Security Specialist (GRC & Awareness)

Kforce Inc

St. Louis (MO)

On-site

USD 90,000 - 130,000

Full time

36 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Kforce Inc. in Saint Louis, MO, is seeking a Security Specialist (GRC & Awareness) to lead cybersecurity awareness and training across a complex enterprise.

The role focuses on developing, delivering, and improving programs to strengthen security culture and regulatory compliance. The position requires 5+ years of related experience, excellent communication skills, and proven ability to collaborate with Legal, Compliance, Privacy, HR, and Security teams.

Qualifications

  • 5+ years of experience in cybersecurity awareness, training, GRC, or related security functions.
  • Experience developing and delivering cybersecurity training programs in a regulated or complex organization.
  • Experience partnering with Compliance, Privacy, Legal, or Audit teams.
  • Strong understanding of cybersecurity threats, security awareness best practices, and user behavior risks.
  • Excellent written, verbal, and presentation skills.
  • Strong organizational skills with the ability to manage multiple initiatives simultaneously.
  • Ability to communicate technical concepts to non‑technical audiences.

Responsibilities

  • Lead and execute enterprise-wide cybersecurity awareness and training programs.
  • Develop and deliver security training focused on phishing, social engineering, data protection, and other cyber risks.
  • Manage phishing simulation campaigns, including planning, execution, reporting, and follow‑up education.
  • Create and maintain engaging training content for technical and non‑technical audiences.
  • Partner with Legal, Compliance, Privacy, HR, and Security teams to ensure training aligns with policies and regulatory requirements.
  • Track program effectiveness through training metrics, phishing results, and user behavior trends.
  • Prepare reporting and insights for leadership and key stakeholders.
  • Support audits, regulatory reviews, and compliance initiatives.
  • Promote a strong security culture through awareness campaigns and employee engagement efforts.
  • Serve as a trusted advisor on cybersecurity awareness best practices.

Skills

Cybersecurity awareness
Security training
GRC
Regulatory compliance
Phishing awareness
User behavior
Communication
Presentation skills
Multitasking

Tools

Phishing simulation platforms
Security awareness tools

Job description

Responsibilities

Kforce's client is seeking a Security Specialist (GRC & Awareness) to join their team in Saint Louis, MO. Summary: This role will lead cybersecurity awareness and training initiatives across a complex enterprise environment. The ideal candidate will be responsible for developing, delivering, and continuously improving security awareness programs that strengthen security culture, reduce human risk, and support regulatory compliance. Responsibilities:

  • Lead and execute enterprise-wide cybersecurity awareness and training programs
  • Develop and deliver security training focused on phishing, social engineering, data protection, and other cyber risks
  • Manage phishing simulation campaigns, including planning, execution, reporting, and follow‑up education
  • Create and maintain engaging training content for technical and non‑technical audiences
  • Partner with Legal, Compliance, Privacy, HR, and Security teams to ensure training aligns with policies and regulatory requirements
  • Track program effectiveness through training metrics, phishing results, and user behavior trends
  • Prepare reporting and insights for leadership and key stakeholders
  • Support audits, regulatory reviews, and compliance initiatives
  • Promote a strong security culture through awareness campaigns and employee engagement efforts
  • Serve as a trusted advisor on cybersecurity awareness best practices
Requirements
  • 5+ years of experience in cybersecurity awareness, training, GRC, or related security functions
  • Experience developing and delivering cybersecurity training programs in a regulated or complex organization
  • Experience partnering with Compliance, Privacy, Legal, or Audit teams
  • Strong understanding of cybersecurity threats, security awareness best practices, and user behavior risks
  • Excellent written, verbal, and presentation skills
  • Strong organizational skills with the ability to manage multiple initiatives simultaneously
  • Ability to communicate technical concepts to non‑technical audiences
Preferred Qualifications
  • Security certifications such as CISSP, CISM, Security+, or similar credentials
  • Experience within financial services, healthcare, or other highly regulated industries
  • Experience administering phishing simulation platforms and security awareness tools
  • Familiarity with regulatory and cybersecurity frameworks such as NIST CSF, GLBA, or NYDFS

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

  • We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees.
  • Salaried personnel receive paid time off.
  • Hourly employees are not eligible for paid time off unless required by law.
  • Hourly employees on a Service Contract Act project are eligible for paid sick leave.
  • This job is not eligible for bonuses, incentives or commissions.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Awareness & GRC Program Lead
Security Awareness & GRC Program Lead

Kforce Inc • St. Louis (MO)

On-site
USD 90,000 - 130,000
Senior GRC Specialist.
Senior GRC Specialist.

Kforce Inc • Miami (FL)

On-site
USD 120,000 - 150,000
Cyber Compliance Analyst III
Cyber Compliance Analyst III

Kforce Inc • Fort Lauderdale (FL)

On-site
USD 110,000 - 150,000
Medical insurance
Dental insurance
401(k)
Cybersecurity Governance Analyst
Cybersecurity Governance Analyst

Kforce Inc • Fort Lauderdale (FL)

On-site
USD 110,000 - 160,000
Staff Security Analyst - GRC
Staff Security Analyst - GRC

Jobgether • United States

Hybrid
USD 150,000 - 164,000
Remote work within the United States
Hybrid option with designated offices
IT Program Manager
IT Program Manager

Kforce Inc • St. Louis (MO)

Hybrid
USD 110,000 - 160,000
Senior IT Security Engineer
Senior IT Security Engineer

Kforce Inc • Draper (UT)

On-site
USD 120,000 - 180,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Product Security Engineer
Product Security Engineer

Kforce Inc • New York (NY)

On-site
USD 140,000 - 190,000
Security Awareness Program Specialist
Security Awareness Program Specialist

Prestige Staffing • Irving (TX)

On-site
USD 70,000 - 110,000
Growth opportunities
Startup mentality
Stable company with long-standing and$