Senior Security Governance, Risk & Compliance (GRC) Analyst
Arlington, Virginia; Englewood, Colorado; Chicago, Illinois; Everett, Washington; Seal Beach, California; Kent, Washington; Plano, Texas; Berkeley, Missouri; Ridley Park, Pennsylvania; El Segundo, California; Mesa, Arizona; North Charleston, South CarolinaJob Description
At Boeing, we innovate and collaborate to make the world a better place. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.
The Boeing Company is currently seeking a Senior Security Governance, Risk & Compliance (GRC) Analyst to join the team in Arlington, VA; Berkeley, MO; Chicago, IL; El Segundo, CA; Englewood, CO; Everett, WA; Kent, WA; Mesa, AZ; North Charleston, SC; Plano, TX; Ridley Park, PA; or Seal Beach, CA.
The Senior Security GRC Analyst is responsible for leading and maturing Boeing’s cybersecurity risk management program. This role involves identifying, assessing, and mitigating cyber threats and vulnerabilities to protect the organization’s assets, data, and reputation. This role leads the development and guides effective adoption of enterprise security policies, procedures, and controls, while ensuring alignment with relevant regulations and industry best practices.
The ideal candidate with be primarily responsible for managing and maintaining the ServiceNow GRC and Integrated Risk Management (IRM) module administration. This role focuses on configuration, administration, and ongoing support to ensure effective cybersecurity risk visibility and reporting striving for highest level of quality system of record as Boeing’s enterprise GRC platform which involves active stakeholder engagement, implementation of system enhancements, and ensuring the platform’s optimal and sustaining performance.
This role requires a proactive and detail-oriented individual with a strong technical background and the ability to work effectively with diverse teams. This role is essential in ensuring Boeing’s security and compliance posture is robust and aligned with business objectives.
Position Responsibilities:
Monitor, measure and report on cybersecurity risks and policy and regulatory compliance findings across the Boeing enterprise and globally
Evaluate the effectiveness of existing security controls and recommend improvements or new controls to mitigate identified risks
Ensure that the organization’s cybersecurity practices align with relevant policies, regulations, and industry best practices
Prepare detailed reports on risk assessments, incident investigations, and other security-related activities
Lead the cybersecurity risk management lifecycle, including risk identification, assessment, remediation, and treatment
Develop, implement, and maintain cybersecurity risk management policies, procedures, and frameworks
Conduct and facilitate cyber security risk assessments, including threat assessments, vulnerability assessments, and impact assessments
Communicate risk assessment findings, recommendations, and mitigation strategies to stakeholders, including senior management and business owners
Identify, recommend, and implement appropriate security controls to mitigate identified risks
Ensure compliance with relevant cybersecurity regulations, standards, and best practices
Improve the effectiveness of the cybersecurity risk management program through ongoing monitoring, evaluation, and adjustments
Basic Qualifications (Required Skills/Experience):
5+ years of experience with GRC and/or internal/external audit with a focus on technology and cybersecurity risk
5+ years of experience implementing and assessing controls within complex IT environments, including infrastructure, cloud, applications, identity, and security operations
5+ years of experience analyzing risk and issue data beyond surface-level symptoms to identify root causes, remediation gaps, and systemic weaknesses
5+ years of experience with common control and cyber risk management frameworks and methodologies (e.g., NIST 800-171, NIST CSF, ISO 27001, Australia ISM)
3+ years of experience as a systems administrator of ServiceNow GRC and IRM modules
3+ years of experience with cyber risk scorecards and building GRC dashboards
Preferred Qualifications (Desired Skills/Experience):
Bachelor’s degree in Cybersecurity, Information Systems, Risk Management, or a related field
Current industry certifications such as CRISC, CISSP, CISA, or CGEIT
Experience working in highly regulated environments (e.g., aerospace, defense, financial services)
Drug Free Workplace:
Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies.
Pay & Benefits:
At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities.
The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.
The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.
Pay is based upon candidate experience and qualifications, as well as market and business considerations.
Summary pay range: $115,600 – $167,900
Applications for this position will be accepted until Aug. 14, 2025
Export Control Requirements: This position must meet export control compliance requirements. To meet export control compliance requirements, a “U.S. Person” as defined by 22 C.F.R. §120.15 is required. “U.S. Person” includes U.S. Citizen, lawful permanent resident, refugee, or asylee.
Export Control Details: US based job, US Person required
Relocation
Relocation assistance is not a negotiable benefit for this position.
Security Clearance
This position requires the ability to obtain a U.S. Security Clearance for which the U.S. Government requires U.S. Citizenship. An interim and/or final U.S. Secret Clearance Post-Start is required.
Visa Sponsorship
Employer will not sponsor applicants for employment visa status.
Shift
This position is for 1st shift
Equal Opportunity Employer:
Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.
Experience Level
Individual Contributor
Contingent Upon Program Award
No, this position is not contingent upon program award
Schedule
Full time
Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.
No featured jobs. View All Opportunities
No recently viewed jobs. View All Opportunities
No saved jobs. View All Opportunities