1

Information Security Grc Jobs (NOW HIRING)

Senior Security GRC Lead Austin | Chicago | New York City | Salt Lake City | San Francisco Gong ... For more information, visit gong.io. At Gong, you will join a company built on innovative products ...

Senior Security GRC Lead Austin | Chicago | New York City | Salt Lake City | San Francisco Gong ... For more information, visit gong.io. At Gong, you will join a company built on innovative products ...

Senior Security GRC Lead Austin | Chicago | New York City | Salt Lake City | San Francisco Gong ... For more information, visit gong.io. At Gong, you will join a company built on innovative products ...

GRC Analyst

Los Angeles, CA ยท On-site

$100K - $135K/yr

Reporting to the Senior Manager, GRC, you will mature information security policies, drive employee security awareness, and pioneer our AI governance framework. You will partner across Technology ...

... along with IT services to small to medium size companies. AG's primary objective is to help ... Supports SAP security design for SAP ECC, Portal, and GRC to ensure that all application modules ...

Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...

Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...

Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...

Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

Showing results 21-40

Information Security Grc information

See salary details

$68K

$126.8K

$191.5K

How much do information security grc jobs pay per year?

As of Aug 17, 2026, the average yearly pay for information security grc in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What is an information security GRC?

An Information Security GRC (Governance, Risk, and Compliance) job focuses on ensuring that an organization's security policies, risk management strategies, and regulatory compliance align with industry standards and legal requirements. Professionals in this role assess security risks, implement controls, and develop frameworks to maintain data protection and regulatory adherence. They collaborate with different teams to enforce compliance, conduct audits, and manage security governance. This role is critical in preventing security breaches, ensuring legal compliance, and maintaining customer trust.

What does an information security GRC do?

As an Information Security GRC professional, your daily responsibilities often include conducting risk assessments, monitoring compliance with internal policies and external regulations, and supporting audits. You may review and update governance documentation, communicate risks or compliance issues to stakeholders, and collaborate with IT, legal, and business teams to ensure information security best practices are followed. Additionally, you'll stay current with changes in laws and regulations to maintain the organization's overall security posture. The work is both analytical and collaborative, requiring you to balance technical tasks with effective communication and project management.

What are the key skills and qualifications needed to thrive in the information security GRC position?

To thrive as an Information Security GRC professional, you need a strong understanding of information security principles, risk management frameworks, compliance regulations, and policy development, often supported by a degree in information security or a related field. Familiarity with tools such as GRC platforms (e.g., Archer, ServiceNow), risk assessment software, and certifications like CISSP, CISA, or CRISC is highly valuable. Exceptional analytical thinking, attention to detail, and strong communication skills are important soft skills in this role. These competencies enable you to navigate complex regulatory landscapes, collaborate across teams, and effectively protect an organization's information assets.

Is information security GRC a good career?

Information Security GRC (Governance, Risk, and Compliance) is a growing field that offers opportunities in managing security policies, risk assessments, and regulatory compliance. It typically requires knowledge of security frameworks, certifications like CISSP or CISM, and strong analytical skills, making it a stable and in-demand career path in cybersecurity.

Is information security GRC an entry-level job?

Information Security GRC (Governance, Risk, and Compliance) roles are often entry-level or require some related experience, such as understanding security frameworks, policies, and compliance standards. Many positions may require certifications like CISA or CISSP and familiarity with tools like GRC software, but some organizations offer entry-level opportunities for candidates with foundational knowledge and a willingness to learn.
More about Information Security Grc jobs

What cities are hiring for Information Security Grc jobs?

Cities with the most Information Security Grc job openings:

What states have the most Information Security Grc jobs?

States with the most job openings for Information Security Grc jobs include:

What job categories do people searching Information Security Grc jobs look for?

The top searched job categories for Information Security Grc jobs are:

Infographic showing various Information Security Grc job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 22% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.

Cybersecurity GRC Specialist II

Kirkland & Ellis LLP.

Chicago, IL โ€ข On-site

Full-time

Medical, Retirement, PTO

Re-posted 7 days ago


Job description

About Kirkland & Ellis
At Kirkland & Ellis, we don't just meet the standard for legal excellence - we set it. Our culture is built on teamwork, ingenuity and an unwavering commitment to continuous growth. We tackle the most sophisticated legal challenges with bold ideas and innovative solutions, powered by the exceptional experience and ambition of our 7,000+ people, including 4,000+ attorneys, across 24 offices worldwide. Our dedicated professionals share our lawyers' commitment to excellence and show up each day to do meaningful work that helps drive global business, investment and innovation forward.
What You'll Do
Are you driven to strengthen security programs, reduce risk, and help organizations meet evolving cybersecurity expectations?
As a Security GRC Specialist II, you'll be a key member of the Governance, Risk, and Compliance (GRC) team, leading and executing core GRC programs while serving as a trusted Information Security subject matter expert. This role blends strategic oversight with hands-on execution-partnering with technical teams, business stakeholders, clients, and vendors to ensure security controls, policies, and risk practices are effective, compliant, and clearly communicated.
What You'll Do
  • Client & Third-Party Assessments: Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
  • Policy & Standards Management: Create, maintain, and evolve security policies, standards, guidelines, and supporting documentation through strong technical writing.
  • Risk & Compliance Assurance: Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.
  • Security Consulting & SME Support: Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
  • Vendor Risk Management: Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
  • Exception & Risk Treatment: Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.
  • Security Awareness Program: Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
  • GRC Platform Administration: Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
  • Controls & Compliance Evaluations: Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.

What You'll Bring
  • Education: Bachelor's degree or equivalent with five (5) years of work experience in IT Security is required.
  • Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), Advanced in AI Audit (AAIA), Advanced in AI Risk (AAIR), Advanced in AI Security Management (AAISM) or other relevant training and certifications are preferred.
  • Information Security Experience: Four (4) or more years of Information Security experience, with hands-on technical experience strongly preferred.
  • Framework & GRC Knowledge: Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG) is required.
  • AI Risk: Experience in Artificial Intelligence (AI) governance, security, and risk management is required.
  • Technical Writing & Communication: Proven ability to produce clear, well-structured security documentation and communicate complex technical topics to varied audiences.
  • Risk & Vendor Management Skills: Experience leading risk assessments, vendor security reviews, and client-facing security discussions with professionalism and tact.
  • GRC Tools & Technologies: Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.
  • Analytical & Organizational Strength: Strong problem-solving, project management, and time management skills with the ability to work independently or collaboratively.
  • Technical Acumen: Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.
  • Collaboration & Professionalism: Client-focused mindset with strong interpersonal skills, attention to detail, and a commitment to maintaining accurate records and documentation.

Compensation
The base salary range below represents the low and high end of the salary range for this position in Chicago. This range may differ based on your geographic location and cost of living considerations. At Kirkland & Ellis, we consider compensation more than just a base salary. We offer an exceptional range of flexible benefits including comprehensive healthcare, paid time off, and retirement. We also offer personal support and tailored learning and development opportunities all designed to help you realize your full potential both in life and at work.
Compensation Range:
Chicago: $116,000 - $144,000
How to Apply
Thank you for your interest in Kirkland & Ellis LLP. To complete an application and submit your resume, please click "Apply Now."
Don't meet every job requirement? That's okay! If you're excited about this role but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others at Kirkland.
Equal Employment Opportunity
All employment decisions, including the recruiting, hiring, placement, training availability, promotion, compensation, evaluation, disciplinary actions, and termination of employment (if necessary) are made without regard to the employee's race, color, creed, religion, sex, pregnancy or childbirth, personal appearance, family responsibilities, sexual orientation or preference, gender identity, political affiliation, source of income, place of residence, national or ethnic origin, ancestry, age, marital status, military veteran status, unfavorable discharge from military service, physical or mental disability, or on any other basis prohibited by applicable law. #LI-Hybrid #LI-AR1