1

Grc Auditor Jobs (NOW HIRING)

GRC Lead

Manhattan, NY · On-site

$150 - $210/hr

You make the judgment calls, and you're the one in the room with auditors, regulators, and customer security teams. Your peer, the AI GRC Engineer, builds the platform underneath -- the evidence ...

GRC Lead

New York, NY · On-site

$151K - $273K/yr

You make the judgment calls, and you're the one in the room with auditors, regulators, and customer security teams. Your peer, the AI GRC Engineer, builds the platform underneath - the evidence ...

Senior GRC Analyst

San Francisco, CA · On-site

$183K - $205K/yr

Lead interactions with external auditors and regulatory bodies during compliance assessments (e.g ... Demonstrated ability to translate complex GRC requirements into actionable, scalable processes.

GRC Tech Lead Location: New York, NY (Hybrid), Local Candidates only Duration: 9 Months + We are ... Strong knowledge of operational auditing and Risk Control Matrix (RCM) development. * Expertise in ...

Senior GRC Analyst

Pittsburgh, PA · On-site

$114K - $163K/yr

Senior GRC Analyst Department: Compliance & Fraud Employment Type: Full Time Location: Pittsburgh ... auditors, and serve as the compliance advisor engineering, fraud, and product teams come to before ...

Senior GRC Manager

Washington, NC · On-site

$120 - $180/hr

We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned ... Work directly with auditors to catch and close compliance gaps before they become findings. * Flag ...

Contract IT Auditor / Risk Assessor Location: Remote -- must work during Eastern Standard Time ... This is a hands-on role for someone who combines IT audit and GRC experience with enough technical ...

GRC Specialist II

Chicago, IL · On-site

$116K - $144K/yr

GRC Specialist II Salary: $116,000-$144,000 As a Security GRC Specialist II , you'll be a key ... Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor ...

Senior GRC Officer

Lincoln, NE · On-site

$100K - $140K/yr

Senior Governance, Risk & Compliance (GRC) Officer Location: Lincoln, NE (Hybrid) Type: Permanent ... Serve as a primary point of contact for auditors, assessors, consultants, and internal control ...

We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned ... Work directly with auditors to catch and close compliance gaps before they become findings. * Flag ...

We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned ... Work directly with auditors to catch and close compliance gaps before they become findings. * Flag ...

We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned ... Work directly with auditors to catch and close compliance gaps before they become findings. * Flag ...

We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned ... Work directly with auditors to catch and close compliance gaps before they become findings. * Flag ...

Showing results 41-60

Grc Auditor information

See salary details

$41.5K

$78.2K

$125K

How much do grc auditor jobs pay per year?

As of Sep 6, 2026, the average yearly pay for grc auditor in the United States is $78,163.00, according to ZipRecruiter salary data. Most workers in this role earn between $58,500.00 and $89,500.00 per year, depending on experience, location, and employer.

What is a GRC auditor?

A GRC Auditor is a professional responsible for evaluating an organization's Governance, Risk Management, and Compliance (GRC) processes. They assess whether the organization is following relevant laws, regulations, and internal policies, and help identify areas of risk or non-compliance. GRC Auditors often conduct audits, review documentation, and provide recommendations to improve controls and ensure the organization meets its regulatory and operational requirements.

What are the key skills and qualifications needed to thrive as a GRC auditor?

To thrive as a GRC Auditor, you need a strong understanding of governance, risk management, compliance frameworks, and auditing principles, often supported by a degree in accounting, finance, or a related field. Familiarity with audit management tools, GRC platforms (such as RSA Archer or MetricStream), and certifications like CISA, CRISC, or CISSP are commonly required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills to excel in this role. These competencies ensure comprehensive risk assessments, regulatory compliance, and effective reporting, which are critical for organizational integrity and security.

What are the main challenges GRC auditors face when ensuring compliance across multiple departments?

GRC Auditors often encounter challenges in standardizing compliance processes across diverse departments, each with their own workflows and risk profiles. Coordinating with various teams to gather accurate data and evidence can be time-consuming, especially when systems are not integrated. Communication and collaboration are crucial, as auditors must often explain regulatory requirements and best practices to non-technical staff. Proactively building strong relationships and clear processes helps overcome these hurdles and ensures smoother audits.

What is the difference between Grc Auditor vs Compliance Analyst?

AspectGrc AuditorCompliance Analyst
CertificationsISO 27001 Lead Auditor, CISA, CISMCertified Compliance & Ethics Professional (CCEP), CCEP-I
Work EnvironmentAudit firms, corporate compliance departmentsCorporate compliance teams, regulatory agencies
Industry UsageRisk management, IT, financeRegulatory adherence, policy enforcement

Grc Auditors focus on evaluating an organization’s governance, risk, and compliance frameworks through audits, often requiring certifications like CISA. Compliance Analysts primarily monitor and ensure adherence to regulations and policies, with certifications like CCEP. While both roles operate within compliance, Grc Auditors typically conduct formal audits, whereas Compliance Analysts focus on ongoing compliance monitoring.

More about Grc Auditor jobs

What cities are hiring for Grc Auditor jobs?

Cities with the most Grc Auditor job openings:

What states have the most Grc Auditor jobs?

States with the most job openings for Grc Auditor jobs include:

What job categories do people searching Grc Auditor jobs look for?

The top searched job categories for Grc Auditor jobs are:

Infographic showing various Grc Auditor job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 9% Part Time, 1% Temporary, 2% Contract, and 1% Nights. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $78,163 per year, or $37.6 per hour.

Senior Cyber Security & GRC Engineer

Emergent Software

Houston, TX • On-site

$120 - $160/hr

Other

Re-posted yesterday


Job description

**This position is a direct hire for one of our clients. Our ideal candidates live in the Hartford, Connecticut metro area. East coast & TX candidates will be considered with expectations of occasional travel to Connecticut. Eligible candidates must currently reside in the US and authorized to work in the US without visa sponsorship.**

Our client is seeking an experienced Cyber Security & GRC Engineer to lead and mature an enterprise-wide cybersecurity, governance, risk, and compliance (GRC) program across multiple organizations. This is a senior-level, hands‑on leadership role responsible for developing a unified security and compliance framework that supports NIST CSF 2.0, GDPR, and SOX IT General Controls requirements.

The ideal candidate combines strategic leadership with technical expertise, comfortably engaging executive stakeholders and auditors while also administering security tools, managing risks, implementing controls, and driving compliance initiatives. This role will serve as the owner of the enterprise GRC platform, Vanta, ensuring continuous monitoring, audit readiness, and program maturity across all entities.

Responsibilities
  • Own and mature the enterprise cybersecurity and risk management program across a multi-entity organization.
  • Design, implement, and maintain a harmonized control framework supporting NIST CSF 2.0, GDPR, and SOX ITGC requirements.
  • Lead enterprise governance activities, including risk reviews, KPI/KRI reporting, executive reporting, and steering committee meetings.
  • Serve as the primary liaison for auditors, assessors, clients, and internal stakeholders regarding security and compliance matters.
  • Administer and optimize Vanta as the enterprise GRC system of record.
  • Configure controls, integrations, tests, evidence collection, continuous monitoring, and audit workflows within Vanta.
  • Develop, maintain, and manage enterprise security policies, standards, procedures, exceptions, and policy lifecycle processes.
  • Lead SOX ITGC readiness and compliance efforts.
  • Operationalize GDPR requirements, including records of processing, DPIAs, data subject rights management, vendor oversight, and breach response.
  • Conduct NIST CSF 2.0 assessments, maturity reviews, gap analyses, and remediation planning.
  • Manage enterprise risk assessments, risk registers, third‑party vendor risk programs, and remediation initiatives.
  • Oversee vulnerability management, patch coordination, access reviews, and technical security controls across cloud and on‑premises environments.
  • Lead incident response activities, including preparation, detection, containment, recovery, and post‑incident reviews.
  • Provide security architecture guidance for new systems, integrations, cloud solutions, and data platforms.
  • Build and manage security awareness, phishing simulation, and employee training programs.
  • Partner with business and project teams to ensure security and privacy requirements are incorporated into solution design.
Required Qualifications
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or equivalent experience.
  • 7+ years of information security, cybersecurity, or risk management experience with progression into senior program ownership responsibilities.
  • Hands‑on experience administering a GRC platform, preferably Vanta.
  • Experience implementing, operating, or auditing against NIST CSF, SOX ITGC, and GDPR requirements.
  • Demonstrated success developing and implementing security policies, controls, and governance programs.
  • One or more of the following certifications: CISSP, CISM, CRISC, or CISA.
  • Strong technical knowledge of cloud security, identity and access management, endpoint security, vulnerability management, logging, and security operations.
  • Excellent communication skills with the ability to engage technical teams, business leaders, auditors, and executives.
  • Proven ability to work independently, manage multiple priorities, and drive accountability across stakeholders.
Nice to Have Experience
  • Direct Vanta administration experience.
  • Experience supporting a publicly traded company and SOX Section 404 compliance requirements.
  • Experience leading security programs across multiple organizations or business entities.
  • ISO 27001 Lead Implementer or Lead Auditor certification.
  • SANS/GIAC certifications.
  • Construction, engineering, energy, power generation, or EPC industry experience.
  • Familiarity with AI/ML governance, data security, and secure AI deployment practices.
Our Vetting Process

At Emergent Staffing, we work hard to find the best tech candidates capable of developing high quality results for our clients. If you think you're one of those, please understand that the effort put into this by people like yourself helps us be successful in surrounding you with other top‑notch engineers. Here are the steps of our vetting process for this position:

  • Application (5 minutes)
  • Online Assessment (60 minutes)
  • Initial Phone Interview (30-45 minutes)
  • Virtual Interview with Hiring Manager (30 minutes)
  • Onsite Interview
  • Leadership Team Meeting (if needed)
  • Job Offer!

#EmergentStaffing

#IND99


#J-18808-Ljbffr