Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Corporate Attorney - Risk and Compliance
Wichita, KS · On-site
$130K - $145K/yr
Legal research, issue spotting, regulatory compliance, and policy governance. * Commercial judgment with the ability to balance legal risk and business objectives. * Strong written and verbal ...
Quick apply
Corporate Attorney - Risk and Compliance
Wichita, KS · On-site
$130K - $145K/yr
Legal research, issue spotting, regulatory compliance, and policy governance. * Commercial judgment with the ability to balance legal risk and business objectives. * Strong written and verbal ...
Sr. Manager, Compliance
Newton, KS · On-site
Governance, Reporting, and Monitoring * Support preparation of compliance metrics and reporting for the Governance, Risk, and Compliance (GRC) Committee and senior leadership. * Utilize analytics and ...
Sr. Manager, Compliance
Newton, KS · On-site
Governance, Reporting, and Monitoring * Support preparation of compliance metrics and reporting for the Governance, Risk, and Compliance (GRC) Committee and senior leadership. * Utilize analytics and ...
Conduct quarterly account reviews with internal stakeholders, including cyber strategy, technology risk, IT audit, governance risk and compliance, privacy, third-party risk, cloud security, incident ...
Conduct quarterly account reviews with internal stakeholders, including cyber strategy, technology risk, IT audit, governance risk and compliance, privacy, third-party risk, cloud security, incident ...
Manage the organization's Governance, Risk and Compliance (GRC) Program utilizing Navex PolicyTech. * Oversee policy review cycles, approvals, acknowledgments, and implementation. * Ensure policies ...
Manage the organization's Governance, Risk and Compliance (GRC) Program utilizing Navex PolicyTech. * Oversee policy review cycles, approvals, acknowledgments, and implementation. * Ensure policies ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Sr. Compliance Specialist
Kansas City, KS · On-site
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
The Sr. Compliance Specialist is responsible for the facilitation, coordination, and execution of ... Working knowledge of governance, risk, and controls concepts (internal controls), including process ...
Be Seen First
VICE PRESIDENT COMPLIANCE & RISK
Wichita, KS · On-site
$170K - $185K/yr
Develop and maintain internal policy governance framework * Monitor contractual compliance obligations Enterprise Risk & Insurance Strategic Management * Manage company-wide insurance programs (GL ...
Quick apply
Be Seen First
VICE PRESIDENT COMPLIANCE & RISK
Wichita, KS · On-site
$170K - $185K/yr
Develop and maintain internal policy governance framework * Monitor contractual compliance obligations Enterprise Risk & Insurance Strategic Management * Manage company-wide insurance programs (GL ...
Risk & Compliance Management: * Ensure adherence to IT governance, compliance, and security policies. * Manage service-related risks and escalate where appropriate. * Drive initiatives to improve ...
Risk & Compliance Management: * Ensure adherence to IT governance, compliance, and security policies. * Manage service-related risks and escalate where appropriate. * Drive initiatives to improve ...
YOUR OPPORTUNITY We have an exciting Information Security Governance, Risk, and Compliance (GRC) Analyst opportunity in our Merriam, KS office. In this highly impactful role, you will be a key member ...
YOUR OPPORTUNITY We have an exciting Information Security Governance, Risk, and Compliance (GRC) Analyst opportunity in our Merriam, KS office. In this highly impactful role, you will be a key member ...
Vendor Risk Associate
Topeka, KS · On-site
Review supplier initial due diligence materials (Compliance, IT Security, Financials) * Identify ... governance models related to vendor/ supply chain risk management * Liaising with key ...
Quick apply
Vendor Risk Associate
Topeka, KS · On-site
Review supplier initial due diligence materials (Compliance, IT Security, Financials) * Identify ... governance models related to vendor/ supply chain risk management * Liaising with key ...
Lead, Service Management
Topeka, KS · On-site
$15 - $19.75/hr
Governance, risk, and compliance is a separate, independent function and a close partner of this role, particularly on audit, SOC 2, and risk. You are also the link between the technology teams and ...
New
Lead, Service Management
Topeka, KS · On-site
$15 - $19.75/hr
Governance, risk, and compliance is a separate, independent function and a close partner of this role, particularly on audit, SOC 2, and risk. You are also the link between the technology teams and ...
New
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Bridge enterprise functions (technology, governance, risk, compliance) with decentralized operations teams ensuring enterprise standards are understood, usable, and effectively adopted. * Capture ...
Cyber Security Analyst
Salina, KS · On-site
The Cybersecurity Analyst operates as a cross-functional security role responsible for integrating Security Operations (SIEM/SOC), and Governance, Risk & Compliance (GRC). This role goes beyond alert ...
Cyber Security Analyst
Salina, KS · On-site
The Cybersecurity Analyst operates as a cross-functional security role responsible for integrating Security Operations (SIEM/SOC), and Governance, Risk & Compliance (GRC). This role goes beyond alert ...
Governance Risk Compliance information
See Kansas salary details
$28.1K - $34.6K
12% of jobs
$34.6K - $41.1K
7% of jobs
$43.4K is the 25th percentile. Wages below this are outliers.
$41.1K - $47.7K
17% of jobs
$47.7K - $54.2K
10% of jobs
The median wage is $55.9K / yr.
$54.2K - $60.7K
16% of jobs
$60.7K - $67.3K
9% of jobs
$71.4K is the 75th percentile. Wages above this are outliers.
$67.3K - $73.8K
7% of jobs
$73.8K - $80.3K
5% of jobs
$80.3K - $86.8K
7% of jobs
$86.8K - $93.4K
5% of jobs
$93.4K - $99.9K
4% of jobs
$28.1K
$61.3K
$99.9K
How much do governance risk compliance jobs pay per year?
What are jobs in governance risk compliance?
Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.
What is the work of governance risk compliance?
What is governance risk compliance?
How does a governance risk compliance professional typically collaborate with other departments within an organization?
What is the difference between Governance Risk Compliance vs Risk Analyst?
| Aspect | Governance Risk Compliance | Risk Analyst |
|---|---|---|
| Certifications | CRISC, CISA, CISSP | CFA, FRM, CRISC |
| Work Environment | Corporate, regulated industries | Financial, consulting firms |
| Employer & Industry Usage | Financial institutions, healthcare, government | Banking, investment firms, insurance |
Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.
What are the key skills and qualifications needed to thrive as a governance risk compliance professional?

Full-time
Posted 6 days ago
Job description
QTS has adopted a risk-based approach to security risk and compliance, and this role is responsible for implementing, monitoring, and continuously improving QTS's security risk and compliance programs through the enterprise GRC program.
This role may be based in Overland Park, KS; Suwanee, GA; or Ashburn, VA and requires up to 15% travel to QTS data center locations. The ideal candidate possesses a growth mindset, strong analytical skills, and a natural ability to collaborate across diverse teams. They will play a key role in transforming compliance requirements into actionable controls, meaningful documentation, and scalable processes that strengthen QTS's risk and compliance posture while enabling business objectives.
RESPONSIBILITIES
- Leverage the GRC platform to align frameworks, regulatory requirements, risks, controls and documentation into a cohesive governance structure that supports operational execution, continuous monitoring, and data driven reporting on the effectiveness of QTS security and compliance programs.
- Provide visibility into the program maturity, risk posture, and control effectiveness through reporting and dashboards.
- Provide internal support for internal audits of the program as well as the external audits of the SOC1 & SOC2, ISO 27001 & ISO 22301, PCI DSS, FISMA / NIST 800-53, DOD CMMC, and HITRUST audit cycles, by facilitating evidence collection, stakeholder engagement, and issue remediation
- Key Activities include:
- Compliance Program Execution - Partner with control owners to monitor reviews, scope coverage, and assessment on control effectiveness and completeness of internal documentation.
- Compliance Implementations - Facilitate the implementation, adoption, and continuous improvement of new and existing compliance frameworks, standards, and regulatory requirements, ensuring controls and documentation are effectively integrated into data center and corporate operations.
- Customer Compliance Support - Assist in responding to customer security, compliance, and risk inquiries by coordinating evidence requests, completing questionnaires, and audit requests.
- Security Risk Program - Coordinate with the risk team as issues are reported that require documentation or control updates to reduce risk through continual improvements.
- Bachelor's degree or equivalent professional experience.
- Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function.
- Hands-on experience administering, implementing, or utilizing Governance, Risk, and Compliance (GRC) or Integrated Risk Management (IRM) platforms.
- Written skills to demonstrate ability to translate complex requirements in a clear, concise manner in communications and documentation.
- Strong analytical, organizational, and problem-solving skills, with the ability to manage multiple priorities and deadlines in a fast-paced environment.
- Proven ability to build and maintain collaborative relationships across a diverse group of stakeholders, including technology teams, operational teams, auditors, and corporate support functions.
Preferred Knowledge & Experience
Working knowledge of one or more of the following frameworks, standards, and regulatory requirements:
- HITRUST
- SOC 1
- SOC 2
- PCI DSS
- ISO 27001
- ISO 22301
- FISMA / NIST 800-53
- NIST Cybersecurity Framework (CSF)
- DoD Cybersecurity Maturity Model Certification (CMMC)
ADDITIONAL QUALIFICATIONS
The ideal candidate may hold, or be actively pursuing, one or more of the following certifications:
- Certified Information Systems Security Professional (CISSP)
- GIAC Security Essentials Certification (GSEC)
- Certified Information Systems Auditor (CISA)
- Certified in Risk and Information Systems Control (CRISC)
- GIAC Critical Controls Certification (GCCC)
KNOWLEDGE, SKILLS, AND ABILITIES
In addition to QTS Core Values, the successful candidate will demonstrate:
- Quality Decision Making - Strong analytical skills to evaluate risks, assess control solutions, and synthesize diverse inputs from cross-functional stakeholders.
- Consultative Communication - Builds trusted relationships and effectively communicates with technical and non-technical stakeholders to achieve compliance and risk management objectives
- Team Collaboration - - Establishes and maintains positive working relationships across business functions, management teams, and risk/compliance stakeholders. Adapts to diverse perspectives and works collaboratively to drive continuous improvement and program success.
- Technical Aptitude - Demonstrates curiosity and a commitment to professional growth by continuously expanding knowledge of compliance, risk, regulatory requirements, and enabling technologies. Quickly adapts to evolving tools, processes, and business needs.
We conform to all the laws, statutes, and regulations concerning equal employment opportunities and affirmative action. We strongly encourage women, minorities, individuals with disabilities and veterans to apply to all of our job openings. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, or national origin, age, disability status, Genetic Information & Testing, Family & Medical Leave, protected veteran status, or any other characteristic protected by law. We prohibit retaliation against individuals who bring forth any complaint, orally or in writing, to the employer or the government, or against any individuals who assist or participate in the investigation of any complaint or discrimination claim.
The "Know Your Rights" Poster is included here:
Know Your Rights (English)
Know Your Rights (Spanish)
The pay transparency policy is available here:
Pay Transparency Nondiscrimination Poster-Formatted
QTS is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to talentacquisition@qtsdatacenters.com and let us know the nature of your request and your contact information.