1

Grc Lead Jobs (NOW HIRING)

Summary: IT SAP Security/GRC Lead Specialist: Responsible for managing and providing SAP support to Energy Transfer users within functional and technical areas of expertise. This includes interacting ...

New

$225 - $350/hr

About the Role We're looking for a GRC Lead who personally drives our certifications (SOC 2, ISO 27001, FedRAMP and others as we grow) from scoping through audit close, and runs our compliance ...

GRC Tech Lead Location: New York, NY (Hybrid), Local Candidates only Duration: 9 Months + We are seeking a highly skilled GRC Tech Lead with a strong focus on AuditBoard to join our team. The ...

Showing results 41-60

Grc Lead information

What is a GRC lead?

GRC Leads are professionals responsible for overseeing Governance, Risk, and Compliance (GRC) programs within an organization. They ensure that the company adheres to legal, regulatory, and internal policy requirements while managing risks and maintaining effective controls. GRC Leads coordinate across departments to implement frameworks, conduct risk assessments, and drive compliance initiatives. Their role is crucial in protecting the organization from legal and reputational risks and ensuring operational integrity.

What are some common challenges a GRC lead might face when implementing new compliance frameworks across an organization?

A GRC Lead often encounters challenges such as resistance to change from staff, aligning diverse departmental processes with new compliance requirements, and ensuring consistent communication across teams. Balancing the need for thorough documentation with operational efficiency can also prove difficult. Successfully overcoming these obstacles requires strong interpersonal skills, a strategic approach to change management, and the ability to educate and motivate stakeholders at all levels of the organization.

What are the key skills and qualifications needed to thrive as a GRC lead, and why are they important?

To thrive as a GRC Lead, you need expertise in governance, risk management, and compliance frameworks, often supported by a relevant degree and certifications such as CISA, CRISC, or CISSP. Familiarity with GRC platforms like RSA Archer, ServiceNow GRC, or MetricStream is typically required. Strong analytical thinking, leadership, and communication skills distinguish top performers in this role. These capabilities are crucial for ensuring organizational compliance, minimizing risks, and effectively aligning security strategies with business goals.

What is the difference between Grc Lead vs Grc Analyst?

AspectGrc LeadGrc Analyst
CredentialsCertifications like CISA, CRISC often preferredSimilar certifications, often entry to mid-level
Work EnvironmentLeads teams, manages projects, strategic planningPerforms analysis, audits, and reporting tasks
Employer & Industry UsageUsed in large organizations for governance, risk, complianceCommon in security and compliance departments
Search & Comparison IntentOften searched for career progression or role differencesOften searched for entry-level or role clarification

The Grc Lead typically oversees GRC teams, manages strategic initiatives, and requires advanced certifications. The Grc Analyst focuses on conducting audits, analyzing risks, and supporting compliance activities. While both roles require similar certifications, the Lead has more managerial responsibilities, whereas the Analyst is more hands-on with analysis and reporting.

Is GRC still in demand?

GRC (Governance, Risk, and Compliance) roles are currently in high demand due to increasing regulatory requirements and cybersecurity concerns. Professionals with skills in risk management, compliance frameworks, and familiarity with tools like RSA Archer or ServiceNow are sought after across various industries. Certifications such as CISA or CISSP can enhance job prospects in this field.
More about Grc Lead jobs

What cities are hiring for Grc Lead jobs?

Cities with the most Grc Lead job openings:

What states have the most Grc Lead jobs?

States with the most job openings for Grc Lead jobs include:

What job categories do people searching Grc Lead jobs look for?

The top searched job categories for Grc Lead jobs are:

Infographic showing various Grc Lead job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 9% Part Time, and 2% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Lead Specialist - IT SAP GRC/Security

Socket.dev

Houston, TX โ€ข On-site

$140 - $190/hr

Other

Retirement, PTO

Posted 2 days ago

New


Job description

Energy Transfer, recognized byForbes as oneof America's best large employers, is dedicated to responsibly and safely delivering America's energy. We are driven to inspire our employees to create superior value for our customers, our investors, a sustainable futureandgiving back to the community where we have long-standing commitments to causes includingMD Anderson Children's Cancer Hospital, TheSalvation Army, American Heart Association, Ronald McDonald House and many more.

We value all of our employees who make our growth and success possible. We are proud to offer industry leading compensation, comprehensive benefits, 401(k) match with additional profit sharing, PTO and abundant career opportunities.

Come join our award winning 12,000 strong organization as we fuel the world and each other!

Summary:

IT SAP Security/GRC Lead Specialist: Responsible for managing and providing SAP support to Energy Transfer users within functional and technical areas of expertise. This includes interacting with users to understand requirements, evaluating alternative solutions, resolving problems/issues, developing training materials, providing user training, communicating status and documenting system changes (e.g. new reports and functionality) to the appropriate business levels in the organization.

Essential Duties and Responsibilities:
  • Project Management:
    • Plans, directs and coordinates activities in order to ensure project goals are accomplished within defined constraints.
    • Identifies and schedules project deliverables, milestones, and required tasks.
  • Problem Resolution:
    • Research production problems and/or enhancement issues and make appropriate configuration changes to the system. Initiate action and evaluate issues to develop alternative solutions. Apply expert knowledge and experience to resolve problems.
    • Conduct day-to-day troubleshooting and break-fix activities. Provide telephone support to share in the 24x7 365-day support of SAP production system.
    • Act as the Subject Matter Expert (SME) lead for all SAP Security and GRC modules including but not limited to S4, Fiori, BPC 11.0, O-BPC, E HANA, Solman, GRC 12 components EAM, ARA, ARM and BRM
  • Continuous Improvement and Efficiency Projects:
    • Develop and implement SAP security policies, architecture and processes. This function includes identifying SAP security solutions, implementing standards and best practices, identifying and remediating vulnerabilities and other associated compliance activities.
    • Experience and strong understanding of internal controls, security practices and a working knowledge of S4 and Fiori configuration, functionality and SAP GRC for Controls and SOD resolution strategies to enable the business process transformation needs.
    • Understands and Applies Sarbanes Oxley compliance knowledge in internal controls/business process controls design, development, testing, implementation, support, and documentation of a Risk and Controls Matrix for the S4 SAP environment.
    • Thinks strategically as the future internal controls/business process controls design is built
    • Translate business requirements into a robust security model for SAP S/4 HANA, BPC, E-HANA, Fiori, PO, GRC implementation in accordance with the overall business and IT strategy
  • Knowledge Transfer/Mentor:
    • Develop and conduct SAP training and knowledge transfer to business clients.
    • Proactively train other IT resources further develop their understanding of SAP application configuration and business processes.
  • SOX Compliance:
    • Ensure that changes/enhancements are completed using appropriate SOX control processes. Recommend/implement SOX change control process changes as necessary.
Requirements: Education and/or Experience, Knowledge, Skills & Abilities:

To perform this job successfully, an individual must be able to perform each essential job duty satisfactorily. The requirements for this position are listed below:

  • Bachelor's degree in Computer Science or Accounting or equivalent work experience plusexperience related to the applicable level.
  • Experience shouldinclude2 SAP full project life cycle implementations, and SAP Security design and implementation experience with at least 1 SAP greenfield project implementation experience
  • 2-3 years of GRC 10.1/12 Access Control implementation experience with at least 1 new implementation experience
  • Administration/Troubleshooting complex security issues related to S4 HANA, BPC, O-BPC, ChaRM, E-HANA Security, Fiori catalogs, groups and configure security roles
  • Configure GRC SOD Rule Set and work with the compliance team to test, evaluate the effectiveness of SOD's and mitigation controls.
  • Experience with Integrating SAP with SailPoint IdM is preferred
  • Should be well versed working with internal and external auditors and remediate gaps from IT/SAP audits
  • Should be able to lead Customer Workshops and Presentations Independently
  • Responsible for the effectiveness of SAP Security Controls (Emergency Access, SOD Compliance, etc.) and addressing audit findings in SAP environments
  • Deep expertise in implementing the various modules of GRC Access Control โ€“ ARA, ARM, EAM, BRM along with complex workflow layouts using MSMP and BRF+
  • Implementation experience with GRC Process Control module and integration with Access Control is preferred
Required experience is commensurate with the selected job level:
  • The Senior IT Specialist level requires a Bachelor's degree or equivalent experience and 5-8 years of relevant job related experience
  • The Lead IT Specialist level requires a Bachelor's degree or equivalent experience and 8+ years of relevant job related experience
  • The Principal IT Specialist level requires a Bachelor's degree or equivalent experience and 10+ years of relevant job related experience.
Preferred Qualifications:
  • Knowledge of oil and gas industry is a plus
  • GRC certification is preferred
Working Conditions:

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job.

  • Usually, normal office working conditions.
  • Must be able to remain in a stationary position 50%25 of the time due to prolonged periods of sitting or standing.
  • Occasional overnight travel may be required.
  • Occasional visits to industrial/manufacturing settings, which may include exposure to various materials and chemicals, as well as extreme temperature conditions and loud machinery, and require appropriate personal protective equipment.
#J-18808-Ljbffr