1

It Governance Risk Compliance Manager Jobs (NOW HIRING)

The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on ... Assisting in the upkeep of governance, risk and compliance (GRC) software applications Interacting ...

... Risk & Compliance (GRC) organization is seeking a Senior Governance Lead to drive enterprise IT ... Strong stakeholder management and executive communication skills * Experience with governance ...

... manage risk, and deliver measurable value to students, faculty, researchers, and staff. The ... Policy, Standards, and Compliance * Direct the development, review, publication, and lifecycle ...

... Information Security. Primary Responsibilities: · The position serves as the compliance manager ... risk experience * Excellent analytical and research skills * Strong written and verbal ...

Risk & Compliance Manager

Fleetwood, PA · On-site

$80K - $100K/yr

... Information Security. Primary Responsibilities: · The position serves as the compliance manager ... risk experience * Excellent analytical and research skills * Strong written and verbal ...

Risk & Compliance Manager

Fleetwood, PA · On-site

$80K - $100K/yr

... Information Security. Primary Responsibilities: • The position serves as the compliance manager ... risk experience * Excellent analytical and research skills * Strong written and verbal ...

IT Audit Project Manager

Washington, DC · On-site

$111K - $131K/yr

The role requires a proven leader with expertise in project management, IT governance, risk management, and cybersecurity compliance who can effectively collaborate with technical teams, stakeholders ...

Showing results 41-60

It Governance Risk Compliance Manager information

What is the difference between It Governance Risk Compliance Manager vs IT Security Analyst?

AspectIT Governance Risk Compliance ManagerIT Security Analyst
CertificationsISO 27001 Lead Implementer, CISA, CISSPCISSP, CompTIA Security+, CEH
Work EnvironmentPolicy development, compliance audits, risk assessmentsSecurity monitoring, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, government sectorsIT firms, cybersecurity companies, corporate IT departments

The IT Governance Risk Compliance Manager focuses on establishing and maintaining compliance frameworks, managing risks, and ensuring organizational policies align with regulations. In contrast, the IT Security Analyst primarily monitors security systems, investigates threats, and implements security measures. Both roles require certifications like CISSP but differ in their core responsibilities and daily tasks within the IT industry.

What are the key skills and qualifications needed to thrive as an IT Governance Risk Compliance (GRC) manager?

To thrive as an IT Governance Risk Compliance Manager, you need a strong understanding of IT risk management, regulatory frameworks (such as SOX, GDPR, or ISO 27001), and a relevant degree, often backed by certifications like CISA, CISSP, or CRISC. Familiarity with GRC platforms (e.g., RSA Archer, ServiceNow GRC), audit management tools, and compliance tracking systems is typically required. Exceptional analytical thinking, communication, and stakeholder management skills enable you to translate technical risks into actionable business strategies. These competencies are critical to ensuring organizational compliance, minimizing risk exposure, and aligning IT practices with business objectives.

What does an IT Governance Risk Compliance (GRC) manager do?

An IT Governance Risk Compliance (GRC) Manager is responsible for ensuring that an organization's information technology systems comply with regulatory requirements and internal policies. They develop and oversee frameworks for managing IT risks, monitor compliance with standards such as ISO 27001 or SOC 2, and coordinate audits and assessments. Their role also involves advising leadership on risk mitigation strategies, training staff on compliance issues, and continuously improving IT governance practices. By doing so, they help protect the organization from legal, financial, and reputational risks associated with non-compliance and cyber threats.

How does an IT Governance Risk Compliance (GRC) manager typically collaborate with other departments to ensure organizational compliance?

An IT GRC Manager works closely with various departments such as IT, legal, HR, and internal audit to implement and monitor compliance policies and risk mitigation strategies. They often facilitate cross-functional meetings to align security practices with business objectives, provide guidance on regulatory requirements, and coordinate training initiatives. Effective communication and collaboration are key, as the GRC Manager must ensure that all departments understand their compliance responsibilities and are prepared for audits. This collaborative approach helps create a culture of accountability and continuous improvement across the organization.
More about It Governance Risk Compliance Manager jobs
What cities are hiring for It Governance Risk Compliance Manager jobs? Cities with the most It Governance Risk Compliance Manager job openings:
What are the most commonly searched types of It Governance Risk Compliance jobs? The most popular types of It Governance Risk Compliance jobs are:
What states have the most It Governance Risk Compliance Manager jobs? States with the most job openings for It Governance Risk Compliance Manager jobs include:
What job categories do people searching It Governance Risk Compliance Manager jobs look for? The top searched job categories for It Governance Risk Compliance Manager jobs are:
Infographic showing various It Governance Risk Compliance Manager job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 82% Full Time, 12% Part Time, and 5% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution.

Senior Analyst, Information Security Governance, Risk, & Compliance

AltaMed Health Services Corporation

Commerce, CA • On-site

$121K - $152K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 7 days ago


AltaMed rating

7.6

Company rating: 7.6 out of 10

Based on 37 frontline employees who took The Breakroom Quiz

188th of 887 rated healthcare providers


Job description

Grow Healthy
If you are as passionate about helping those in need as you are about growing your career, consider AltaMed. At AltaMed, your passion for helping others isn't just welcomed - it's nurtured, celebrated, and promoted, allowing you to grow while making a meaningful difference. We don't just serve our communities; we are an integral part of them. By raising the expectations of what a community clinic can deliver, we demonstrate our belief that quality care is for everyone. Our commitment to providing exceptional care, despite any challenges, goes beyond just a job; it's a calling that drives us forward every day.
Job Overview
The Senior Analyst, Information Security Governance, Risk, & Compliance will be responsible for the corporate-wide Information Security GRC program. This person will work closely with Information Services, Office of Compliance and Risk Management (OCRM), Legal, HR, and Procurement to ensure reasonable and appropriate IT controls are in place to minimize risk and ensure compliance with AltaMed's Information Security Policy and Standards, the HIPAA Security Rule, Data Privacy regulations and the Payment Card Industry - Data Security Standards (PCI-DSS). This person will assist with the development, implementation, and maintenance of AltaMed's Information Security Policies, standards, and guidelines, and be an SME for HIPAA, PCI, and Privacy. Additionally, this person will also be responsible for leading vulnerability management efforts, and vendor and risk management programs, including leading the risk-based change management program, liaising with internal/external auditors to ensure audits lead to a successful outcome, and being responsible for the Security Exception/Risk Acceptance process. The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program.
Minimum Requirements
  • A bachelor's degree in business, information systems management, or a related field is required.
  • A minimum of 5 years of experience in IT audit or IT risk management is required.
  • Experience in leading security assessments, IT vendor risk assessments, and InfoSec control management.
  • Working knowledge of HIPAA, Privacy, and PCI data requirements, and other state / federal regulatory requirements of sensitive information.
  • Experience with application security, SaaS, and/or cloud security is a plus.
  • Must hold an active Certified Information Systems Security Professional (CISSP) certification (Required)

Compensation
$121,780.05 - $152,225.07 annually
Compensation Disclaimer
Actual salary offers are considered by various factors, including budget, experience, skills, education, licensure and certifications, and other business considerations. The range is subject to change. AltaMed is committed to ensuring a fair and competitive compensation package that reflects the candidate's value and the role's strategic importance within the organization. This role may also qualify for discretionary bonuses or incentives.
Benefits & Career Development
  • Medical, Dental and Vision insurance
  • 403(b) Retirement savings plans with employer matching contributions
  • Flexible Spending Accounts
  • Commuter Flexible Spending
  • Career Advancement & Development opportunities
  • Paid Time Off & Holidays
  • Paid CME Days
  • Malpractice insurance and tail coverage
  • Tuition Reimbursement Program
  • Corporate Employee Discounts
  • Employee Referral Bonus Program
  • Pet Care Insurance

Job Advertisement & Application Compliance Statement
AltaMed Health Services Corp. will consider qualified applicants with criminal history pursuant to the California Fair Chance Act and City of Los Angeles Fair Chance Ordinance for Employers. You do not need to disclose your criminal history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if AltaMed Health Service Corp. is concerned about a conviction directly related to the job, you will be given a chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report.

What AltaMed employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


AltaMed Health Services logo

About AltaMed Health Services

Sourced by ZipRecruiter

AltaMed Health Services, based in Los Angeles, CA, US, is a leading provider in the healthcare industry. Founded in 1969 as the East LA Barrio Free Clinic, the organization provides high-quality health and human services to the underserved and uninsured communities in Southern California. AltaMed offers a broad range of services including medical care, senior care, dental services, HIV care, pharmacy services, and health education. The company's mission is to eliminate disparities in healthcare access and outcomes by providing superior quality health and human services through an integrated world-class delivery system. AltaMed has also made notable achievements, including becoming the nation's largest federally qualified community health center (FQHC) and being named a leader in healthcare equality by the Human Rights Campaign for several consecutive years.

Industry

Fitness and sports centers

Company size

1,001 - 5,000 Employees

Headquarters location

Los Angeles, CA, US

Year founded

1969

Social media