Information Security GRC Engineer (OneTrust / NIST) Plano, Texas (Hybrid) Description We are ... Module ownership on Day 1: OneTrust Integrated Risk Management (IRM) and Third‑Party Risk ...
Quick apply
Information Security GRC Engineer (OneTrust / NIST) Plano, Texas (Hybrid) Description We are ... Module ownership on Day 1: OneTrust Integrated Risk Management (IRM) and Third‑Party Risk ...
Quick apply
Information Security GRC Engineer (OneTrust / NIST) Plano, Texas (Hybrid) Description We are ... Module ownership on Day 1: OneTrust Integrated Risk Management (IRM) and Third‑Party Risk ...
San Francisco, CA · On-site
Ensure our corporate information security policies and control standards to reflect evolving ... stringent security controls program. * Audit Management & Remediation: Serve as the primary ...
San Francisco, CA · On-site
Ensure our corporate information security policies and control standards to reflect evolving ... stringent security controls program. * Audit Management & Remediation: Serve as the primary ...
Addison, TX · On-site
Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...
Addison, TX · On-site
Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...
Salisbury, NC · On-site
... program success. Responsibilities * Provide strategic and operational leadership across SAP ... Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field ...
Salisbury, NC · On-site
... program success. Responsibilities * Provide strategic and operational leadership across SAP ... Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field ...
San Francisco, CA · On-site
$264K - $363K/yr
Ensure our corporate information security policies and control standards to reflect evolving ... stringent security controls program. * Audit Management & Remediation: Serve as the primary ...
San Francisco, CA · On-site
$264K - $363K/yr
Ensure our corporate information security policies and control standards to reflect evolving ... stringent security controls program. * Audit Management & Remediation: Serve as the primary ...
$94K - $164K/yr
The Information Security GRC Analyst III managed day to day, short and long term information security risks and ensures activities are within risk tolerance and in compliance with approved risk ...
$94K - $164K/yr
The Information Security GRC Analyst III managed day to day, short and long term information security risks and ensures activities are within risk tolerance and in compliance with approved risk ...
Establish governance routines, program cadences, reporting expectations, and execution standards ... Manage GRC managers, analysts, contractors, consultants, managed service providers, and supporting ...
Establish governance routines, program cadences, reporting expectations, and execution standards ... Manage GRC managers, analysts, contractors, consultants, managed service providers, and supporting ...
RSA Archer Engage~Cyber Security - GRC - Data Security~Cyber Security - Information Security ... Understanding of risk analysis| assessment| treatment| and management methodologies. Demonstrated ...
RSA Archer Engage~Cyber Security - GRC - Data Security~Cyber Security - Information Security ... Understanding of risk analysis| assessment| treatment| and management methodologies. Demonstrated ...
Los Angeles, CA · On-site
Leading our security risk management program to prioritize security risks and ensure proper ... A Bachelor's degree in Computer Science, Information Security, or a related field. * The successful ...
Los Angeles, CA · On-site
Leading our security risk management program to prioritize security risks and ensure proper ... A Bachelor's degree in Computer Science, Information Security, or a related field. * The successful ...
Sr Manager, InfoSec Governance Risk and Compliance (GRC) (Pittsburgh, Pennsylvania, US) Founded in ... Ivalua's Information Security program globally. We provide peace of mind and assurance of ...
Sr Manager, InfoSec Governance Risk and Compliance (GRC) (Pittsburgh, Pennsylvania, US) Founded in ... Ivalua's Information Security program globally. We provide peace of mind and assurance of ...
The Senior GRC Analyst is an experienced individual contributor within the IT Security function responsible for advancing Amynta's governance, risk management, and compliance (GRC) program. This role ...
The Senior GRC Analyst is an experienced individual contributor within the IT Security function responsible for advancing Amynta's governance, risk management, and compliance (GRC) program. This role ...
Nashville, TN · On-site
$125K - $135K/yr
Nashville, Tennessee Job Overview The AI Governance, Risk & Compliance Program Manager leads the ... Experience working cross‑functionally with Legal, IT, Security, Privacy, and business ...
Nashville, TN · On-site
$125K - $135K/yr
Nashville, Tennessee Job Overview The AI Governance, Risk & Compliance Program Manager leads the ... Experience working cross‑functionally with Legal, IT, Security, Privacy, and business ...
Manor, TX · On-site
The UCT GRC Specialist will support the design, execution, and maturity of UCT's IT governance, ... program. This role is responsible for coordinating IT risk management activities, supporting ...
Quick apply
Manor, TX · On-site
The UCT GRC Specialist will support the design, execution, and maturity of UCT's IT governance, ... program. This role is responsible for coordinating IT risk management activities, supporting ...
Austin, TX · On-site
$130K/yr
... in GRC, IT Audit, or Information Security. Proven experience managing full audit cycles and ... This person must be a self-starter capable of taking complete ownership of the GRC program ...
Quick apply
Austin, TX · On-site
$130K/yr
... in GRC, IT Audit, or Information Security. Proven experience managing full audit cycles and ... This person must be a self-starter capable of taking complete ownership of the GRC program ...
Palo Alto, CA · On-site
... Information Security Officer (CISO). This is not a traditional operational CISO role. You will ... Uplevel Nubank's GRC program to support multi-geography scaling. * AI Security Frameworks: Lead the ...
Palo Alto, CA · On-site
... Information Security Officer (CISO). This is not a traditional operational CISO role. You will ... Uplevel Nubank's GRC program to support multi-geography scaling. * AI Security Frameworks: Lead the ...
San Jose, CA · On-site
Provide Information Security Data Governance program expertise and drive the operational delivery ... Provide Information Security Risk Management support and assist with the operational delivery of ...
San Jose, CA · On-site
Provide Information Security Data Governance program expertise and drive the operational delivery ... Provide Information Security Risk Management support and assist with the operational delivery of ...
This role is responsible for maintaining and advancing Mozilla's Information Security Management ... Lead the policy program-driving policy creation, revision, and cross-functional review cycles to ...
This role is responsible for maintaining and advancing Mozilla's Information Security Management ... Lead the policy program-driving policy creation, revision, and cross-functional review cycles to ...
... Program and controls structure. * Stays current on upcoming system implementations and business ... Bachelor's degree with the focus in Business Management Information Systems or Computer Science ...
... Program and controls structure. * Stays current on upcoming system implementations and business ... Bachelor's degree with the focus in Business Management Information Systems or Computer Science ...
New York, NY · On-site
Our core product is an autonomous Revenue Cycle Management (RCM) platform . Powered by AI agents ... Role Overview We are seeking a Security GRC Lead to build our first in-house GRC program from the ...
New York, NY · On-site
Our core product is an autonomous Revenue Cycle Management (RCM) platform . Powered by AI agents ... Role Overview We are seeking a Security GRC Lead to build our first in-house GRC program from the ...
... GRC program across the organization. This position may be filled as a Level I, II or III. ... Bachelor's degree in information security, Information Systems/Technology, Risk Management ...
... GRC program across the organization. This position may be filled as a Level I, II or III. ... Bachelor's degree in information security, Information Systems/Technology, Risk Management ...
$62.5K - $75K
3% of jobs
$75K - $87.5K
5% of jobs
$87.5K - $100K
10% of jobs
$109.8K is the 25th percentile. Wages below this are outliers.
$100K - $112.5K
9% of jobs
$112.5K - $125K
13% of jobs
The median wage is $133.5K / yr.
$125K - $137.5K
15% of jobs
$137.5K - $150K
13% of jobs
$156.5K is the 75th percentile. Wages above this are outliers.
$150K - $162.5K
14% of jobs
$162.5K - $175K
12% of jobs
$175K - $187.5K
6% of jobs
$187.5K - $200K
0% of jobs
$62.5K
$136.1K
$200K
Cities with the most Information Security Grc Program Manager job openings:
States with the most job openings for Information Security Grc Program Manager jobs include:
For Information Security Grc Program Manager jobs, the most frequently searched job titles are:

Plano, TX • On-site
Contractor
Re-posted 9 days ago
Information Security GRC Engineer (OneTrust / NIST)
Plano, Texas (Hybrid)
Description
We are seeking a hands‑on GRC Engineer & Risk Analytics professional who will implement and scale a NIST‑aligned control and risk framework in OneTrust while also conducting targeted risk and control assessments to validate design and operating effectiveness. You will connect process, data, and automation so department leaders can see—and reduce—risk in near‑real time through role‑based dashboards and scorecards. You’ll partner with Security Engineering, IT, Audit, and business control owners to streamline assessments, evidence collection, POA&M tracking, and reporting.
Focus split: approximately 70% OneTrust configuration, integrations, data modeling, and dashboards; approximately 30% targeted assessments and facilitation.
Module ownership on Day 1: OneTrust Integrated Risk Management (IRM) and Third‑Party Risk Management (TPRM).
What you’ll be doing
Requirements
• 5+ years hands‑on experience implementing/administering GRC platforms (OneTrust preferred; Archer/ServiceNow GRC acceptable with commitment to OneTrust ramp‑up).
• Working knowledge of NIST CSF and NIST 800‑53 and how to translate obligations into measurable controls and tests.
• Experience configuring questionnaires, workflows, object models, APIs, and building role‑based dashboards.
• Data skills in Power BI, SQL, or Python for data prep/transformations that feed analytics.
• Ability to tell the risk story—translate technical signal into business‑relevant insights for department leaders.
• Bachelor’s degree or equivalent practical experience.
Added bonus if you have
• OneTrust GRC/IRM certifications; CRISC, CISA, or CISSP.
• Prior integrations with ServiceNow, Jira, SailPoint/IDP, Qualys/Tenable, or cloud platforms (AWS/Azure).
• Experience setting up control attestation/evidence automation and KRI/KPI scorecards across business units.
• Background in financial services or familiarity with FFIEC/GLBA/SOX supervisory expectations.
Sourced by ZipRecruiter
It services
201 - 500 Employees
Farmington Hills, MI, US