1

Grc Project Manager Jobs in Colorado (NOW HIRING)

We work closely with security engineering, security operations, product security, GRC, identity and ... Your Impact As a Technical Project Manager, you will lead technically complex cybersecurity ...

We work closely with security engineering, security operations, product security, GRC, identity and ... Your Impact As a Technical Project Manager, you will lead technically complex cybersecurity ...

... GRC and audit, third-party vendor risk, cloud security, CSPM/CNAPP, email security, and security awareness training. * Experience managing infrastructure projects such as site reliability engineering ...

Sr. Principal, GRC

Boulder, CO · On-site

$196.50 - $287.40/hr

... the GRC team, evaluate the potential of AI-driven efficiencies, and assess the ROI of GRC ... project management experience. * 7 years (84 months) of experience in cloud computing and Software ...

Sr. Principal, GRC

Boulder, CO · On-site

$196K - $287K/yr

... project management experience; 7 years (84 months) of experience in cloud computing and Software as a Service, particularly risk models and controls related to these services; 7 years (84 months) of ...

About This Role We're seeking a Technical IT Project Manager to join APEX (Accelerating ... and Security/GRC teams * Facilitating priority alignment with department leaders to ensure ...

Program Manager

Westminster, CO · On-site

$113K - $136K/yr

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

Effectively use GRC platforms (Drata, Anecdotes, Hyperproof) to implement and manage Compliance Operations for clients. * Make efficient use of business tools (Slack, MS Office Suite, project ...

Cyber Security Engineer III

Denver, CO · On-site

$100 - $150/hr

Deliver documentation for all assigned tasks/projects; keep content current, accurate, compliant ... Experience usingBison GRC,Xacta 360, or similar GRC platforms to manage controls, evidence, and POA ...

next page

Showing results 1-20

Grc Project Manager information

How does a GRC Project Manager typically collaborate with cross-functional teams to implement compliance initiatives?

A GRC Project Manager works closely with departments such as IT, Legal, Risk, and Internal Audit to ensure that governance, risk management, and compliance initiatives are effectively integrated across the organization. This role involves facilitating regular meetings, aligning project goals with organizational policies, and clearly communicating regulatory requirements to various stakeholders. The GRC Project Manager often serves as a liaison, translating technical or legal concepts into actionable tasks for different teams, and ensuring that project milestones are met while maintaining compliance standards.

What are the key skills and qualifications needed to thrive as a GRC Project Manager, and why are they important?

To thrive as a GRC Project Manager, you need expertise in governance, risk management, compliance frameworks, and project management methodologies, often supported by a bachelor's degree and certifications like PMP or CISA. Familiarity with GRC software platforms, risk assessment tools, and regulatory compliance systems is typically required. Exceptional organizational, leadership, and stakeholder communication skills help drive cross-functional projects and adapt to changing regulatory landscapes. These competencies are crucial for ensuring projects meet compliance objectives, mitigate risks, and deliver organizational value.

What is the difference between Grc Project Manager vs Grc Analyst?

AspectGrc Project ManagerGrc Analyst
CertificationsISO 27001 Lead Implementer, PMP, CISACISA, CRISC, CISSP
Work EnvironmentOversees projects, manages teams, coordinates compliance effortsAnalyzes risks, assesses controls, supports compliance activities
Employer & Industry UsageFinancial, healthcare, technology sectorsFinancial institutions, consulting firms, tech companies
Search & Comparison IntentUnderstanding project management roles in GRCUnderstanding analytical roles supporting GRC projects

The Grc Project Manager focuses on leading GRC initiatives, managing teams, and ensuring project delivery. The Grc Analyst supports these efforts by analyzing risks, evaluating controls, and providing compliance insights. Both roles require similar certifications and are integral to GRC efforts, but they differ in scope and responsibilities within organizations.

Is GRC a GRC Project Manager entry-level job?

A GRC Project Manager role is typically not entry-level; it usually requires several years of experience in governance, risk management, and compliance, along with project management skills. Entry-level positions in GRC may be titled GRC Analyst or Coordinator, with the Project Manager role demanding more advanced knowledge and leadership abilities.

What are popular job titles related to Grc Project Manager jobs in Colorado?

For Grc Project Manager jobs in Colorado, the most frequently searched job titles are:

What cities in Colorado are hiring for Grc Project Manager jobs?

Cities in Colorado with the most Grc Project Manager job openings:

Infographic showing various Grc Project Manager job openings in Colorado as of June 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Contract. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution.

Cyber - SAP Security and GRC Access & Process Control Manager

Denver, CO • On-site


Deloitte
Finance and Insurance • 10K+ employees

8.2

Company rating: 8.2 out of 10

Based on 93 frontline employees who took The Breakroom Quiz

46th of 152 rated financial services

Good employer

Recommended by students

Paid breaks


Full-time

Re-posted 4 days ago


Job description

SAP Security and GRC Manager / Engineering Manager II

Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver solutions that help clients navigate evolving threats, strengthen resilience, and support secure business transformation. In this role, you will help organizations manage SAP security and governance, risk, and compliance requirements across implementation and transformation programs.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Enterprise Security team, you will be responsible for supporting SAP security and GRC implementations, assessments, and transformation initiatives across client environments.

  • Lead SAP ECC and SAP S/4HANA security assessments, design, and implementation activities across complex business and technology environments
  • Design, build, test, and deploy end-user and IT support security roles across SAP platforms, including Fiori, Ariba, Integrated Business Planning, Business Technology Platform, and Business Data Cloud
  • Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management
  • Support SAP GRC Process Control design and configuration, including controls, risks, subprocesses, organizations, assignments, and continuous control monitoring capabilities
  • Manage project workstreams, client stakeholders, and delivery teams while providing recommendations on SAP security role design, segregation of duties, vulnerability findings, and regulatory control requirements

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Enterprise Security Offering helps clients embed security across digital transformation initiatives by securing core technology environments while enabling business change. The team supports work spanning security architecture, secure development and deployment, cyber cloud capabilities, application security, and security for emerging technologies and connected products.

Qualifications

Required:

  • Bachelor's degree
  • 8+ years of experience with SAP S/4HANA security and SAP Governance, Risk, and Compliance (GRC) Access Control
  • 8+ years of hands-on experience implementing security for SAP S/4HANA, Fiori, Ariba, Integrated Business Planning (IBP), Business Technology Platform (BTP), and Business Data Cloud (BDC), including requirement gathering, security design, and deployment
  • Demonstrated delivery of 3+ full-cycle SAP GRC Access Control implementation projects, SAP S/4HANA security implementations, and 2+ SAP GRC Process Control implementations
  • 5+ years of experience designing, configuring, and implementing SAP GRC Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred:

  • Previous consulting experience
  • Professional certification such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA)
  • Experience with SAP identity and access governance
  • Experience with cloud security and cloud migrations
  • Experience with SAP business process controls and data protection tools such as NextLabs
  • Experience with vulnerability management tools such as Onapsis

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Qualifications:

SAP Security and GRC Manager / Engineering Manager II

Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver solutions that help clients navigate evolving threats, strengthen resilience, and support secure business transformation. In this role, you will help organizations manage SAP security and governance, risk, and compliance requirements across implementation and transformation programs.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Enterprise Security team, you will be responsible for supporting SAP security and GRC implementations, assessments, and transformation initiatives across client environments.

  • Lead SAP ECC and SAP S/4HANA security assessments, design, and implementation activities across complex business and technology environments
  • Design, build, test, and deploy end-user and IT support security roles across SAP platforms, including Fiori, Ariba, Integrated Business Planning, Business Technology Platform, and Business Data Cloud
  • Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management
  • Support SAP GRC Process Control design and configuration, including controls, risks, subprocesses, organizations, assignments, and continuous control monitoring capabilities
  • Manage project workstreams, client stakeholders, and delivery teams while providing recommendations on SAP security role design, segregation of duties, vulnerability findings, and regulatory control requirements

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Enterprise Security Offering helps clients embed security across digital transformation initiatives by securing core technology environments while enabling business change. The team supports work spanning security architecture, secure development and deployment, cyber cloud capabilities, application security, and security for emerging technologies and connected products.

Qualifications

Required:

  • Bachelor's degree
  • 8+ years of experience with SAP S/4HANA security and SAP Governance, Risk, and Compliance (GRC) Access Control
  • 8+ years of hands-on experience implementing security for SAP S/4HANA, Fiori, Ariba, Integrated Business Planning (IBP), Business Technology Platform (BTP), and Business Data Cloud (BDC), including requirement gathering, security design, and deployment
  • Demonstrated delivery of 3+ full-cycle SAP GRC Access Control implementation projects, SAP S/4HANA security implementations, and 2+ SAP GRC Process Control implementations
  • 5+ years of experience designing, configuring, and implementing SAP GRC Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred:

  • Previous consulting experience
  • Professional certification such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA)
  • Experience with SAP identity and access governance
  • Experience with cloud security and cloud migrations
  • Experience with SAP business process controls and data protection tools such as NextLabs
  • Experience with vulnerability management tools such as Onapsis

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Education:Bachelor's DegreeEmployment Type:


What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom