Country: USA
State: Michigan
City: Grand Rapids
Office Location: 901 44th Street SE - - - - -
Date posted: 12-Aug-2025
Business Function: Information Technology
Position Type: Full-Time/Regular
Steelcase is seeking an
Associate Governance, Risk, and Compliance (GRC) Analyst to join our growing team.
What You Will Be Doing:
- Responsible for developing and executing security governance, risk, compliance, and privacy programs.
- Ensure that Steelcase meets its regulatory and customer compliance obligations, address security risks, support our information security programs, and foster a culture of security throughout the enterprise.
- Maintain policies, procedures, and standards for the organization, ensuring they are up to date, communicated, and accessible.
- Develop and maintain risk and compliance reports, dashboards, and metrics to effectively communicate organizational risk posture to stakeholders.
- Perform risk assessments and gather information for new technologies, in preparation for security control development.
- Coordinate with control owners and technical teams to implement controls. Identify deficiencies and track remediation progress.
- Continuously assess and improve the effectiveness, adequacy, and efficiency of controls and compliance monitoring and reporting.
- Conduct risk reviews and assessments of third parties and Steelcase affiliated organizations including dealers, suppliers, and acquisitions.
- Proactively identify and report vulnerabilities in technical infrastructure. Conduct continuous monitoring and drive risk resolution.
- Assess the capabilities of the organization to detect and respond to security events. Participate in, and document, incident response and tabletop activities to include post-incident remediation tracking.
- Ensure compliance with internal and external policies, controls, and regulations.
- Coordinate responses to internal and external audits ensuring timely resolution of compliance issues.
- Maintain awareness of changes in compliance standards, regulations, and industry best practices. Communicate impacts to relevant stakeholders.
- Promote security culture through training, testing, and security awareness communications and campaigns. Administer relevant technologies.
- Track training completion and effectiveness metrics.
- Other duties as assigned.
Who You Are
Minimum Qualifications
- Bachelor's degree in Computer Science, Information Security, Business, or a GRC-related field preferred.
- 1+ years of experience in an IT, security, GRC, audit, or similar role preferred.
- Basic knowledge of cybersecurity principles and frameworks.
- Strong project management skills, with the ability to lead and execute multiple cross-functional initiatives.
Preferred Skills and Competencies
- Familiarity with security frameworks and compliance regulations such as NIST, ISO27001, COBIT, SOX, HIPAA, SOC2, PCI-DSS, CMMC is highly desired.
- Proven experience conducting risk assessments, managing compliance audits, and implementing GRC solutions highly desired.
- Experience with scripting automation, query languages, GRC platforms, and/or technical infrastructure knowledge highly desired.
- A passionate and pragmatic approach to GRC, delivering beyond "check the box" audit activities to maintain a strong security posture.
- Experience with vulnerability management tools and techniques is a strong plus.
- Experience developing training materials for large and diverse audiences in a corporate enterprise environment highly desired.
- Highly desired: Pursuing or having achieved relevant industry recognized certifications (e.g. CISA, CRISC, CISSP, Security+)
Wellbeing Means so Much More than Benefits:
- Nurse and massage therapist onsite for employees
- Cell phone reimbursement monthly
- Employee assistance program, providing free counseling, financial resilience, and legal guidance
- Ongoing learning through Linkedin Learning
Who We Are:
Steelcase is a global design and thought leader in the world of work. Along with our expansive community of brands, we design and manufacture innovative furnishings and solutions to help people do their best work in the many places where work happens.
Why People Choose to Work with Us:
At Steelcase, we put people at the center of everything we do. We understand the role of work and believe that it can bring meaning and purpose to the lives of our customers and our employees. We prioritize supporting our employees both in and out of work, in all aspects of their lives. When we bring our talents together, we make a positive lasting impact through our work and communities.
What Matters to Us:
More than qualifications, we're looking for talent and potential. We are proud to have a diverse and inclusive workforce, and we're always looking to improve our global community. We value applicants who are comfortable interacting with people different from themselves, building mutual respect and positive relationships. We invite people from all backgrounds and genders to apply. If we can make the application process easier through accommodation, please email us at myhr@steelcase.com.
Steelcase provides employment opportunities to all qualified employees and applicants without regard to race, color, creed, genetic information, religion, national origin, gender, sexual orientation, gender identity and expression, age, disability, and bases all employment decisions only on valid job requirements. We are proud to be recognized for our inclusive workforce by the Corporate Equality Index for the past nine years.
The annual base salary range for this position is $62,200.00 - $97,200.00 Please note that the salary information is a general guideline only. Steelcase considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as market and business considerations when extending an offer.
#LI-DM1 #LI-HYBRID
|