1

Grc Specialist Jobs (NOW HIRING)

GRC Specialist II

Chicago, IL · On-site

$116K - $144K/yr

GRC Specialist II Salary: $116,000-$144,000 As a Security GRC Specialist II , you'll be a key member of the Governance, Risk, and Compliance (GRC) team, leading and executing core GRC programs while ...

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

Brown Advisory is currently seeking a Cyber GRC Specialist to support and mature the firm's governance, risk, compliance, and control-management routines. This blended role is designed for someone ...

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

IT GRC Specialist

Tucson, AZ · On-site

$120 - $160/hr

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

Brown Advisory is currently seeking a Cyber GRC Specialist to support and mature the firm's governance, risk, compliance, and control-management routines. This blended role is designed for someone ...

Security GRC Specialist

New York, NY · On-site

$230K - $275K/yr

We are hiring a Security GRC Specialist to own and scale our security and compliance programs while working closely with engineering, sales, and customer success. Profound sells to enterprises with ...

Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon Autonomous ...

We are seeking an experienced Security Compliance Specialist to support security, privacy, risk, and compliance activities for State Government client systems. The ideal candidate will have strong ...

next page

Showing results 1-20

Grc Specialist information

See salary details

$9

$24

$48

How much do grc specialist jobs pay per hour?

As of Aug 29, 2026, the average hourly pay for grc specialist in the United States is $24.95, according to ZipRecruiter salary data. Most workers in this role earn between $18.27 and $28.85 per hour, depending on experience, location, and employer.

What is a GRC Specialist?

A GRC Specialist is a professional who focuses on Governance, Risk, and Compliance (GRC) within an organization. Their main role is to ensure that a company’s processes, policies, and controls align with regulatory requirements and internal standards. They help identify and manage risks, implement compliance programs, and promote best practices to protect the organization from legal and operational threats. GRC Specialists often work closely with IT, legal, and executive teams to keep the organization secure and compliant.

What are some common challenges GRC Specialists face when implementing new compliance frameworks in an organization?

GRC Specialists often encounter challenges such as resistance to change from staff, varying interpretations of regulatory requirements, and integrating new controls into existing processes. They must balance the need for thorough documentation and accountability with the desire to keep workflows efficient and user-friendly. Effective communication and ongoing training are key to overcoming these obstacles and ensuring organization-wide buy-in for new frameworks.

What are the key skills and qualifications needed to thrive as a GRC Specialist, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Specialist, you need a solid understanding of risk management, regulatory frameworks, and compliance standards, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow), risk assessment tools, and certifications like CISA or CRISC is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills distinguish top performers in this role. These skills are crucial for ensuring organizations identify risks, maintain compliance, and implement robust controls to protect business operations.

Are GRC specialist jobs hard to get?

GRC (Governance, Risk, and Compliance) specialist jobs can be competitive, especially for entry-level positions, but having relevant certifications like CISA or CISSP and strong knowledge of regulations can improve chances. The role often requires experience with risk management frameworks and compliance tools, which can influence the difficulty of securing a position.

Is GRC specialist an entry-level job?

A GRC (Governance, Risk, and Compliance) specialist is typically an intermediate to advanced role that requires relevant experience and knowledge of compliance frameworks, risk management, and security tools. Entry-level positions in GRC may be available but often require foundational skills, certifications, or related experience in cybersecurity or audit fields.

Is GRC specialist in high demand?

GRC (Governance, Risk, and Compliance) specialists are in high demand due to increasing cybersecurity threats and regulatory requirements across industries. Organizations seek professionals with skills in risk management, compliance frameworks, and security tools to ensure regulatory adherence and protect assets.
More about Grc Specialist jobs

What cities are hiring for Grc Specialist jobs?

Cities with the most Grc Specialist job openings:

What states have the most Grc Specialist jobs?

States with the most job openings for Grc Specialist jobs include:

What job categories do people searching Grc Specialist jobs look for?

The top searched job categories for Grc Specialist jobs are:

Infographic showing various Grc Specialist job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 12% Part Time, and 2% Contract. Highlights an 79% Physical, 2% Hybrid, and 19% Remote job distribution, with an average salary of $51,897 per year, or $25 per hour.

GRC Specialist II

Chicago, IL • On-site

$116K - $144K/yr

Other

Re-posted 22 days ago


Job description

GRC Specialist II

Salary: $116,000-$144,000



As a Security GRC Specialist II, you'll be a key member of the Governance, Risk, and Compliance (GRC) team, leading and executing core GRC programs while serving as a trusted Information Security subject matter expert. This role blends strategic oversight with hands-on execution, partnering with technical teams, business stakeholders, and vendors to ensure security controls, policies, and risk practices are effective, compliant, and clearly communicated.

What You'll Do
  1. Third-Party Assessments: Lead security assessments and audits, documenting evidence and performing risk assessments as needed.

  2. Policy & Standards Management: Create, maintain, and evolve security policies, standards, guidelines, and supporting documentation through strong technical writing.

  3. Risk & Compliance Assurance: Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.

  4. Security Consulting & SME Support: Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.

  5. Vendor Risk Management: Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.

  6. Exception & Risk Treatment: Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.

  7. Security Awareness Program: Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.

  8. GRC Platform Administration: Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.

  9. Controls & Compliance Evaluations: Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.


What You'll Bring
  1. Education: Bachelor's degree or equivalent with five (5) years of work experience in IT Security is required.

  2. Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), Advanced in AI Audit (AAIA), Advanced in AI Risk (AAIR), Advanced in AI Security Management (AAISM), or other relevant training and certifications are preferred.

  3. Information Security Experience: Four (4) or more years of Information Security experience, with hands-on technical experience strongly preferred.

  4. Framework & GRC Knowledge: Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG) is required.

  5. AI Risk: Experience in Artificial Intelligence (AI) governance, security, and risk management is required.

  6. Technical Writing & Communication: Proven ability to produce clear, well-structured security documentation and communicate complex technical topics to varied audiences.

  7. Risk & Vendor Management Skills: Experience leading risk assessments, vendor security reviews, and security discussions with professionalism and tact.

  8. GRC Tools & Technologies: Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.

  9. Analytical & Organizational Strength: Strong problem-solving, project management, and time management skills with the ability to work independently or collaboratively.

  10. Technical Acumen: Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.

  11. Collaboration & Professionalism: Strong interpersonal skills, attention to detail, and a commitment to maintaining accurate records and documentation.