1

Cybersecurity Grc Jobs in Indiana (NOW HIRING)

next page

Showing results 1-20

Cybersecurity Grc information

See Indiana salary details

$36.6K

$55.4K

$82.8K

How much do cybersecurity grc jobs pay per year?

As of May 29, 2026, the average yearly pay for cybersecurity grc in Indiana is $55,353.00, according to ZipRecruiter salary data. Most workers in this role earn between $45,700.00 and $61,400.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cybersecurity GRC (Governance, Risk, and Compliance) professional, and why are they important?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of cybersecurity frameworks, risk management principles, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with tools like GRC platforms (e.g., RSA Archer, ServiceNow), as well as certifications such as CISSP, CISM, or CRISC, is typically required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating with stakeholders and translating technical risks into business implications. These competencies ensure organizations can proactively manage cyber risks, meet regulatory requirements, and maintain trust with clients and partners.

What are some common challenges faced by professionals in Cybersecurity GRC roles, and how can they be addressed?

Professionals in Cybersecurity GRC (Governance, Risk, and Compliance) often encounter challenges such as keeping up with evolving regulatory requirements, balancing business objectives with security mandates, and fostering collaboration between IT, legal, and business teams. These challenges can be addressed by staying current with industry standards, utilizing automated tools for compliance tracking, and building strong communication channels across departments. Proactively engaging stakeholders and fostering a culture of security awareness also play a crucial role in overcoming these obstacles and ensuring effective risk management.

What is Cybersecurity GRC?

Cybersecurity GRC stands for Governance, Risk, and Compliance in the context of cybersecurity. It involves establishing frameworks and processes to ensure an organization's information security aligns with business objectives, regulatory requirements, and risk management strategies. Professionals in this field help identify and manage security risks, create policies and controls, and ensure compliance with laws and standards such as GDPR, HIPAA, or ISO 27001. The goal of Cybersecurity GRC is to protect the organization’s digital assets while enabling responsible growth and innovation.

What is GRC in cyber security jobs?

GRC in cybersecurity jobs stands for Governance, Risk Management, and Compliance. Professionals in this field develop and implement policies, assess security risks, and ensure organizations meet regulatory requirements using tools like audits and frameworks such as ISO 27001 or NIST. Strong understanding of security standards and risk assessment skills are essential for GRC roles.

What is the difference between Cybersecurity Grc vs Cybersecurity Analyst?

AspectCybersecurity GrcCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, vulnerability assessment
Employer & Industry UsageOrganizations focusing on governance and complianceSecurity operations centers, IT departments

Cybersecurity Grc professionals focus on establishing policies, managing risks, and ensuring compliance with regulations. In contrast, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the cybersecurity field, Grc roles are more strategic and policy-oriented, whereas Analysts are more technical and operational.

What are the most commonly searched types of Cybersecurity Grc jobs in Indiana? The most popular types of Cybersecurity Grc jobs in Indiana are:
What are popular job titles related to Cybersecurity Grc jobs in Indiana? For Cybersecurity Grc jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Grc jobs in Indiana look for? The top searched job categories for Cybersecurity Grc jobs in Indiana are:
What cities in Indiana are hiring for Cybersecurity Grc jobs? Cities in Indiana with the most Cybersecurity Grc job openings:
Infographic showing various Cybersecurity Grc job openings in Indiana as of May 2026, with employment types broken down into 96% Full Time, and 4% Part Time. Highlights an 72% Physical, 14% Hybrid, and 14% Remote job distribution, with an average salary of $55,353 per year, or $26.6 per hour.

Sr. Director, Dep CISO GRC & Security, Orthopedics

Johnson & Johnson MedTech

Warsaw, IN • On-site

Full-time

Posted 27 days ago


Job description

Job Summary:
Johnson & Johnson MedTech is a leader in healthcare innovation, dedicated to improving patient care. The Sr. Director, Deputy CISO will provide strategic leadership for Governance, Risk & Compliance and Product Security, ensuring alignment with business priorities and regulatory requirements while enhancing cybersecurity posture.
Responsibilities:
• Provide strategic leadership and operational oversight for enterprise GRC and Product Security programs, ensuring alignment with business priorities and regulatory requirements.
• Partner with the CISO to define and execute the cybersecurity strategy, serving as a delegate and decision authority as needed.
• Lead enterprise risk management activities, including cyber risk identification, assessment, mitigation, and reporting to executive leadership.
• Own the enterprise cyber security policy lifecycle—from creation and implementation to continuous review—ensuring clarity, compliance, and alignment with organizational goals.
• Oversee cybersecurity compliance with global regulations, standards, and frameworks relevant to medical devices and digital health solutions.
• Establish and maintain product security governance across the product lifecycle, from design and development through post‑market support.
• Drive secure‑by‑design principles and threat modeling in partnership with R&D, Engineering, Quality, and Regulatory teams.
• Lead and develop high‑performing cybersecurity leaders and teams, fostering a culture of accountability, collaboration, and continuous improvement.
• Provide executive‑level reporting on cybersecurity risk, compliance status, and program effectiveness to senior leadership and governance bodies.
Qualifications:
Required:
• Bachelor’s degree in Information Security, Computer Science, Engineering, or a related field.
• 12–14 years of progressive experience in cybersecurity, information security, or technology risk management, including senior leadership roles.
• Demonstrated experience leading GRC and Product Security programs in a regulated environment (medical device, healthcare, or life sciences strongly preferred).
• Deep knowledge of cybersecurity risk management, compliance frameworks, and regulatory expectations.
• Experience building, mentoring, and leading senior‑level cybersecurity teams.
• Strong strategic, analytical, and communication skills, with the ability to translate technical risk into business impact.
• Language: English (fluent)
• Travel: Up to 20%, domestic and international
Preferred:
• Master’s degree (MS, MBA, or equivalent) in Cybersecurity, Information Systems, or Business.
• Experience supporting product security for connected, software‑enabled, or digital medical devices.
• Familiarity with global regulatory bodies and standards impacting product cybersecurity.
• Experience operating in complex, global organizations undergoing transformation or separation.
• Background in incident response governance, vulnerability disclosure, and post‑market surveillance.
• Demonstrated success driving cybersecurity maturity and cultural change at scale.
• Proven ability to influence executive stakeholders and partner effectively across IT, R&D, Quality, Legal, and Regulatory functions.
• Certifications (preferred): CISSP, CISM, CRISC, or equivalent
Company:
At Johnson & Johnson MedTech, we are working to solve the world’s most pressing healthcare challenges through innovations at the intersection of biology and technology. Founded in 1886, the company is headquartered in New Brunswick, New Jersey, US, , with a team of 10001+ employees. The company is currently Late Stage.