Remote Cyber security Jobs · GRC

Job listings

  • Act as the primary technical liaison for projects.
  • Define and architect technical solutions at a detailed level.
  • Mentor and guide developers and consultants on best practices.

ServiceNow is a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Their intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work.

$144,540–$180,960/yr

  • Own Security Governance: maintain and evolve security policies, standards, and control frameworks.
  • Lead the Security TPRM function across vendor lifecycle: intake/onboarding, due diligence, contracting handoffs, ongoing monitoring.
  • Build, coach, and scale the Governance and TPRM teams: hiring, performance management, career development, and team morale.

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. The majority of their roles are remote. They offer competitive benefits anchored to the core value of people come first.

$80,000–$120,000/yr

  • Execute end-to-end third-party and vendor risk assessments.
  • Develop, maintain, and enhance risk metrics, dashboards, and reporting.
  • Assist with additional GRC activities as needed, including policy management, risk assessments, control testing, and compliance initiatives

Aprio is a Top 20 CPA and advisory firm that accounts for anything. With over 3,200 team members and 40 U.S. office locations, plus international offices, they bring proven expertise and strategic foresight to fast-growing industries.

EMEA 6w PTO

  • Lead security efforts across infrastructure, applications, internal systems, and employee devices
  • Identify risks and vulnerabilities across the organisation and ensure they are addressed
  • Establish scalable security processes and best practices across teams

LI.FI is dedicated to fostering a workplace that values and respects each team member's unique contributions. They value differences and encourage individuals of all backgrounds to apply.

$120,000–$165,000/yr

  • Act as the primary security point of contact for assigned strategic/critical accounts.
  • Build multi-threaded relationships with customer security leadership, IT, risk/compliance, and engineering teams.
  • Advise on cloud security controls and best practices: IAM/SSO/MFA, least privilege, key management/encryption.

Oracle provides cloud technology and platform services. We employ thousands of people worldwide and cultivate a culture of innovation and collaboration, where individuals can contribute to cutting-edge projects and advance their careers.

US Unlimited PTO

  • Support security and compliance programs aligned with frameworks such as NIST, ISO, PCI DSS, and HIPAA.
  • Assist in maintaining alignment with global privacy regulations (GDPR, CCPA, and similar frameworks).
  • Assist in the development, implementation, and maintenance of security, privacy, and AI governance policies, standards, and procedures.

Hims & Hers is a health and wellness platform with a mission to help the world feel great through the power of better health. They are redefining healthcare by putting the customer first and delivering access to care that is affordable, accessible, and personal.

  • Support client engagements related to CMMC readiness, implementation, and documentation
  • Develop, update, and maintain System Security Plans (SSPs)
  • Assist with NIST SP 800-171, NIST SP 800-53, and FedRAMP documentation, control mapping, and related deliverables

Hotman Group is a remote boutique cybersecurity and GRC firm supporting clients across a range of industries and compliance needs. They value strong writing, quality work, collaboration, sound judgment, and practical execution.

$120,000–$145,000/yr

  • Manage vendor security intakes and assessments, evaluating new vendors against our security requirements and maintaining the vendor inventory.
  • Administer IAM (identity and access management) across company systems, including user provisioning, access reviews, and role management.
  • Complete client security questionnaire responses, maintaining security documentation, policies, and procedures while supporting preparation and remediation tracking.

Qualified Health is redefining what’s possible with Generative AI in healthcare. They provide the infrastructure for safe AI governance, healthcare-specific agent creation, and real-time algorithm monitoring, working alongside leading health systems to drive real change. This is a fast-growing company.

Europe 5w PTO

  • Maintain documentation for ISO/IEC 27001 & ISO/IEC 42001; improve activities.
  • Extract security requirements from client MSAs; identify gaps and risks.
  • Coordinate internal and client audit requests; collect evidence.

Avalere Health's mission is to ensure every patient is identified, treated, supported, and cared for. They bring Advisory, Medical, and Marketing teams together to forge unconventional connections, building a future where healthcare is not a barrier and no patient is left behind.

$72,781–$83,698/yr

  • Perform GRC functions and maintain the Cyber Security Risk register.
  • Execute third party risk processes for cyber and perform/execute on awareness programs and phishing processes.
  • Liaise with the vendor management (VM) team to conduct security assessments of existing and prospective vendors.

Warner Music Group is a global collective of music makers and music lovers, tech innovators and inspired entrepreneurs, game-changing creatives and passionate team members. They turn dreams into stardom and audiences into fans. WMG is committed to creating a work environment that actively values, appreciates, and respects everyone and encourages applications from people with a wide variety of backgrounds and experiences.