2

Full Time Cyber Security Grc Jobs (NOW HIRING)

Participate in the on-boarding of clients into GRC tools like Apptega. * Provide training and ... Job Type: Full-time; Work mostly from home and occasionally at client sites. Benefits: Medical ...

... Bison GRC tool (and other designated repositories), and communicates clearly in English using ... Full time benefits include Medical, Dental, Vision, 401K and other possible benefits as provided.

Experience in cybersecurity, compliance, or GRC environments * Proficiency in Excel and SQL for ... Courtesy Services - We offer all of our full-time employees in serviceable areas free digital TV ...

Clemmons,NC Job Type: Full-time Department: Information Security / Risk & Compliance Reports To ... Bachelor's degree in Accounting, Information Systems, Cybersecurity, or related field. * 3-6 years ...

GRC Engineer Department: Engineering Employment Type: Full Time Location: Remote Reporting To ... Conduct cybersecurity risk assessments, including third-party/vendor risk evaluations, with an ...

... and cybersecurity governance, along with demonstrated leadership in driving enterprise-wide ... Applicants must be currently authorized to work in the United States on a full-time basis without ...

... and cybersecurity governance, along with demonstrated leadership in driving enterprise-wide ... Applicants must be currently authorized to work in the United States on a full-time basis without ...

Clemmons, NC Job Type: Full-time Department: Information Security / Risk & Compliance Reports To ... Bachelor's degree in Accounting, Information Systems, Cybersecurity, or related field. * 3-6 years ...

Showing results 21-40

Full Time Cyber Security Grc information

See salary details

$40.5K

$122.9K

$180K

How much do full time cyber security grc jobs pay per year?

As of Sep 2, 2026, the average yearly pay for full time cyber security grc in the United States is $122,890.00, according to ZipRecruiter salary data. Most workers in this role earn between $102,000.00 and $142,000.00 per year, depending on experience, location, and employer.

What is a full time Cyber Security GRC professional?

Full Time Cyber Security GRC (Governance, Risk, and Compliance) professionals are experts who help organizations identify, assess, and manage cybersecurity risks in alignment with regulatory requirements and internal policies. They develop and implement frameworks, policies, and procedures to ensure the organization's digital information is protected and compliant with laws and standards. Their work often includes conducting risk assessments, monitoring compliance, and advising on best practices to mitigate cybersecurity threats. These professionals play a crucial role in maintaining an organization's security posture and ensuring data integrity across all systems.

What are the key skills and qualifications needed to thrive as a full time Cyber Security GRC professional?

To thrive as a Full Time Cyber Security GRC (Governance, Risk, and Compliance) professional, you need a solid understanding of information security principles, risk management frameworks, and regulatory requirements, often demonstrated by a relevant degree and certifications like CISSP or CISA. Familiarity with tools such as GRC platforms (e.g., RSA Archer), risk assessment software, and compliance management systems is typical for this role. Strong analytical thinking, attention to detail, effective communication, and stakeholder management set exceptional professionals apart. These skills ensure that organizations can identify risks, maintain compliance, and build robust security postures in an evolving threat landscape.

What are the typical challenges faced by professionals in a full time Cyber Security GRC role, and how can they be addressed?

Professionals in full-time Cyber Security GRC (Governance, Risk, and Compliance) roles often face the challenge of keeping up with constantly evolving regulatory requirements and cyber threats. Balancing the needs of compliance with practical risk management can be complex, especially when collaborating with technical teams and business stakeholders. To address these challenges, strong communication skills, continuous learning, and staying updated with industry frameworks are essential. Many organizations support this by encouraging cross-departmental collaboration and providing opportunities for professional development.

What is the difference between Full Time Cyber Security Grc vs Cyber Security Analyst?

AspectFull Time Cyber Security GrcCyber Security Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentPolicy development, compliance, risk managementThreat detection, incident response, system monitoring
Employer & Industry UsageOrganizations focusing on governance and complianceOrganizations focusing on security operations and analysis

Full Time Cyber Security Grc roles primarily focus on governance, risk management, and compliance activities, requiring certifications like ISO 27001 and CISA. Cyber Security Analysts concentrate on monitoring security threats and responding to incidents, often holding certifications like Security+ or CEH. While Grc roles emphasize policy and compliance, Analysts are more involved in technical threat detection. Both roles are essential in a comprehensive cybersecurity strategy but differ in daily tasks and focus areas.

More about Full Time Cyber Security Grc jobs

What cities are hiring for Full Time Cyber Security Grc jobs?

Cities with the most Full Time Cyber Security Grc job openings:

What are the most commonly searched types of Cyber Security Grc jobs?

The most popular types of Cyber Security Grc jobs are:

Infographic showing various Full Time Cyber Security Grc job openings in the United States as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $122,890 per year, or $59.1 per hour.

Full-time

Posted 21 days ago


Job description

Position Title

Senior GRC Consultant

Department: Governance, Risk, and Compliance (GRC)

Reports To: GRC Manager

Employment Type: Full-Time Exempt

Work Location: Onsite in Huntsville, AL

Travel Requirements: Occasional travel for client engagements (generally less than 10%)

Position Summary

MAD Security is seeking an experienced Senior GRC Consultant to join our Governance, Risk, and Compliance (GRC) team. This role is ideal for a cybersecurity professional who enjoys solving complex compliance challenges, advising executive leadership, and helping organizations build practical, effective cybersecurity programs.

As a Senior GRC Consultant, you will lead cybersecurity compliance consulting engagements for organizations across the Defense Industrial Base and other regulated industries. You'll serve as a trusted advisor to executives and technical teams, helping clients navigate CMMC, NIST SP 800-171, DFARS, and other cybersecurity compliance requirements while developing practical, risk-informed security programs that support their business objectives. In addition to managing your own client portfolio, you'll mentor other GRC professionals, contribute to the continuous improvement of our consulting methodologies, and help maintain the high standards that define MAD Security.

Primary Responsibilities

  • Lead cybersecurity compliance consulting engagements for assigned clients from planning through delivery.
  • Serve as the primary advisor for executive and technical client stakeholders regarding cybersecurity risk, compliance, and implementation strategies.
  • Conduct compliance assessments, gap assessments, risk assessments, tabletop exercises, mock assessments, and related consulting engagements.
  • Review security architectures, technical implementations, policies, procedures, and evidence to determine compliance with applicable cybersecurity requirements.
  • Develop practical remediation plans and implementation guidance that help clients achieve and maintain compliance.
  • Prepare and review professional reports, executive presentations, and other client deliverables.
  • Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards.

What Success Looks Like in the First 12 Months

  • Successfully manages an assigned portfolio of consulting clients while maintaining exceptional client satisfaction.
  • Leads complex compliance engagements with minimal oversight while consistently delivering high-quality work.
  • Establishes trusted advisor relationships with executive and technical stakeholders.
  • Produces professional reports and deliverables that require minimal revision.
  • Provides technical guidance and mentorship that improves the performance and consistency of the GRC team.
  • Contributes meaningful improvements to MAD Security's consulting methodologies, documentation, or service offerings.

Required Qualifications

Experience

  • Minimum of seven years of experience in an information technology-related position, with three or more years of cybersecurity experience preferred.
  • Previous experience leading cybersecurity compliance consulting or assessment engagements.
  • Experience managing multiple concurrent client engagements, projects, or priorities.
  • Experience leading executive-level client meetings and presenting technical or compliance information to senior leadership.
  • Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business, or a related field preferred. Equivalent professional experience may be considered in lieu of a degree.

Technical Qualifications

  • Strong understanding of enterprise IT infrastructure, cybersecurity technologies, and security architecture.
  • Experience interpreting and applying cybersecurity compliance frameworks, particularly NIST SP 800-171, CMMC, and DFARS.
  • Ability to confidently lead highly technical discussions with executive and technical stakeholders.

Required Certifications

  • One or more of the following:
    • CCA
    • CISSP
    • CISM

Preferred Qualifications

  • Experience supporting organizations through CMMC assessments or ongoing CMMC compliance programs.
  • Experience with NIST SP 800-171 and DFARS.
  • Experience supporting organizations within the Defense Industrial Base.
  • Experience working for a C3PAO, Registered Provider Organization (RPO), cybersecurity consulting firm, or MSSP.
  • Experience working with Microsoft 365 Commercial, GCC, or GCC High environments.
  • Experience with Microsoft Entra ID, Active Directory, and Microsoft Intune.
  • Experience conducting risk assessments, tabletop exercises, and mock assessments.

Capabilities and Professional Attributes

  • Excellent communication skills with the ability to engage executives, technical teams, and business stakeholders.
  • Strong analytical and problem-solving skills with sound professional judgment.
  • Ability to manage multiple client engagements while maintaining exceptional quality and responsiveness.
  • Demonstrated leadership through mentoring, collaboration, knowledge sharing, and technical guidance.
  • Organized, accountable, and capable of working independently in a fast-paced consulting environment.
  • Committed to continuous learning, professional development, and maintaining technical expertise.

Work Environment

  • Work onsite in Huntsville, Alabama.
  • Primarily standard weekday business hours with flexibility to accommodate client schedules when necessary.
  • Work for extended periods at a computer using multiple software applications and virtual collaboration tools.
  • Participate in regular client-facing virtual meetings conducted on camera.
  • Work effectively in a collaborative consulting environment supporting multiple concurrent client engagements.

Why MAD Security

At MAD Security, our mission is Safeguarding Businesses from Evil. We help organizations strengthen their cybersecurity posture through practical consulting, managed security services, and compliance expertise that deliver measurable business value.

Joining our team means working alongside experienced cybersecurity professionals who are passionate about high standards, continuous improvement, and delivering exceptional service. You'll have the opportunity to solve challenging cybersecurity problems, work directly with executive leadership across a diverse client base, mentor other professionals, and play a meaningful role in helping organizations achieve and maintain cybersecurity compliance.