1

Grc Engineer Jobs in Iowa (NOW HIRING)

Senior Security Engineer, IAM

Des Moines, IA · On-site

$111K - $153K/yr

This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity ... Partner with GRC on identity controls aligned to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA, and ...

Grc Engineer information

See Iowa salary details

$55.9K

$104.9K

$190.7K

How much do grc engineer jobs pay per year?

As of Aug 26, 2026, the average yearly pay for grc engineer in Iowa is $104,852.00, according to ZipRecruiter salary data. Most workers in this role earn between $75,600.00 and $124,500.00 per year, depending on experience, location, and employer.

What is a GRC engineer?

GRC Engineers are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization’s information security and IT frameworks. They help ensure that a company’s policies and procedures meet regulatory requirements, manage risks, and align with business objectives. GRC Engineers often implement and maintain tools, conduct risk assessments, and ensure compliance through audits and reporting. Their role is critical in minimizing risks and protecting organizational assets from security threats.

What are the key skills and qualifications needed to thrive as a GRC engineer?

To thrive as a GRC Engineer, you need a solid understanding of governance, risk management, and compliance frameworks, often supported by a degree in information security or a related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow GRC), risk assessment tools, and certifications like CISA or CISSP are highly valued. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating across departments and translating complex requirements. These competencies ensure that organizations can effectively manage risk, maintain regulatory compliance, and safeguard critical information assets.

What are some common challenges faced by GRC engineers when implementing new compliance frameworks?

GRC Engineers often encounter challenges such as integrating new compliance requirements with existing IT systems, ensuring consistent documentation, and keeping up with evolving regulatory standards. Collaboration with various departments—like IT, legal, and operations—is essential to map processes accurately and address potential gaps. Proactive communication and a strong understanding of both technical and regulatory aspects help GRC Engineers overcome these hurdles and support organizational compliance effectively.

What is the difference between Grc Engineer vs Security Analyst?

AspectGrc EngineerSecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, compliance, risk managementMonitoring, incident response, threat analysis
Industry UsageCorporate governance, compliance teamsSecurity operations centers, IT departments

Grc Engineers focus on establishing and maintaining governance, risk, and compliance frameworks, ensuring organizations meet regulatory standards. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity industry, Grc Engineers emphasize policy and compliance, whereas Security Analysts focus on threat detection and response.

Are GRC engineer jobs hard to get?

GRC (Governance, Risk, and Compliance) engineer jobs can be competitive, especially for entry-level positions, but having relevant skills in cybersecurity, risk management, and certifications like CISSP or CISA can improve chances. The difficulty of securing a GRC engineer role depends on experience, education, and the demand within the industry or organization. Strong knowledge of compliance frameworks and tools is often required to stand out.

How much do GRC engineers make?

GRC (Governance, Risk, and Compliance) engineers typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in cybersecurity tools and frameworks can earn higher salaries, often exceeding $150,000.

Is GRC engineer an entry-level job?

A GRC (Governance, Risk, and Compliance) engineer is typically an intermediate to senior role that requires relevant experience and knowledge of security frameworks, compliance standards, and risk management tools. Entry-level positions may be available but often require foundational skills, certifications, or internships in cybersecurity or IT governance.

What are popular job titles related to Grc Engineer jobs in Iowa?

For Grc Engineer jobs in Iowa, the most frequently searched job titles are:

What job categories do people searching Grc Engineer jobs in Iowa look for?

The top searched job categories for Grc Engineer jobs in Iowa are:

What cities in Iowa are hiring for Grc Engineer jobs?

Cities in Iowa with the most Grc Engineer job openings:

Infographic showing various Grc Engineer job openings in Iowa as of August 2026, with employment types broken down into 100% Contract. Highlights an 100% In-person job distribution, with an average salary of $104,852 per year, or $50.4 per hour.

Senior Security Analyst, GRC

GreatAmerica Bank National Association

Cedar Rapids, IA • On-site

$110 - $150/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 7 days ago


Job description

GreatAmerica Financial Services is a highly successful entrepreneurial company providing equipment financing to businesses across the United States. Our exemplary customer service, our principle-centered business philosophy and our team-based operating approach are key to our success and growth. We are looking to add a Key Member to our Enterprise Security Team! The Senior Security Analyst, GRC supports the bank’s enterprise security governance program, ensuring alignment with regulatory expectations, enterprise risk management, and industry frameworks. This role oversees security policies, standards, risk governance, partners with third-party security oversight, and provides support for regulatory engagement. The Senior Analyst partners with technology, risk, compliance, and audit teams to strengthen the bank’s Enterprise Security Governance framework and ensures effective operation of the three lines of defense by independently reviewing control effectiveness designed by first-line security engineering and IT operations.

GreatAmerica welcomes applications from candidates residing the following states, where we currently support employment and payroll operations: Arizona, Florida, Georgia, Iowa, Kansas, Michigan, Missouri, Nebraska, South Dakota, Tennessee, Texas, and Wisconsin.

As a Senior Security Analyst, GRC, you will:
  • Security Governance & Policy Support the development and maintenance of the bank’s information security governance framework.
  • Track the lifecycle of security policies and standards, reporting non-compliance to the policy owners.
  • Ensure alignment with regulatory guidance from the Federal Financial Institutions Examination Council and banking regulators.
  • Maintain governance artifacts including policy exception processes and control documentation.
  • Independently review first-line procedures for alignment with approved policies and standards.
  • Risk & Compliance Oversight (Second Line) Support enterprise risk management by coordinating information security risk assessments.
  • Track and manage the security risk register.
  • Monitor and independently validate remediation of identified risks and control gaps.
  • Independently assess controls built and operated by first-line security engineering and IT operations teams and formally challenge control design, ownership, and evidence sufficiency through the second-line issue and escalation process.
  • Regulatory & Audit Management Act as the primary security governance liaison for regulators and auditors.
  • Support exams and reviews conducted by applicable agencies.
  • Coordinate and support responses to regulatory findings, internal audit issues, and external requests from customers.
  • Security Metrics & Reporting Develop and maintain security governance reporting for executive leadership.
  • Produce dashboards for: Risk posture Policy compliance Control effectiveness Incident trends
  • Support the presentation of quarterly updates to risk committees and senior management.
  • Framework Alignment & Continuous Improvement Maintain governance alignment with industry frameworks – NIST CSF, NIST RMF, CIS, ITGC
  • Recommend and support improvements to governance processes and tooling (Optro/Auditboard)
  • Collaborate across legal, compliance, risk, and technology functions
To be successful in the role, you will need:
  • Bachelor’s degree or equivalent preferred.
  • Minimum of 5 years of work experience in information security, risk, security governance or audit.
  • Strong knowledge of information security governance, risk management, regulatory compliance, and control frameworks, preferably within banking or regulated financial services.
  • Working knowledge of banking regulatory expectations, FFIEC guidance, and recognized security frameworks such as NIST CSF, NIST RMF, CIS, and ITGC.
  • Experience supporting regulatory exams, audit reviews, external customer requests, findings, issue management, and remediation tracking.
Preferred Certifications
  • ISACA CISA
  • ISACA CRISC
  • ISC2 CGRC
  • ISC2 CISSPISACA CISM
Other Requirements
  • Exceptional organizational, analytical, and follow-through skills.
  • Excellent verbal and written communication skills.

Role will likely include periodic large project-oriented demands with tight deadlines requiring more than standard work hours and the need to respond quickly. Must demonstrate sound business judgment.

Sharing rewards is an integral part of our culture. We believe in the value of hard work and reward our employees beyond the paycheck.

Our total rewards package includes:
  • Financial Benefits Competitive Compensation
  • Monthly Bonuses for Eligible Employees
  • 401(k) and Company Match
  • Annual Profit Sharing
  • Paid Time Off
  • Health, Wellbeing, and Family Planning Benefits
  • Paid Vacation - starting at 80 hours annually for employees in their first year of service.
  • Paid Sick Days - Ten (10) per year with a conversion option for unused time.
  • Ten (10) Paid Holidays per year
  • Gym Reimbursement
  • Health Insurance
  • Dental Insurance
  • Vision Insurance
  • Short-Term and Long Term Disability
  • Company Paid Life Insurance
  • Flexible Spending Accounts (FSA)
  • Health Savings Accounts (HSA)
  • Employee Assistance Program
  • Parental Leave
  • Education and Career Planning Benefits
  • Tuition Assistance
  • Networking Opportunities
  • Leadership Development Opportunities
  • Perks Paid Parking Service Awards
  • Hybrid work arrangements
  • Business casual environment

A strong organizational culture focused on our greatest asset: you!

Please note, applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa.

GreatAmerica is the largest independent, family-owned national commercial equipment finance companies in the U.S. and is dedicated to helping manufactures, vendors, and dealers be more successful and keep their customers for a lifetime.

With a focus on the small ticket vendor and OEM finance channel we have partnered with some of the largest and industry leading companies in the Office Equipment, Communications, IT, Automotive, Construction, Healthcare, and Franchise market sectors.

In addition to financing, GreatAmerica offers innovative non-financial services to help our customers grow.

At GreatAmerica we enjoy the benefits of being independent and family-owned, fostering quick decision making, customer response and innovation.

Established in 1992 our team has grown to over 650 employees and a portfolio of over $2.5+ Billion.

Our exemplary customer service, principle-centered business philosophy and team-based operating approach are key to our success and growth.

With a strong balance sheet and consistent financial performance through all economic cycles, GreatAmerica has experienced amazing results and unparalleled growth.

When you are part of the GreatAmerica team, you will grow professionally and work with some of the most talented finance professionals in the industry.

There is no doubt in our minds we are building the greatest company of its kind, offering the finest products and services available anywhere.

When you are part of the GreatAmerica team, you are part of the future, part of an opportunity to grow professionally and to reach your potential while enjoying your work.

#J-18808-Ljbffr