1

Grc Engineer Salary Jobs in Rochester, NY (NOW HIRING)

Senior SAP Security Analyst

Rochester, NY

$94K - $123K/yr

Office (on-site) The salary range for this position is dependent upon experience and location ... Serves as the primary contact with SAP developers, end users and process owners in specified ...

... engineers, cybersecurity analysts and GRC/compliance personnel. * Strategy and Policy: * Develop ... Salary Range: $105,000 - $125,000 per year The specific salary offered may be influenced by a ...

Posted today

Grc Engineer Salary information

See Rochester, NY salary details

$58.7K

$110.1K

$200.3K

How much do grc engineer salary jobs pay per year?

As of Sep 7, 2026, the average yearly pay for grc engineer salary in Rochester, NY is $110,144.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,400.00 and $130,700.00 per year, depending on experience, location, and employer.

What is the average salary for a GRC engineer?

The average salary for a GRC (Governance, Risk, and Compliance) Engineer typically ranges from $90,000 to $140,000 per year in the United States, depending on experience, location, and the specific industry. Entry-level roles may start around $80,000, while senior GRC Engineers can earn upwards of $150,000 or more, especially in major tech hubs or highly regulated industries. Factors such as certifications, advanced skills in cybersecurity, and knowledge of relevant frameworks can also influence salary levels.

What factors can influence the salary range for a GRC engineer?

The salary for a GRC (Governance, Risk, and Compliance) Engineer can vary significantly based on several factors, including the candidate’s level of experience, certifications (such as CISSP, CISM, or CRISC), and the industry in which they work. Additionally, salaries may be higher in regions with a greater demand for cybersecurity and compliance professionals, such as major metropolitan areas or technology hubs. The size and complexity of the organization, as well as the scope of responsibilities—like managing enterprise-wide risk assessments or implementing compliance frameworks—also play a crucial role in determining compensation. Career advancement in this field often leads to higher salaries through senior or managerial GRC roles.

What are the key skills and qualifications needed to thrive as a GRC engineer, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Engineer, you need a solid understanding of information security, risk management frameworks, and compliance standards, often supported by a relevant degree or certifications like CISSP, CISA, or CRISC. Familiarity with GRC platforms such as RSA Archer, ServiceNow GRC, or LogicManager is typically required. Strong analytical thinking, attention to detail, and effective communication skills help GRC Engineers interpret complex regulations and collaborate across departments. These skills ensure organizations effectively manage risk, maintain compliance, and safeguard critical assets.

What is the difference between Grc Engineer Salary vs Security Analyst?

AspectGrc EngineerSecurity Analyst
Required CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, GIAC
Work EnvironmentIT security teams, compliance departmentsSecurity operations centers, IT departments
Industry UsageFinancial, healthcare, tech sectorsFinancial, government, tech sectors

Grc Engineers and Security Analysts often share certifications and work in security-focused environments. While Grc Engineers focus on governance, risk, and compliance frameworks, Security Analysts primarily monitor and respond to security threats. Both roles are vital in maintaining organizational security posture, but their daily tasks and focus areas differ.

Are GRC engineer jobs hard to get?

GRC engineer jobs can be competitive due to the specialized skills required, such as knowledge of governance, risk management, and compliance frameworks. Candidates with relevant certifications, experience with security tools, and strong understanding of regulations tend to have better prospects. The difficulty of securing a position varies based on industry demand and individual qualifications.

What are popular job titles related to Grc Engineer Salary jobs in Rochester, NY?

For Grc Engineer Salary jobs in Rochester, NY, the most frequently searched job titles are:

What job categories do people searching Grc Engineer Salary jobs in Rochester, NY look for?

The top searched job categories for Grc Engineer Salary jobs in Rochester, NY are:

What cities near Rochester, NY are hiring for Grc Engineer Salary jobs?

Cities near Rochester, NY with the most Grc Engineer Salary job openings:

Senior SAP Security Analyst

Iberdrola

Rochester, NY

$94K - $123K/yr

Full-time

Posted 25 days ago


Key responsibilities

  • Design, implement, and support SAP security roles and profiles for all SAP environments.

  • Develop SAP security solutions and configuration changes to meet end user requirements, including preparing specifications for approved changes.

  • Design, implement, and support GRC toolset, ruleset, policy governance, Segregation of Duties controls, and support audit processes.


Job description

Job Title: Senior SAP Security Analyst

Location: Orange, CT; Rochester, NY; Binghamton, NY; Augusta, ME.

Work type: Office (on-site)

The salary range for this position is dependent upon experience and location, ranging from:

  • CT: $106,000 - $132,500

  • NY / ME: $96,400 - $120,500

Job Summary

Under general direction, to support compliance with the Global Access Governance Rule, coordinating SAP security initiatives for providing security design, configuration, testing, and ad hoc/custom reporting capabilities in support of the business units. Serves as the primary contact with SAP developers, end users and process owners in specified business areas to understand ongoing security and functional requirements (changes, modifications, improvements) and ensuring overall SAP data security integrity; work with various departments in the development of information security standards and practices; make resourceful, practical decisions and address unexpected problems; and perform other security related duties as required.

Responsibilities:

  • Design, implement, and support SAP security roles and profiles for all SAP environments, including ERP Central Component (ECC), Customer Relationship Management (CRM), Business Warehouse (BW), Governance Risk Compliance (GRC), SAP BusinessObjects BI (BOBJ), and Solution Manager.

  • Develop SAP security solutions and/or configuration changes to meet ongoing end user requirements. Implements configuration changes as required and prepare specifications for approved changes.

  • Design, implement, and support of GRC toolset, ruleset, policy governance, Segregation of Duties (SOD) controls, and all aspects of internal/external audits.

  • Review existing GRC toolset and rulesets, identifying improvement opportunities, and remediating identified violations.

  • Analyze non-technical security and functional requirements, translate requirements into technical security and functional specifications, and appropriately design and build secure technical solutions based on functional specifications.

  • Provides timely and accurate solutions to the functional business areas supporting SAP Security changes requested.

  • Assist business and technical teams with SAP functionality development focusing on access authorization.

  • Develops, maintains and updates documentation including instructions, reference materials, training materials.

  • Change Request and Transport review and approval.

  • Supports on-going end user training and other end user activities as required.

  • Assists in the development and support of Microsoft Office based tools.

Required Qualifications:

Education & Experience Required:

  • Associate's degree with a minimum of 7 years of relevant experience required.

  • Minimum 5 years of progressive SAP Security experience.

  • Minimum 5 years of experience with GRC Compliance Tools, preferably INFOR Approva or SAP GRC.

Preferred Qualifications:

  • Bachelor's Degree with a minimum of 5 years of relevant experience.

  • Ability to communicate complex information, concepts or ideas in a confident and well-organized manner through verbal, written and/or visual means.

  • Ability to build effective relationships for key stakeholders locally and globally and to interact at all levels of the organization.

  • Ability to resolve complex problems and negotiate successful outcomes.

  • Ability to lead work processes and work independently.

  • Thorough knowledge and understanding of managing SAP Security within ECC, CRM, BW, and BOBJ systems

  • Demonstrated understanding of Segregation of Duties concepts and Sarbanes-Oxley framework.

  • Strong desire to build, improve and maintain a pristine SAP landscape.

  • Ability to communicate with business areas to ensure business needs are being addressed effectively.

  • Ability to travel occasionally, perform after-hours project- related work, and provide on-call support as needed.

  • Strong analytical, problem-solving and decision-making skills.

  • Proficient in the use of Microsoft Office applications.

Behavioral Competencies:

  • Develop self & others

  • Empower to grow

  • Collaborate and share

  • Be a role model

  • Focus to achieve results

  • Be agile

#LI-NB1
#LI-office

Company:

AVANGRID SERVICE COMPANY

Mobility Information

Please note that any applicant who is not a citizen of the country of the vacancy will be subject to compliance with the applicable immigration requirements to legally work in that country.

At Avangrid we provide fair and equal employment and advancement opportunities for all employees and candidates regardless of race, color, religion, national origin, gender, sexual orientation, age, marital status, disability, protected veteran status or any other status protected by federal, state, or local law.
If you are an individual with a disability or a disabled veteran who is unable to use our online tool to search for or to apply for jobs, you may request a reasonable accommodation by contacting our People and Organization department at careers@avangrid.com.

Avangrid employees may be assigned a system emergency role and in the event of a system emergency, may be required to work outside of their regular schedule/job duties. This is applicable to employees that will work in Connecticut, Maine, Massachusetts, and New York within Avangrid Network and Corporate functions. This does not include those that will work for Avangrid Power.

Avangrid employees may also be assigned a NERC Reliability Standards compliance role supporting Critical Infrastructure Protection (CIP) and/or Operations and Planning (O&P) responsibilities. This is applicable to employees that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts, and New York within Avangrid Network and Corporate business areas. NERC Reliability Standards compliance roles and responsibilities may include additional access protections, training, audit engagement, and required evidence retention, and will be communicated by the employee's management.

Job Posting End Date:

September-14-2026