1

Grc Lead Jobs (NOW HIRING)

Founding Security Operations & GRC Lead A newly established fintech and trust bank focused on digital payments and digital asset infrastructure. Confidential Search Location: Remote, U.S.-Based ...

... SOD, GRC Tools (Access Risk Management, Access Risk Analysis and EAM), IDM Tool. Experience in BOBJ 4.x security, BODS Security, Solution Manager Security. Ability to manage multiple tasks of ...

... SOD, GRC Tools (Access Risk Management, Access Risk Analysis and EAM), IDM Tool. Experience in BOBJ 4.x security, BODS Security, Solution Manager Security. Ability to manage multiple tasks of ...

GRC Lead Package Solution Consultant - Oracle Financials. This specialty recognizes the subject matter expert for guidance related to audits and other controls reviews using Oracle GRC. Additional ...

GRC Engineer

Palo Alto, CA · On-site

$130K - $170K/yr

GRC Engineer Why Zania Every enterprise spends millions of dollars on Governance, Risk, and ... Lead onboarding and deployment for enterprise customers from scoping and configuration through to a ...

GRC Tech Lead Location: New York, NY (Hybrid), Local Candidates only Duration: 9 Months + We are seeking a highly skilled GRC Tech Lead with a strong focus on AuditBoard to join our team. The ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

GRC Team Lead CapTech is an award-winning consulting firm that collaborates with clients to achieve what's possible through the power of technology. At CapTech, we're passionate about the work we do ...

GRC Tech Lead (AuditBoard) Location: New York, NY (Hybrid - 3 Days Onsite) Duration: 6-Month Contract with Potential for Extension or Conversion Schedule: Monday-Friday, 8:00 AM - 5:00 PM Interview ...

Showing results 41-60

Grc Lead information

What are some common challenges a GRC lead might face when implementing new compliance frameworks across an organization?

A GRC Lead often encounters challenges such as resistance to change from staff, aligning diverse departmental processes with new compliance requirements, and ensuring consistent communication across teams. Balancing the need for thorough documentation with operational efficiency can also prove difficult. Successfully overcoming these obstacles requires strong interpersonal skills, a strategic approach to change management, and the ability to educate and motivate stakeholders at all levels of the organization.

What are the key skills and qualifications needed to thrive as a GRC lead, and why are they important?

To thrive as a GRC Lead, you need expertise in governance, risk management, and compliance frameworks, often supported by a relevant degree and certifications such as CISA, CRISC, or CISSP. Familiarity with GRC platforms like RSA Archer, ServiceNow GRC, or MetricStream is typically required. Strong analytical thinking, leadership, and communication skills distinguish top performers in this role. These capabilities are crucial for ensuring organizational compliance, minimizing risks, and effectively aligning security strategies with business goals.

Is GRC still in demand?

GRC (Governance, Risk, and Compliance) roles are currently in high demand due to increasing regulatory requirements and cybersecurity concerns. Professionals with skills in risk management, compliance frameworks, and familiarity with tools like RSA Archer or ServiceNow are sought after across various industries. Certifications such as CISA or CISSP can enhance job prospects in this field.

Are GRC Lead jobs hard to get?

GRC Lead jobs can be competitive due to the specialized skills required, such as knowledge of governance, risk management, and compliance frameworks. Candidates with relevant certifications like CISA or CISSP, along with experience in cybersecurity or audit, tend to have better prospects. Strong communication and leadership skills also enhance employability in this role.

What is a GRC lead?

GRC Leads are professionals responsible for overseeing Governance, Risk, and Compliance (GRC) programs within an organization. They ensure that the company adheres to legal, regulatory, and internal policy requirements while managing risks and maintaining effective controls. GRC Leads coordinate across departments to implement frameworks, conduct risk assessments, and drive compliance initiatives. Their role is crucial in protecting the organization from legal and reputational risks and ensuring operational integrity.

What is the difference between Grc Lead vs Grc Analyst?

AspectGrc LeadGrc Analyst
CredentialsCertifications like CISA, CRISC often preferredSimilar certifications, often entry to mid-level
Work EnvironmentLeads teams, manages projects, strategic planningPerforms analysis, audits, and reporting tasks
Employer & Industry UsageUsed in large organizations for governance, risk, complianceCommon in security and compliance departments
Search & Comparison IntentOften searched for career progression or role differencesOften searched for entry-level or role clarification

The Grc Lead typically oversees GRC teams, manages strategic initiatives, and requires advanced certifications. The Grc Analyst focuses on conducting audits, analyzing risks, and supporting compliance activities. While both roles require similar certifications, the Lead has more managerial responsibilities, whereas the Analyst is more hands-on with analysis and reporting.

More about Grc Lead jobs
What cities are hiring for Grc Lead jobs? Cities with the most Grc Lead job openings:
What states have the most Grc Lead jobs? States with the most job openings for Grc Lead jobs include:
What job categories do people searching Grc Lead jobs look for? The top searched job categories for Grc Lead jobs are:
Infographic showing various Grc Lead job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 10% Part Time, and 3% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Founding Security Operations & GRC Lead

Pasona NA

Remote

$140K - $190K/yr

Other

Posted 5 days ago


Job description

Founding Security Operations & GRC Lead
A newly established fintech and trust bank focused on digital payments and digital asset infrastructure.
Confidential Search
Location: Remote, U.S.-Based
Employment Type: Full-Time
Compensation: $140,000-$190,000 Base Salary (Depending on Experience)
Position Overview
The Founding Security Operations & GRC Lead will serve as the internal owner of security operations execution and governance activities across cloud infrastructure, enterprise technology, product platforms, and third-party vendors.
The organization leverages specialized security, infrastructure, compliance, and advisory partners for implementation and monitoring activities; however, internal ownership of security findings, remediation tracking, risk management, control evidence, and examination readiness remains critical.
This role is ideal for someone with experience in security operations, cloud security, security governance, technology risk management, audit support, or security compliance within regulated industries.
Key Responsibilities
Security Operations
Manage day-to-day security operations across cloud, product, vendor, and enterprise technology environments.
Monitor and coordinate remediation of security findings from security tools, cloud monitoring services, and third-party assessments.
Review, triage, prioritize, track, and escalate security alerts and security-related issues.
Coordinate security incident response activities, including investigation support, escalation, evidence preservation, communications, and post-incident review.
Cloud Security
Support cloud-security posture management within AWS environments.
Oversee security controls related to:
IAM
CloudTrail
AWS Config
Security Hub
GuardDuty
Inspector
Macie
KMS
Secrets Manager
WAF
Backup and recovery controls
Maintain cloud-security documentation and evidence for audits and examinations.
Governance, Risk & Compliance (GRC)
Maintain security control documentation, audit evidence, risk registers, and security exception records.
Support access governance activities, including user access reviews, privileged access certifications, and joiner/mover/leaver processes.
Prepare and organize security evidence for internal audits, external audits, regulatory examinations, and third-party reviews.
Assist with ongoing compliance and examination-readiness initiatives.
Vendor Risk & Oversight
Coordinate security oversight activities involving critical third-party providers and security partners.
Review vendor security documentation, assessment results, penetration-test reports, and remediation plans.
Track vendor-related security issues and follow up on corrective actions.
Secure Development & Vulnerability Management
Partner with engineering and platform teams to support secure SDLC controls.
Coordinate remediation activities for findings from:
Vulnerability assessments
Penetration tests
Code reviews
SAST tools
Dependency scans
Secrets scanning
Container security reviews
Track remediation progress and ensure timely closure of identified risks.
Regulatory & Examination Readiness
Maintain organized, accurate, and examination-ready security evidence.
Support regulatory readiness activities and ensure security controls remain properly documented and defensible.
Provide regular updates to leadership regarding security risks, incidents, remediation efforts, and control effectiveness.
Qualifications
Required
7 + years of experience in one or more of the following areas:
Security Operations
Cloud Security
Information Security
Technology Risk
Incident Response
Vulnerability Management
GRC / Security Compliance
Experience supporting security programs in regulated or audit-sensitive environments.
Strong understanding of:
Incident response
Alert triage
Access reviews
Vulnerability management
Risk remediation
Security control documentation
Hands-on experience with AWS security services and cloud-security operations.
Experience working with SIEM, MDR, EDR, vulnerability management, identity management, and ticketing platforms.
Ability to coordinate effectively across technical teams, business stakeholders, and external partners.
Strong documentation, communication, and organizational skills.
Preferred
Experience within:
Banking
Fintech
Payments
Trust companies
Financial services
Digital asset or custody environments
Familiarity with:
OCC examination readiness
FFIEC guidance
NIST CSF
NIST 800-53
SOC 2
GLBA
CIS Controls
Experience supporting AWS multi-account cloud environments.
Exposure to digital assets, blockchain, stablecoins, wallets, custody platforms, or regulated payment systems.
Experience supporting Microsoft 365, endpoint security, identity governance, EDR, or SASE technologies.
Professional certifications such as:
CISSP
CISM
CISA
CCSP
AWS Security Specialty
GIAC
Security+
What Makes This Opportunity Unique
Founding-level security leadership role with significant visibility and impact
Opportunity to help build security operations and governance programs from the ground up
Direct interaction with executive leadership, including CTO/CISO
Exposure to regulatory, cloud-security, vendor-risk, and audit-readiness initiatives
Collaborative environment supported by specialized security and compliance partners
Remote work flexibility within the United States
Interested candidates should possess a hands-on approach, strong ownership mentality, and the ability to thrive in a fast-paced, high-growth environment where security, compliance, and operational excellence are critical to success.
Ro apply, please email your resume to xjiang@pasona.com
Application Form