1

Grc Consultant Jobs (NOW HIRING)

About the Role Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need GRC done right ranging from Fortune 1000 companies to high-growth startups.

About the Role Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need GRC done right ranging from Fortune 1000 companies to high-growth startups.

Company Description We are looking for a great SAP Security consultant who has hands on experience with GRC 10. Duration: 3m (possible extension) Location: Plano, TX Must have: GRC 10 Start Date: May ...

NY · On-site

$90 - $150/hr

Utilizing SAP Governance, Risk and Compliance (GRC) expertise * Implementing SAP BW/4HANA solutions ... consulting * training Certifications & Qualifications * Bachelor's degree #J-18808-Ljbffr

Experienced or Senior GRC Analyst

Fort Worth, TX · On-site +1

$84K - $111K/yr

About the Role Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need GRC done right ranging from Fortune 1000 companies to high-growth startups.

... consulting / solutions architecture in B2B SaaS with a strong track record of leading evaluations through to technical wins. * Experience selling into or supporting GRC, security compliance, cyber ...

Showing results 41-60

Grc Consultant information

See salary details

$32K

$75K

$124.5K

How much do grc consultant jobs pay per year?

As of Aug 17, 2026, the average yearly pay for grc consultant in the United States is $74,960.00, according to ZipRecruiter salary data. Most workers in this role earn between $53,000.00 and $93,500.00 per year, depending on experience, location, and employer.

What does a GRC consultant do?

A typical day for a GRC Consultant involves assessing organizational processes, identifying potential risks, and advising stakeholders on compliance best practices. You might spend time reviewing policy documents, conducting risk assessments, facilitating workshops with clients, and documenting recommendations. Collaboration with IT, legal, and business teams is common, as you work to tailor compliance solutions to each client’s unique environment. You’ll also stay updated on changing regulations and regularly communicate your findings to senior management, helping to drive continuous improvement.

What are the key skills and qualifications needed to thrive as a GRC consultant?

To thrive as a GRC Consultant, you need a solid understanding of governance, risk management, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with tools like RSA Archer, ServiceNow GRC, and certifications such as CISA, CISSP, or CRISC are highly valuable. Strong analytical thinking, effective communication, and problem-solving abilities help consultants navigate complex regulations and build rapport with clients. These skills are crucial to ensuring organizations meet compliance standards while efficiently managing risk and supporting business objectives.

What is a GRC consultant?

A GRC (Governance, Risk, and Compliance) Consultant helps organizations manage risks, ensure regulatory compliance, and establish strong governance practices. They assess existing policies, implement compliance frameworks, and recommend improvements to mitigate risks. GRC Consultants often work with various stakeholders to align business objectives with industry regulations and best practices. Their role is crucial in protecting businesses from legal, financial, and security threats while promoting operational efficiency.

More about Grc Consultant jobs

What cities are hiring for Grc Consultant jobs?

Cities with the most Grc Consultant job openings:

What are the most commonly searched types of Grc Consultant jobs?

The most popular types of Grc Consultant jobs are:

What states have the most Grc Consultant jobs?

States with the most job openings for Grc Consultant jobs include:

Infographic showing various Grc Consultant job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 7% Part Time, and 5% Contract. Highlights an 86% Physical, 4% Hybrid, and 10% Remote job distribution, with an average salary of $74,960 per year, or $36 per hour.

SAP GRC/Security Senior Consultant

Turnkey Consulting

Alpharetta, GA • On-site, Remote

Full-time

Re-posted 24 days ago


Job description

Job Title: SAP GRC/Security Senior Consultant
Company: Turnkey Consulting
Location: United States (Considering candidates in any US location that are fully authorized to work in the US - Applicants needing sponsorship will NOT be considered)
About Turnkey Consulting
Turnkey Consulting is a leading advisory and implementation organization with deep expertise in risk management, governance, and compliance & security. Having the ability to provide end-to-end solutions that integrate technology, process, and people. Our business started within the SAP ecosystem, however expansion into being an agnostic partner, now gives us a wider range of solutions to support our customers, while securing their wider estate. Turnkey Consulting helps businesses optimize their risk management, security and compliance programs, protect against Cyber threats, reduce costs, and improve their operational efficiency. With a team of seasoned risk professionals and a commitment to excellence, we empower businesses to proactively protect their critical assets and stay ahead of evolving threats.
Job Summary
The candidate will play a key role in handling client engagements, as well as utilizing strong technical experience to find solutions that best fit our clients' needs. We are looking for a team-player and strong all-rounder with at least 2 implementations and 2 years of practical experience in the following areas
  • Detailed understanding of the SAP authorization concept in one or more of the following areas: ECC, SAP S/4 HANA, HCM, CRM, SRM, BW, BI, BPC, SAP HANA, SAP BTP

  • Experience of designing, building and implementing SAP security and authorization solutions

  • Experience in SAP designing, configuring, and implementing SAP role re-designs specifically for S4 HANA and Fiori

  • Exposure to various system user interfaces (UI), including SAP but also other relevant SaaS products

  • Detailed understanding of SAP GRC suite of applications, with a demonstrable specialism in core modules contained within (ideally v12 onward)

  • Experience of IDM solutions, either SAP's IDM solution, or non-SAP, such as SailPoint or Saviynt would be of advantage.

  • Experience in implementation and/or administration of SAP BIS would be an advantage

  • Experience of third-party solutions to secure SAP estates also an advantage

  • Experience of SAP Fiori catalogs, groups, pages and spaces

  • Experience of SAP IAG solutions would be an advantage, both IAS and IPS

  • Experience with scripting languages such as Python and JSON would be an advantage

Our experienced consultants are a key driver of our success as one of the most trusted names in the end-to-end security arena and we are committed to delivering to a consistently high standard. Key responsibilities of the role are:
  • Task management of large / complex implementations, especially in aApplication security or enterprise risk/identity projects

  • Implementation of GRC technology and supporting modules

  • Work with clients to understand "why" they're in need of such solutions, define requirements and configure solutions to best fit those needs

  • Perform controls and configuration reviews involving relevant application systems and processes

  • Advise clients on controls in their enterprise systems relating to regulatory or legislative compliance

  • Review and advise on security redesign and remediation projects

  • Provide a broader range of information risk management solutions to clients as required

  • Build relationships with new clients and maintain good relations with our existing client base

  • Integrate solutions into wider cybersecurity controls estates

We are looking ideally for someone with the following attributes:
  • The ability to troubleshoot and diagnose problems / issues and provide prompt, robust resolution

  • An enquiring mind to discover "why" clients need to introduce theintroduce controlling measures.

  • The ability to manage projects within varied client engagements and lead reviews and implementations

  • Knowledge of corporate business processes and their control points

  • Good understanding of various IT regulations and standards, including:including Sarbanes Oxley, COBIT, ISO series & the GDPR

  • Bachelor's degree

  • Professional certification (e.g. CISA, M.Inst.ISP, CISSP, ISO)

  • SAP certification (Security, GRC)

  • Consulting background

  • Strong written and verbal communication skills

  • Integration experience

  • Ability to act as an SME to install, design, engineer and configure security solutions to meet client needs

  • Ability to effectively manage own time and priorities effectively and to work both as part of a team and individually.

  • Able to communicate technical and functional requirements to both the business and IT

Key responsibilities of the role will include:
  • Project manage large / complex SAP Security implementations, especially for S/4 HANA projects

  • Implementation of GRC Access Controls and supporting modules

  • Work with clients to understand requirements and configure solutions to best fit those needs

  • Perform controls and configuration reviews involving SAP systems

  • Advise clients on controls in SAP relating to regulatory or legislative compliance

  • Review and advise on SAP security redesign and remediation projects

  • Provide a broader range of information risk management solutions to clients as required

  • Build relationships with new clients and maintain good relations with our existing client base

  • Integrate solutions into wider cybersecurity controls estates

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. When we collect your personal information as part of a job application or offer of employment, we do so in accordance with industry standards and best practices and in compliance with applicable privacy laws.