2

Full Time It Grc Jobs (NOW HIRING)

Applicants must be currently authorized to work in the United States on a full-time basis without ... Establish and maintain IT control frameworks, including ITGCs, cybersecurity controls, and key risk ...

Applicants must be currently authorized to work in the United States on a full-time basis without ... Establish and maintain IT control frameworks, including ITGCs, cybersecurity controls, and key risk ...

Charlotte, NC Job Type: Full-Time Required Skill/Experience: * Candidates must have hands on ... Work with a team to develop IT GRC capabilities through development of the RSA Archer solution

Incident Response Lead

Boston, MA · On-site

$130K - $170K/yr

Serve as the central incident commander across Security, IT, GRC, and Legal during active incidents ... S. base salary range for this full-time position is $130,000 - $170,000. Salary ranges are ...

Addison, TX (Hybrid - 2-4 days onsite, 4 days preferred*) Employment Type: Full-Time Position ... Develop, maintain, and enhance IT control frameworks and governance processes. * Partner with ...

Senior Solutions Architect Location : 100% remote Duration : Full Time US Citizen Only Salary Range ... Ability to develop test procedures to validate related and evolving IT-GRC security regulations.

GRC Engineer

Foster City, CA · On-site

$210K - $320K/yr

We are looking for a GRC Engineer to serve as a key technical contributor for our compliance and ... it means for a specific engineering team in plain English. This is a full-time role that can be ...

Clemmons, NC Job Type: Full-time Department: Information Security / Risk & Compliance Reports To ... Support the design, documentation, and operation of IT General Controls (ITGCs). * Execute and ...

Clemmons,NC Job Type: Full-time Department: Information Security / Risk & Compliance Reports To ... Support the design, documentation, and operation of IT General Controls (ITGCs). * Execute ...

J0626-1755 Employment Type: Full Time Position Description: The GRC Engineer III serves as the ... Come join our team-one of the largest IT and business consulting services firms in the world.

This is a fully remote position open to Contract or Full-Time candidates. Key Responsibilities ... Ability to read a control requirement and translate it into clear, actionable guidance * Strong ...

next page

Showing results 1-20

Full Time It Grc information

Is IT hard to get a full time IT GRC job?

Securing a full-time IT GRC (Governance, Risk, and Compliance) role can be competitive, often requiring relevant certifications such as CISSP or CISA, along with experience in risk management, compliance frameworks, and security policies. Strong analytical skills and knowledge of regulatory standards like GDPR or HIPAA improve job prospects, but the difficulty varies based on individual qualifications and market demand.

What is the difference between Full Time It Grc vs Full Time Cybersecurity Analyst?

AspectFull Time It GrcFull Time Cybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CEH, CompTIA Security+
Work EnvironmentPolicy development, compliance, risk managementThreat detection, incident response, vulnerability assessment
Industry UsageGovernance, risk, and compliance departmentsSecurity operations centers, IT security teams

Full Time It Grc focuses on establishing policies, ensuring compliance, and managing risks within an organization. In contrast, Full Time Cybersecurity Analysts primarily monitor security threats, respond to incidents, and analyze vulnerabilities. Both roles require certifications like CISSP but differ in daily tasks and focus areas, with It Grc emphasizing governance and cybersecurity analysts concentrating on threat mitigation.

Is full time IT GRC a good career?

Full-time IT GRC (Governance, Risk, and Compliance) roles are in demand due to increasing cybersecurity regulations and organizational needs for risk management. These positions often require knowledge of compliance frameworks, security policies, and tools like GRC software, offering stable employment and growth opportunities in the cybersecurity field.
More about Full Time It Grc jobs
What are the most commonly searched types of It Grc jobs? The most popular types of It Grc jobs are:
Infographic showing various Full Time It Grc job openings in the United States as of July 2026, with employment types broken down into 74% Full Time, 24% Part Time, and 2% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.

IT GRC Lead Analyst

Westfield

Westfield Center, OH • Hybrid

Full-time

Re-posted 5 days ago


Westfield Insurance rating

8.7

Company rating: 8.7 out of 10

Based on 12 frontline employees who took The Breakroom Quiz

70th of 301 rated insurance


Job description

Job Summary:

The IT Governance, Risk, and Compliance (GRC) Lead Analyst serves as a subject matter expert responsible for leading the design, implementation, maturity, and continuous improvement of the organization's IT governance, risk management, and compliance programs.

This role provides strategic oversight of technology risk and control management, partners with business and technology leaders to ensure alignment with enterprise objectives and drives a proactive risk-aware culture across the organization. The GRC Lead Analyst serves as a trusted advisor to senior leadership, influencing risk-based decision-making and ensuring compliance with regulatory requirements, industry standards, and internal policies.

The ideal candidate possesses deep expertise in governance frameworks, regulatory compliance, IT controls, risk management, audit practices, and cybersecurity governance, along with demonstrated leadership in driving enterprise-wide initiatives and mentoring others.

Applicants must be currently authorized to work in the United States on a full-time basis without employer sponsorship.

Job Responsibilities:

  • Lead the development, execution, and continuous improvement of the enterprise IT Governance, Risk, and Compliance (GRC) program, frameworks, and operating model.
  • Serve as the organization's subject matter expert for IT governance, risk management, compliance, and control oversight.
  • Lead enterprise technology risk assessments and provide risk-based recommendations aligned with business objectives and risk appetite.
  • Drive the maturity of risk management practices through governance enhancements, process optimization, and industry best practices.
  • Oversee compliance with regulatory requirements, industry standards, and internal policies, ensuring effective implementation of controls and monitoring mechanisms.
  • Establish and maintain IT control frameworks, including ITGCs, cybersecurity controls, and key risk indicators (KRIs).
  • Lead control assessments, testing, continuous monitoring, and remediation efforts to strengthen the organization's control environment.
  • Serve as the primary liaison for internal and external audits, regulatory examinations, and issue remediation governance.
  • Lead third-party technology risk management activities, including vendor assessments and ongoing risk oversight.
  • Champion the implementation, optimization, and automation of GRC processes and technologies to improve efficiency and effectiveness.
  • Develop and deliver executive-level reporting, dashboards, and insights on risk, compliance, audit results, and remediation activities.
  • Lead cross-functional GRC initiatives, influence strategic decision-making, and mentor team members to foster a culture of risk awareness and continuous improvement.

Job Qualifications:

  • 7+ years of experience in IT Governance, Risk, and Compliance, Information Security, IT Audit, or related disciplines.
  • Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Risk Management, Business, or related field.

Location
Hybrid defined as three (3) or more days per week in the office.
 

Licenses and Certifications: 

  • CISSP 
  • CISA 
  • CRISC 
  • CISM 
  • CGEIT

Behavioral Competencies:

  • Collaborates
  • Communicates Effectively
  • Customer Focus
  • Decision Quality
  • Nimble Learning

Technical Skills:

  • Insurance Industry Knowledge
  • Regulatory Examinations
  • GRC Platforms
  • Policy Management
  • Compliance Automation Tools
  • IT Risk Assessment
  • Control Design
  • Security Testing

This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.

Founded in 1848, Westfield is a global leader in property and casualty insurance, delivering superior risk insights and innovative solutions to customers through a diverse portfolio of insurance products. Westfield underwrites commercial, personal, surety, and specialty lines of coverage through a network of leading independent agents and brokers in the United States and specialty products through Lloyd's of London Syndicate 1200. As a mutual insurance company with more than 3,000 employees, Westfield has revenues in excess of $4 billion and more than $10 billion in assets. 

What Westfield Insurance employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom