1

Grc Analyst Jobs in Alabama (NOW HIRING)

Senior GRC Consultant

Huntsville, AL · On-site

$120 - $180/hr

Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards. What Success Looks Like in the First 12 ...

Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards. What Success Looks Like in the First 12 ...

Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards. What Success Looks Like in the First 12 ...

The Sr GRC Programmer/Analyst modifies existing software/application programs, which are typically more complex in nature, or writes new programs to support user and management needs within the GRC ...

The GRC Software Engineer provides technical and consultative support on the most complex technical ... Strong analytical, strong troubleshooting skills and excellent communication skills. * Strong ...

... maturity and scalability of GRC processes. Job Responsibilities: Support the development ... Analytical and documentation skills - Process-focused, detail-oriented mindset - Ability to ...

Risk Analyst

Montgomery, AL · On-site +1

$87K - $110K/yr

Experience working with GRC, ticketing, identity governance, or third-party risk management ... Strong analytical, critical thinking, and communication skills with the ability to evaluate complex ...

ServiceNow Developer

Montgomery, AL · On-site

$53.50 - $73.50/hr

... GRC/IRM). * Develop solutions involving CMDB data and integrations. * Analyze requirements and create technical designs and specifications. * Troubleshoot code, integrations, workflows, and ...

ServiceNow Developer

Montgomery, AL · On-site

$40 - $50/hr

... GRC/IRM modules. * Knowledge of CMDB and Configuration Management practices. * Proven application development experience, including coding, testing, implementation, and support. * Ability to analyze ...

next page

Showing results 1-20

Grc Analyst information

See Alabama salary details

$33.1K

$88.5K

$207.1K

How much do grc analyst jobs pay per year?

As of Aug 31, 2026, the average yearly pay for grc analyst in Alabama is $88,517.00, according to ZipRecruiter salary data. Most workers in this role earn between $49,900.00 and $100,600.00 per year, depending on experience, location, and employer.

What is a GRC analyst?

A GRC (Governance, Risk, and Compliance) Analyst is responsible for ensuring that an organization adheres to regulatory requirements, industry standards, and internal policies. They assess risks, implement compliance programs, and monitor security controls to protect data and systems. Their role often involves working with various departments to identify vulnerabilities, develop risk mitigation strategies, and prepare reports for audits. GRC Analysts play a key role in maintaining regulatory compliance and enhancing an organization's overall security posture.

What does a GRC analyst do?

GRC Analysts are responsible for monitoring and assessing organizational policies, procedures, and controls to ensure compliance with internal and external regulations. Their daily tasks often include performing risk assessments, maintaining documentation, supporting audits, analyzing data for potential security gaps, and preparing reports for management. They regularly collaborate with IT, legal, and business teams to remediate vulnerabilities and strengthen compliance programs. This dynamic role requires both independent research and cross-departmental communication to help organizations proactively manage risk and regulatory obligations.

What are the key skills and qualifications needed to thrive as a GRC analyst?

To thrive as a GRC Analyst, you need a solid understanding of governance, risk management, and compliance frameworks, often complemented by a degree in information security, business, or a related field. Experience with GRC platforms (like RSA Archer, ServiceNow, or LogicManager), and certifications such as CISA, CRISC, or CISSP are highly valued. Strong analytical thinking, attention to detail, effective communication, and collaboration skills set outstanding GRC Analysts apart. These capabilities are vital for ensuring organizations meet regulatory requirements, identify and mitigate risks, and foster a culture of compliance.

Is GRC analyst an entry level job?

A GRC analyst role can be entry-level or require some experience, depending on the organization. Entry-level positions typically focus on basic compliance, risk management, and using tools like GRC software, often requiring relevant certifications or a related degree. More advanced roles may demand several years of experience and specialized knowledge.

Is GRC analyst in high demand?

GRC analysts are in high demand due to increasing focus on governance, risk management, and compliance across industries. Organizations seek professionals with skills in cybersecurity frameworks, regulatory standards, and tools like GRC software to manage risks effectively.

What are the most commonly searched types of Grc Analyst jobs in Alabama?

The most popular types of Grc Analyst jobs in Alabama are:

What are popular job titles related to Grc Analyst jobs in Alabama?

For Grc Analyst jobs in Alabama, the most frequently searched job titles are:

What job categories do people searching Grc Analyst jobs in Alabama look for?

The top searched job categories for Grc Analyst jobs in Alabama are:

What cities in Alabama are hiring for Grc Analyst jobs?

Cities in Alabama with the most Grc Analyst job openings:

Infographic showing various Grc Analyst job openings in Alabama as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 81% Physical, 8% Hybrid, and 11% Remote job distribution, with an average salary of $88,517 per year, or $42.6 per hour.

Senior GRC Consultant

Huntsville, AL

MAD Security, LLC
11 - 50 employees

Full-time

Posted 20 days ago


Job description

Position Title

Senior GRC Consultant

Department: Governance, Risk, and Compliance (GRC)

Reports To: GRC Manager

Employment Type: Full-Time Exempt

Work Location: Onsite in Huntsville, AL

Travel Requirements: Occasional travel for client engagements (generally less than 10%)

Position Summary

MAD Security is seeking an experienced Senior GRC Consultant to join our Governance, Risk, and Compliance (GRC) team. This role is ideal for a cybersecurity professional who enjoys solving complex compliance challenges, advising executive leadership, and helping organizations build practical, effective cybersecurity programs.

As a Senior GRC Consultant, you will lead cybersecurity compliance consulting engagements for organizations across the Defense Industrial Base and other regulated industries. You'll serve as a trusted advisor to executives and technical teams, helping clients navigate CMMC, NIST SP 800-171, DFARS, and other cybersecurity compliance requirements while developing practical, risk-informed security programs that support their business objectives. In addition to managing your own client portfolio, you'll mentor other GRC professionals, contribute to the continuous improvement of our consulting methodologies, and help maintain the high standards that define MAD Security.

Primary Responsibilities

  • Lead cybersecurity compliance consulting engagements for assigned clients from planning through delivery.
  • Serve as the primary advisor for executive and technical client stakeholders regarding cybersecurity risk, compliance, and implementation strategies.
  • Conduct compliance assessments, gap assessments, risk assessments, tabletop exercises, mock assessments, and related consulting engagements.
  • Review security architectures, technical implementations, policies, procedures, and evidence to determine compliance with applicable cybersecurity requirements.
  • Develop practical remediation plans and implementation guidance that help clients achieve and maintain compliance.
  • Prepare and review professional reports, executive presentations, and other client deliverables.
  • Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards.

What Success Looks Like in the First 12 Months

  • Successfully manages an assigned portfolio of consulting clients while maintaining exceptional client satisfaction.
  • Leads complex compliance engagements with minimal oversight while consistently delivering high-quality work.
  • Establishes trusted advisor relationships with executive and technical stakeholders.
  • Produces professional reports and deliverables that require minimal revision.
  • Provides technical guidance and mentorship that improves the performance and consistency of the GRC team.
  • Contributes meaningful improvements to MAD Security's consulting methodologies, documentation, or service offerings.

Required Qualifications

Experience

  • Minimum of seven years of experience in an information technology-related position, with three or more years of cybersecurity experience preferred.
  • Previous experience leading cybersecurity compliance consulting or assessment engagements.
  • Experience managing multiple concurrent client engagements, projects, or priorities.
  • Experience leading executive-level client meetings and presenting technical or compliance information to senior leadership.
  • Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business, or a related field preferred. Equivalent professional experience may be considered in lieu of a degree.

Technical Qualifications

  • Strong understanding of enterprise IT infrastructure, cybersecurity technologies, and security architecture.
  • Experience interpreting and applying cybersecurity compliance frameworks, particularly NIST SP 800-171, CMMC, and DFARS.
  • Ability to confidently lead highly technical discussions with executive and technical stakeholders.

Required Certifications

  • One or more of the following:
    • CCA
    • CISSP
    • CISM

Preferred Qualifications

  • Experience supporting organizations through CMMC assessments or ongoing CMMC compliance programs.
  • Experience with NIST SP 800-171 and DFARS.
  • Experience supporting organizations within the Defense Industrial Base.
  • Experience working for a C3PAO, Registered Provider Organization (RPO), cybersecurity consulting firm, or MSSP.
  • Experience working with Microsoft 365 Commercial, GCC, or GCC High environments.
  • Experience with Microsoft Entra ID, Active Directory, and Microsoft Intune.
  • Experience conducting risk assessments, tabletop exercises, and mock assessments.

Capabilities and Professional Attributes

  • Excellent communication skills with the ability to engage executives, technical teams, and business stakeholders.
  • Strong analytical and problem-solving skills with sound professional judgment.
  • Ability to manage multiple client engagements while maintaining exceptional quality and responsiveness.
  • Demonstrated leadership through mentoring, collaboration, knowledge sharing, and technical guidance.
  • Organized, accountable, and capable of working independently in a fast-paced consulting environment.
  • Committed to continuous learning, professional development, and maintaining technical expertise.

Work Environment

  • Work onsite in Huntsville, Alabama.
  • Primarily standard weekday business hours with flexibility to accommodate client schedules when necessary.
  • Work for extended periods at a computer using multiple software applications and virtual collaboration tools.
  • Participate in regular client-facing virtual meetings conducted on camera.
  • Work effectively in a collaborative consulting environment supporting multiple concurrent client engagements.

Why MAD Security

At MAD Security, our mission is Safeguarding Businesses from Evil. We help organizations strengthen their cybersecurity posture through practical consulting, managed security services, and compliance expertise that deliver measurable business value.

Joining our team means working alongside experienced cybersecurity professionals who are passionate about high standards, continuous improvement, and delivering exceptional service. You'll have the opportunity to solve challenging cybersecurity problems, work directly with executive leadership across a diverse client base, mentor other professionals, and play a meaningful role in helping organizations achieve and maintain cybersecurity compliance.