1

Grc Risk Jobs in Naperville, IL (NOW HIRING)

GRC Specialist II

Chicago, IL · On-site

$116K - $144K/yr

GRC Specialist II Salary: $116,000-$144,000 As a Security GRC Specialist II , you'll be a key ... Risk & Compliance Assurance: Manage and support processes that ensure Information Technology (IT) ...

Support risk assessments, including likelihood and impact scoring, treatment planning, and ... in GRC, IT audit, security compliance, or a related field * Hands-on experience supporting or ...

GRC Engineer

Chicago, IL · On-site +1

$130K - $145K/yr

Support risk assessments, including likelihood and impact scoring, treatment planning, and ... in GRC, IT audit, security compliance, or a related field * Hands-on experience supporting or ...

Cybersecurity GRC Manager

Chicago, IL · On-site

$119.60 - $197.35/hr

## Cybersecurity GRC ManagerApplylocations: Streeterville, Chicago, ILtime type: Full timeposted on ... Lead risk assessment activities and track remediation progress.* Manage compliance audits ...

next page

Showing results 1-20

Grc Risk information

See Naperville, IL salary details

$22.5K

$118.1K

$209.7K

How much do grc risk jobs pay per year?

As of Aug 25, 2026, the average yearly pay for grc risk in Naperville, IL is $118,082.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,400.00 and $144,800.00 per year, depending on experience, location, and employer.

What is the difference between Grc Risk vs Grc Analyst?

AspectGrc RiskGrc Analyst
CertificationsISO 31000, CRISC, COSOCISA, CRISC, CISSP
Work EnvironmentRisk management teams, compliance departmentsIT, audit, compliance teams
Industry UsageFinancial, healthcare, corporate sectorsIT, finance, consulting firms
Primary FocusIdentifying and managing enterprise risksAnalyzing controls, assessing risks in systems

Grc Risk professionals focus on enterprise-wide risk management strategies, while Grc Analysts typically analyze specific controls and systems to identify vulnerabilities. Both roles require similar certifications and often work within the same industries, but Grc Risk has a broader scope in risk oversight, whereas Grc Analysts concentrate on detailed control assessments.

What are popular job titles related to Grc Risk jobs in Naperville, IL?

For Grc Risk jobs in Naperville, IL, the most frequently searched job titles are:

What job categories do people searching Grc Risk jobs in Naperville, IL look for?

The top searched job categories for Grc Risk jobs in Naperville, IL are:

What cities near Naperville, IL are hiring for Grc Risk jobs?

Cities near Naperville, IL with the most Grc Risk job openings:

Infographic showing various Grc Risk job openings in Naperville, IL as of August 2026, with employment types broken down into 88% Full Time, and 12% Contract. Highlights an 70% In-person, 10% Hybrid, and 20% Remote job distribution, with an average salary of $118,082 per year, or $56.8 per hour.

GRC Specialist II

Scigon Solutions

Chicago, IL • On-site

$116K - $144K/yr

Other

Re-posted 18 days ago


Job description

GRC Specialist II

Salary: $116,000-$144,000



As a Security GRC Specialist II, you'll be a key member of the Governance, Risk, and Compliance (GRC) team, leading and executing core GRC programs while serving as a trusted Information Security subject matter expert. This role blends strategic oversight with hands-on execution, partnering with technical teams, business stakeholders, and vendors to ensure security controls, policies, and risk practices are effective, compliant, and clearly communicated.

What You'll Do
  1. Third-Party Assessments: Lead security assessments and audits, documenting evidence and performing risk assessments as needed.

  2. Policy & Standards Management: Create, maintain, and evolve security policies, standards, guidelines, and supporting documentation through strong technical writing.

  3. Risk & Compliance Assurance: Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.

  4. Security Consulting & SME Support: Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.

  5. Vendor Risk Management: Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.

  6. Exception & Risk Treatment: Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.

  7. Security Awareness Program: Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.

  8. GRC Platform Administration: Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.

  9. Controls & Compliance Evaluations: Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.


What You'll Bring
  1. Education: Bachelor's degree or equivalent with five (5) years of work experience in IT Security is required.

  2. Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), Advanced in AI Audit (AAIA), Advanced in AI Risk (AAIR), Advanced in AI Security Management (AAISM), or other relevant training and certifications are preferred.

  3. Information Security Experience: Four (4) or more years of Information Security experience, with hands-on technical experience strongly preferred.

  4. Framework & GRC Knowledge: Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG) is required.

  5. AI Risk: Experience in Artificial Intelligence (AI) governance, security, and risk management is required.

  6. Technical Writing & Communication: Proven ability to produce clear, well-structured security documentation and communicate complex technical topics to varied audiences.

  7. Risk & Vendor Management Skills: Experience leading risk assessments, vendor security reviews, and security discussions with professionalism and tact.

  8. GRC Tools & Technologies: Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.

  9. Analytical & Organizational Strength: Strong problem-solving, project management, and time management skills with the ability to work independently or collaboratively.

  10. Technical Acumen: Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.

  11. Collaboration & Professionalism: Strong interpersonal skills, attention to detail, and a commitment to maintaining accurate records and documentation.