1

It Governance Risk Compliance Manager Jobs (NOW HIRING)

AVP, IT & AI Governance

New York, NY · On-site

$171K - $215K/yr

The AVP will oversee IT governance, AI governance, model risk alignment, technology risk management, and regulatory compliance across the organization. This role serves as a key control function ...

$41.75 - $55.75/hr

Quote from Hiring Manager: The IT Governance/Risk/Compliance Analyst position offers a dynamic opportunity for an experienced analyst to help shape the future of our governance, risk, and compliance ...

IT Governance Senior Manager

Farmington Hills, MI · On-site

$128K - $129K/yr

This role provides executive oversight for IT risk management, controls oversight, policy governance, audit coordination, and remediation management to ensure a strong and compliant operational ...

next page

Showing results 1-20

It Governance Risk Compliance Manager information

What is the difference between It Governance Risk Compliance Manager vs IT Security Analyst?

AspectIT Governance Risk Compliance ManagerIT Security Analyst
CertificationsISO 27001 Lead Implementer, CISA, CISSPCISSP, CompTIA Security+, CEH
Work EnvironmentPolicy development, compliance audits, risk assessmentsSecurity monitoring, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, government sectorsIT firms, cybersecurity companies, corporate IT departments

The IT Governance Risk Compliance Manager focuses on establishing and maintaining compliance frameworks, managing risks, and ensuring organizational policies align with regulations. In contrast, the IT Security Analyst primarily monitors security systems, investigates threats, and implements security measures. Both roles require certifications like CISSP but differ in their core responsibilities and daily tasks within the IT industry.

What is the salary of governance risk compliance?

The salary for an IT Governance, Risk, and Compliance (GRC) Manager typically ranges from $80,000 to $150,000 annually, depending on experience, certifications, and location. Professionals with certifications like CISSP or CISA and strong knowledge of regulatory frameworks may earn higher salaries. The role often requires familiarity with GRC tools and risk assessment methodologies.

What are the key skills and qualifications needed to thrive as an IT Governance Risk Compliance (GRC) Manager, and why are they important?

To thrive as an IT Governance Risk Compliance Manager, you need a strong understanding of IT risk management, regulatory frameworks (such as SOX, GDPR, or ISO 27001), and a relevant degree, often backed by certifications like CISA, CISSP, or CRISC. Familiarity with GRC platforms (e.g., RSA Archer, ServiceNow GRC), audit management tools, and compliance tracking systems is typically required. Exceptional analytical thinking, communication, and stakeholder management skills enable you to translate technical risks into actionable business strategies. These competencies are critical to ensuring organizational compliance, minimizing risk exposure, and aligning IT practices with business objectives.

Is GRC certification worth IT?

For an IT Governance Risk Compliance Manager, GRC (Governance, Risk, and Compliance) certifications such as CISA, CISSP, or CRISC are valuable for demonstrating expertise in managing IT risks and compliance frameworks. These certifications can enhance credibility, support career advancement, and improve understanding of regulatory requirements and security controls within IT environments.

What does an IT Governance Risk Compliance (GRC) Manager do?

An IT Governance Risk Compliance (GRC) Manager is responsible for ensuring that an organization's information technology systems comply with regulatory requirements and internal policies. They develop and oversee frameworks for managing IT risks, monitor compliance with standards such as ISO 27001 or SOC 2, and coordinate audits and assessments. Their role also involves advising leadership on risk mitigation strategies, training staff on compliance issues, and continuously improving IT governance practices. By doing so, they help protect the organization from legal, financial, and reputational risks associated with non-compliance and cyber threats.

How does an IT Governance Risk Compliance (GRC) Manager typically collaborate with other departments to ensure organizational compliance?

An IT GRC Manager works closely with various departments such as IT, legal, HR, and internal audit to implement and monitor compliance policies and risk mitigation strategies. They often facilitate cross-functional meetings to align security practices with business objectives, provide guidance on regulatory requirements, and coordinate training initiatives. Effective communication and collaboration are key, as the GRC Manager must ensure that all departments understand their compliance responsibilities and are prepared for audits. This collaborative approach helps create a culture of accountability and continuous improvement across the organization.

Is governance risk and compliance a good career?

A career in governance, risk, and compliance (GRC) as an IT GRC Manager offers opportunities in managing organizational policies, regulatory requirements, and cybersecurity risks. It requires strong analytical skills, knowledge of industry standards like ISO or NIST, and often involves certifications such as CISA or CISSP. The role is in demand across various industries due to increasing regulatory complexity and cybersecurity concerns.

What does a governance risk and compliance manager do?

A governance, risk, and compliance (GRC) manager oversees an organization’s policies and procedures to ensure adherence to legal and regulatory requirements. They identify potential risks, develop mitigation strategies, and implement controls using tools like risk assessments and compliance frameworks, often requiring certifications such as CISA or ISO standards. Their role helps maintain organizational integrity and reduces exposure to legal or financial penalties.
More about It Governance Risk Compliance Manager jobs
What cities are hiring for It Governance Risk Compliance Manager jobs? Cities with the most It Governance Risk Compliance Manager job openings:
What are the most commonly searched types of It Governance Risk Compliance jobs? The most popular types of It Governance Risk Compliance jobs are:
What states have the most It Governance Risk Compliance Manager jobs? States with the most job openings for It Governance Risk Compliance Manager jobs include:
What job categories do people searching It Governance Risk Compliance Manager jobs look for? The top searched job categories for It Governance Risk Compliance Manager jobs are:
Infographic showing various It Governance Risk Compliance Manager job openings in the United States as of June 2026, with employment types broken down into 87% Full Time, 7% Part Time, and 6% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution.
IT Governance, Risk & Compliance Analyst

IT Governance, Risk & Compliance Analyst

Fastenal Company

Winona, MN • On-site

$91K - $91K/yr

Full-time

Medical, Dental, Life, Retirement, PTO

Posted 8 days ago


Fastenal rating

7.7

Company rating: 7.7 out of 10

Based on 200 frontline employees who took The Breakroom Quiz

52nd of 715 rated retailers


Job description

Job Description
IT Governance, Risk & Compliance Analyst 212 W 2nd St, Winona, MN 55987 Full-time Shift(s): MON TUE WED THU FRI 8:00am - 5:00pm OVERVIEW: Working as Full-time IT Governance, Risk & Compliance Analyst, you will support the assurance of IT GRC across the organization to ensure continuous compliance with industry laws, regulations, frameworks and agreed IT standards, policies and methodologies, to effectively manage risk, and maintain effective governance practices. This position will provide guidance to various stakeholders within IT and the organization, assessing processes and controls, and implementing those processes and controls to drive a culture of quality, standardization and compliance. The role involves an auditing component supporting and assessing compliance of a diverse range of IT-related activities and concerns. RESPONSIBILITIES: The duties and responsibilities of this position include, but are not limited to: o Supporting the development and implementation of IT GRC frameworks, plans, policies, and procedures. Ensuring alignment with industry best practices and regulatory requirements. o Supporting industry/regulatory control frameworks, security standards and assessments (PCI DSS, ISO 2700x, SOC 2, Data Privacy (GDPR, CCPA)) and internal/external audit engagements when necessary. o Assisting in the completion of internal IT security and risk audits and associated remedial actions across the organization. Providing documentation, evidence, and insights to support audit processes. o Tracking and follow up on audit findings, ensuring timely remediation. o Collaborating with cross-functional teams and broader organizational areas, such as security, IT, finance, legal, and internal audit, to ensure a coordinated and integrated approach to IT governance, risk, and compliance initiatives and activities. o Providing guidance on compliance matters and support risk management activities. o Monitoring emerging trends, technologies, and regulatory changes affecting IT GRC and assess their impact on the organization. Identifying opportunities to enhance GRC practices, streamline processes, and implement automation or digital tools to improve efficiency and effectiveness. o Assisting in the preparation of reports and presentations for management and stakeholders on compliance status, risk exposure, and recommended actions. Utilizing GRC toolsets for management and reporting. o Participating in incident response activities related to governance, risk, and compliance. o Assisting in the development of training programs to educate employees about compliance requirements, risk management, and governance principles. Promoting awareness of compliance obligations and foster a culture of ethics and accountability within the organization. REQUIRED POSITION QUALIFICATIONS: The following skills and qualifications are required for this position: o Possess a Bachelor's degree in Computer Science, MIS, Organization or related field of study o Proficiency with Microsoft Office products and strong PC skills o Demonstrate an Understanding of information security concepts and principles o Passion for information risk and security - eager to learn, with a strong drive and enthusiasm for the subject o Strong problem-solving, planning, and continuous improvement skills o Excellent organizational, analytical and oral and written communication skills o Independent-minded, objective and rational o High standards of personal integrity, trustworthiness and discretion. o Communicate technical concepts to non-technical audiences in addition to having an analytical and detailed oriented approach to problem solving o Organized and proactive in managing a varied workload is key to being successful in the role. o Pass the required drug screen and background check (applicable in the US, Puerto Rico, and Guam ONLY) ABOUT US: Since 1967 Fastenal has grown as a distributor of industrial and construction supplies from a single branch to approximately 3,000 servicing locations, each providing tailored local inventory and personal service for our customers. As we've expanded across the world, we've retained a core belief in people and their ability to accomplish remarkable things - if given the opportunity. From this philosophy stems an entrepreneurial culture that challenges every employee to run their own business, create their own success, and advance to become company leaders. As a growth company with a solid financial position, we are committed to training, promoting from within, and creating opportunities for our employees. If you have an entrepreneurial spirit and are looking to make your mark as part of an elite growth company, you won't find a better fit than Fastenal. FULL-TIME BENEFITS: Fastenal offers a competitive benefits package to all full-time employees. This package includes Health, Life, Long Term Disability, and Dental Insurance, in addition to, paid vacation, sick leave, holidays, and 401(k) with an employer contribution. COMPENSATION: The base pay range for this position is $55,000 - $75,000. In addition to base pay, this position is also eligible for a bonus and/or commission.

What Fastenal employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Fastenal logo

About Fastenal

Sourced by ZipRecruiter

Since 1967 Fastenal has grown as a distributor of industrial and construction supplies from a single branch to a Fortune 500 company with over 3,000 servicing locations, each providing tailored local inventory and personal service for our customers. As we've expanded across the world, we've retained a core belief in people and their ability to accomplish remarkable things - if given the opportunity. From this philosophy stems an entrepreneurial culture that challenges every employee to run their own business, create their own success, and advance to become company leaders. As a growth company with a solid financial position, we are committed to training, promoting from within, and creating opportunities for our employees. If you have an entrepreneurial spirit and are looking to make your mark as part of an elite growth company, you won't find a better fit than Fastenal.

Industry

Construction materials wholesalers

Company size

10,000+ Employees

Headquarters location

Winona, MN, US

Year founded

1967