1

Information Security Grc Jobs (NOW HIRING)

Computer Science, Information Security * Minimum of 8-10 years of experience related to risk management * Three to four years of project management experience * Experience developing GRC programs in ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

Senior Security GRC Analyst

San Mateo, CA

$109K - $142K/yr

This position is part of the Information Security team. This role will report to the GRC Manager. You will: * Be a key contributor to the Governance, Risk, and Compliance team within the larger ...

Beyond traditional GRC, this position owns security metrics and executive/board reporting, cyber ... Operate the information security risk register: conduct risk assessments, define treatment plans ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

As a senior member of the Security GRC team, you will partner with Security, Engineering, IT, Legal, Sales, and other stakeholders to shape Postman's GRC strategy. You will own key compliance ...

Support the GRC operating model and the service-oriented customer engagement model ... Provide Information Security Data Governance program expertise and drive the operational delivery ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Communicate with IT Security team to clearly identify all required technical tasks and time ...

The Information Security GRC Team Lead leads CapTech's Governance, Risk, and Compliance (GRC) function, helping set the strategy and owning the execution, and continuous improvement of the programs ...

Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Communicate with IT Security team to clearly identify all required technical tasks and time ...

Senior Security GRC Analyst

San Mateo, CA · On-site

$209K - $271K/yr

This position is part of the Information Security team. This role will report to the GRC Manager. You will: * Be a key contributor to the Governance, Risk, and Compliance team within the larger ...

Build HIPAA-ready processes for workloads involving protected health information. * Assess and plan ... What We're Looking For * 5+ years in security GRC, compliance, or a security engineering-adjacent ...

Showing results 41-60

Information Security Grc information

See salary details

$68K

$126.8K

$191.5K

How much do information security grc jobs pay per year?

As of Aug 17, 2026, the average yearly pay for information security grc in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What does an information security GRC do?

As an Information Security GRC professional, your daily responsibilities often include conducting risk assessments, monitoring compliance with internal policies and external regulations, and supporting audits. You may review and update governance documentation, communicate risks or compliance issues to stakeholders, and collaborate with IT, legal, and business teams to ensure information security best practices are followed. Additionally, you'll stay current with changes in laws and regulations to maintain the organization's overall security posture. The work is both analytical and collaborative, requiring you to balance technical tasks with effective communication and project management.

Is information security GRC a good career?

Information Security GRC (Governance, Risk, and Compliance) is a growing field that offers opportunities in managing security policies, risk assessments, and regulatory compliance. It typically requires knowledge of security frameworks, certifications like CISSP or CISM, and strong analytical skills, making it a stable and in-demand career path in cybersecurity.

What are the key skills and qualifications needed to thrive in the information security GRC position?

To thrive as an Information Security GRC professional, you need a strong understanding of information security principles, risk management frameworks, compliance regulations, and policy development, often supported by a degree in information security or a related field. Familiarity with tools such as GRC platforms (e.g., Archer, ServiceNow), risk assessment software, and certifications like CISSP, CISA, or CRISC is highly valuable. Exceptional analytical thinking, attention to detail, and strong communication skills are important soft skills in this role. These competencies enable you to navigate complex regulatory landscapes, collaborate across teams, and effectively protect an organization's information assets.

Is information security GRC an entry-level job?

Information Security GRC (Governance, Risk, and Compliance) roles are often entry-level or require some related experience, such as understanding security frameworks, policies, and compliance standards. Many positions may require certifications like CISA or CISSP and familiarity with tools like GRC software, but some organizations offer entry-level opportunities for candidates with foundational knowledge and a willingness to learn.

What is an information security GRC?

An Information Security GRC (Governance, Risk, and Compliance) job focuses on ensuring that an organization's security policies, risk management strategies, and regulatory compliance align with industry standards and legal requirements. Professionals in this role assess security risks, implement controls, and develop frameworks to maintain data protection and regulatory adherence. They collaborate with different teams to enforce compliance, conduct audits, and manage security governance. This role is critical in preventing security breaches, ensuring legal compliance, and maintaining customer trust.

More about Information Security Grc jobs

What cities are hiring for Information Security Grc jobs?

Cities with the most Information Security Grc job openings:

What states have the most Information Security Grc jobs?

States with the most job openings for Information Security Grc jobs include:

What job categories do people searching Information Security Grc jobs look for?

The top searched job categories for Information Security Grc jobs are:

Infographic showing various Information Security Grc job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 22% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.

Director, Security - GRC

Concentra

Addison, TX

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Concentra rating

6.3

Company rating: 6.3 out of 10

Based on 143 frontline employees who took The Breakroom Quiz

670th of 887 rated healthcare providers


Job description

Concentra is recognized as the nation’s leading occupational health care company.

With more than 40 years of experience, Concentra is dedicated to our mission to improve the health of America’s workforce, one patient at a time. With a wide range of services and proactive approaches to care, Concentra colleagues provide exceptional service to employers and exceptional care to their employees.

The Director, Security - GRC (Governance, Risk Management, and Compliance) will lead the efforts in maintaining compliance with various regulatory and security frameworks. This role requires a deep understanding of security, compliance, regulatory frameworks, platform management, vendor security reviews, third party risk management and customer interactions. Requires a strong ability to collaborate across functions and provide valuable insights and leadership in enhancing our security and compliance environment (s).


  • Create and maintain Security Compliance policies 
  • Perform security risk assessments to identify gaps, develop recommendations and close the gaps to completion and resolution 
  • Lead and maintain and Third Party Risk Management (TPRM) program 
  • Setup Internal audit processes for various security needs 
  • Oversee platform security compliance audits for new regions to comply with legal regulations 
  • Project management that includes the knowledge to initiate and drive complex security projects requiring various stakeholders 
  • Develop metrics to track security program effectiveness and to report risk 
  • Create a governance program for different security areas like Infrastructure, Application, SOC and others 
  • Identify critical security audit areas, establish the audit process and have completed audit of few areas 
  • Create and update security risk metrics to measure the risk levels across systems and processes 
  • Conduct security awareness and educational trainings for the company and specific teams 
  • Facilitate and participate in internal audits of critical processes and as required for PCI and SOX 
  • Complete risk assessments of high-risk processes and come up with gaps and recommendations 
  • Rollout security awareness trainings for the company and GRC team

  • Education Level: Bachelor’s Degree Major: Computer Science, Information Security 
  • Minimum of 8-10 years of experience related to risk management 
  • Three to four years of project management experience 
  • Experience developing GRC programs in a cloud and SaaS environment. 
  • Concentra Core Competencies of Service Mentality, Attention to Detail, Sense of Urgency, Initiative and Flexibility 
  • Ability to make decisions or solve problems by using logic to identify key facts, explore alternatives, and propose quality solutions 
  • Outstanding customer service skills as well as the ability to deal with people in a manner which shows tact and professionalism 
  • The ability to properly handle sensitive and confidential information (including HIPAA and PHI) in accordance with federal and state laws and company policies 
  • Experience with privacy frameworks, such as SOX, SOC2 Type 2, PCI, NIST and HIPAA 
  • Experience with third party risk management 
  • Strong collaborator, with experience working on teams composed of both technical and non technical members 
  • Demonstrated ability to lead large projects, problem-solve, multitask, and have excellent organizational skills
  • Excellent written and verbal communication skills, with experience presenting to key stakeholders and partnering with internal collaborators and external auditors 
  • Thrive in a data-driven, fast-paced and innovative environment 
  • Strong prioritization skills and the ability to handle multiple job duties in a fast-paced environment 
  • Exceptional communication skills and the ability to communicate appropriately at all levels of the organization, written and verbal

Employee Benefits

  • 401(k) Retirement Plan with Employer Match
  • Medical, Vision, Prescription, Telehealth, & Dental Plans
  • Life & Disability Insurance
  • Paid Time Off
  • Colleague Referral Bonus Program
  • Tuition Reimbursement
  • Commuter Benefits
  • Dependent Care Spending Account
  • Employee Discounts

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation, if required.

*This job requires access to confidential and sensitive information, requiring ongoing discretion and secure information management*

Concentra is an equal opportunity employer that prohibits discrimination, and will make decisions regarding employment opportunities, including hiring, promotion and advancement, without regard to the following characteristics: race, color, national origin, religious beliefs, sex (including pregnancy), age, disability, sexual orientation, gender identity, citizenship status, military status, marital status, genetic information, or any other basis protected by federal, state or local fair employment practice laws.


What Concentra employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Concentra logo

About Concentra

Sourced by ZipRecruiter

We're in the amazing position for a future filled with growth and success. Bring your talent to Concentra, one of the largest health care providers in the nation and find out just how far it can take you. Are you ready to be a part of the team?

Industry

Health care and social assistance

Company size

10,000+ Employees

Headquarters location

Addison, TX, US

Year founded

1979

Social media