1

Grc Project Manager Jobs in Colorado (NOW HIRING)

... GRC Solutions, Automated External Application Scanning, and Automated Source Code Analysis. A ... Deliver services that meet Accenture Project Manager specifications * Recognize and communicate ...

New

Program Manager

Westminster, CO ยท On-site

$113K - $136K/yr

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

Program Manager

Westminster, CO ยท On-site

$113K - $136K/yr

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

If you enjoy working in a startup environment, and managing multiple fast paced projects at once ... Experience with NASA (GRC, JSC, MSFC) customers * Experience in DoD Acquisition Process. * Return ...

Effectively use GRC platforms (Drata, Anecdotes, Hyperproof) to implement and manage Compliance Operations for clients. * Make efficient use of business tools (Slack, MS Office Suite, project ...

Deliver documentation for all assigned tasks/projects; keep content current, accurate, compliant ... Experience using Bison GRC, Xacta 360, or similar GRC platforms to manage controls, evidence, and ...

Deliver documentation for all assigned tasks/projects; keep content current, accurate, compliant ... Experience using Bison GRC, Xacta 360, or similar GRC platforms to manage controls, evidence, and ...

Excellent organizational and project management skills * Strong written and verbal communication ... Knowledge of GRC tools and methodologies * Industry certifications such as CISA, CIPP, or Security ...

Promptly provides requested information for GRC testing and other internal/external audits ... Assists with other projects as needed. REQUIRED QUALIFICATIONS * Bachelor's degree in finance ...

Hands-on experience with program management and GRC documentation tools including Jira, Confluence (Atlassian suite), MS Project, enterprise GRC platforms, and MS Visio or Lucidchart. * Strong ...

Growth Leader, Risk Services

Denver, CO ยท On-site

$156K - $195K/yr

Knowledge of GRC/IT Assurance services. * Proficiency with HubSpot or a comparable marketing ... Excellent cross-functional collaboration, project management, and communication skills. * Bachelor ...

Senior Internal Auditor

Greeley, CO ยท On-site

$104K/yr

Coordinate on special projects with members of the I/A teams from Mexico, Europe, Australia, where ... SAP GRC exposure a plus. * Strong in performing data analytical procedures in order to find the ...

Sr. Cybersecurity Operational Risk Officer

Denver, CO ยท On-site

$102K - $132K/yr

... GRC preferred Project management, Agile experience preferred Tactical Skills Demonstrated experience working with regulatory agencies, guidelines and requirements Strong ability to work with all ...

Showing results 21-40

Grc Project Manager information

Is GRC a GRC Project Manager job?

A GRC Project Manager is a role responsible for overseeing governance, risk management, and compliance initiatives within an organization. The position typically requires project management skills, knowledge of GRC frameworks, and relevant certifications such as CISSP or CISA. It involves coordinating teams, managing timelines, and ensuring regulatory requirements are met.

How does a GRC Project Manager typically collaborate with cross-functional teams to implement compliance initiatives?

A GRC Project Manager works closely with departments such as IT, Legal, Risk, and Internal Audit to ensure that governance, risk management, and compliance initiatives are effectively integrated across the organization. This role involves facilitating regular meetings, aligning project goals with organizational policies, and clearly communicating regulatory requirements to various stakeholders. The GRC Project Manager often serves as a liaison, translating technical or legal concepts into actionable tasks for different teams, and ensuring that project milestones are met while maintaining compliance standards.

Are GRC project manager jobs hard to get?

GRC project manager jobs can be competitive, especially for roles requiring experience in governance, risk management, and compliance frameworks. Strong skills in project management, relevant certifications like PMP or CISA, and knowledge of tools such as RSA Archer or ServiceNow can improve job prospects. Entry-level positions may be easier to obtain, but advanced roles typically require several years of experience.

What are the key skills and qualifications needed to thrive as a GRC Project Manager, and why are they important?

To thrive as a GRC Project Manager, you need expertise in governance, risk management, compliance frameworks, and project management methodologies, often supported by a bachelor's degree and certifications like PMP or CISA. Familiarity with GRC software platforms, risk assessment tools, and regulatory compliance systems is typically required. Exceptional organizational, leadership, and stakeholder communication skills help drive cross-functional projects and adapt to changing regulatory landscapes. These competencies are crucial for ensuring projects meet compliance objectives, mitigate risks, and deliver organizational value.

What is the difference between Grc Project Manager vs Grc Analyst?

AspectGrc Project ManagerGrc Analyst
CertificationsISO 27001 Lead Implementer, PMP, CISACISA, CRISC, CISSP
Work EnvironmentOversees projects, manages teams, coordinates compliance effortsAnalyzes risks, assesses controls, supports compliance activities
Employer & Industry UsageFinancial, healthcare, technology sectorsFinancial institutions, consulting firms, tech companies
Search & Comparison IntentUnderstanding project management roles in GRCUnderstanding analytical roles supporting GRC projects

The Grc Project Manager focuses on leading GRC initiatives, managing teams, and ensuring project delivery. The Grc Analyst supports these efforts by analyzing risks, evaluating controls, and providing compliance insights. Both roles require similar certifications and are integral to GRC efforts, but they differ in scope and responsibilities within organizations.

What are popular job titles related to Grc Project Manager jobs in Colorado? For Grc Project Manager jobs in Colorado, the most frequently searched job titles are:
What job categories do people searching Grc Project Manager jobs in Colorado look for? The top searched job categories for Grc Project Manager jobs in Colorado are:
What cities in Colorado are hiring for Grc Project Manager jobs? Cities in Colorado with the most Grc Project Manager job openings:
Infographic showing various Grc Project Manager job openings in Colorado as of June 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Contract. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution.

Governance Risk & Compliance Analyst

System One Holdings, LLC

Denver, CO โ€ข On-site

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 24 days ago


Job description

Job Title: Governance Risk & Compliance Analyst
Location: Lakewood, CO
Work Model: Hybrid - onsite and remote
Overview
System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the Governance, Risk & Compliance function within the Global Information Security Office and supports the implementation of company?wide security governance, risk management, and compliance programs. Under the direction of the GRC Functional Leader, the analyst contributes to policy development, risk oversight, and continuous improvement of the organization's security posture. The role also works closely with regional Information Security Officers (ISOs) and cross?functional teams to support the deployment of global standards and local regulatory requirements.
Responsibilities
  • Support information security risk assessments for new projects, systems, and business processes.
  • Assist in conducting internal control reviews (e.g., J?SOX), preparing audit materials, and coordinating responses to internal and external auditors.
  • Track and follow up on remediation actions to ensure timely closure of identified risks.
  • Contribute to drafting, updating, and maintaining global information security policies, standards, and procedures.
  • Review relevant laws, regulations, and industry frameworks (e.g., ISO 27001, NIS2) and incorporate stakeholder feedback into documentation.
  • Support the rollout and implementation of policies across regions.
  • Monitor adherence to security and regulatory requirements, including ISO 27001, NIS2, and GDPR.
  • Collect and organize compliance evidence, track corrective actions, and support certification and regulatory readiness efforts such as ISO 27001/42001 and NIS2 programs.
  • Conduct third party security risk assessments by distributing questionnaires, analyzing responses, verifying controls, and documenting results in the GRC tracking systems.
  • Identify and escalate high risk findings to the GRC Functional Leader and support follow up mitigation activities.
  • Participate in the planning and implementation of security awareness programs for all associates.
  • Create e-learning materials and training materials, conduct phishing email exercises, and distribute disseminated content on internal portals.
  • Monitor and analyze global regulatory developments related to cybersecurity with a focus on industrial control systems (ICS), IT environments, and critical infrastructure.
  • Assist in evaluating how new or updated regulations (e.g., NIS2, FDA cybersecurity expectations, industrial cybersecurity standards, or country specific critical infrastructure laws) impact company operations.
  • Track emerging obligations, document requirements, and support gap assessments to ensure timely compliance.
  • Assist in the preparation, maintenance, and continuous improvement of the CISO Dashboard by collecting, validating, and analyzing security metrics across the Global GRC function.
  • Compile key performance indicators (KPIs) and key risk indicators (KRIs) related to compliance status, audit findings, supplier risk, incident trends, training completion, regulatory readiness, and other relevant security domains.
  • Support the visualization and communication of security posture to senior leadership by ensuring data accuracy, timely updates, and clarity in reporting.
  • Support the development and enforcement of governance controls for the secure use of artificial intelligence technologies across the organization.
  • Identify risks related to AI systems-such as model security, algorithmic integrity, and misuse-and contribute to risk assessments and mitigation plans.
  • Help evaluate third party AI tools.
  • Support the development and improvement of GRC processes, tools, and documentation to enhance operational efficiency and standardization.
  • Assist in preparing reports, presentations, and materials for leadership reviews, steering committees, and cross functional meetings.
  • Participate in internal security projects and initiatives, including process automation, metrics development, and enhancements to governance workflows.
  • Provide coordination and administrative support for security committees, working groups, and regional GRC activities.
  • Perform additional duties as assigned to support the Global Information Security Office and the broader GRC program.

Requirements
  • 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline.
  • Experience supporting security programs in global or regulated environments is a plus.
  • Understanding of global and regional information security regulations (e.g., data protection laws, cybersecurity requirements) and familiarity with security frameworks such as ISO 27001.
  • Knowledge of internal control frameworks (e.g., JSOX) and IT governance practices is highly desirable.
  • Experience supporting audit activities is preferred.
  • Experience with risk assessment methodologies, control evaluation, and vulnerability or issue management processes.
  • Strong analytical and problem-solving skills, with the ability to identify risks, assess impacts, and support the development and tracking of corrective actions.
  • Ability to communicate security requirements, policies, and audit findings clearly and persuasively with stakeholders across regions and business units.
  • Strong coordination skills to build consensus and drive compliance.
  • Industry certifications such as CISSP, CISA, CISM, ISO 27001 Lead Implementer/Auditor, or similar are preferred but not required.
  • Bachelor's degree in information security, Cybersecurity, Information Systems, Computer Science, or a related field; or equivalent professional experience.
  • Familiarity with governance, risk, and compliance tools (e.g., BitSight, Drata, OneTrust, Archer, or similar) for managing risks, audits, and compliance workflows.
  • Working knowledge of cybersecurity concepts such as identity and access management, endpoint protection, vulnerability management, cloud security, and secure system design.
  • Experience supporting cross-functional security or compliance initiatives, including requirements gathering, documentation, and progress tracking.
  • Ability to interpret risk metrics, compliance data, and audit results.
  • Experience with dashboards, KPI/KRI reporting, or data visualization tools is a plus.
  • Awareness of emerging cybersecurity regulations (e.g., NIS2, AI governance frameworks, critical infrastructure rules) and their potential impact on enterprise operations.

System One, and its subsidiaries including Joulรฉ and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#M-1
#LI-SG1
Ref: #558-Scientific