1

Information Security Grc Analyst Jobs (NOW HIRING)

We are looking for a detail-oriented GRC Analyst to lead our Unified Audit program -- keeping us ... You have 2-4 years of experience in GRC, compliance, audit, or information security, with hands-on ...

GRC Analyst

Los Angeles, CA · On-site

$100K - $135K/yr

Who you are Metropolis is seeking a Governance, Risk, and Compliance (GRC) Analyst to join our ... Deploy and manage required information security training campaigns as the platform owner

... Risk & Compliance (GRC Senior Analyst) to support and strengthen our security governance and ... closely with Security, Engineering, IT, Legal, Internal Audit, and other cross-functional ...

... Risk & Compliance (GRC Senior Analyst) to support and strengthen our security governance and ... Comfort working cross-functionally and gathering information or evidence from technical and non ...

... Risk & Compliance (GRC Senior Analyst) to support and strengthen our security governance and ... Comfort working cross-functionally and gathering information or evidence from technical and non ...

Senior Security GRC Analyst

San Mateo, CA · On-site

$109K - $142K/yr

... Analysis of Information Risk (FAIR), to assess and prioritize the security risks that matter most ... This position is part of the Information Security team. This role will report to the GRC Manager.

Information Security / Risk & Compliance Reports To: Director, Global Information Security**Job Summary**The GRC Analyst - SOX & Data Security Focus plays a critical role in ensuring the ...

Cybersecurity GRC Analyst (Remote) Location: 100% Remote Rate: $51/hour (No PTO) Overview We are ... Partner with IT, Audit, Compliance, and business teams to address security risks and improve ...

WI · On-site

$55 - $80/hr

We are seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA. The IT GRC Analyst will play a key role in ...

next page

Showing results 1-20

Information Security Grc Analyst information

See salary details

$40K

$96.7K

$158K

How much do information security grc analyst jobs pay per year?

As of Sep 11, 2026, the average yearly pay for information security grc analyst in the United States is $96,652.00, according to ZipRecruiter salary data. Most workers in this role earn between $73,500.00 and $114,500.00 per year, depending on experience, location, and employer.

What is an information security GRC analyst?

An Information Security GRC (Governance, Risk, and Compliance) Analyst is a professional responsible for helping organizations manage their information security risks and ensure compliance with relevant regulations and standards. They assess organizational processes, identify potential vulnerabilities, and develop strategies to mitigate risks. Their role often includes creating and maintaining security policies, conducting risk assessments, and ensuring that the company adheres to frameworks such as ISO 27001, NIST, or GDPR. By doing so, they help protect sensitive data and maintain the organization’s reputation.

What are the key skills and qualifications needed to thrive as an information security GRC analyst?

To excel as an Information Security GRC Analyst, you need a strong understanding of governance, risk management, compliance frameworks (such as ISO 27001 or NIST), and a background in information security, often backed by a relevant degree or certifications like CISSP or CISA. Familiarity with risk assessment tools, GRC platforms (like Archer or ServiceNow), and regulatory requirements is crucial. Attention to detail, analytical thinking, and effective communication are standout soft skills for interpreting complex regulations and collaborating with stakeholders. These competencies are vital to ensuring organizations manage security risks proactively and maintain compliance with industry standards.

How does an information security GRC analyst typically collaborate with other departments to ensure compliance and manage risk?

An Information Security GRC Analyst regularly works cross-functionally with departments such as IT, legal, human resources, and business operations to identify, assess, and mitigate information security risks. This collaboration often involves facilitating risk assessments, ensuring that policies and controls are well understood and implemented, and providing guidance on compliance requirements. Effective communication and relationship-building are crucial, as the analyst must translate technical requirements into actionable steps for non-technical staff. By working closely with other teams, the GRC Analyst helps foster a culture of security and ensures that organizational objectives align with regulatory and security standards.

What is the difference between Information Security Grc Analyst vs Cybersecurity Analyst?

AspectInformation Security Grc AnalystCybersecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, CompTIA Security+, CEH
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, technical analysis
Employer & Industry UsageFinancial, healthcare, government sectors focusing on governanceTech companies, security firms, organizations focusing on technical security

The main difference is that an Information Security Grc Analyst focuses on governance, risk management, and compliance, ensuring policies align with standards. In contrast, a Cybersecurity Analyst primarily handles technical security measures, threat detection, and incident response. Both roles require similar certifications but serve different functions within an organization's security framework.

What cities are hiring for Information Security Grc Analyst jobs?

Cities with the most Information Security Grc Analyst job openings:

What states have the most Information Security Grc Analyst jobs?

States with the most job openings for Information Security Grc Analyst jobs include:

What are popular job titles related to Information Security Grc Analyst jobs?

For Information Security Grc Analyst jobs, the most frequently searched job titles are:

Infographic showing various Information Security Grc Analyst job openings in the United States as of September 2026, with employment types broken down into 100% Full Time. Highlights an 57% In-person, and 43% Remote job distribution, with an average salary of $96,652 per year, or $46.5 per hour.

Information Security GRC Analyst

Merriam, KS • On-site

Seaboard Foods
Food and Drink Manufacturing • 5 - 10K employees

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 22 days ago


Seaboard Foods rating

8.3

Company rating: 8.3 out of 10

Based on 22 frontline employees who took The Breakroom Quiz


Job description

YOUR OPPORTUNITY

We have an exciting Information Security Governance, Risk, and Compliance (GRC) Analyst opportunity in our Merriam, KS office. In this highly impactful role, you will be a key member of the IT team. The Information Security GRC Analyst manages and executes security governance, risk management, and compliance functions across all divisions, collaborating with Information Security Teams to centralize reporting and risk analysis. This role requires expertise in risk management, security, regulatory compliance, privacy practices, and an understanding of cybersecurity requirements for legal and regulatory standards. Strong interpersonal and communication skills are essential to work effectively with IT professionals, leadership, business partners, auditors, and vendors.

ABOUT US

At Seaboard Foods, we create the most sought-after pork. A top U.S. pork producer/processor and leading exporter to 30+ countries, we are committed to bringing excellence to the table, seeking a better way to produce wholesome pork and connect every step between our farms and family tables. More than 5,400 employees in five states work on our farms, feed mills, and processing plant to produce Prairie Fresh® pork, ensuring the well-being of our animals, the environment, our employees, and the communities we call home. Our commitment to sustainability is reflected in our renewable gas projects on our farms creating renewable energy. Owned by Seaboard Corporation, a Fortune 500 company, and nominated as one of the “Best Places to Work” by Kansas City’s Business Journal, we have a dynamic culture where our employees can contribute and understand why they matter

 

RESPONSIBILITIES

This list is not intended to be all-inclusive, and other duties may be assigned.

 

  • Supports the key initiatives/projects focused on reducing technology risk, governance, compliance with policies and external regulatory compliance.  
  • Performs periodic security program gap assessments on an ongoing basis for all divisions.
  • Responsible for SOX and security audit compliance activities; partners with IT staff and internal and external auditors in reviewing program activities; gathers information to support compliance efforts and requests from auditors; and provides updates to IT leadership as deemed necessary.   
  • Participates in addressing exception requests to information security policies and standards across all divisions; works with internal IT and business focal points to document the request, identify business justifications and compensating controls, and presents findings to IT Leadership for review and approval.  
  • Conducts information security vendor risk assessments and provides recommendations for system, network, and application design, implementation, and operational effectiveness controls.  
  • Works with IT teams to develop corrective action plans for identified findings from internal security controls assessments, vendor risk assessments, internal and external audits, or other security reviews; tracks remediation efforts to closure.  
  • Contribute to the creation, maintenance, and revision of information security policies and standards, and serve as an advisor to divisional security teams, supporting their understanding and implementation of these policies and standards.
  • Serves as subject matter expert to internal business and technology teams and security teams on risk management activities and industry best practices.  

 

CORE COMPETENCIES FOR SUCCESS IN ALL ROLES: instills trust, communicates effectively, action-oriented, ensures accountability, and drives results.

 

QUALIFICATION REQUIREMENTS

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required or preferred.

 

Required:

  • Minimum two years of relevant experience in the Information Security field with experience in the Governance, Risk, and Compliance disciplines.
  • Working knowledge and understanding of information security control frameworks (e.g., CIS Critical Security Controls, ISO 27001, NIST SP800-453, COBIT, ITIL, OWASP, etc.), as well as regulatory requirements (e.g., SOX, SWIFT, PCI, HIPAA, GDPR, CCPA, etc.).
  • Ability to implement automation and engineering solutions to improve GRC processes; experience or willingness to automate manual tasks and use engineering tools is preferred.
  • Fundamental understanding of information risk concepts, risk assessments, and experience administering electronic Governance, Risk, and Compliance tools (e.g., OneTrust).  
  • Basic knowledge and understanding of IT General Controls and their application across information systems, infrastructure, applications, and cloud-based environments.  
  • Working knowledge and demonstrated experience working with and understanding information security controls attestation reports (e.g., SOC1, SOC2, ISO27001, PCI, etc.).
  • 2+ years of experience performing information security risk assessments for IT vendors.   
  • 2+ years of experience communicating information security and controls conceptual and technical information to other IT professionals, business partners, IT Leadership, internal / external auditors, and vendors.  
  • 2+ years of experience examining information security controls attestation reports to determine effectiveness and impact to an organization and the controls relied upon from the vendors providing services to the organization.  

Preferred:

  • University degree in IT, Computer Science, Cybersecurity, or a related field.
  • Governance, Risk, and Compliance related certifications such as CRISC and CGRC.
  • Security+, CISA, or other relevant security related designation(s).  
  • Ability to determine the protection needs (i.e., security controls) of information systems, infrastructure, applications, and cloud-based environments.  
  • Knowledge of security management tools (e.g., vulnerability scanners, file integrity monitoring, configuration monitoring, etc.) and perimeter technologies (e.g., router, firewalls, web proxies and intrusion prevention, etc.).
  • Knowledge of security principles, standards, and processes, such as authentication and access control, infrastructure hardening, network traffic analysis, endpoint security, platform architecture, application security, encryption and key management, cloud security, etc.).  

SCHEDULE

Monday-Friday 8:00AM-5:00PM, potential for travel & different hours based off needs of business

WORK ENVIRONMENT

The physical and work demands listed here represent those an employee should possess to successfully perform the job's essential functions.  Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions.

  • Primarily an office environment with some need to work in the field.
  • The noise level in the work environment is dependent on which environment you are in.

WHY SEABOARD FOODS?

  • Medical, vision & dental benefits upon hire
  • 401K with company match
  • Paid Time Off & Company Holidays
  • Wellness Program
  • Tuition reimbursement
  • Employee pork purchase program

For a complete list of our benefits please visit our career site: https://www.seaboardfoods.com/careers/why-sbf/

 

Seaboard Foods is an equal opportunity employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, gender identity, protected veterans’ status, status as a disabled individual, or any other status protected by law.


What Seaboard Foods employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom