GRC Security Engineer

Kforce Inc.

Draper, UT

JOB DETAILS
SALARY
$87,000–$115,000
SKILLS
Auditing, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, Communication Skills, Continuous Improvement, Cross-Functional, ISO (International Organization for Standardization), Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Internal Audit, Internet Security, Leadership, Legal, Maintain Compliance, Management Strategy, Metrics, PCI, Performance Metrics, Process Improvement, Reporting Skills, Risk, Risk Analysis, Risk Management, Sarbanes-Oxley Act (SOX), Security Analysis, Short Messaging Service (SMS), Testing, U.S. National Institute of Standards and Technology (NIST)
LOCATION
Draper, UT
POSTED
10 days ago
Kforce has a client in Draper, UT that is seeking a GRC Security Engineer. Overview: We are seeking a Senior Cybersecurity GRC Engineer to lead and enhance enterprise Governance, Risk, and Compliance initiatives. This role will focus on maturing cybersecurity programs, ensuring regulatory compliance, and driving risk management strategies aligned with business objectives. Key Responsibilities:
  • Lead and maintain the enterprise cybersecurity GRC program
  • Conduct risk assessments, maintain risk registers, and drive remediation efforts
  • Develop and enforce security policies, standards, and procedures
  • Ensure compliance with frameworks such as NIST, ISO 27001, SOC 2, PCI, and SOX
  • Perform internal audits, control testing, and gap assessments
  • Partner with IT and business teams to translate security requirements into actionable controls
  • Manage third-party/vendor risk assessments and security reviews
  • Develop and report on security KPIs, metrics, and compliance status
  • Support governance aspects of incident response and remediation tracking
  • Drive continuous improvement across the security and compliance landscape

Requirements:

  • Bachelor's degree in Information Security, Cybersecurity, or related field
  • 7+ years of cybersecurity experience with a strong focus in GRC
  • Deep experience in risk management, audits, and compliance frameworks
  • Strong understanding of enterprise IT environments (cloud, identity, infrastructure)
  • Experience working with cross-functional stakeholders and leadership
Preferred Qualifications:
  • Certifications such as CISSP, CISM, CRISC, or CISA
  • Experience supporting SOC 2, ISO 27001, or NIST-based programs
  • Experience building or maturing GRC programs in a mid-to-large enterprise environment
What They're Looking For:
  • Hands-on GRC ownership (not just oversight)
  • Clear examples of building or improving security governance programs
  • Ability to communicate risk in business terms
  • Strong documentation and audit readiness experience
Benefits:
  • Comprehensive medical, dental, and vision coverage
  • 401(k) with company match
  • PTO, holidays, and additional wellness benefits
  • Stable, growth-oriented organization with long-term career potential

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

By clicking “Apply Today” you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.


About the Company

K

Kforce Inc.

Kforce is a solutions firm specializing in technology, finance and accounting, and professional staffing services. Our KNOWLEDGEforce® empowers top companies to achieve their digital transformation goals. We curate teams of technical experts who deliver solutions custom-tailored to each client’s needs. These scalable, flexible outcomes are shaped by deep market knowledge, thought leadership and our multi-industry expertise.

 

Our integrated approach is rooted in 60 years of proven success deploying highly skilled professionals on a temporary and direct-hire basis. Each year, approximately 18,000 talented experts work with the Fortune 500 and other leading companies. Together, we deliver Great Results Through Strategic Partnership and Knowledge Sharing®.

COMPANY SIZE
1,000 to 1,499 employees
INDUSTRY
Financial Services
FOUNDED
1962
WEBSITE
http://www.kforce.com/