2

Full Time Cyber Security Grc Jobs (NOW HIRING)

Emp Status Regular Full time Work Shift Compensation Range What you will be doing PRINCIPAL DUTIES ... We are looking for a Cybersecurity GRC Engineer who can bridge the gap between governance, risk ...

New

Cybersecurity Engineer

Draper, UT · On-site

$90K - $114K/yr

A Cybersecurity / GRC Engineer supports the execution and continuous improvement of an organization ... on a full time and consulting basis. If you're interested in a role where top performance is ...

Cyber Security Intern (GRC)

Richland, WA · On-site

$21 - $32.50/hr

... join our cybersecurity team supporting the Department of Energy Hanford Site in Richland ... This is a full-time internship (30-40 hours per week) and is expected to continue until the ...

... join our cybersecurity team supporting the Department of Energy Hanford Site in Richland ... This is a full-time remote internship (30-40 hours per week) based in Richland, WA, with optional ...

Participate in the on-boarding of clients into GRC tools like Apptega. * Provide training and ... Job Type: Full-time; Work mostly from home and occasionally at client sites. Benefits: Medical ...

... Full-Time Openings: Two (2) About the Role ASL is seeking a Governance, Risk, and Compliance (GRC) Analyst / Information System Security Officer (ISSO) to support cybersecurity compliance and RMF ...

New

next page

Showing results 1-20

Full Time Cyber Security Grc information

See salary details

$40.5K

$122.9K

$180K

How much do full time cyber security grc jobs pay per year?

As of Aug 7, 2026, the average yearly pay for full time cyber security grc in the United States is $122,890.00, according to ZipRecruiter salary data. Most workers in this role earn between $102,000.00 and $142,000.00 per year, depending on experience, location, and employer.

What are the typical challenges faced by professionals in a full time Cyber Security GRC role, and how can they be addressed?

Professionals in full-time Cyber Security GRC (Governance, Risk, and Compliance) roles often face the challenge of keeping up with constantly evolving regulatory requirements and cyber threats. Balancing the needs of compliance with practical risk management can be complex, especially when collaborating with technical teams and business stakeholders. To address these challenges, strong communication skills, continuous learning, and staying updated with industry frameworks are essential. Many organizations support this by encouraging cross-departmental collaboration and providing opportunities for professional development.

What is the difference between Full Time Cyber Security Grc vs Cyber Security Analyst?

AspectFull Time Cyber Security GrcCyber Security Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, compliance, risk managementThreat detection, incident response, system monitoring
Employer & Industry UsageOrganizations focusing on governance and complianceOrganizations focusing on security operations and analysis

Full Time Cyber Security Grc roles primarily focus on governance, risk management, and compliance activities, requiring certifications like ISO 27001 and CISA. Cyber Security Analysts concentrate on monitoring security threats and responding to incidents, often holding certifications like Security+ or CEH. While Grc roles emphasize policy and compliance, Analysts are more involved in technical threat detection. Both roles are essential in a comprehensive cybersecurity strategy but differ in daily tasks and focus areas.

What is a full time Cyber Security GRC professional?

Full Time Cyber Security GRC (Governance, Risk, and Compliance) professionals are experts who help organizations identify, assess, and manage cybersecurity risks in alignment with regulatory requirements and internal policies. They develop and implement frameworks, policies, and procedures to ensure the organization's digital information is protected and compliant with laws and standards. Their work often includes conducting risk assessments, monitoring compliance, and advising on best practices to mitigate cybersecurity threats. These professionals play a crucial role in maintaining an organization's security posture and ensuring data integrity across all systems.

What are the key skills and qualifications needed to thrive as a full time Cyber Security GRC professional?

To thrive as a Full Time Cyber Security GRC (Governance, Risk, and Compliance) professional, you need a solid understanding of information security principles, risk management frameworks, and regulatory requirements, often demonstrated by a relevant degree and certifications like CISSP or CISA. Familiarity with tools such as GRC platforms (e.g., RSA Archer), risk assessment software, and compliance management systems is typical for this role. Strong analytical thinking, attention to detail, effective communication, and stakeholder management set exceptional professionals apart. These skills ensure that organizations can identify risks, maintain compliance, and build robust security postures in an evolving threat landscape.
More about Full Time Cyber Security Grc jobs
What cities are hiring for Full Time Cyber Security Grc jobs? Cities with the most Full Time Cyber Security Grc job openings:
What are the most commonly searched types of Cyber Security Grc jobs? The most popular types of Cyber Security Grc jobs are:
What states have the most Full Time Cyber Security Grc jobs? States with the most job openings for Full Time Cyber Security Grc jobs include:
What job categories do people searching Full Time Cyber Security Grc jobs look for? The top searched job categories for Full Time Cyber Security Grc jobs are:
Infographic showing various Full Time Cyber Security Grc job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $122,890 per year, or $59.1 per hour.

Cybersecurity GRC Analyst

Follett Content Solutions

Mchenry, IL • On-site

$115K - $120K/yr

Full-time

Posted 4 days ago


Job description

Job Type
Full-time
Description
Follett Content Solutions has been a trusted partner for educators since 1873! We support our educators that touch more than 45 million students worldwide. Follett Content Solutions helps build a diverse collection of print and digital resources to support every student. We are currently hiring for Cybersecurity GRC Analyst.
This position is an exempt full-time position located in McHenry, IL or remote for the right person. The pay for this position is $!15,000-$120,000 annually. We offer a hybrid work schedule with 3 days in the office (Monday, Tuesday & Thursday) and 2 remote days (Wednesday & Friday).
The Cybersecurity GRC Analyst is responsible for strengthening the organization's governance, risk, and compliance posture by formalizing IT policies, operationalizing Microsoft Purview, and ensuring audit readiness. This individual plays a critical role in aligning security practices with business risk, regulatory requirements, and industry frameworks such as SOC 2, NIST CSF, and PCI DSS. Serves as the primary point of contact for governance initiatives, including evidence collection, control mapping, and coordination with external auditors and consultants.
Develops and maintains policies, standards, and procedures across device management, identity, and data handling. Oversees data classification, DLP, insider risk, and compliance reporting through Microsoft Purview. Partners with the Cybersecurity Specialist and SOC provider to integrate governance with operational telemetry. Tracks remediation activities, supports risk assessments, and ensures timely closure of audit findings.
Maintains documentation for audit readiness and leadership reporting, enabling transparency and accountability across the organization. Leads annual cybersecurity awareness training efforts and promotes a culture of compliance. Monitors emerging regulatory trends and frameworks, recommending updates to policies, tools, and practices to ensure the organization remains resilient and compliant.
Key Responsibilities:
Governance & Policy Development
  • Drafts, maintains, and enforces IT security policies, standards, and procedures across device management, identity, and data handling.
  • Operationalizes Microsoft Purview for data classification, DLP, insider risk, and compliance reporting.
  • Aligns governance practices with organizational risk appetite and regulatory requirements.
  • Ensures policies are auditable, scalable, and communicated effectively across the organization.

Audit Readiness & Compliance
  • Serves as primary point of contact for SOC 2 Type II certification efforts, coordinating evidence collection and control mapping.
  • Supports PCI DSS self-assessment activities and other compliance initiatives.
  • Maintains documentation for audit readiness and leadership reporting.
  • Coordinates with external auditors, consultants, and vendors to ensure successful certification outcomes.
  • Tracks remediation plans and ensures timely closure of audit findings

Risk Assessment & Remediation
  • Assists in internal risk assessments, identifying gaps and recommending remediation strategies.
  • Partners with IT and business stakeholders to translate technical risks into business impact.
  • Monitors compliance telemetry and integrates findings into governance processes.
  • Ensures remediation activities are documented and aligned with organizational priorities.

Project Management & Deployments
  • Identifies and coordinates projects to close security gaps.
  • Works with IT Operations and Cybersecurity teams on tool deployments and implementation/tuning.
  • Works with Application Development teams on defining guardrails for AI initiatives to ensure AI agents are inventoried and managed properly.
  • Works closely with IT Stakeholders on identifying and prioritizing projects based on risk assessment.

Security Awareness & Training
  • Develops and deploys annual cybersecurity awareness training programs.
  • Promotes a culture of compliance and risk awareness across all levels of the organization.
  • Provides guidance and education on governance frameworks (SOC 2, NIST CSF, PCI DSS, CIS Controls).
  • Shares knowledge of emerging regulatory trends and best practices with leadership and staff

Requirements
  • 7-10 years experience
  • Bachelor's degree or equivalent in Computer Science, Information Systems, Cybersecurity, or related discipline OR demonstrated ability to meet job requirements through comparable years of applicable work experience.
  • 7+ years related experience in IT, cybersecurity operations, or governance, risk, and compliance.
  • Strong written and oral communication skills with the ability to positively engage with business stakeholders, IT management, and external auditors.
  • Experience with Microsoft Purview, Intune, Defender, SentinelOne, or similar governance/security platforms.
  • Familiarity with compliance frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF.
  • Ability to translate business requirements and risks into actionable governance and compliance controls.
  • Knowledge of risk assessment procedures, policy formation, role-based authorization methodologies, and incident response governance.
  • Solid project management skills, especially in cross-functional environments involving external vendors or auditors.
  • Strong team-oriented interpersonal skills; ability to effectively interface with diverse teams across all levels of the organization.
  • Previous experience coordinating with third-party providers, consultants, or auditors for compliance initiatives.
  • Experience creating leadership ready documentation, dashboards, or reports that communicate compliance posture, risk trends, or remediation progress.
  • Prior involvement in security awareness training programs or organizational compliance initiatives.
  • Experience supporting or implementing role based access controls (RBAC), least privilege models, or identity governance processes.
  • Experience coordinating with external auditors, consultants, or managed service providers for compliance, risk, or governance initiatives.
  • Background working with IT Operations, Infrastructure, or Application Development teams to implement governance controls, close audit gaps, or deploy compliance related tooling.

*As an Equal Opportunity Employer, we are committed to providing reasonable accommodations to job applicants with disabilities. If you are interested in applying for employment and need assistance or an accommodation in the application process due to a disability, please contact us by email or phone. Email: Send request to fcshr@follettcontent.com Phone: Request assistance by calling 800.773.7010 x45130. When contacting us, please provide your contact information, the job position or title, and state the nature of your accessibility issue.
Salary Description
$115,000-$120,000