GRC CareersConnecting Talent and Trust. Post a Job Log in

JobsGeorgiaAtlantaSenior IT Risk & Security Compliance Officer

Senior IT Risk & Security Compliance Officer

Emory University
CybersecurityHybridFull-timeAtlanta, GA

Emory University is hiring for the role of Senior IT Risk & Security Compliance Officer, Atlanta, GA (Hybrid). This is a Cybersecurity role in the governance, risk, and compliance field. Review the full details below and apply directly with Emory University.

Organization: Emory UniversityLocation: Atlanta, GAWorkplace: HybridFocus: CybersecurityPosted: Jul 29, 2026
Emory University is hiring for this Cybersecurity role in Atlanta, one of the metros GRC Careers tracks for governance, risk, and compliance hiring. See other GRC roles in Atlanta →

Conducts IT security risk assessments, HIPAA compliance evaluations, and vulnerability management reviews for academic and healthcare IT systems. Recommends control mitigations aligned with NIST CSF guidelines and tracks audit issue resolution. Collaborates with IT infrastructure teams to enforce cybersecurity policies.

Location and market context

This role is based in Atlanta on-site. Local candidates benefit from being close to Emory University's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About cybersecurity governance roles

Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Roles like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.

How to position yourself for this cybersecurity governance role

Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how Emory University would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.

Similar GRC roles

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.