315 cybersecurity grc jobs at 217 companies in United States
🚀PromotedHiringCafe
Founding Backend / Infra Engineer
Cupertino, CA, US
$160k-$300k/yrOn-SiteFull Time
HiringCafe: Building a 100× better job search engine to take on Indeed and LinkedIn.
Own the crawlers, pipelines, and infrastructure powering a real-time job search engine. Strong Node.js and Python fundamentals; bonus points for security and reverse-engineering chops.
Cleveland Brothers: Exclusive Caterpillar dealer providing heavy machinery sales, rental, and service.
Bachelor's or equivalent experience in cybersecurity/IT, deep GRC knowledge, experience with security frameworks, policy development, audits, risk assessments, control tracking, and strong written/verbal communication.
Form Energy: Developing multi-day batteries for grid-scale energy storage.
10+ YOE5+ Mgmt10+ years in cybersecurity/IT GRC with 5+ years leadership; deep ITGC, IAM, EDR/MDR, vulnerability management, incident response, and audit liaison experience; ISO 27001/SOC 2/NIST familiarity; strong executive communication.
Ford Motor CompanyNYSE: F: Ford manufactures, sells, and services vehicles and mobility solutions.
5+ YOEBachelor's or equivalent,5+ years in cybersecurity GRC/IT audit/certification management,experience with ISO27001/SOC2/NIST audits,building audit readiness,proficiency with GRC tools,strong communication and program management.
Panda Restaurant Group: Operator of American Chinese fast-casual restaurant chains.
7+ YOEBachelor's degree, 7+ years GRC/privacy/security/technology risk experience, knowledge of AI governance and cybersecurity frameworks, policy and program design, and strong advisory skills.
NIST AI RMF, EU AI Act, ISO 42001, NIST CSF, NIST 800-53, ISO 27001, ISO 27002, CIS
Koch Inc.: Operates global manufacturing, refining, and industrial technology businesses.
Experience building and managing cybersecurity governance, risk, and compliance programs; interpreting regulatory and contractual requirements; partnering with cross-functional stakeholders and influencing in a matrixed environment.
Ford Motor CompanyNYSE: F: Designs, manufactures, and sells cars, trucks, and SUVs.
5+ YOEBachelor's in relevant field or equivalent experience,5+ years cybersecurity GRC/IT audit experience,experience with ISO27001/SOC2/NIST,proven audit/certification management,strong communication and program management skills.
Denver or North America or Europe or Africa or Asia or Australia
$145k-$160k/yrHybridFull Time
Vantage Data Centers: Provides hyperscale data center campuses for cloud and AI providers.
5+ YOE5+ years designing and managing cybersecurity programs; bachelor’s in IT/cybersecurity or equivalent; CISSP/CISM/CISA/CCSP preferred; hands-on with SIEM, firewalls, IDS/IPS, endpoint protection, vulnerability management; audit, risk, and incident response experience.
ISO 27001, SOC 2, NIST, SIEM, firewalls, IDS/IPS, endpoint protection, vulnerability management tools, Microsoft Office 365
Blue Origin: Develops reusable rockets and systems for human spaceflight.
10+ YOE10+ years in information security risk management; experience with NIST, ISO 27001/28000, SOC, CMMC; cloud-native, IT and OT security experience; ability to automate compliance and build GRC dashboards.
Idaho Central Credit Union: A member-owned cooperative providing banking and lending services.
9+ YOEBachelor's degree or equivalent experience, DoD 8140 certifications (Level I/II/III) in GRC, 9+ years info sec experience, strong regulatory/compliance and audit background, leadership and stakeholder skills.
Security Information and Event Management (SIEM), Vulnerability Scanning Platforms, Enterprise GRC systems, Microsoft Excel, Microsoft Word, Project management tools, Cloud technologies
Mercyhealth: Integrated non-profit health system operating hospitals and medical clinics.
3+ YOEConduct audits and risk assessments, manage vendor security, maintain risk register and policies, coordinate governance across IT/privacy/legal, and support DR/BC programs.
HIPAA, Security Operations Center (SOC) 2, National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF), HITRUST, Apptega, Archer, ServiceNow, Knowbe4, Proofpoint Zen, SIEM, SOAR, Azure, Amazon Web Services (AWS), Microsoft Word, Microsoft Excel, Microsoft PowerPoint
Northern TrustNASDAQ: NTRS: Financial services for individuals, families, and global institutions.
10+ YOE10+ years in cybersecurity with assurance/audit focus; strong knowledge of cyber regulations and risk management; leadership and communication skills; CISSP, CISM, or CRISC certifications.
Excelitas Technologies: Manufacturer of photonic solutions for sensing, detection, and imaging.
5+ YOE5+ years in IT security GRC; strong knowledge of CMMC, NIST SP 800-171, SOX ITGCs and TPRM; audit and remediation experience; policy development and team management; U.S. Person required for ITAR access.
PSEGNYSE: PEG: Investor-owned electric and gas utility.
4+ YOEBachelor's in related field or 8+ years' equivalent; 4+ years cybersecurity GRC/IT audit experience; proficiency with Cyber GRC tools; experience with risk and control assessments, audit coordination, and remediation tracking; DOE 10 CFR 810 eligibility.
Penlink: Providing mission-critical digital intelligence software for law enforcement agencies.
3+ YOE3+ years GRC or cybersecurity compliance experience in SaaS/cloud; strong FedRAMP and NIST 800-53 knowledge; hands-on FedRAMP authorization experience; familiarity with SOC 2/ISO 27001/CMMC/CJIS; AWS/Azure familiarity; U.S. citizenship required.
Russell Investments: Provides global asset management and institutional investment advisory services.
3+ YOE3+ years in cybersecurity with security awareness and GRC, experience with phishing simulations, IAM/GRC, security questionnaires, strong communication.
University of Oklahoma: A public research university in Norman, Oklahoma.
Bachelor's in Computer Science/IT or equivalent experience; knowledge of cybersecurity frameworks, risk assessments, GRC platforms, vulnerability scanning, strong communication and analytical skills.
Hayward HoldingsNYSE: HAYW: Manufacturer of residential and commercial swimming pool equipment.
3+ YOEBachelor's degree in Accounting, Information Systems, Cybersecurity or related; 3+ years SOX-focused GRC/audit experience; hands-on Varonis and SailPoint experience; strong ITGC/ICFR and audit evidence knowledge.
Deaconess Health System: A health system providing hospital and medical care services.
4+ YOE4+ years in cybersecurity/GRC, bachelor’s in cybersecurity/IT required, familiarity with NIST/HIPAA/PCI-DSS, experience with SIEM/GRC and risk assessment methodologies, strong communication and reporting skills.