1

It Grc Jobs (NOW HIRING)

WI ยท On-site

$76 - $110/hr

IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under ...

WI ยท On-site

$76 - $110/hr

IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under ...

$76 - $110/hr

IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under ...

$76 - $110/hr

IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under ...

IT GRC Analyst

Covington, LA ยท On-site

$75 - $115/hr

The IT GRC Analyst is responsible for supporting Globalstar's information security governance, risk, and compliance programs. This role executes control oversight activities, maintains compliance ...

The IT GRC Analyst is responsible for supporting Globalstar's information security governance, risk, and compliance programs. This role executes control oversight activities, maintains compliance ...

The IT GRC Analyst is responsible for supporting Globalstar's information security governance, risk, and compliance programs. This role executes control oversight activities, maintains compliance ...

A leading Automotive Finance company in Irvine, CA is seeking an IT GRC Manager for a 6+ month contract role. Position Description Supports execution of IT Governance, Risk, Compliance, and Controls ...

New

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

IT GRC Analyst

Covington, LA ยท On-site

$70 - $95/hr

The IT GRC Analyst is responsible for supporting Globalstar's information security governance, risk, and compliance programs. This role executes control oversight activities, maintains compliance ...

The IT GRC Analyst II assess, tests, documents, and monitors the SECU technology ecosystem to ensure the IT control environment effectively mitigates risks associated with an everchanging threat ...

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

IT GRC Specialist

Tucson, AZ ยท On-site

$95 - $140/hr

Overview Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon ...

Hexagon's Autonomous Solutions division is looking for an IT GRC Specialist to join our team in Tucson, AZ . Reporting to the appropriate IT leadership team, this role will support Hexagon Autonomous ...

next page

Showing results 1-20

It Grc information

See salary details

$27

$57

$84

How much do it grc jobs pay per hour?

As of Sep 5, 2026, the average hourly pay for it grc in the United States is $57.43, according to ZipRecruiter salary data. Most workers in this role earn between $48.80 and $65.87 per hour, depending on experience, location, and employer.

What is IT GRC?

IT GRC stands for Information Technology Governance, Risk, and Compliance. It refers to the framework and processes that organizations use to ensure their IT operations align with business goals, effectively manage risks, and comply with relevant laws and regulations. IT GRC professionals help organizations create policies, implement controls, monitor compliance, and respond to audits. Their work is essential for protecting data, reducing security risks, and maintaining the trust of customers and stakeholders.

What are the key skills and qualifications needed to thrive as an IT GRC professional?

To thrive as an IT GRC professional, you need a solid understanding of information security, risk management frameworks, regulatory compliance, and often a bachelor's degree in information technology or a related field. Familiarity with tools like GRC platforms (e.g., RSA Archer, ServiceNow GRC), audit management systems, and certifications such as CISA, CISSP, or CRISC are typically required. Strong analytical thinking, attention to detail, and effective communication skills help you assess risks and collaborate with stakeholders. These skills are crucial for ensuring organizations meet regulatory requirements, manage IT risks, and maintain robust security postures.

What are some common challenges faced by IT GRC professionals, and how can they be addressed?

IT GRC (Governance, Risk, and Compliance) professionals often encounter challenges such as keeping up with rapidly evolving regulations, balancing security with business objectives, and ensuring cross-departmental collaboration. Staying updated requires continuous learning and leveraging industry resources. Building strong relationships with stakeholders across IT, legal, and business teams helps streamline compliance processes, while utilizing automated GRC tools can improve efficiency and accuracy. Proactive communication and ongoing training are key strategies for overcoming these challenges.

What is the difference between It Grc vs Cybersecurity Analyst?

AspectIt GrcCybersecurity Analyst
Required CertificationsISO 27001 Lead Implementer, CISSP, CISACISSP, CompTIA Security+, CEH
Work EnvironmentPolicy development, risk management, complianceThreat detection, incident response, security monitoring
Employer & Industry UsageCorporate compliance, risk management teamsSecurity operations centers, IT departments

It Grc professionals focus on establishing policies, managing risks, and ensuring compliance with regulations. Cybersecurity Analysts primarily monitor security threats, respond to incidents, and protect systems. While both roles require security knowledge, It Grc emphasizes governance and risk management, whereas Cybersecurity Analysts are more involved in technical threat mitigation.

Are IT GRC jobs in demand?

IT GRC (Governance, Risk, and Compliance) jobs are in high demand due to increasing cybersecurity threats and regulatory requirements. Professionals with skills in risk management, compliance frameworks, and security tools are sought after across various industries, often requiring certifications like CISA or CISSP. The role offers strong growth prospects as organizations prioritize IT governance and security.

Is IT GRC a good career?

IT GRC (Governance, Risk, and Compliance) is a growing field that offers opportunities in cybersecurity, risk management, and regulatory compliance. Professionals in this area typically need knowledge of security frameworks, certifications like CISSP or CISA, and strong analytical skills. It can be a stable career with demand across various industries, especially as organizations prioritize data security and compliance.
More about It Grc jobs

What cities are hiring for It Grc jobs?

Cities with the most It Grc job openings:

What are the most commonly searched types of It Grc jobs?

The most popular types of It Grc jobs are:

What states have the most It Grc jobs?

States with the most job openings for It Grc jobs include:

What job categories do people searching It Grc jobs look for?

The top searched job categories for It Grc jobs are:

Infographic showing various It Grc job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 92% Full Time, 1% Part Time, and 6% Contract. Highlights an 71% Physical, 8% Hybrid, and 21% Remote job distribution, with an average salary of $119,446 per year, or $57.4 per hour.

$76 - $110/hr

Other

Medical, Life

Posted 4 days ago


Key responsibilities

  • Support the administration and maintenance of the organization's IT Governance, Risk, and Compliance (GRC) program

  • Coordinate evidence collection, control validation, documentation activities, and remediation tracking for audits and assessments

  • Collaborate with technology teams to identify and remediate security vulnerabilities, control deficiencies, and compliance gaps


Job description

IT GRC Analyst

Remote, USA

Compensation: $55 โ€“ $80 per hour

Contract Length: 6-month Contract to Hire

Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under heavy audit or incident response activity.

Start Date: ASAP

ABOUT THE ROLE

Our client is a healthcare organization providing primary and post-acute care services to seniors across assisted living, life plan communities, independent living, skilled nursing, and long-term care settings nationwide. The organization is value-driven, offering competitive pay, comprehensive benefits, and flexible scheduling, with a mission to improve the health, happiness, and dignity of the seniors it serves.

We are seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA. The IT GRC Analyst will play a key role in supporting the organizationโ€™s IT Governance, Risk, and Compliance (GRC) program, focusing on security governance, regulatory compliance, risk management, audit readiness, policy administration, and control monitoring. This position collaborates with IT, Security, Privacy, Compliance, Legal, and business stakeholders to enhance the organizationโ€™s security posture and ensure compliance with healthcare regulations such as HIPAA, SOC 2, and NIST. The role also contributes to business continuity, disaster recovery, and AI governance initiatives. Up to 10% travel may be required.

WHAT YOUโ€™LL DO
  • Perform information security risk assessments and document identified risks, control gaps, and remediation recommendations
  • Support administration and maintenance of the organizationโ€™s IT Governance, Risk, and Compliance (GRC) program
  • Assist with development, review, maintenance, and periodic evaluation of security policies, standards, procedures, and guidelines
  • Coordinate evidence collection, control validation, documentation activities, and remediation tracking for internal and external audits and assessments
  • Maintain and map security controls against applicable regulatory, contractual, and industry frameworks (e.g., HIPAA, SOC 2, NIST, CMS, URAC)
  • Assist with security exception review processes and document risk acceptance decisions
  • Maintain compliance metrics, risk registers, issue logs, corrective action plans, and other governance documentation
  • Collaborate with technology teams to identify and remediate security vulnerabilities, control deficiencies, and compliance gaps
  • Analyze emerging cybersecurity, privacy, and regulatory requirements and provide recommendations for program improvements
  • Support security awareness, compliance training, and organizational education initiatives
  • Support security governance forums, risk committees, and related working groups through agenda preparation, risk presentation, meeting facilitation, and documentation of decisions and action items
  • Facilitate risk intake, scoring, prioritization, escalation, and ongoing monitoring activities in accordance with organizational risk management procedures
  • Support administration, data quality, workflow management, reporting, and continuous improvement of GRC tooling and platforms
  • Participate in security and compliance reviews for new technologies, systems, projects, AI initiatives, and significant change requests to identify regulatory and security requirements early in the lifecycle
  • Support business continuity, disaster recovery, resilience planning, testing, and associated governance activities
  • Support AI governance, risk assessments, control validation, and compliance reviews for approved AI technologies and use cases
  • Develop and maintain key risk indicators (KRIs), key performance indicators (KPIs), and executive reporting packages supporting leadership and governance oversight
  • Perform other related duties as assigned to support departmental and organizational objectives
WHAT YOU BRING
  • 3-5 years of experience in information security, risk management, compliance, audit, or GRC functions
  • Healthcare industry experience required
  • Strong understanding of information security governance, risk management, compliance, and control frameworks
  • Knowledge of healthcare regulatory requirements, including HIPAA Privacy and Security Rules
  • Familiarity with industry frameworks and standards such as NIST CSF, SOC 2, HIPAA, and CIS
  • Experience conducting risk assessments, compliance reviews, and control evaluations
  • Understanding of third-party risk management and vendor security review processes
  • Ability to interpret laws, regulations, contractual requirements, and industry standards
  • Strong analytical, organizational, and problem-solving skills with exceptional attention to detail and critical thinking
  • Experience preparing audit-ready documentation and maintaining evidence repositories
  • Excellent written and verbal communication skills, including executive-level reporting and presentations
  • Ability to prioritize multiple assignments and manage deadlines in a dynamic healthcare environment
  • Proficiency with Microsoft Office applications, governance tools, and compliance management platforms
  • Bachelorโ€™s degree in Information Security, Information Technology, Cybersecurity, Computer Science, Healthcare Informatics, or a related field (or equivalent experience)

Nice to Haves:

  • Experience supporting HIPAA, SOC 2, CIS, NIST Cybersecurity Framework, or similar regulatory and security frameworks
  • Experience participating in audits, risk assessments, control testing, or compliance monitoring activities
WHATโ€™S IN IT FOR YOU
  • Competitive pay and comprehensive benefits
  • Flexible scheduling and remote work
  • Opportunity to contribute to a mission-driven organization improving the lives of seniors
  • Professional growth in a dynamic healthcare environment
  • Potential for contract-to-hire conversion
#J-18808-Ljbffr