1

Grc Engineer Jobs in Delaware (NOW HIRING)

Senior Systems Engineer - IAM

Wilmington, DE · On-site

$101K - $138K/yr

Responsibilities We are seeking a dynamic Sr Systems Engineer with a strong background in Identity ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...

Senior Systems Engineer - IAM

Wilmington, DE · On-site

$101K - $138K/yr

Responsibilities We are seeking a dynamic Sr Systems Engineer with a strong background in Identity ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...

Senior Systems Engineer - IAM

Wilmington, DE · On-site

$101K - $138K/yr

We are seeking a dynamic Sr Systems Engineer with a strong background in Identity and Access ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...

Senior Security Engineer, IAM

Wilmington, DE · On-site

$111K - $152K/yr

This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity ... Partner with GRC on identity controls aligned to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA, and ...

Grc Engineer information

See Delaware salary details

$59.6K

$111.7K

$203.2K

How much do grc engineer jobs pay per year?

As of Aug 29, 2026, the average yearly pay for grc engineer in Delaware is $111,728.00, according to ZipRecruiter salary data. Most workers in this role earn between $80,600.00 and $132,600.00 per year, depending on experience, location, and employer.

What is a GRC engineer?

GRC Engineers are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization’s information security and IT frameworks. They help ensure that a company’s policies and procedures meet regulatory requirements, manage risks, and align with business objectives. GRC Engineers often implement and maintain tools, conduct risk assessments, and ensure compliance through audits and reporting. Their role is critical in minimizing risks and protecting organizational assets from security threats.

What are the key skills and qualifications needed to thrive as a GRC engineer?

To thrive as a GRC Engineer, you need a solid understanding of governance, risk management, and compliance frameworks, often supported by a degree in information security or a related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow GRC), risk assessment tools, and certifications like CISA or CISSP are highly valued. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating across departments and translating complex requirements. These competencies ensure that organizations can effectively manage risk, maintain regulatory compliance, and safeguard critical information assets.

What are some common challenges faced by GRC engineers when implementing new compliance frameworks?

GRC Engineers often encounter challenges such as integrating new compliance requirements with existing IT systems, ensuring consistent documentation, and keeping up with evolving regulatory standards. Collaboration with various departments—like IT, legal, and operations—is essential to map processes accurately and address potential gaps. Proactive communication and a strong understanding of both technical and regulatory aspects help GRC Engineers overcome these hurdles and support organizational compliance effectively.

What is the difference between Grc Engineer vs Security Analyst?

AspectGrc EngineerSecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, compliance, risk managementMonitoring, incident response, threat analysis
Industry UsageCorporate governance, compliance teamsSecurity operations centers, IT departments

Grc Engineers focus on establishing and maintaining governance, risk, and compliance frameworks, ensuring organizations meet regulatory standards. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity industry, Grc Engineers emphasize policy and compliance, whereas Security Analysts focus on threat detection and response.

Are GRC engineer jobs hard to get?

GRC (Governance, Risk, and Compliance) engineer jobs can be competitive, especially for entry-level positions, but having relevant skills in cybersecurity, risk management, and certifications like CISSP or CISA can improve chances. The difficulty of securing a GRC engineer role depends on experience, education, and the demand within the industry or organization. Strong knowledge of compliance frameworks and tools is often required to stand out.

How much do GRC engineers make?

GRC (Governance, Risk, and Compliance) engineers typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in cybersecurity tools and frameworks can earn higher salaries, often exceeding $150,000.

Is GRC engineer an entry-level job?

A GRC (Governance, Risk, and Compliance) engineer is typically an intermediate to senior role that requires relevant experience and knowledge of security frameworks, compliance standards, and risk management tools. Entry-level positions may be available but often require foundational skills, certifications, or internships in cybersecurity or IT governance.

What are popular job titles related to Grc Engineer jobs in Delaware?

For Grc Engineer jobs in Delaware, the most frequently searched job titles are:

What job categories do people searching Grc Engineer jobs in Delaware look for?

The top searched job categories for Grc Engineer jobs in Delaware are:

What cities in Delaware are hiring for Grc Engineer jobs?

Cities in Delaware with the most Grc Engineer job openings:

Infographic showing various Grc Engineer job openings in Delaware as of August 2026, with employment types broken down into 100% Contract. Highlights an 100% In-person job distribution, with an average salary of $111,728 per year, or $53.7 per hour.

Director GRC & Security Architecture

The Chronicle Of Higher Education, Inc.

Newark, DE • On-site

$110 - $145/hr

Other

This job post has expired today. Applications are no longer accepted.


Job description

Pay Grade: 33S Context of Job

The Director of GRC and Security Architecture is a senior leadership role responsible for governing the organization’s information security risk, compliance, and architectural security posture. This role provides enterprise-wide leadership across governance, risk management, regulatory compliance (including HIPAA), and security architecture to ensure security controls are designed, implemented, and operating effectively in support of business, academic, and clinical objectives. Serving as the designated HIPAA Security Officer, this role partners closely with Legal, Privacy, Compliance, IT, Cloud, Application, and Security Operations teams to ensure regulatory readiness, risk‑informed decision‑making, and secure‑by‑design technology architecture across on‑premises, cloud, and SaaS environments. This position reports to the Chief Information Security Officer of the University.

Major Responsibilities Governance, Risk & Compliance (GRC)
  • Lead the enterprise Information Security Governance, Risk, and Compliance (GRC) program.
  • Establish and maintain security policies, standards, procedures, and control frameworks aligned with NIST, HITRUST, ISO 27001, and other applicable frameworks.
  • Oversee enterprise risk assessments, third‑party risk management, and control effectiveness evaluations.
  • Translate regulatory, legal, and contractual requirements into actionable security controls and architectural standards.
  • Ensure ongoing compliance with applicable regulations and standards, including HIPAA, PCI DSS, FERPA, SOC 2, and FIPS‑140, as applicable.
HIPAA Security Officer Responsibilities
  • Serve as the organization’s designated HIPAA Security Officer.
  • Oversee administrative, technical, and physical safeguards required under the HIPAA Security Rule.
  • Partner with Privacy, Legal, Compliance, and Health IT leadership on risk analyses, remediation plans, and regulatory inquiries.
  • Support audits, investigations, and compliance reviews related to protected health information (PHI).
  • Ensure appropriate security awareness and HIPAA training programs are developed and delivered across the organization.
Security Architecture & Secure Design
  • Own and lead the security architecture function, defining enterprise security architecture principles, reference architectures, and design standards.
  • Review and approve security architecture for new systems, applications, cloud services, and major technology initiatives.
  • Ensure security is embedded early in system lifecycle activities through secure‑by‑design and defense‑in‑depth principles.
  • Partner with infrastructure, cloud, application, and DevOps teams to integrate security requirements into platforms and solutions.
  • Guide architectural decisions related to identity, network segmentation, encryption, key management, logging, and data protection.
Strategic Planning & Program Leadership
  • Contribute to and lead multi‑year security strategy and roadmap development in alignment with organizational objectives.
  • Actively participate in enterprise security and risk governance forums, advising executive leadership on risk posture and architectural trade‑offs.
  • Balance risk reduction with operational efficiency, usability, and institutional mission requirements.
  • Serve as a trusted advisor to schools, departments, and business units on risk and architectural security decisions.
Oversight of Security Technologies & Controls
  • Provide governance and oversight for security technologies supporting risk management, compliance, and architectural controls.
  • Ensure alignment between security architecture standards and operational security tooling.
  • Evaluate new security technologies and frameworks to address evolving regulatory and threat landscapes.
Metrics, Reporting & Communication
  • Develop and report meaningful risk and compliance metrics to senior leadership and governance committees.
  • Communicate complex security and compliance topics clearly to technical and non‑technical stakeholders.
  • Provide executive‑level reporting on risk trends, compliance posture, and architectural maturity.
Leadership & Talent Development
  • Lead and develop GRC and security architecture professionals.
  • Establish clear role definitions, performance expectations, and professional development pathways.
  • Foster a culture of accountability, continuous improvement, and collaboration across security and IT teams.
Budget, Vendor & Resource Management
  • Manage budgets associated with GRC, compliance, and security architecture programs.
  • Oversee vendor relationships related to risk management, compliance tooling, and architectural services.
  • Ensure responsible financial stewardship and alignment with strategic priorities.
Qualifications
  • Bachelor’s degree in Information Security, Computer Science, Information Systems, or a related field (Master’s preferred).
  • Seven years of progressive experience in information security, risk management, or IT, including leadership roles.
  • Demonstrated experience leading GRC programs, regulatory compliance efforts, and enterprise risk management.
  • Strong knowledge of HIPAA Security Rule, PCI DSS, and related regulatory frameworks.
  • Proven experience defining and governing security architecture across enterprise and cloud environments.
  • Excellent written and verbal communication skills, including executive‑level presentations.
  • Experience supporting healthcare, higher education, or regulated enterprise environments preferred.
  • Hands‑on experience with NIST, HITRUST CSF, ISO 27001, SOC 2, and third‑party risk frameworks preferred.
  • Professional certifications such as CISSP, CISM, CRISC, or equivalent preferred.
  • Experience partnering closely with SOC, IR, Privacy, and Legal teams preferred.
  • Demonstrated success leading organizational change and maturing security governance programs preferred.
#J-18808-Ljbffr