> Markdown version of [/jobs/ext/612419-infosecurity-grc-engineer-i](https://www.wearedevelopers.com/jobs/ext/612419-infosecurity-grc-engineer-i). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # InfoSecurity GRC Engineer I - **Company:** Adams, Inc. - **Location:** Thornton, CO, United States - **Experience:** Experienced - **Salary:** $84,634.0 - $101,561.0 - **Contract:** Permanent contract - **Skills:** Basic Access Authentication, Cyber Security, Information Systems, Data Security, Information Technology Operations, Cyber Threat Analysis, Information Technology - **Published:** June 18, 2026 - **Apply:** https://www.juju.com/job/00000000g8z2j7 ## About the Role Associates degree in Computer Science, Information Systems, or a related field (Two years of similar experience may substitute this education requirement). - Zero to two years of experience in IT operations, auditing, or support. LICENSES, REGISTRATIONS or CERTIFICATIONS: - Criminal background check required for hire. - Current certifications relevant to cybersecurity such as Security+, or other relevant certifications preferred. ## Description SUMMARY: The InfoSecurity GRC (Governance, Risk, Compliance) Engineer I ensures the cybersecurity and data privacy posture of the District by performing security and privacy assessments on requested technology, including software, hardware, Chrome extensions, and administrative IT-based systems. This role reviews technical requests to ensure compliance with FERPA, COPPA, and CIPA. They are responsible for conducting vulnerability scans during the technology assessment process, managing governance documentation, and supporting District data privacy. ESSENTIAL DUTIES AND RESPONSIBILITIES: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. JOB TASK DESCRIPTIONS: 1. Technology Risk Assessment: Evaluate technology requests (software, hardware, and Chrome extensions) for security risks and privacy compliance. 2. Technical Auditing & Scanning: Execute technical vulnerability scans and privacy audits against requested systems to identify risks before District implementation. 3. Remediation Management & Vendor Coordination: Manage technology risk remediation efforts, working with vendors and IT teams to ensure requested systems meet District security standards. 4. User Awareness Implementation: Assist or lead in the development and implementation of awareness programs to educate staff and students on data security, privacy, and District policies. 5. Reporting & Governance Documentation: Generate technical reports on system vulnerabilities, threat landscapes, and technology risk profiles to maintain transparency in governance operations. 6. Daily Alarm Monitoring & Alert Triage: Monitor daily security alarms, review system dashboards, and triage incoming automated alerts to identify potential risks or incidents for immediate resolution or escalation. 7. Ticket Management & Support Resolution: Manage, resolve, or escalate routine technical support tickets related to information governance, risk assessments, privacy inquiries, and basic access controls. 8. Technical Auditing & Compliance: Conduct technical compliance audits of District systems and monitor for security policy or privacy violations. 9. Perform other duties as assigned. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)