1

Information Security Grc Jobs (NOW HIRING)

GRC Specialist II

Chicago, IL · On-site

$116K - $144K/yr

GRC Specialist II Salary: $116,000-$144,000 As a Security GRC Specialist II , you'll be a key ... Serve as an Information Security subject matter expert, advising technical and non-technical ...

Manager, IT Security, GRC

Burlington, NJ · On-site

$150K - $175K/yr

Our client is currently seeking a Manager, IT Security, GRC. This is FT perm role and hybrid in Burlington, NJ Position Overview The Manager of Governance, Risk and Compliance (GRC) plays a critical ...

Lead the GRC function and manage the Information Security team. * Drive information security governance across the organization. * Lead and support international audits, including ISO 27001, PCI DSS ...

next page

Showing results 1-20

Information Security Grc information

See salary details

$68K

$126.8K

$191.5K

How much do information security grc jobs pay per year?

As of Aug 16, 2026, the average yearly pay for information security grc in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What does an information security GRC do?

As an Information Security GRC professional, your daily responsibilities often include conducting risk assessments, monitoring compliance with internal policies and external regulations, and supporting audits. You may review and update governance documentation, communicate risks or compliance issues to stakeholders, and collaborate with IT, legal, and business teams to ensure information security best practices are followed. Additionally, you'll stay current with changes in laws and regulations to maintain the organization's overall security posture. The work is both analytical and collaborative, requiring you to balance technical tasks with effective communication and project management.

Is information security GRC a good career?

Information Security GRC (Governance, Risk, and Compliance) is a growing field that offers opportunities in managing security policies, risk assessments, and regulatory compliance. It typically requires knowledge of security frameworks, certifications like CISSP or CISM, and strong analytical skills, making it a stable and in-demand career path in cybersecurity.

What are the key skills and qualifications needed to thrive in the information security GRC position?

To thrive as an Information Security GRC professional, you need a strong understanding of information security principles, risk management frameworks, compliance regulations, and policy development, often supported by a degree in information security or a related field. Familiarity with tools such as GRC platforms (e.g., Archer, ServiceNow), risk assessment software, and certifications like CISSP, CISA, or CRISC is highly valuable. Exceptional analytical thinking, attention to detail, and strong communication skills are important soft skills in this role. These competencies enable you to navigate complex regulatory landscapes, collaborate across teams, and effectively protect an organization's information assets.

Is information security GRC an entry-level job?

Information Security GRC (Governance, Risk, and Compliance) roles are often entry-level or require some related experience, such as understanding security frameworks, policies, and compliance standards. Many positions may require certifications like CISA or CISSP and familiarity with tools like GRC software, but some organizations offer entry-level opportunities for candidates with foundational knowledge and a willingness to learn.

What is an information security GRC?

An Information Security GRC (Governance, Risk, and Compliance) job focuses on ensuring that an organization's security policies, risk management strategies, and regulatory compliance align with industry standards and legal requirements. Professionals in this role assess security risks, implement controls, and develop frameworks to maintain data protection and regulatory adherence. They collaborate with different teams to enforce compliance, conduct audits, and manage security governance. This role is critical in preventing security breaches, ensuring legal compliance, and maintaining customer trust.

More about Information Security Grc jobs

What cities are hiring for Information Security Grc jobs?

Cities with the most Information Security Grc job openings:

What states have the most Information Security Grc jobs?

States with the most job openings for Information Security Grc jobs include:

What job categories do people searching Information Security Grc jobs look for?

The top searched job categories for Information Security Grc jobs are:

Infographic showing various Information Security Grc job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 22% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.

Information Security GRC Manager

Signet Jewelers Ltd.

Akron, OH • On-site, Remote

Full-time

Medical, Dental, Vision, Retirement

Re-posted 21 days ago


Signet Jewelers rating

6.9

Company rating: 6.9 out of 10

Based on 299 frontline employees who took The Breakroom Quiz

15th of 30 rated jewelry retailers


Job description

We have many opportunities available on our other career site pages. Click here to link to our careers page!

Signet Jewelers is the world's largest retailer of diamond jewelry, operating more than 2,800 stores worldwide under the iconic brands: Kay Jewelers, Zales, Jared, H.Samuel, Ernest Jones, Peoples, Banter by Piercing Pagoda, Rocksbox, JamesAllen.com and Diamonds Direct. We are a people-first company and this core value is at the heart of everything we do, from empowering our valued team members, to collaborating with our customers, to fostering the communities in which we live and serve. People - and the love their actions inspire - are what drive us. We're not only proud of the love we inspire outside our walls, we're especially proud of the diversity, inclusion and equity we're inspiring inside. There are dynamic career paths awaiting you - rewarding opportunities to impact the lives of others and inspire love. Join us!

Information Security GRC Manager

Location: Dallas, TX or Akron, OH (Hybrid) Preferred

Open to remote

POSITION SUMMARY:

We are seeking an experiencedInformation Security GRC Managerto lead our governance, risk, and compliance (GRC) program. This role is critical in ensuring our information security practices align with regulatory requirements, industry standards, and business objectives.

As a key member of the security leadership team, you will drive enterprise risk management, oversee compliance initiatives, and provide clear, actionable insights on our security posture to senior leadership.

RESPONSIBILITIES:

Lead Governance & Security Programs

  • Develop and maintain the enterprise information security governance framework
  • Establish and lead cross-functional governance forums (e.g., compliance working groups, risk committees)
  • Oversee security policies, standards, procedures, and risk methodologies

Drive Risk Management

  • Lead enterprise-wide risk assessments, including identification, analysis, and mitigation of security risks
  • Define, track, and report on Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs)
  • Partner with stakeholders to support risk-based decision-making

Own Compliance & Certifications

  • Plan and execute compliance and readiness assessments (e.g., PCI-DSS, NIST CSF, ISO 27001)
  • Serve as the primary liaison for external auditors and assessors
  • Ensure ongoing adherence to regulatory and contractual requirements

Manage Audit & Assurance Activities

  • Coordinate internal and external audits, including SOX-related controls where applicable
  • Oversee remediation tracking and ensure timely resolution of findings
  • Continuously improve control effectiveness and assurance processes

Partner Across the Business

  • Collaborate with IT, Legal, Privacy, and business teams to embed security into operations
  • Translate complex security and compliance requirements into business-friendly language
  • Provide regular reporting on risk posture and compliance to senior leadership

Promote Security Awareness

  • Develop and deliver training and awareness programs related to risk and compliance
  • Foster a culture of security and accountability across the organization

POSITION QUALIFICATIONS:

  • Bachelor's degree in Information Security, Cybersecurity, Computer Science, Business, or related field (Master's preferred)
  • 10+ years of experience in information security, IT risk, or compliance
  • 2-3+ years of hands-on experience in a GRC-focused role
  • Strong knowledge of frameworks and standards (e.g., NIST, ISO 27001, COBIT)
  • Experience managing audits and working with external regulators or assessors
  • Excellent communication skills, with the ability to engage both technical and business stakeholders
  • Strong project management skills and ability to manage multiple initiatives simultaneously

Nice to Have:

  • Relevant certifications (e.g., CISSP, CISM, CRISC, CISA)
  • Experience with SOX ITGC controls and audit coordination
  • Familiarity with third-party/vendor risk management programs
  • Experience with GRC tools (e.g., Optro (AuditBoard), ServiceNow GRC, OneTrust)

BENEFITS & PERKS:

  • Competitive healthcare, dental & vision insurance
  • 401(k) matching after one year of employment
  • Generous time off + company holidays
  • Merchandise discount
  • Learning & Development programs
  • Much more!

What Signet Jewelers employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Signet Jewelers logo

About Signet Jewelers

Sourced by ZipRecruiter

At Kay, we know that love is unstoppable. Which is why we're devoted to helping customers Celebrate Life and Express Love in ways every bit as dynamic as they are memorable. From classic must-haves to the latest trends, our selection of quality, responsibly-sourced jewelry has become part of so many love stories over the last century. Kay Jewelers is part of Signet Jewelers, a purpose-driven company who believes love inspires love. Signet is also "Great Place to Work-Certified"™. There are dynamic career paths awaiting you - rewarding opportunities to impact the lives of others and inspire love. Join us!

Industry

Retail

Company size

10,000+ Employees

Headquarters location

Akron, OH, US

Year founded

1949

Social media