1

Grc Jobs in Alabama (NOW HIRING)

Senior GRC Consultant

Huntsville, AL ยท On-site

$120 - $180/hr

GRC Manager Employment Type: Full-Time Exempt Work Location: Onsite in Huntsville, AL Travel Requirements: Occasional travel for client engagements (generally less than 10%) Position Summary MAD ...

GRC Manager Employment Type: Full-Time Exempt Work Location: Onsite in Huntsville, AL Travel Requirements: Occasional travel for client engagements (generally less than 10%) Position Summary MAD ...

GRC Manager Employment Type: Full-Time Exempt Work Location: Onsite in Huntsville, AL Travel Requirements: Occasional travel for client engagements (generally less than 10%) Position Summary MAD ...

GRC Software Engineer

Hoover, AL ยท On-site

$70K - $140K/yr

  • Medical

  • Life

  • Retirement

  • PTO

The GRC Software Engineer provides technical and consultative support on the most complex technical matters within the GRC application space. Will be responsible for implementation of new and ...

GRC Software Engineer

Birmingham, AL ยท On-site

$70K - $140K/yr

  • Medical

  • Life

  • Retirement

  • PTO

The GRC Software Engineer provides technical and consultative support on the most complex technical matters within the GRC application space. Will be responsible for implementation of new and ...

Senior GRC Programmer/Analyst

Birmingham, AL ยท On-site

$57K - $113K/yr

  • Medical

  • Life

  • Retirement

  • PTO

The Sr GRC Programmer/Analyst modifies existing software/application programs, which are typically more complex in nature, or writes new programs to support user and management needs within the GRC ...

Senior GRC Programmer/Analyst

Hoover, AL ยท On-site

$57K - $113K/yr

  • Medical

  • Life

  • Retirement

  • PTO

The Sr GRC Programmer/Analyst modifies existing software/application programs, which are typically more complex in nature, or writes new programs to support user and management needs within the GRC ...

Support the development, implementation, and enhancement of the Information Security Management System (ISMS) in line with ISO 27001:2022 . Assist in maintaining GRC policies, procedures, and ...

The ideal candidate will bring hands-on development expertise with ServiceNow, JavaScript, and APIs to create robust ITSM, SecOps, and GRC/IRM solutions. Partner with us to deliver mission-critical ...

Provide thought leadership on ServiceNow GRC and SecOps trends and evaluate emerging requirements and technologies. * Lead and mentor global teams to ensure high-quality delivery of ServiceNow cyber ...

Provide thought leadership on ServiceNow GRC and SecOps trends and evaluate emerging requirements and technologies. * Lead and mentor global teams to ensure high-quality delivery of ServiceNow cyber ...

ServiceNow Developer

Montgomery, AL ยท On-site

$53.50 - $73.50/hr

Develop and support solutions across ITSM, Security Operations (SecOps), and Governance, Risk, and Compliance / Integrated Risk Management (GRC/IRM). * Develop solutions involving CMDB data and ...

ServiceNow Developer - 5864

Montgomery, AL

$53.25 - $73.25/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Development experience with ServiceNow ITSM and/or SecOps and GRC/IRM. * Working knowledge of CMDB and Configuration Management. * Professional application development experience including coding ...

ServiceNow Developer - 5864

Montgomery, AL ยท On-site

$53.25 - $73.25/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Development experience with ServiceNow ITSM and/or SecOps and GRC/IRM. * Working knowledge of CMDB and Configuration Management. * Professional application development experience including coding ...

next page

Showing results 1-20

Grc information

See Alabama salary details

$43

$63

$73

How much do grc jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for grc in Alabama is $63.42, according to ZipRecruiter salary data. Most workers in this role earn between $61.01 and $69.71 per hour, depending on experience, location, and employer.

What is a GRC?

A GRC (Governance, Risk, and Compliance) job involves managing an organization's policies, regulations, and risk management frameworks to ensure compliance with legal and industry standards. Professionals in this role assess risks, implement controls, and develop strategies to mitigate potential threats while aligning business operations with regulatory requirements. They often work with stakeholders across IT, security, and legal departments to maintain compliance and improve risk management processes.

What are the daily responsibilities of a GRC professional?

In a GRC position, your day-to-day tasks often include conducting risk assessments, monitoring compliance with internal policies and external regulations, and collaborating with various departments to implement controls or corrective actions. You may also manage and update policies, prepare reports for management, and respond to regulatory audits or inquiries. Additionally, GRC professionals facilitate training sessions to improve organizational awareness of risks and ensure ongoing adherence to compliance standards. The role is dynamic and involves proactive problem-solving to help keep the organization secure and compliant.

What are the key skills and qualifications needed for a GRC role?

To thrive in a GRC (Governance, Risk, and Compliance) role, you need a solid understanding of regulatory frameworks, risk assessment methodologies, and compliance standards, often supported by a degree in business, information technology, or a related field. Familiarity with GRC software platforms (such as RSA Archer, LogicGate, or MetricStream), and professional certifications like CRISC, CISA, or CISSP, are highly valued. Strong analytical thinking, attention to detail, and clear communication skills are important for interpreting regulations and working with cross-functional teams. These skills ensure that organizations manage risks effectively, meet regulatory requirements, and maintain enterprise-wide compliance.

Are GRC jobs hard to get?

GRC (Governance, Risk, and Compliance) jobs can be competitive, especially for entry-level positions, but having relevant certifications like CISA or CISSP and experience with compliance frameworks can improve your chances. The difficulty of securing a GRC role depends on your skills, education, and the current job market demand for compliance professionals.

Is GRC a good career?

GRC (Governance, Risk, and Compliance) is a growing field within cybersecurity and corporate management, focusing on ensuring organizations meet regulatory requirements and manage risks effectively. It often requires knowledge of compliance standards, risk assessment, and security frameworks, with certifications like CISA or CISSP enhancing job prospects. The career offers opportunities in various industries, with roles typically involving analysis, policy development, and audits.

Is GRC still in demand?

GRC (Governance, Risk, and Compliance) roles remain in demand as organizations prioritize cybersecurity, regulatory adherence, and risk management. Professionals with skills in compliance frameworks, audit, and security tools are sought after across various industries, especially in regulated sectors like finance and healthcare.

What are GRC jobs?

GRC jobs refer to roles focused on Governance, Risk Management, and Compliance within organizations. These positions involve developing policies, assessing risks, ensuring regulatory adherence, and often require knowledge of frameworks like ISO, COBIT, or NIST, as well as certifications such as CISA or CISSP.

What are the most commonly searched types of Grc jobs in Alabama?

The most popular types of Grc jobs in Alabama are:

What cities in Alabama are hiring for Grc jobs?

Cities in Alabama with the most Grc job openings:

Infographic showing various Grc job openings in Alabama as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 4% Part Time, and 8% Contract. Highlights an 75% Physical, 10% Hybrid, and 15% Remote job distribution, with an average salary of $131,917 per year, or $63.4 per hour.

Senior GRC Consultant

MAD Security, LLC

Huntsville, AL โ€ข On-site

$120 - $180/hr

Other

Posted 6 days ago


Job description

Position Title

Senior GRC Consultant

Department: Governance, Risk, and Compliance (GRC)

Reports To: GRC Manager

Employment Type: Full-Time Exempt

Work Location: Onsite in Huntsville, AL

Travel Requirements: Occasional travel for client engagements (generally less than 10%)

Position Summary

MAD Security is seeking an experienced Senior GRC Consultant to join our Governance, Risk, and Compliance (GRC) team. This role is ideal for a cybersecurity professional who enjoys solving complex compliance challenges, advising executive leadership, and helping organizations build practical, effective cybersecurity programs.

As a Senior GRC Consultant, you will lead cybersecurity compliance consulting engagements for organizations across the Defense Industrial Base and other regulated industries. You'll serve as a trusted advisor to executives and technical teams, helping clients navigate CMMC, NIST SP 800-171, DFARS, and other cybersecurity compliance requirements while developing practical, risk-informed security programs that support their business objectives. In addition to managing your own client portfolio, you'll mentor other GRC professionals, contribute to the continuous improvement of our consulting methodologies, and help maintain the high standards that define MAD Security.

Primary Responsibilities
  • Lead cybersecurity compliance consulting engagements for assigned clients from planning through delivery.
  • Serve as the primary advisor for executive and technical client stakeholders regarding cybersecurity risk, compliance, and implementation strategies.
  • Conduct compliance assessments, gap assessments, risk assessments, tabletop exercises, mock assessments, and related consulting engagements.
  • Review security architectures, technical implementations, policies, procedures, and evidence to determine compliance with applicable cybersecurity requirements.
  • Develop practical remediation plans and implementation guidance that help clients achieve and maintain compliance.
  • Prepare and review professional reports, executive presentations, and other client deliverables.
  • Mentor GRC Analysts and GRC Consultants while contributing to the continuous improvement of MAD Security's consulting methodologies and delivery standards.
What Success Looks Like in the First 12 Months
  • Successfully manages an assigned portfolio of consulting clients while maintaining exceptional client satisfaction.
  • Leads complex compliance engagements with minimal oversight while consistently delivering high-quality work.
  • Establishes trusted advisor relationships with executive and technical stakeholders.
  • Produces professional reports and deliverables that require minimal revision.
  • Provides technical guidance and mentorship that improves the performance and consistency of the GRC team.
  • Contributes meaningful improvements to MAD Security's consulting methodologies, documentation, or service offerings.
Required Qualifications Experience
  • Minimum of seven years of experience in an information technology-related position, with three or more years of cybersecurity experience preferred.
  • Previous experience leading cybersecurity compliance consulting or assessment engagements.
  • Experience managing multiple concurrent client engagements, projects, or priorities.
  • Experience leading executive-level client meetings and presenting technical or compliance information to senior leadership.
  • Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business, or a related field preferred. Equivalent professional experience may be considered in lieu of a degree.
Technical Qualifications
  • Strong understanding of enterprise IT infrastructure, cybersecurity technologies, and security architecture.
  • Experience interpreting and applying cybersecurity compliance frameworks, particularly NIST SP 800-171, CMMC, and DFARS.
  • Ability to confidently lead highly technical discussions with executive and technical stakeholders.
Required Certifications
  • One or more of the following:
    • CCA
    • CISSP
    • CISM
Preferred Qualifications
  • Experience supporting organizations through CMMC assessments or ongoing CMMC compliance programs.
  • Experience with NIST SP 800-171 and DFARS.
  • Experience supporting organizations within the Defense Industrial Base.
  • Experience working for a C3PAO, Registered Provider Organization (RPO), cybersecurity consulting firm, or MSSP.
  • Experience working with Microsoft 365 Commercial, GCC, or GCC High environments.
  • Experience with Microsoft Entra ID, Active Directory, and Microsoft Intune.
  • Experience conducting risk assessments, tabletop exercises, and mock assessments.
Capabilities and Professional Attributes
  • Excellent communication skills with the ability to engage executives, technical teams, and business stakeholders.
  • Strong analytical and problem-solving skills with sound professional judgment.
  • Ability to manage multiple client engagements while maintaining exceptional quality and responsiveness.
  • Demonstrated leadership through mentoring, collaboration, knowledge sharing, and technical guidance.
  • Organized, accountable, and capable of working independently in a fast-paced consulting environment.
  • Committed to continuous learning, professional development, and maintaining technical expertise.
Work Environment
  • Work onsite in Huntsville, Alabama.
  • Primarily standard weekday business hours with flexibility to accommodate client schedules when necessary.
  • Work for extended periods at a computer using multiple software applications and virtual collaboration tools.
  • Participate in regular clientโ€‘facing virtual meetings conducted on camera.
  • Work effectively in a collaborative consulting environment supporting multiple concurrent client engagements.
Why MAD Security

At MAD Security, our mission is Safeguarding Businesses from Evil. We help organizations strengthen their cybersecurity posture through practical consulting, managed security services, and compliance expertise that deliver measurable business value.

Joining our team means working alongside experienced cybersecurity professionals who are passionate about high standards, continuous improvement, and delivering exceptional service. You'll have the opportunity to solve challenging cybersecurity problems, work directly with executive leadership across a diverse client base, mentor other professionals, and play a meaningful role in helping organizations achieve and maintain cybersecurity compliance.

#J-18808-Ljbffr