Indiana (NOW HIRING)

Manager, Cyber Security

Indianapolis, IN · On-site

$150K - $165K/yr

Summary The Cybersecurity Manager is a senior role responsible for leading, maturing, and hands-on ... Familiarity with GRC platforms (e.g., ServiceNow GRC, Archer, OneTrust) * Experience with PAM ...

Manager, Cyber Security

Indianapolis, IN · Hybrid

$150K - $165K/yr

Summary The Cybersecurity Manager is a senior role responsible for leading, maturing, and hands-on ... Familiarity with GRC platforms (e.g., ServiceNow GRC, Archer, OneTrust) * Experience with PAM ...

Manager, Cyber Security

Indianapolis, IN · On-site

$150K - $165K/yr

Summary The Cybersecurity Manager is a senior role responsible for leading, maturing, and hands-on ... Familiarity with GRC platforms (e.g., ServiceNow GRC, Archer, OneTrust) * Experience with PAM ...

Senior GRC Risk Analyst

Carmel, IN · On-site

$105K - $130K/yr

Are you passionate about cybersecurity and protecting critical infrastructure? Join MISO as a Senior GRC Risk Analyst , where you will play a key role in safeguarding the power grid by identifying ...

Cybersecurity Risk Analyst

Evansville, IN · On-site

$36.93 - $55.40/hr

Four or more years of experience in cybersecurity, governance, risk and compliance (GRC), or a related field * Experience conducting risk assessments and evaluating cybersecurity risks * Knowledge of ...

Sr. GRC Analyst

Indianapolis, IN · On-site

$95K - $105K/yr

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven ... cybersecurity top-of-mind for all employees. * Reporting: Present program health metrics ...

$80K - $165K/yr

Responsible for leading Cybersecurity and IT governance, risk, and compliance efforts, including ... ServiceNow IRM/GRC experience to design/optimize workflow, reporting and implementing new features

next page

Showing results 1-20

Cybersecurity Grc information

See Indiana salary details

$36.6K

$55.4K

$82.8K

How much do cybersecurity grc jobs pay per year?

As of Jul 27, 2026, the average yearly pay for cybersecurity grc in Indiana is $55,353.00, according to ZipRecruiter salary data. Most workers in this role earn between $45,700.00 and $61,400.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Cybersecurity GRC roles, and how can they be addressed?

Professionals in Cybersecurity GRC (Governance, Risk, and Compliance) often encounter challenges such as keeping up with evolving regulatory requirements, balancing business objectives with security mandates, and fostering collaboration between IT, legal, and business teams. These challenges can be addressed by staying current with industry standards, utilizing automated tools for compliance tracking, and building strong communication channels across departments. Proactively engaging stakeholders and fostering a culture of security awareness also play a crucial role in overcoming these obstacles and ensuring effective risk management.

What is Cybersecurity GRC?

Cybersecurity GRC stands for Governance, Risk, and Compliance in the context of cybersecurity. It involves establishing frameworks and processes to ensure an organization's information security aligns with business objectives, regulatory requirements, and risk management strategies. Professionals in this field help identify and manage security risks, create policies and controls, and ensure compliance with laws and standards such as GDPR, HIPAA, or ISO 27001. The goal of Cybersecurity GRC is to protect the organization’s digital assets while enabling responsible growth and innovation.

What are the key skills and qualifications needed to thrive as a Cybersecurity GRC (Governance, Risk, and Compliance) professional, and why are they important?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of cybersecurity frameworks, risk management principles, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with tools like GRC platforms (e.g., RSA Archer, ServiceNow), as well as certifications such as CISSP, CISM, or CRISC, is typically required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating with stakeholders and translating technical risks into business implications. These competencies ensure organizations can proactively manage cyber risks, meet regulatory requirements, and maintain trust with clients and partners.

Is GRC in high demand?

Cybersecurity GRC (Governance, Risk, and Compliance) professionals are in high demand due to increasing cybersecurity regulations and the need for organizations to manage risks effectively. Employers seek candidates with knowledge of compliance frameworks, risk management, and security policies, often requiring certifications like CISA or CISSP. The role offers strong job growth prospects across various industries as cybersecurity threats continue to evolve.

What is the difference between Cybersecurity Grc vs Cybersecurity Analyst?

AspectCybersecurity GrcCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, vulnerability assessment
Employer & Industry UsageOrganizations focusing on governance and complianceSecurity operations centers, IT departments

Cybersecurity Grc professionals focus on establishing policies, managing risks, and ensuring compliance with regulations. In contrast, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the cybersecurity field, Grc roles are more strategic and policy-oriented, whereas Analysts are more technical and operational.

Can you make $200,000 in cyber security?

Cybersecurity GRC (Governance, Risk, and Compliance) professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISA, and leadership roles such as security managers or directors. Salary levels vary based on industry, location, and company size, with senior positions often reaching or exceeding this threshold.

What is the role of GRC in cybersecurity?

In cybersecurity, GRC (Governance, Risk Management, and Compliance) professionals develop and implement policies to ensure organizations meet security standards, manage risks, and comply with regulations. They use frameworks like ISO 27001 and tools such as risk assessments and audits to protect information assets and support security strategies.

How much do cyber GRC specialists make?

Cybersecurity GRC (Governance, Risk, and Compliance) specialists typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with advanced certifications like CISSP or CISA can earn higher salaries, especially in larger organizations or high-demand markets.
What are the most commonly searched types of Cybersecurity Grc jobs in Indiana? The most popular types of Cybersecurity Grc jobs in Indiana are:
What are popular job titles related to Cybersecurity Grc jobs in Indiana? For Cybersecurity Grc jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Grc jobs in Indiana look for? The top searched job categories for Cybersecurity Grc jobs in Indiana are:
What cities in Indiana are hiring for Cybersecurity Grc jobs? Cities in Indiana with the most Cybersecurity Grc job openings:
Infographic showing various Cybersecurity Grc job openings in Indiana as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $55,353 per year, or $26.6 per hour.
Sr. Third Party Cybersecurity GRC Analyst

Sr. Third Party Cybersecurity GRC Analyst

Elevance Health

Indianapolis, IN • Hybrid

$95K - $123K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Elevance Health rating

7.7

Company rating: 7.7 out of 10

Based on 348 frontline employees who took The Breakroom Quiz

198th of 299 rated insurance


Job description

Anticipated End Date:

2026-07-24

Position Title:

Sr. Third Party Cybersecurity GRC Analyst

Job Description:

Secuirty Analyst Sr. (Sr. Third Party Cybersecurity GRC Analyst)

Information Security Risk Management

Hybrid 1: This role requires associates to be in-office 1 - 2 days per week in the Indianaplis, IN or Atlanta, GA office, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace.

  • Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law.

The Security Analyst Sr. is responsible for independently assessing, documenting, and monitoring cybersecurity risks associated with third-party vendors, service providers, and business partners. This role evaluates vendor security controls, reviews assurance evidence, identifies control gaps, supports remediation and risk acceptance decisions, and provides subject matter expertise throughout the vendor lifecycle.

How you will make an impact:

  • Support internal and external audit and compliance activities, including HIPAA, HITRUST, NIST, PCI DSS, SOC 2, and other healthcare or cybersecurity-related assessments.
  • Lead cybersecurity risk assessments and due diligence reviews for third-party vendors, service providers, SaaS platforms, cloud providers, and other external business partners, including high-risk and critical vendors.
  • Evaluate vendor security documentation, including SOC reports, ISO certifications, HITRUST certifications, penetration test summaries, security questionnaires, policies, data flow diagrams, and remediation evidence.
  • Communicate directly with vendors to clarify questionnaire responses, request supporting evidence, validate remediation status, and coordinate risk mitigation activities.
  • Provides trouble resolution on complex problems and leads implementations for system and network security technologies.
  • Develops testing plans to ensure quality of implementation; coordinates and prepares the reporting of data security events and incidents; provides system and network architecture support for information and network security technologies
  • Provides technical support to business and technology associates in risk assessments and implementation of appropriate information security procedures, standards and technologies
  • Represents major upgrades and reconfigurations in change control
  • Design & analyze mix of vendor services meeting business and information security requirements
  • Determine and perform complex configuration changes to meet business and information security requirements
  • Serve as the technical escalation for results of preventative maintenance routines
  • Participate in metrics development, trend analysis, quality reviews, and program maturity initiatives to strengthen Elevance Health's third-party cybersecurity risk management program.
  • Represents infrastructure security support in significant projects and performs the most complex operations and administration tasks
  • Respond to level 3 & 4 change and problem requests without supervision
  • Lead level 1 & 2 incident recoveries and root cause analysis.

Minimum Requirements:

  • Requires a bachelor's degree or equivalentcombination of education and experience that would provide the knowledge to perform such work.
  • Experience must include a minimum of 3 years experience in a support & operations or design & engineering role in any of the following areas: access management or network security technologies, servers, networks, Network communications, telecommunications, operating systems, middleware, disaster recovery, collaboration technologies, hardware/software support or other infrastructure services role; or any combination of education and experience, which would provide an equivalent background.
  • Requires experience providing top-tier support for 3 or more of the information security technology areas: 1) Access Control, 2) Application Security, 3) Business Continuity and Disaster Recovery Planning, 4) Cryptography, 5) Information Security and Risk Management 6) Legal, Regulations, 7) Compliance and Investigations, 8) Operations Security, 9) Physical (Environmental) Security, 10) Security Architecture and Design, 11) Telecommunications and Network Security.

Preferred Skills, Capabilties, and Experiences

  • Technical security certifications (e.g.Systems Security Certified Practitioner) strongly preferred.BA/BS degree in Information System and Computer Science or related field of study strongly preferred.
  • 3-5+ years of experience in cybersecurity, third-party risk management, IT risk, GRC, IT audit, regulatory compliance, vendor risk management, or a related field.
  • Familiarity with common cybersecurity frameworks, standards, and assurance reports, such as NIST CSF, NIST SP 800-53, NIST SP 800-161, ISO 27001/27002, SOC 2, CIS Controls, Shared Assessments SIG, CSA CAIQ, or CSA CCM.
  • Experience with ServiceNow GRC/IRM, Vendor Security Risk Management, or similar third-party risk management workflows.
  • Experience performing third-party cybersecurity assessments in healthcare, insurance, financial services, or another regulated industry.
  • Familiarity with HIPAA, HITRUST, NIST, PCI DSS, SOC 2, ISO 27001, cloud security, and privacy/data protection control expectations.
  • Experience reviewing SOC 2 Type II reports, ISO 27001 certificates, HITRUST reports, PCI Attestations of Compliance, penetration test summaries, vendor security questionnaires, data flow diagrams, and technical remediation evidence.
  • Relevant certification such as CISA, CRISC, CISSP, CISM, Security+, CCSK, CCSP, ISO 27001 Lead Auditor/Implementer, AWS Certified Cloud Practitioner, or PCI DSS-related experience

Job Level:

Non-Management Exempt

Workshift:

Job Family:

IFT > IT Security & Compliance

Please be advised that Elevance Health only accepts resumes for compensation from agencies that have a signed agreement with Elevance Health. Any unsolicited resumes, including those submitted to hiring managers, are deemed to be the property of Elevance Health.


Who We Are

Elevance Health is a health company dedicated to improving lives and communities - and making healthcare simpler. We are a Fortune 25 company with a longstanding history in the healthcare industry, looking for leaders at all levels of the organization who are passionate about making an impact on our members and the communities we serve.


How We Work

At Elevance Health, we are creating a culture that is designed to advance our strategy but will also lead to personal and professional growth for our associates. Our values and behaviors are the root of our culture. They are how we achieve our strategy, power our business outcomes and drive our shared success - for our consumers, our associates, our communities and our business.


We offer a range of market-competitive total rewards that include merit increases, paid holidays, Paid Time Off, and incentive bonus programs (unless covered by a collective bargaining agreement), medical, dental, vision, short and long term disability benefits, 401(k) +match, stock purchase plan, life insurance, wellness programs and financial education resources, to name a few.


Elevance Health operates in a Hybrid Workforce Strategy. Unless specified as primarily virtual by the hiring manager, associates are required to work at an Elevance Health location at least once per week, and potentially several times per week. Specific requirements and expectations for time onsite will be discussed as part of the hiring process.


The health of our associates and communities is a top priority for Elevance Health. We require all new candidates in certain patient/member-facing roles to become vaccinated against COVID-19 and Influenza. If you are not vaccinated, your offer will be rescinded unless you provide an acceptable explanation. Elevance Health will also follow all relevant federal, state and local laws.


Elevance Health is an Equal Employment Opportunity employer, and all qualified applicants will receive consideration for employment without regard to age, citizenship status, color, creed, disability, ethnicity, genetic information, gender (including gender identity and gender expression), marital status, national origin, race, religion, sex, sexual orientation, veteran status or any other status or condition protected by applicable federal, state, or local laws. Applicants who require accommodation to participate in the job application process should submit the following form: Accessibility Accommodation Request Form and a member of the team will be in contact. Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws, including, but not limited to, the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act.


Prospective employees required to be screened under Florida law should review the education and awareness resources at HB531 | Florida Agency for Health Care Administration.


NOTE: Workday keeps job postings active through 11:59:59 PM on the day before the listed end date. Example: If the end date is 3/13, the posting will automatically come down on 3/12 at 11:59:59 PM. In other words - the job is posted until 3/13, not through 3/13.


What Elevance Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Elevance Health logo

About Elevance Health

Sourced by ZipRecruiter

Elevance Health is a health company dedicated to improving lives and communities - and making healthcare simpler. A Fortune 20 company with a longstanding history in the healthcare industry, we are looking for leaders at all levels of the organization who are passionate about making an impact on our members and the communities we serve. You will thrive in a complex and collaborative environment where you take action and ownership to solve problems and lead change. Do you want to be part of a larger purpose and an evolving, high-performance culture that empowers you to make an impact?

Industry

Health care and social assistance

Company size

10,000+ Employees

Headquarters location

Indianapolis, IN, US

Year founded

2004

Social media