The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
Unison is hiring a Security Governance Manager to manage key activities supporting our federal ... information, to include U.S. Citizenship. Compensation: Base Salary: $155,000 - $190,000 Final ...
Unison is hiring a Security Governance Manager to manage key activities supporting our federal ... information, to include U.S. Citizenship. Compensation: Base Salary: $155,000 - $190,000 Final ...
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
New
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated ...
New
Your Team & Role As a Lead, Information Security Operations in Network Security Governance & Standards, with a focus on firewall access management, you will execute; request triage, risk treatment ...
Your Team & Role As a Lead, Information Security Operations in Network Security Governance & Standards, with a focus on firewall access management, you will execute; request triage, risk treatment ...
Roswell Park Comprehensive Cancer Center is seeking a Director of Information Security Governance ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
Roswell Park Comprehensive Cancer Center is seeking a Director of Information Security Governance ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
IT Security Analyst
Rapid City, SD · Remote
Support governance activities related to incident response, business continuity, disaster recovery, and change management. * Assist with monitoring regulatory changes and assist with compliance ...
IT Security Analyst
Rapid City, SD · Remote
Support governance activities related to incident response, business continuity, disaster recovery, and change management. * Assist with monitoring regulatory changes and assist with compliance ...
This role is focused on governance and risk management support, contributing to enterprise risk ... Responsibilities : • Support information security governance activities to improve compliance ...
This role is focused on governance and risk management support, contributing to enterprise risk ... Responsibilities : • Support information security governance activities to improve compliance ...
The Director of Information Security will partner closely with Information Technology, Risk ... Experience with AI governance, third-party risk management, and business continuity planning. What ...
Quick apply
The Director of Information Security will partner closely with Information Technology, Risk ... Experience with AI governance, third-party risk management, and business continuity planning. What ...
The Director of Information Security will partner closely with Information Technology, Risk ... Experience with AI governance, third-party risk management, and business continuity planning. What ...
Quick apply
The Director of Information Security will partner closely with Information Technology, Risk ... Experience with AI governance, third-party risk management, and business continuity planning. What ...
Director, Security Governance
$176K - $205K/yr
The Director of Security Governance, Risk & Compliance, leads and manages the Governance Risk and Compliance (GRC) function and is responsible for partnering with the It Security Leader in managing ...
Director, Security Governance
$176K - $205K/yr
The Director of Security Governance, Risk & Compliance, leads and manages the Governance Risk and Compliance (GRC) function and is responsible for partnering with the It Security Leader in managing ...
The Information Security Officer (ISO) is responsible for. providing enterprise leadership ... This position develops and maintains enterprise-wide security, governance, and risk management ...
The Information Security Officer (ISO) is responsible for. providing enterprise leadership ... This position develops and maintains enterprise-wide security, governance, and risk management ...
Job Decription: - The contractor will develop, revise, and maintain information security governance ... Management
Quick apply
Job Decription: - The contractor will develop, revise, and maintain information security governance ... Management
In this role, you will help strengthen and mature BCBST's information security governance program by leading risk management, compliance, and assurance initiatives across the enterprise. You will ...
In this role, you will help strengthen and mature BCBST's information security governance program by leading risk management, compliance, and assurance initiatives across the enterprise. You will ...
The Information Security Officer (ISO) is responsible for. providing enterprise leadership ... This position develops and maintains enterprise-wide security, governance, and risk management ...
The Information Security Officer (ISO) is responsible for. providing enterprise leadership ... This position develops and maintains enterprise-wide security, governance, and risk management ...
Director, Information Security Governance, Risk and Compliance Job Type: Regular Company: Roswell ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
Director, Information Security Governance, Risk and Compliance Job Type: Regular Company: Roswell ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Reporting directly to the CITO, the CISO will own information security governance, compliance, risk management, and controls, ensuring that TCM's security posture satisfies the demands of ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Reporting directly to the CITO, the CISO will own information security governance, compliance, risk management, and controls, ensuring that TCM's security posture satisfies the demands of ...
Director, Information Security Governance, Risk and Compliance Job Type: Regular Company: Roswell ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
Director, Information Security Governance, Risk and Compliance Job Type: Regular Company: Roswell ... management, and other risk functions are performed in a consistent and thorough manner aligned with ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Information Security Governance * Design and lead TCM's enterprise-wide Information Security Management System (ISMS) aligned to ISO/IEC 27001 and NIST 800-53, covering corporate IT and OT ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Information Security Governance * Design and lead TCM's enterprise-wide Information Security Management System (ISMS) aligned to ISO/IEC 27001 and NIST 800-53, covering corporate IT and OT ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Information Security Governance * Design and lead TCM's enterprise‑wide Information Security Management System (ISMS) aligned to ISO/IEC 27001 and NIST 800‑53, covering corporate IT and OT ...
Chief Information Security Officer (CISO)
Denver, CO · On-site
$275 - $300/hr
Information Security Governance * Design and lead TCM's enterprise‑wide Information Security Management System (ISMS) aligned to ISO/IEC 27001 and NIST 800‑53, covering corporate IT and OT ...
Information Security Governance Manager information
See salary details
$62.5K - $75K
3% of jobs
$75K - $87.5K
5% of jobs
$87.5K - $100K
10% of jobs
$109.8K is the 25th percentile. Wages below this are outliers.
$100K - $112.5K
9% of jobs
$112.5K - $125K
13% of jobs
The median wage is $133.5K / yr.
$125K - $137.5K
15% of jobs
$137.5K - $150K
13% of jobs
$156.5K is the 75th percentile. Wages above this are outliers.
$150K - $162.5K
14% of jobs
$162.5K - $175K
12% of jobs
$175K - $187.5K
6% of jobs
$187.5K - $200K
0% of jobs
$62.5K
$136.1K
$200K
How much do information security governance manager jobs pay per year?
What does an Information Security Governance Manager do?
What are the key skills and qualifications needed to thrive as an Information Security Governance Manager, and why are they important?
What are some common challenges faced by Information Security Governance Managers when implementing organization-wide security policies?
What is the difference between Information Security Governance Manager vs Information Security Analyst?
| Aspect | Information Security Governance Manager | Information Security Analyst |
|---|---|---|
| Certifications | CISSP, CISM, ISO 27001 Lead Auditor | CISSP, CompTIA Security+, GIAC Security Essentials |
| Work Environment | Strategic, policy-focused, management teams | Operational, technical, security teams |
| Employer & Industry Usage | Organizations with formal security governance frameworks | Security operations, incident response teams |
| Search & Comparison Intent | Understanding governance roles and responsibilities | Technical security tasks and analysis |
The main difference is that the Information Security Governance Manager focuses on establishing and maintaining security policies, compliance, and strategic oversight, while the Information Security Analyst handles technical security assessments, monitoring, and incident response. Both roles are essential but serve different functions within an organization's security framework.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 21 days ago
Job description
Job Summary:
The Senior Information Security GRC Analyst supports and advances Masimo's enterprise information security governance, risk, and compliance (GRC) program through leadership of security compliance initiatives, third-party risk management, policy governance, audit readiness, and risk assessment activities.
This role partners closely with Information Security, IT, Engineering, Quality, Legal, and business stakeholders to strengthen security governance processes, support regulatory and customer requirements, and maintain alignment with industry frameworks and healthcare security expectations.
The Senior Information Security GRC Analyst contributes to the continuous improvement of governance processes, compliance monitoring, and enterprise risk management activities within a regulated healthcare and medical device environment. This position requires strong knowledge of information security principles, compliance frameworks, and risk management practices, along with the ability to communicate effectively across both technical and non-technical audiences
Duties & Responsibilities:
Support the strategic execution and continuous improvement of the enterprise information security governance, risk, and compliance (GRC) program
Lead coordination of external security audits and certification activities, including HITRUST, ISO 27001, SOC 2, and related compliance initiatives
Partner with internal stakeholders to gather documentation, evidence, remediation updates, and corrective action plans for audits and assessments
Conduct third-party and supply chain cybersecurity risk assessments, including evaluation of vendor security posture, due diligence questionnaires, and supporting security documentation
Collaborate with business and technical teams to respond to customer security assessments, compliance inquiries, and due diligence requests
Lead information security risk assessments and track remediation activities through resolution
Manage the review and tracking of security exceptions and risk acceptance requests, ensuring appropriate compensating controls and approvals are documented
Assist in the development, maintenance, and communication of information security policies, standards, procedures, and guidelines
Collaborate with technical teams to evaluate, document, and validate security controls and compliance requirements
Maintain audit findings, remediation plans, compliance documentation, risk registers, and governance tracking records
Develop and maintain compliance monitoring processes, governance reporting metrics, dashboards, and ongoing reporting activities
Conduct internal security assessments, readiness reviews, and governance maturity initiatives
Support governance and risk management activities related to cloud platforms, SaaS environments, emerging technologies, and evolving cybersecurity threats
Partner with leadership and cross-functional stakeholders to promote a risk-aware security culture and support enterprise governance initiatives
Stay informed of evolving cybersecurity threats, regulatory requirements, and industry best practices relevant to healthcare and medical device environments
Support cross-functional initiatives related to information security awareness, governance, operational maturity, and compliance readiness
Minimum & Preferred Qualifications and Experience:
Minimum Qualifications:
7+ years of experience in information security governance, risk, and compliance (GRC), cybersecurity risk management, IT audit, compliance, or related areas
Experience leading or managing security audits or compliance initiatives related to HITRUST, ISO 27001, SOC 2, NIST, or similar frameworks
Experience conducting third-party security assessments and vendor risk reviews
Strong understanding of information security principles, risk management concepts, and security control frameworks
Ability to understand and discuss technical security concepts including identity and access management (IAM), encryption, vulnerability management, endpoint security, logging/monitoring, cloud security, and network security
Strong analytical, organizational, documentation, communication, and stakeholder management skills
Ability to manage multiple priorities and work collaboratively in a fast-paced, highly regulated environment
Preferred Qualifications:
Experience within healthcare, medical device, biotechnology, or other highly regulated industries
Familiarity with HIPAA, FDA-regulated environments, HITRUST, NIST CSF, PCI DSS, UK Cyber Essentials, NIS2 Directive, or related cybersecurity and privacy requirements
Experience using GRC tools and platforms for audit, compliance, risk management, or governance reporting activities
Experience supporting enterprise security governance or compliance maturity initiatives
Industry-recognized certifications such as CISSP, CISA, CRISC, CISM, or similar preferred
Education:
Bachelor's degree in Information Security, Cybersecurity, Information Systems, Computer Science, or related field required; or equivalent combination of education, certifications, and relevant experience
Language requirements:
Ability to read, write, and communicate effectively in English.
Ability to interpret technical documents, schematics, and written instructions.
Ability to clearly document technical findings and communicate with cross-functional team members.
Compensation:
The anticipated range for this position is $130,000 - $170,000. Actual placement within the range is dependent on multiple factors, including but not limited to skills, education, and experience. This position also qualifies for up to 10% annual bonus based on Company, department, and individual performance.
Masimo offers benefits such as Medical, Dental, Vision, Life/AD&D, Disability Insurance, 401(k), Vacation, Sick, Holiday, Paid Maternity Leave, Flexible Spending Accounts, voluntary Accident, Critical Illness, Hospital, Long-Term Care, Employee Assistance Program, Pet Insurance, on-site Wellness Clinic, Fitness Center, Cafe. All benefits are subject to eligibility requirements.
Physical requirements/Work Environment
This position primarily works in an office environment and requires frequent sitting, standing, and walking. Daily use of a computer and other digital devices is required. This role may require standing for extended periods when facilitating meetings or walking through facilities.
The physical demands of the position described herein are essential functions of the job and employees must be able to successfully perform these tasks for extended periods. Reasonable accommodations may be made for those individuals with real or perceived disabilities to perform the essential functions of the job described.
Masimo is proud to be an EEOE/, M/F/D/V, and we are committed to Diversity at the corporate level.
About Masimo
Sourced by ZipRecruiter
Industry
Medical equipment and supplies manufacturing
Company size
1,001 - 5,000 Employees
Headquarters location
Irvine, CA, US
Year founded
1989