1

Director Cyber Security Grc Jobs (NOW HIRING)

Cybersecurity GRC Manager (Hybrid)

Houston, TX · On-site

$106K - $143K/yr

This is a unique opportunity to build and scale a global cybersecurity GRC program in a complex industrial environment with direct exposure to executive leadership. Reporting to the KES CISO, this ...

... Director of Cybersecurity is responsible for leading the enterprise's cybersecurity operations ... GRC) programs. This role serves as a key member of the security leadership team, translating ...

... Director of Cybersecurity is responsible for leading the enterprise's cybersecurity operations ... GRC) programs. This role serves as a key member of the security leadership team, translating ...

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Governance, Risk & Compliance (GRC) * Establish and maintain enterprise security governance ...

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Governance, Risk & Compliance (GRC) * Establish and maintain enterprise security governance ...

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Governance, Risk & Compliance (GRC) * Establish and maintain enterprise security governance ...

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Governance, Risk & Compliance (GRC) * Establish and maintain enterprise security governance ...

ABOUT THE ROLE The Partner, Cyber Security is the leader accountable for defining and building Hut ... GRC) program, aligning to recognized standards (e.g., NIST CSF, ISO 27001, SOC 2) and relevant ...

ABOUT THE ROLE The Partner, Cyber Security is the leader accountable for defining and building Hut ... GRC) program, aligning to recognized standards (e.g., NIST CSF, ISO 27001, SOC 2) and relevant ...

Director of Cybersecurity - GRC

Newark, NJ · On-site

$116K - $156K/yr

Job Summary The Director, Cybersecurity Governance, Risk, and Compliance leads the development, implementation, and ongoing coordination of enterprise-wide Cybersecurity Governance, Risk, and ...

ABOUT THE ROLE The Partner, Cyber Security is the leader accountable for defining and building Hut ... GRC) program, aligning to recognized standards (e.g., NIST CSF, ISO 27001, SOC 2) and relevant ...

Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program ... programs, directing multidisciplinary teams, overseeing contract performance, and delivering ...

Cybersecurity GRC Program Manager

Arlington, VA · On-site

$148K - $180K/yr

Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program ... programs, directing multidisciplinary teams, overseeing contract performance, and delivering ...

next page

Showing results 1-20

Director Cyber Security Grc information

See salary details

$57K

$133K

$186K

How much do director cyber security grc jobs pay per year?

As of Sep 1, 2026, the average yearly pay for director cyber security grc in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What does a director of Cyber Security GRC do?

A Director of Cyber Security GRC (Governance, Risk, and Compliance) leads the development and management of an organization's cybersecurity governance, risk management, and compliance programs. They ensure that security policies align with business objectives and regulatory requirements, assess cyber risks, and implement strategies to mitigate them. Additionally, they oversee compliance with industry standards and frameworks, manage audit processes, and foster a security-aware culture across the organization. This role typically involves working closely with executive leadership, IT teams, and external auditors.

What are the key skills and qualifications needed to thrive as a director of Cyber Security GRC, and why are they important?

To thrive as a Director of Cyber Security GRC, you need deep expertise in governance, risk management, compliance frameworks (such as ISO 27001, NIST, or SOC 2), and a relevant degree or certifications like CISSP or CISM. Familiarity with risk assessment tools, GRC platforms (e.g., Archer, ServiceNow), and security auditing systems is crucial. Outstanding leadership, strategic thinking, and the ability to communicate complex security issues to both technical and non-technical stakeholders are key soft skills. These capabilities are vital to ensure an organization’s security posture aligns with regulatory requirements and business objectives while fostering a culture of risk awareness.

What are some common challenges faced by a director of Cyber Security GRC when aligning security initiatives with business objectives?

A Director of Cyber Security GRC often encounters challenges in balancing robust risk management practices with the need for business agility and innovation. Translating technical security requirements into business language that resonates with executive leadership and stakeholders is crucial, as is ensuring that compliance efforts do not hinder operational efficiency. Additionally, keeping up with evolving regulatory standards and integrating them into the organization's existing processes can be complex. Effective collaboration with IT, legal, and business units is essential to ensure that security initiatives support, rather than impede, overall business goals.

What is the difference between Director Cyber Security Grc vs Cyber Security Manager?

AspectDirector Cyber Security GrcCyber Security Manager
CertificationsCISSP, CISM, CRISCCISSP, CISM, CISA
Work EnvironmentStrategic, policy-focused, executive levelOperational, team management, technical focus
ResponsibilitiesOversees governance, risk, compliance frameworksManages security teams, implements security measures
Industry UsageCommon in large organizations, compliance-heavy sectorsWidely used across various organizations for security operations

The main difference between a Director Cyber Security Grc and a Cyber Security Manager lies in scope and focus. The Director Grc is responsible for strategic governance, risk management, and compliance at an executive level, while the Cyber Security Manager handles day-to-day security operations and team management. Both roles require similar certifications but differ in their strategic versus operational focus.

More about Director Cyber Security Grc jobs

What cities are hiring for Director Cyber Security Grc jobs?

Cities with the most Director Cyber Security Grc job openings:

What are the most commonly searched types of Cyber Security Grc jobs?

The most popular types of Cyber Security Grc jobs are:

What states have the most Director Cyber Security Grc jobs?

States with the most job openings for Director Cyber Security Grc jobs include:

What job categories do people searching Director Cyber Security Grc jobs look for?

The top searched job categories for Director Cyber Security Grc jobs are:

Infographic showing various Director Cyber Security Grc job openings in the United States as of August 2026, with employment types broken down into 90% Full Time, and 10% Contract. Highlights an 75% In-person, and 25% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity GRC Manager (Hybrid)

Koch Industries

Houston, TX • On-site

$106K - $143K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 19 days ago


Koch Industries rating

8.0

Company rating: 8.0 out of 10

Based on 53 frontline employees who took The Breakroom Quiz

136th of 545 rated manufacturers


Job description

Your Job
Koch Engineered Solutions (KES) is looking for a Cybersecurity GRC Manager to join our global IT capability. This is a unique opportunity to build and scale a global cybersecurity GRC program in a complex industrial environment with direct exposure to executive leadership. Reporting to the KES CISO, this role will help strengthen how KES manages cybersecurity risk, compliance obligations, and governance practices to support operational resilience, customer trust, and business decision-making.
Enjoy the flexibility of a hybrid work schedule (3 days in office) while working from one of our locations in Wichita, KS; Tulsa, OK; Houston, TX; or Scottsdale, AZ.
Please note: This position is not eligible for visa sponsorship.
Our Team
The KES IT capability partners with the KES businesses to apply technology in ways that improve performance, manage risk, and support long-term business objectives. Within IT, the KES cybersecurity capability works in close partnership with other IT functions, the Koch cybersecurity organization, and business leaders across legal, compliance, commercial, and operations to meet customer, regulatory, and contractual security expectations while embedding security considerations into business and technology processes.
As a member of this team, you will operate in a diverse, cross-functional environment with a high degree of autonomy, driving outcomes across organizational boundaries.
What You Will Do
  • Own and mature the KES cybersecurity GRC program by establishing governance structure, policies, standards, expectations, and accountability across KES businesses.
  • Represent KES cybersecurity in internal meetings, review boards, and cross-functional forums, including coordination with the Koch cybersecurity organization.
  • Build and manage cybersecurity risk processes, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance.
  • Manage cybersecurity compliance obligations across regulatory, contractual, and customer requirements, including NIS2, China MLPS, NERC CIP, and other applicable cybersecurity standards and frameworks.
  • Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking in partnership with Legal, Compliance, commercial teams, IT, and business leaders.
  • Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services.
  • Coordinate the KES cybersecurity awareness program in partnership with the Koch cybersecurity organization, tailoring content, driving participation, and tracking effectiveness.
  • Monitor emerging cybersecurity risks, regulatory changes, technology trends, and program metrics to improve visibility, inform risk decisions, support executive reporting, and strengthen program effectiveness.
  • Travel as needed - approximately 10%

Who You Are (Basic Qualifications)
  • Experience in cybersecurity governance, risk, and compliance program management, including risk registers, remediation tracking, and compliance obligations.
  • Experience interpreting regulatory, contractual, and customer cybersecurity requirements and translating them into practical business actions.
  • Experience partnering with cross-functional stakeholders and leaders.
  • Demonstrated ability to influence in a matrixed environment.

What Will Put You Ahead
  • Experience with GRC platforms such as ZenGRC, ServiceNow GRC, or similar tools to manage risk, compliance, and audit activities.
  • Experience with cybersecurity requirements or frameworks such as NIS2, China MLPS, NERC CIP, ISO 27001, NIST CSF, CIS Controls, or other commonly used cybersecurity maturity frameworks.
  • Experience supporting customer cybersecurity questionnaires, contract security reviews, evidence requests, or external security assessments.
  • Experience applying cybersecurity governance and compliance practices, in a practical, risk-based manner that supports business objectives and enables informed decision-making.
  • Experience supporting cybersecurity governance in industrial, engineering, energy, manufacturing, or operational technology environments.
  • Experience supporting cybersecurity governance for emerging technologies, including AI-enabled tools or platforms.
  • Experience using AI tools to create efficiencies in business processes and role responsibilities.

At Koch companies, we are entrepreneurs. This means we openly challenge the status quo, find new ways to create value and get rewarded for our individual contributions. Any compensation range provided for a role is an estimate determined by available market data. The actual amount may be higher or lower than the range provided considering each candidate's knowledge, skills, abilities, and geographic location. If you have questions, please speak to your recruiter about the flexibility and detail of our compensation philosophy.
Hiring Philosophy
All Koch companies value diversity of thought, perspectives, aptitudes, experiences, and backgrounds. We are Military Ready and Second Chance employers. Learn more about our hiring philosophy here .
Who We Are
As a Koch company, Koch Engineered Solutions (KES) is a dynamic network of businesses that work together to create an ecosystem of domain expertise to increase operational efficiency, improve safety, reduce waste, and reduce emissions.
At Koch, employees are empowered to do what they do best to make life better. Learn how our business philosophy helps employees unleash their potential while creating value for themselves and the company.
Our Benefits
Our goal is for each employee, and their families, to live fulfilling and healthy lives. We provide essential resources and support to build and maintain physical, financial, and emotional strength - focusing on overall wellbeing so you can focus on what matters most. Our benefits plan includes - medical, dental, vision, flexible spending and health savings accounts, life insurance, ADD, disability, retirement, paid vacation/time off, educational assistance, and may also include infertility assistance, paid parental leave and adoption assistance. Specific eligibility criteria is set by the applicable Summary Plan Description, policy or guideline and benefits may vary by geographic region. If you have questions on what benefits apply to you, please speak to your recruiter.
Additionally, everyone has individual work and personal needs. We seek to enable the best work environment that helps you and the business work together to produce superior results.
Equal Opportunities
Equal Opportunity Employer, including disability and protected veteran status. Except where prohibited by state law, some offers of employment are conditioned upon successfully passing a drug test. This employer uses E-Verify. Please click here for additional information. (For Illinois E-Verify information click here , aquí , or tu ). #LI-MW1

What Koch Industries employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom