1

Grc Professional Jobs (NOW HIRING)

The individual should demonstrate sound judgment, professionalism, and a commitment to delivering ... Compliance (GRC). · Experience preparing technical documentation. · Experience working in ...

We are looking for a GRC professional who is equal parts auditor and builder. Rokt's information security management system is ISO 27001 and SOC 2 certified, and protects personal customer data ...

We are looking for a GRC professional who is equal parts auditor and builder. Rokt's information security management system is ISO 27001 and SOC 2 certified, and protects personal customer data ...

We are looking for a GRC professional who is equal parts auditor and builder. Rokt's information security management system is ISO 27001 and SOC 2 certified, and protects personal customer data ...

next page

Showing results 1-20

Grc Professional information

See salary details

$11

$21

$32

How much do grc professional jobs pay per hour?

As of Jul 26, 2026, the average hourly pay for grc professional in the United States is $21.32, according to ZipRecruiter salary data. Most workers in this role earn between $17.55 and $23.08 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a GRC (Governance, Risk, and Compliance) Professional, and why are they important?

To thrive as a GRC Professional, you need a solid understanding of regulatory frameworks, risk management principles, and compliance requirements, often supported by a degree in business, law, or information security. Familiarity with GRC platforms like RSA Archer, MetricStream, or ServiceNow GRC, and certifications such as CISA, CRISC, or CISSP, are commonly expected. Attention to detail, strong analytical thinking, and effective communication are crucial soft skills for interpreting regulations and advising stakeholders. These skills ensure organizations effectively manage risks, maintain compliance, and build a resilient, ethical business environment.

Is GRC a good career?

A GRC (Governance, Risk, and Compliance) professional plays a key role in managing organizational policies, risk assessments, and regulatory compliance. The field offers strong job growth, competitive salaries, and opportunities to work in various industries, often requiring knowledge of frameworks like ISO, NIST, or COBIT. It is suitable for individuals with skills in cybersecurity, audit, or legal compliance seeking a stable and evolving career path.

What is the difference between Grc Professional vs Compliance Analyst?

AspectGrc ProfessionalCompliance Analyst
CertificationsISO 31000, COSO, CISAISO 37001, CCEP, CISA
Work EnvironmentRisk management, governance, compliance teamsRegulatory compliance, audit, and policy enforcement
Industry UsageFinance, healthcare, technologyFinance, healthcare, manufacturing

Grc Professionals focus on overall governance, risk, and compliance strategies, often working across multiple domains. Compliance Analysts primarily concentrate on ensuring adherence to specific regulations and policies. While both roles require similar certifications and work in related environments, Grc Professionals have a broader scope, whereas Compliance Analysts specialize in regulatory compliance tasks.

What is a GRC professional?

A GRC professional specializes in Governance, Risk Management, and Compliance, helping organizations develop policies, manage risks, and ensure regulatory adherence. They often work with frameworks like ISO, COBIT, or NIST and may hold certifications such as CISA or CRISC. Their role involves assessing vulnerabilities, implementing controls, and supporting audit processes.

What jobs in the US pay 300,000 a year?

GRC (Governance, Risk, and Compliance) professionals can earn $300,000 or more annually at senior levels, especially with extensive experience, certifications like CISA or CISSP, and leadership roles in large organizations. High-paying positions often involve strategic oversight, cybersecurity, or executive management within compliance and risk management departments.

What are some common challenges GRC Professionals face when implementing new compliance frameworks within an organization?

GRC Professionals often encounter challenges such as resistance to change from employees, integrating new compliance frameworks with existing processes, and ensuring that all departments understand and adhere to updated policies. Navigating complex regulatory requirements and translating them into practical, actionable steps for the business can also be demanding. Successful GRC Professionals typically address these challenges through clear communication, cross-functional collaboration, and ongoing education to foster a culture of compliance.

What are the careers in GRC?

Careers in GRC (Governance, Risk, and Compliance) include roles such as GRC analyst, compliance officer, risk manager, and audit professional. These roles involve developing policies, managing regulatory requirements, assessing risks, and implementing controls, often requiring knowledge of frameworks like ISO, COBIT, or NIST, and certifications such as CISA or CRISC.

What are GRC professionals?

GRC professionals are experts who manage Governance, Risk, and Compliance within an organization. They help companies develop and enforce policies, assess and mitigate risks, and ensure compliance with relevant laws and regulations. Their work is crucial for maintaining ethical standards, avoiding legal penalties, and supporting business objectives. GRC professionals often collaborate with departments across the organization to create integrated frameworks that promote accountability and transparency.
More about Grc Professional jobs
What cities are hiring for Grc Professional jobs? Cities with the most Grc Professional job openings:
What are the most commonly searched types of Grc jobs? The most popular types of Grc jobs are:
What states have the most Grc Professional jobs? States with the most job openings for Grc Professional jobs include:
Infographic showing various Grc Professional job openings in the United States as of July 2026, with employment types broken down into 19% Locum Tenens, 34% Full Time, 2% Contract, 41% Nights, and 4% Summer. Highlights an 77% Physical, 8% Hybrid, and 15% Remote job distribution, with an average salary of $44,338 per year, or $21.3 per hour.
Engineer - InfoSec GRC (Governance, Risk, and Compliance)

Engineer - InfoSec GRC (Governance, Risk, and Compliance)

Wynn Las Vegas

Las Vegas, NV

Full-time

Posted 27 days ago


Job description

Job Description

Wynn Resorts is seeking an Engineer – InfoSec GRC to help advance the technical maturity, automation, and audit readiness of the Information Security Governance, Risk, and Compliance function. This role is ideal for a technically minded GRC professional who can translate regulatory, audit, and control requirements into practical system procedures, automated workflows, scheduled reporting, dashboards, and audit-ready evidence.

The Engineer – InfoSec GRC will serve as a technical resource for control automation, evidence collection, compliance reporting, and continuous improvement across the GRC program. This position partners closely with Information Security, IT, Internal Audit, Finance, Legal, Compliance, and business stakeholders to improve the reliability, consistency, and efficiency of audit and compliance processes.

Ideal Candidate
Detail-oriented, technically curious GRC professional who enjoys improving complex processes, building reliable reporting, and making audit and compliance activities easier for analysts and stakeholders to execute. Ability to work independently, collaborate across teams, and communicate technical concepts clearly in a practical, audit-ready manner.

Essential Job Duties & Responsibilities

  • Design, implement, and improve technical solutions that support repeatable, auditable compliance with applicable frameworks and requirements, including SOX ITGC, PCI DSS, Gaming MICS, NIST, ISO, and other relevant standards.
  • Automate audit procedures, control testing steps, evidence collection routines, and analyst-ready workflows to reduce manual effort and improve consistency, accuracy, and timeliness.
  • Build, maintain, and validate scheduled compliance reporting from authoritative systems, including databases, applications, identity platforms, asset repositories, change management systems, vulnerability management tools, SIEM/logging platforms, GRC platforms, and other enterprise data sources.
  • Develop dashboards, metrics, exception reports, control status reporting, remediation tracking outputs, and evidence artifacts that communicate compliance posture, control effectiveness, audit readiness, and risk trends.
  • Support systems and platforms where GRC is the business stakeholder, including tools used for audit automation, evidence management, control monitoring, asset management, application inventory, change management, and scheduled reporting.
  • Identify and implement technical improvements, data integrations, automation opportunities, and control monitoring enhancements that reduce recurring audit issues and strengthen stakeholder accountability.
  • Maintain technical details within the GRC control framework, including system and network scoping, technical control interpretations, control-to-system mappings, artifact descriptions, reporting logic, and validation steps.
  • Partner with internal and external auditors, assessors, IT teams, engineers, architects, application owners, and business stakeholders to explain control design, evidence, system data, reporting logic, and remediation status.
  • Support the continuous improvement of GRC processes through technology, documentation, workflow optimization, reporting automation, and responsible use of AI-enabled capabilities.
  • Perform other duties as assigned.
Qualifications
  • Degree in computer science, cybersecurity, data analytics, or related field (or equivalent experience)
  • Four (4+) years of experience in cybersecurity, audit, risk, compliance, or related programs
  • Ability to translate regulations and controls into technical requirements, testing procedures, metrics, and reporting
  • Experience with audit automation, compliance reporting, dashboards, monitoring, and evidence collection
  • Ability to analyze and validate data from databases, applications, APIs, logs, identity systems, and other enterprise sources
  • Working knowledge of reporting, scripting, queries, workflows, and automation
  • Understanding of IT systems, security governance, risk, audit, and compliance principles
  • Strong analytical, documentation, troubleshooting, and communication skills
  • Ability to work independently, manage priorities, and collaborate with technical and non-technical teams

Highly Preferred Qualifications

  • Experience automating audits, control testing, evidence collection, access reviews, and compliance reporting (SOX, PCI DSS, NIST, ISO, etc.)
  • Experience creating and maintaining compliance reports from enterprise systems and platforms
  • Knowledge of SQL, APIs, data validation, reconciliation, scripting, and workflow automation
  • Experience building dashboards, compliance metrics, scorecards, and management reports using tools such as Power BI, Excel, GRC, or SIEM platforms
  • Experience documenting reporting logic, data lineage, and control mappings
  • Experience partnering with IT, audit, engineering, and compliance stakeholders
  • Familiarity with AI-driven automation and continuous compliance concepts
  • Relevant certifications such as CISA, CRISC, CISSP, Security+, PCI-ISA, ISO 27001, SQL/Data Analytics, or Power BI

Additional Information

Wynn Resorts is an equal opportunity employer committed to hiring a diverse workforce and sustaining an inclusive culture. Wynn Resorts does not discriminate on the basis of disability, veteran status or any other basis protected under federal, state or local laws.