Strategic GRC & Security Specialist II

SCIGON

Salt Lake City (UT)

On-site

USD 116,000 - 144,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

SCIGON is seeking a Security GRC Specialist II in Salt Lake City to lead core GRC programs and act as a security SME. The role blends strategic oversight with hands-on execution, partnering with technical teams, stakeholders, and vendors to ensure controls, policies, and risk practices are effective and clearly communicated.

You will drive third-party assessments, policy governance, and risk assurance while supporting GRC platforms and security awareness initiatives.

Qualifications

  • Bachelor's degree in IT Security or equivalent with five years of experience.
  • Four or more years of Information Security experience, hands-on preferred.
  • CISSP, CISA, CISM or equivalent certifications preferred.
  • Strong knowledge of ISO 27001, NIST, SOC, SIG frameworks.
  • Experience in AI governance, security and risk management.
  • Clear technical writing and communication skills.
  • Experience leading risk assessments and vendor security reviews.
  • Familiarity with GRC platforms and RBAC.
  • Strong analytical and organizational abilities.
  • Working knowledge of authentication, encryption, firewalls, SIEM, vulnerability management.

Responsibilities

  • Lead security assessments and audits, document evidence and perform risk assessments as needed.
  • Create, maintain, and evolve security policies, standards, guidelines, and documentation.
  • Manage IT security risk and compliance assurance processes across systems.
  • Serve as an Information Security SME to advise stakeholders across the organization.
  • Oversee third-party Security Vendor Risk Management program and remediation tracking.
  • Manage security exception requests and advise on risk treatment decisions.
  • Oversee Security Awareness program roadmap, training evaluation and effectiveness.
  • Support and optimize GRC technology platforms and workflows.
  • Conduct evaluations to ensure IT programs align with security standards.

Skills

Third-Party Assessments
Policy & Standards Management
Risk & Compliance Assurance
Security Consulting & SME Support
Vendor Risk Management
Exception & Risk Treatment
Security Awareness Program
GRC Platform Administration
Controls & Compliance Evaluations

Education

Bachelor's degree or equivalent with five years of work experience in IT Security

Job description

SCIGON is seeking a Security GRC Specialist II in Salt Lake City to lead core GRC programs and act as a security SME. The role blends strategic oversight with hands-on execution, partnering with technical teams, stakeholders, and vendors to ensure controls, policies, and risk practices are effective and clearly communicated.

You will drive third-party assessments, policy governance, and risk assurance while supporting GRC platforms and security awareness initiatives.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Specialist II
GRC Specialist II

SCIGON • Salt Lake City (UT)

On-site
USD 116,000 - 144,000
Senior GRC Analyst
Senior GRC Analyst

Request Technology, LLC • Chicago (IL)

On-site
USD 105,000 - 145,000
Senior GRC Analyst
Senior GRC Analyst

Request Technology, LLC • Austin (TX)

On-site
USD 120,000 - 160,000
Site Security Manager II - Compliance & SCIF Security Lead
Site Security Manager II - Compliance & SCIF Security Lead

General Dynamics Information Technology • Ogden (UT)

On-site
USD 100,000 - 130,000
Restaurant d'entreprise
IT GRC & Risk Analyst II: Drive Security & Compliance
IT GRC & Risk Analyst II: Drive Security & Compliance

SECU • North Carolina

On-site
USD 80,000 - 110,000
Senior GRC & ISMS Security Strategist
Senior GRC & ISMS Security Strategist

Dorsey & Whitney LLP • Palo Alto (CA)

Hybrid
USD 140,000 - 190,000
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Governance, Risk & Compliance Analyst I
Governance, Risk & Compliance Analyst I

Geographic Solutions, Inc. • Dunedin (FL)

On-site
USD 60,000 - 100,000
Senior Cybersecurity GRC Analyst: Policy, Risk & Compliance
Senior Cybersecurity GRC Analyst: Policy, Risk & Compliance

Space Dynamics Laboratory • North Logan (UT)

On-site
USD 93,000 - 170,000
Strategic GRC Lead - Risk & Compliance Expert
Strategic GRC Lead - Risk & Compliance Expert

Request Technology, LLC • Austin (TX)

On-site
USD 120,000 - 160,000