1

Grc Manager Jobs in Springfield, MA (NOW HIRING)

Lead the assessment, configuration, and deployment of ServiceNow IRM, GRC, and SecOps modules, including ITSM, ITAM, CMDB, and automation workflows. * Drive continuous improvement by applying ...

Cybersecurity Manager

Hartford, CT · On-site

$112K - $151K/yr

In management at Crowe, you play a pivotal role in leading teams, guiding project execution, and ... compliance (GRC) and business resiliency. * Serve as an extension of client teams to lead or ...

New

... GRC, Network Security, IDAM, SOC * Preferrable experience in working with IT service companies ... Ability to manage teams and guide & mentor technology track leads. * Ability to engage with client ...

Director, Internal Audit

Hartford, CT · Remote

$180K - $236K/yr

We are looking for regular interaction with senior management. You will report into the VP, ... Security GRC, Privacy, Compliance, SOX) to ensure activities are coordinated and where possible ...

Director, Internal Audit

Hartford, CT · On-site

$180K - $236K/yr

We are looking for regular interaction with senior management. You will report into the VP, ... Security GRC, Privacy, Compliance, SOX) to ensure activities are coordinated and where possible ...

next page

Showing results 1-20

Grc Manager information

See Springfield, MA salary details

$28.9K

$128.9K

$196K

How much do grc manager jobs pay per year?

As of Aug 23, 2026, the average yearly pay for grc manager in Springfield, MA is $128,893.00, according to ZipRecruiter salary data. Most workers in this role earn between $101,307.00 and $167,663.00 per year, depending on experience, location, and employer.

What is a GRC manager?

A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

What does a GRC manager do?

A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.

What are the key skills and qualifications needed to thrive as a GRC manager?

To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.

Are GRC managers jobs hard to get?

GRC (Governance, Risk, and Compliance) manager jobs can be competitive, often requiring relevant experience, certifications such as CISA or CISSP, and strong knowledge of regulatory frameworks. Candidates with a background in cybersecurity, risk management, and compliance tools tend to have better prospects, but the demand for skilled GRC managers is growing across various industries.

Is GRC manager an entry level job?

A GRC (Governance, Risk, and Compliance) manager is typically not an entry-level position; it usually requires several years of experience in risk management, compliance, or related fields. Candidates often hold relevant certifications such as CISA or CISSP and have strong knowledge of regulatory frameworks and security tools. Entry-level roles in GRC may include analyst or coordinator positions, with management roles requiring demonstrated leadership and expertise.

What are the most commonly searched types of Grc jobs in Springfield, MA?

The most popular types of Grc jobs in Springfield, MA are:

What are popular job titles related to Grc Manager jobs in Springfield, MA?

For Grc Manager jobs in Springfield, MA, the most frequently searched job titles are:

What job categories do people searching Grc Manager jobs in Springfield, MA look for?

The top searched job categories for Grc Manager jobs in Springfield, MA are:

What cities near Springfield, MA are hiring for Grc Manager jobs?

Cities near Springfield, MA with the most Grc Manager job openings:

Infographic showing various Grc Manager job openings in Springfield, MA as of August 2026, with employment types broken down into 90% Full Time, 9% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $128,893 per year, or $62 per hour.

Senior Cyber Security & GRC Engineer

Emergent Staffing

Hartford, CT • On-site

$130 - $180/hr

Other

Posted 18 days ago


Job description

**This position is a direct hire for one of our clients. Our ideal candidates live in the Hartford, Connecticut metro area. East coast & TX candidates will be considered with expectations of occasional travel to Connecticut. Eligible candidates must currently reside in the US and authorized to work in the US without visa sponsorship.**

Our client is seeking an experienced Cyber Security & GRC Engineer to lead and mature an enterprise-wide cybersecurity, governance, risk, and compliance (GRC) program across multiple organizations. This is a senior-level, hands‑on leadership role responsible for developing a unified security and compliance framework that supports NIST CSF 2.0, GDPR, and SOX IT General Controls requirements.

The ideal candidate combines strategic leadership with technical expertise, comfortably engaging executive stakeholders and auditors while also administering security tools, managing risks, implementing controls, and driving compliance initiatives. This role will serve as the owner of the enterprise GRC platform, Vanta, ensuring continuous monitoring, audit readiness, and program maturity across all entities.

Responsibilities
  • Own and mature the enterprise cybersecurity and risk management program across a multi‑entity organization.

  • Design, implement, and maintain a harmonized control framework supporting NIST CSF 2.0, GDPR, and SOX ITGC requirements.

  • Lead enterprise governance activities, including risk reviews, KPI/KRI reporting, executive reporting, and steering committee meetings.

  • Serve as the primary liaison for auditors, assessors, clients, and internal stakeholders regarding security and compliance matters.

  • Administer and optimize Vanta as the enterprise GRC system of record.

  • Configure controls, integrations, tests, evidence collection, continuous monitoring, and audit workflows within Vanta.

  • Develop, maintain, and manage enterprise security policies, standards, procedures, exceptions, and policy lifecycle processes.

  • Lead SOX ITGC readiness and compliance efforts.

  • Operationalize GDPR requirements, including records of processing, DPIAs, data subject rights management, vendor oversight, and breach response.

  • Conduct NIST CSF 2.0 assessments, maturity reviews, gap analyses, and remediation planning.

  • Manage enterprise risk assessments, risk registers, third‑party vendor risk programs, and remediation initiatives.

  • Oversee vulnerability management, patch coordination, access reviews, and technical security controls across cloud and on-premises environments.

  • Lead incident response activities, including preparation, detection, containment, recovery, and post‑incident reviews.

  • Provide security architecture guidance for new systems, integrations, cloud solutions, and data platforms.

  • Build and manage security awareness, phishing simulation, and employee training programs.

  • Partner with business and project teams to ensure security and privacy requirements are incorporated into solution design.

Required Qualifications
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or equivalent experience.

  • 7+ years of information security, cybersecurity, or risk management experience with progression into senior program ownership responsibilities.

  • Hands‑on experience administering a GRC platform, preferably Vanta.

  • Experience implementing, operating, or auditing against NIST CSF, SOX ITGC, and GDPR requirements.

  • Demonstrated success developing and implementing security policies, controls, and governance programs.

  • One or more of the following certifications: CISSP, CISM, CRISC, or CISA.

  • Strong technical knowledge of cloud security, identity and access management, endpoint security, vulnerability management, logging, and security operations.

  • Excellent communication skills with the ability to engage technical teams, business leaders, auditors, and executives.

  • Proven ability to work independently, manage multiple priorities, and drive accountability across stakeholders.

Nice to Have Experience
  • Direct Vanta administration experience.

  • Experience supporting a publicly traded company and SOX Section 404 compliance requirements.

  • Experience leading security programs across multiple organizations or business entities.

  • ISO 27001 Lead Implementer or Lead Auditor certification.

  • SANS/GIAC certifications.

  • Construction, engineering, energy, power generation, or EPC industry experience.

  • Familiarity with AI/ML governance, data security, and secure AI deployment practices.

#J-18808-Ljbffr