> Markdown version of [/jobs/ext/529960-cyber-grc-consultant](https://www.wearedevelopers.com/jobs/ext/529960-cyber-grc-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber GRC Consultant - **Company:** The Rapid - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $93,600.0 - $114,400.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Cyber Security, PCI Data Security Standards, Software Engineering, Software Vulnerability Management, Cyber Threat Analysis, Information Technology, RSA Archer Platform, Servicenow - **Published:** June 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=097364b85ad04f35 ## About the Role Do you have experience in Research?, Do you have a Bachelor's degree?, * Bachelor's degree in Cybersecurity, Information Technology, Business, Communications, or equivalent practical experience. * 5 plus years of experience in cyber risk management, auditing, or compliance, * GRC platforms (e.g., Knowbe4, ServiceNow, Vanta). * Strong written and verbal communication skills, with the ability to simplify and present complex cybersecurity topics to diverse audiences. * Analytical thinking and research abilities to support risk assessments, audits, and compliance initiatives. * High attention to detail, accuracy, and organization in documentation and reporting. * Ability to work collaboratively across technical and non-technical teams. * Demonstrated ethical judgment and critical thinking in decision-making processes. Preferred: * Experience with cybersecurity frameworks such as NIST CSF, ISO 27001, PCI DSS, SOC 2 Type 2, or GDPR. * Demonstrated breadth and depth of expertise across core cybersecurity domains, including risk management, incident response, governance, secure software development, vulnerability management, security operations, etc. * Ability analyze data to derive risk insights. * A proactive and strategic mindset, focused on identifying potential risks and developing innovative solutions to ensure ongoing compliance and mitigate potential issues. ## Description We are seeking a motivated Cybersecurity GRC Analyst to join our growing security team. This role supports alignment with legal, regulatory, and business requirements. Reporting to the Deputy Chief Information Security Officer and working closely with internal stakeholders, the Lead supports the development, implementation, and maintenance of our cybersecurity governance, risk management, and compliance programs., * Develop and maintain cybersecurity policies, standards, and procedures to align with industry best practices and regulatory, legal, and business requirements. * Conduct security risk assessments of critical applications & third-party vendors. * Partner with stakeholders to prioritize and implement risk mitigation strategies * Continuously evaluate and enhance cybersecurity GRC processes to adapt to changing threats, technologies, and business needs * Support internal audits and control testing activities to monitor compliance with cybersecurity frameworks (e.g., NIST CSF, PCI DSS, GDPR, CCPA). * Maintain accurate records of the risk register, compliance activities and evidence for audits and regulatory inquiries. * Support security awareness initiatives and training activities across the organization. * Maintain GRC dashboards and reporting. * Support the management of the Security Champions program. * Stay informed of emerging cybersecurity regulations, risks, and industry best practices. * Support other security activities as required. ## Related Videos - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Résumé-Driven Development: How IT trends affect the job market for software developers](https://www.wearedevelopers.com/magazine/59-resume-driven-development-how-it-trends-affect-the-job-market-for-software-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)