1

Grc Manager Jobs in Utah (NOW HIRING)

GRC Program Manager

Draper, UT ยท On-site

$120K - $146K/yr

Manage third-party/vendor risk management. * Own our GRC tooling and automation, and drive continuous compliance rather than point-in-time scrambles. * Lead AI enablement of the compliance program ...

Manage audit strategy across programs and align GRC strategy with revenue-generating certifications. Track and report revenue influenced by certifications. * Partner with GTM teams to position ...

Track risks in the risk register using a GRC tool and publish dashboards with the risk health of ... Bachelor's degree in Risk Management, Business Administration, Finance, Information Systems ...

Track risks in the risk register using a GRC tool and publish dashboards with the risk health of ... Bachelor's degree in Risk Management, Business Administration, Finance, Information Systems ...

Client Success Manager

Lehi, UT ยท On-site

$80 - $100/hr

Qualifications: * 3+ years of experience in Customer Success, Account Management, GRC, or a related client-facing role at a SaaS company--preferably with compliance-driven or technical solutions.

Sr. Technology Compliance Product Owner

Lehi, UT ยท On-site

$118K - $156K/yr

What you need to succeed * 5-8+ years of experience in Governance, Risk & Compliance (GRC), Information Security, Audit, Risk Management, or a related field. * Solid understanding of industry ...

Directly manages the Security Engineering, Security Operations (SecOps), and GRC functions, including hiring, performance management, and development of each team's leadership. * Sets strategy and ...

next page

Showing results 1-20

Grc Manager information

See Utah salary details

$25.7K

$114.8K

$174.6K

How much do grc manager jobs pay per year?

As of Sep 8, 2026, the average yearly pay for grc manager in Utah is $114,791.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,223.00 and $149,319.00 per year, depending on experience, location, and employer.

What is a GRC manager?

A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

What does a GRC manager do?

A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.

What are the key skills and qualifications needed to thrive as a GRC manager?

To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.

Are GRC managers jobs hard to get?

GRC (Governance, Risk, and Compliance) manager jobs can be competitive, often requiring relevant experience, certifications such as CISA or CISSP, and strong knowledge of regulatory frameworks. Candidates with a background in cybersecurity, risk management, and compliance tools tend to have better prospects, but the demand for skilled GRC managers is growing across various industries.

Is GRC manager an entry level job?

A GRC (Governance, Risk, and Compliance) manager is typically not an entry-level position; it usually requires several years of experience in risk management, compliance, or related fields. Candidates often hold relevant certifications such as CISA or CISSP and have strong knowledge of regulatory frameworks and security tools. Entry-level roles in GRC may include analyst or coordinator positions, with management roles requiring demonstrated leadership and expertise.

What are the most commonly searched types of Grc jobs in Utah?

The most popular types of Grc jobs in Utah are:

What are popular job titles related to Grc Manager jobs in Utah?

For Grc Manager jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Grc Manager jobs in Utah look for?

The top searched job categories for Grc Manager jobs in Utah are:

What cities in Utah are hiring for Grc Manager jobs?

Cities in Utah with the most Grc Manager job openings:

Infographic showing various Grc Manager job openings in Utah as of August 2026, with employment types broken down into 85% Full Time, 14% Part Time, and 1% Contract. Highlights an 79% Physical, 2% Hybrid, and 19% Remote job distribution, with an average salary of $114,791 per year, or $55.2 per hour.

GRC Program Manager

Redo

Draper, UT โ€ข On-site

$120K - $146K/yr

Full-time

PTO

Posted 24 days ago


Key responsibilities

  • Own, mature, and scale Redo's GRC program end to end, including frameworks such as SOC 2, GDPR, CCPA, PCI, and HIPAA.

  • Partner with engineering to translate compliance requirements into technical and engineering controls, ensuring their implementation and ongoing adherence.

  • Lead audit readiness activities, manage auditor relationships, and oversee evidence collection and continuous control monitoring.


Job description

About Redo
Redo is an e-commerce growth platform. We help merchants personalize every step of the buyer journey to maximize profit and lifetime value, with solutions spanning returns, warranties, order tracking, and post-purchase communications. We're growing fast, moving quickly, and building the systems that let some of the best brands in commerce trust us with their customers.
About the Role
Security and compliance are core to how Redo operates and how our merchants trust us with their customers. We're growing explosively, and as we scale, we're investing in a dedicated owner to take our governance, risk, and compliance program to the next level — and that's where you come in.
Redo is growing fast, which makes this a rare blue-ocean opportunity to own GRC end to end. This isn't a box-checking role — it's a chance to drive real impact and influence across the organization. You'll deepen and expand our compliance across SOC 2, GDPR, CCPA, and the frameworks that come next, setting the strategy, owning the execution, and shaping how security is built into the company as we grow. You'll also work directly with our merchants, where a strong security story helps close deals.
You'll partner shoulder-to-shoulder with engineering to turn compliance requirements into concrete controls, keep us audit-ready as we scale, and be the person our merchants trust when they run a security review. We're looking for a seasoned practitioner who can operate independently and be the go-to expert on all things GRC.
If you want ownership, visible impact, and the chance to shape a maturing security program at a fast-growing company, this is it.
What You'll Do

  • Own, mature, and scale Redo's GRC program end to end — SOC 2, GDPR, CCPA, PCI, and HIPAA and additional frameworks as our merchant base demands them.

  • Partner closely with engineering to translate framework and control requirements into clear, actionable technical and engineering requirements — and make sure they get implemented and stay implemented.

  • Own audit readiness: lead audits and assessments, manage auditor relationships, and run evidence collection and continuous control monitoring.

  • Lead compliance sales enablement by responding to merchant and prospect security reviews — questionnaires, due-diligence requests, and trust/security documentation — and turn it into a low friction process that smooths sales deals.

  • Build and maintain security policies, standards, and procedures, and drive their adoption across the company.

  • Manage third-party/vendor risk management.

  • Own our GRC tooling and automation, and drive continuous compliance rather than point-in-time scrambles.

  • Lead AI enablement of the compliance program — put AI to work automating evidence collection, control monitoring, security-questionnaire responses, and documentation so the program scales faster than headcount.

  • Manage access reviews, security awareness training, and evidence of ongoing operating effectiveness.

  • Keep leadership informed on compliance posture, gaps, and progress, and represent Redo's security program to customers and partners.

What We're Looking For

  • 5+ years in GRC, security compliance, or a closely related role, with hands-on ownership (not just support) of at least one full compliance program.

  • Demonstrated experience taking a company through a full SOC 2 certification and continued surveillance.

  • Depth of experience helping SaaS platforms support GDPR and data privacy obligations.

  • Experience navigating HIPAA and PCI environments.

  • A self-directed operator who can own and mature a program with minimal oversight — you know what "good" looks like and can drive it independently.

  • Ability to translate control requirements into engineering requirements and to collaborate credibly with software engineers.

  • Experience responding to customer security reviews and security questionnaires.

  • Strong writing and communication skills — you can produce clear policies and explain security posture to both engineers and non-technical stakeholders.

  • Comfortable in a fast-moving, high-growth environment where you set the pace.

  • Experience using AI for custom compliance automation

Nice to Have

  • Relevant certifications such as CISA, CISSP, ISO 27001 Lead Implementer/Auditor, or CIPP/E.

  • Experience with GRC automation platforms (e.g., Vanta, Drata, Secureframe).

Benefits

  • Work with a dynamic, innovative team in the fast-growing ecommerce industry

  • Opportunities for career growth and advancement

  • On-site gym with showers, pickleball, and basketball

  • Flexible PTO company holidays

  • Redo perks: monthly allowance to support purchases from ecommerce stores

  • Company HSA contributions

  • Weekly lunches fully stocked break room

  • $100 monthly babysitting reimbursement

  • Office is minutes from biking and running trails


Redo is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to creating a diverse and inclusive work environment where all employees feel valued, respected, and supported.