1

Cybersecurity Grc Jobs in Remote, OR (NOW HIRING)

CMMC Compliance Analyst

OR · Remote

$105K - $141K/yr

... cybersecurity and contracting requirements for Defense Industrial Base contractors. * Familiarity with evolving CMMC requirements * Experience integrating GRC platforms into continuous monitoring ...

Cybersecurity Grc information

See Remote, OR salary details

$38.5K

$58.1K

$86.9K

How much do cybersecurity grc jobs pay per year?

As of Jul 27, 2026, the average yearly pay for cybersecurity grc in Remote, OR is $58,113.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,000.00 and $64,400.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Cybersecurity GRC roles, and how can they be addressed?

Professionals in Cybersecurity GRC (Governance, Risk, and Compliance) often encounter challenges such as keeping up with evolving regulatory requirements, balancing business objectives with security mandates, and fostering collaboration between IT, legal, and business teams. These challenges can be addressed by staying current with industry standards, utilizing automated tools for compliance tracking, and building strong communication channels across departments. Proactively engaging stakeholders and fostering a culture of security awareness also play a crucial role in overcoming these obstacles and ensuring effective risk management.

What is Cybersecurity GRC?

Cybersecurity GRC stands for Governance, Risk, and Compliance in the context of cybersecurity. It involves establishing frameworks and processes to ensure an organization's information security aligns with business objectives, regulatory requirements, and risk management strategies. Professionals in this field help identify and manage security risks, create policies and controls, and ensure compliance with laws and standards such as GDPR, HIPAA, or ISO 27001. The goal of Cybersecurity GRC is to protect the organization’s digital assets while enabling responsible growth and innovation.

What are the key skills and qualifications needed to thrive as a Cybersecurity GRC (Governance, Risk, and Compliance) professional, and why are they important?

To thrive as a Cybersecurity GRC professional, you need a solid understanding of cybersecurity frameworks, risk management principles, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with tools like GRC platforms (e.g., RSA Archer, ServiceNow), as well as certifications such as CISSP, CISM, or CRISC, is typically required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating with stakeholders and translating technical risks into business implications. These competencies ensure organizations can proactively manage cyber risks, meet regulatory requirements, and maintain trust with clients and partners.

Is GRC in high demand?

Cybersecurity GRC (Governance, Risk, and Compliance) professionals are in high demand due to increasing cybersecurity regulations and the need for organizations to manage risks effectively. Employers seek candidates with knowledge of compliance frameworks, risk management, and security policies, often requiring certifications like CISA or CISSP. The role offers strong job growth prospects across various industries as cybersecurity threats continue to evolve.

What is the difference between Cybersecurity Grc vs Cybersecurity Analyst?

AspectCybersecurity GrcCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, vulnerability assessment
Employer & Industry UsageOrganizations focusing on governance and complianceSecurity operations centers, IT departments

Cybersecurity Grc professionals focus on establishing policies, managing risks, and ensuring compliance with regulations. In contrast, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the cybersecurity field, Grc roles are more strategic and policy-oriented, whereas Analysts are more technical and operational.

Can you make $200,000 in cyber security?

Cybersecurity GRC (Governance, Risk, and Compliance) professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISA, and leadership roles such as security managers or directors. Salary levels vary based on industry, location, and company size, with senior positions often reaching or exceeding this threshold.

What is the role of GRC in cybersecurity?

In cybersecurity, GRC (Governance, Risk Management, and Compliance) professionals develop and implement policies to ensure organizations meet security standards, manage risks, and comply with regulations. They use frameworks like ISO 27001 and tools such as risk assessments and audits to protect information assets and support security strategies.

How much do cyber GRC specialists make?

Cybersecurity GRC (Governance, Risk, and Compliance) specialists typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with advanced certifications like CISSP or CISA can earn higher salaries, especially in larger organizations or high-demand markets.
What are popular job titles related to Cybersecurity Grc jobs in Remote, OR? For Cybersecurity Grc jobs in Remote, OR, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Grc jobs in Remote, OR look for? The top searched job categories for Cybersecurity Grc jobs in Remote, OR are:
Infographic showing various Cybersecurity Grc job openings in Remote, OR as of July 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 67% In-person, and 33% Remote job distribution, with an average salary of $58,113 per year, or $27.9 per hour.
CMMC Compliance Analyst

$105K - $141K/yr

Other

Medical, Life

Posted 5 days ago


Lumen Technologies rating

8.7

Company rating: 8.7 out of 10

Based on 104 frontline employees who took The Breakroom Quiz

8th of 96 rated telecommunications companies


Job description

Lumen is the trusted network for the AIpowered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, highperformance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.

At Lumen, you'll work on infrastructure customers rely on today and build for what's next, where performance, security, and resilience matter.

This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you're ready to take ownership, deliver meaningful impact, and help shape the future of AIready connectivity, join us today.

The Role

Lumen is looking for an experienced cybersecurity compliance professional to support the ongoing continuous monitoring and compliance operations of a CMMC Level 2 (L2) assessed enclave. These roles are critical to maintaining audit readiness, sustaining compliance with NIST SP 800-171, and supporting successful C3PAO reassessments.

The ideal candidates bring hands-on experience supporting a successful CMMC Level 2 assessment and possess a strong understanding of control implementation, evidence management, and continuous monitoring practices within a regulated DoD environment.


 

Location

This is a remote opportunity open to candidates located anywhere in the U.S.

The Main Responsibilities
  • Execute continuous monitoring activities across a CMMC L2 enclave, ensuring ongoing compliance with NIST SP 800-171 controls
  • Maintain audit-ready evidence repositories, including policies, procedures, and technical artifacts
  • Perform periodic control assessments, validation, and remediation tracking
  • Support POA&M management, including identification, documentation, and closure of findings
  • Leverage GRC tools to manage controls, track compliance status, and maintain evidence
  • Collaborate with system owners, engineers, and ISSOs to ensure proper control implementation and sustainment
  • Prepare for and support C3PAO assessments, surveillance reviews, and re-certification activities
  • Track and report compliance status, risks, and metrics to leadership
  • Assist in updating SSPs, network diagrams, data flow diagrams, and supporting documentation
What We Look For in a Candidate

Required Qualifications:

  • CMMC Registered Practitioner Advanced (RPA)
  • CMMC Certified Professional (CCP) certification within the first six months
  • Demonstrated experience supporting a successful CMMC Level 2 C3PAO assessment
  • Experience with continuous monitoring, audit preparation, and compliance documentation
  • Strong working knowledge of NIST SP 800-171 controls and assessment objectives
  • Working knowledge of FAR, DFARS, and CMMC-related cybersecurity and contracting requirements for Defense Industrial Base contractors.
  • Familiarity with evolving CMMC requirements
  • Experience integrating GRC platforms into continuous monitoring workflows and reporting
  • Familiarity with POA&M management and remediation processes
  • Ability to work in a structured, compliance-driven environment with strong attention to detail

Preferred Qualifications:

  • CMMC Certified Assessor (CCA) certification
  • Experience supporting FedRAMP Moderate or High ATO environments
  • Hands-on experience using GRC tools such as ServiceNow IRM, Diligent, Archer, or similar platforms
  • Understanding of cloud environments (Azure Gov, AWS GovCloud) in regulated enclaves
Compensation

This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.


Location Based Pay Ranges
$105,786 - $141,047 in these states: AL  AR  AZ  FL  GA  IA  ID  IN  KS  KY  LA  ME  MO  MS  MT  ND  NE  NM  OH  OK  PA  SC  SD  TN  UT  VT  WI  WV  WY 
$111,074 - $148,099 in these states: CO  HI  MI  MN  NC  NH  NV  OR  RI 
$116,364 - $155,152 in these states: AK  CA  CT  DC  DE  IL  MA  MD  NJ  NY  TX  VA  WA 

 
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.

  Learn more about Lumen's: Benefits

Bonus Structure

#LI-Remote

Requisition #: 342277

Life at Lumen

Life at Lumen is human and connected, even in a fast moving, AIfocused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes. 

Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.  

To learn more about Life at Lumen and how we live the Lumen 8, please visit:  
https://jobs.lumen.com/global/en/life-at-lumen

Background Screening

If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page. Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.


Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Equal Employment Opportunities

We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, "protected statuses"). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.

Privacy Notice

Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data.

To review Lumen's Privacy Notice, please visit:
https://jobs.lumen.com/global/en/privacy-notice

Disclaimer

The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.

In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.


What Lumen Technologies employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Lumen Technologies logo

About Lumen Technologies

Sourced by ZipRecruiter

Lumen Technologies, headquartered in Monroe, LA, US, is a leader in the telecommunications industry. The company provides an array of solutions ranging from voice, broadband, and video services for consumers, businesses, and governmental agencies. Additionally, they offer data management, cloud, network, and IT services for enterprise customers. Lumen Technologies was founded in 1930, originally as the Louisiana Long Distance Independent Telephone Company. The company’s mission is to further human progress through technology, promoting a robust digital ecosystem, which is reflective of their core values of trust, respect, and innovative problem-solving that aims to have a significant impact on their clients' businesses.

Industry

Media and telecom

Company size

10,000+ Employees

Headquarters location

Monroe, LA, US

Year founded

1968

Social media