Back to all tracks

GRC

Build the policies that protect organizations. Where security meets strategy.

Governance, Risk & Compliance professionals are the strategists of cybersecurity. You'll learn to assess organizational risk, build security policies, manage compliance programs (SOC 2, ISO 27001, NIST), conduct audits, and communicate security posture to executives and regulators.

28% YoY growth in demand

1,000+ members

4 career paths

Why this track

Why choose GRC?

Every company that handles data needs GRC. With regulations multiplying globally (GDPR, CCPA, DORA, NIS2), the demand for compliance professionals is exploding. GRC roles often lead directly to CISO positions. If you want to shape security strategy rather than just execute it, this is your track.

Tools & Technologies

ISO 27001NIST Cybersecurity FrameworkSOC 2 Type IIRisk RegistersServiceNow GRCOneTrustVantaDrata

Skills You'll Build

  • Risk assessment methodology
  • Compliance framework mapping
  • Policy development
  • Internal audit procedures
  • Vendor risk management
  • Executive communication
  • Control design & testing
  • Regulatory interpretation

Curriculum

Stages 5 – 9: Your GRC journey

Five intensive stages from foundations to a capstone judged by industry professionals.

5

GRC Foundations

Risk management frameworks, security governance structures, and regulatory landscape overview.

6

Compliance Programs

Build a SOC 2 compliance program from scratch. Gap analysis, control mapping, evidence collection.

7

Risk Assessment

Quantitative and qualitative risk assessments. Third-party risk management, vendor security reviews.

8

Policy & Audit

Write security policies, conduct internal audits, and prepare for external audit readiness.

9

Capstone: Full GRC Program

Design a complete GRC program for a fictional company. Present to a panel of CISOs and compliance leaders.

Career outcomes

Where GRC takes you

This track opens doors to some of the most in-demand roles in cybersecurity. Here are the career paths you can pursue.

GRC Analyst

Map controls to frameworks, manage compliance evidence, and support audit readiness

Compliance Manager

Own compliance programs end-to-end, coordinate with engineering and legal teams

Risk Manager

Identify, assess, and mitigate organizational risks across technology and operations

Security Program Manager

Drive security initiatives across the org, align security strategy with business goals

Ready to start your GRC career?

Cohort 1 applications are open. Join the GRC track and start building real-world skills from day one.