1

Crisc Jobs in Virginia (NOW HIRING)

AI Governance / Operations Manager

Chantilly, VA · On-site

$57K - $61K/yr

Professional certifications in IT governance (e.g., CGEIT, CRISC), AI ethics, or related fields, Additional certifications or training in AI/ML technologies, data privacy, and cybersecurity.

New

... CRISC). * Experience with IT concepts related to logical access, change management, IT operations, and security, as well as related risks and controls. * Familiarity with automated work papers and ...

Be Seen First

... CRISC, CSQA or similar are highly desirable. Company Description IT Professional Services Firm focused on networking, UC, Cloud, security, automation, cyber security - www.quadtec.com

Be Seen First

... CRISC, CSQA or similar are highly desirable. Company Description IT Professional Services Firm focused on networking, UC, Cloud, security, automation, cyber security - www.quadtec.com

... CRISC). * Experience with IT concepts related to logical access, change management, IT operations, and security, as well as related risks and controls. * Familiarity with automated work papers and ...

... CRISC, CISA, CISM, CISSP, CSOX, CSOXP, CSOXM OR Cloud AWS certifications. ("Sarbanes Oxley" or SOX) and Risk and Audit and (Python) and SQL and COSO

next page

Showing results 1-20

Crisc information

See Virginia salary details

$10

$16

$20

How much do crisc jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for crisc in Virginia is $16.62, according to ZipRecruiter salary data. Most workers in this role earn between $15.00 and $18.12 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in a CRISC position?

To thrive as a CRISC (Certified in Risk and Information Systems Control) professional, you need expertise in risk management, information systems controls, and business process analysis, typically underpinned by the CRISC certification. Familiarity with risk assessment tools, governance frameworks like COBIT, and IT audit systems is essential. Strong analytical thinking, effective communication, and stakeholder collaboration skills set top performers apart in this field. These skills ensure the effective identification and management of IT risks, safeguarding organizational assets and supporting compliance goals.

What are the typical daily responsibilities of someone in a CRISC role?

CRISC-certified professionals are primarily responsible for identifying, assessing, and managing enterprise IT risks on a daily basis. Their tasks often include conducting risk assessments, implementing risk mitigation strategies, updating risk registers, and ensuring that IT controls align with organizational objectives. They frequently collaborate across departments, working with IT teams, auditors, and business leaders to understand risk impact and communicate findings. This role requires staying up-to-date with regulatory changes and industry standards to ensure ongoing compliance and effective risk management.

What is a CRISC?

A CRISC (Certified in Risk and Information Systems Control) job involves identifying, assessing, and managing IT and enterprise risks. Professionals in this role develop and implement information system controls to mitigate risks and ensure compliance with industry regulations. Typical job titles include IT Risk Manager, Security Analyst, and Compliance Officer. CRISC-certified individuals work closely with stakeholders to align risk management strategies with business objectives.

What job categories do people searching Crisc jobs in Virginia look for?

The top searched job categories for Crisc jobs in Virginia are:

Infographic showing various Crisc job openings in Virginia as of August 2026, with employment types broken down into 91% Full Time, 2% Part Time, 1% Temporary, and 6% Contract. Highlights an 76% Physical, 12% Hybrid, and 12% Remote job distribution, with an average salary of $34,566 per year, or $16.6 per hour.

$45.66/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 2 days ago


Job description

Position Title: Enterprise Risk Analyst - REMOTE The experienced Risk Analyst role executes the VA Enterprise Risk Analysis process using a custom ERA tool to identify key cyber security risk factors in network connected medical devices and Special Purpose Systems (e.g., building automation systems, physical security systems, operational technology). These risk factors are summarized, evaluated, and reported using quantitative and qualitative scores to provide a VA authorizing official with awareness of the residual cyber risk prior to connecting these devices to the VA network. The Risk Analyst must acquire, review and leverage system documentation and data gathered through questionnaires and interviews with customers in the field and vendor/manufacturer representatives to accurately document critical security posture elements in a common reporting format. These elements include hardware/software inventory, communications profile, system interconnections, data types and stores, and the presence or lack of security controls, settings and mechanisms for a given device type. The Risk Analyst performs annual reviews to support effective continuous monitoring and to ensure documented residual risks are current, accurate, and complete. The analyst works within a Risk Management team and is expected to collaborate with Federal and contractor team mates to achieve best outcomes for the ERA process. You Have: Experience with Cybersecurity, risk management, or risk assessment for complex systems Experience with NIST SP 800-53 and NIST SP 800-30 Experience with documenting and depicting network topology and network protocols Ability to engage directly with clients, and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements Bachelor’s degree in Computer Science, Mathematics, Engineering or technical discipline and 10 years of relevant work experience or 18 years of relevant work experience in lieu of degree Nice If You Have: Experience with cybersecurity analysis of medical technology or Internet of Things (IoT) Experience with Governance, Risk, and Compliance (GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio CompTIA Security+ or Certified Risk Management Professional (CRISC) or Certified in Risk and Information Systems Control (CRISC) Public Trust clearance Hourly rate of pay: $45.66 Benefits: PTO, Medical/Vision/Dental plan, Life and AD&D insurance, 401K plan We are an Equal Opportunity Employer: We do not discriminate in employment opportunities or practices on the basis of race, color, religion, sex, national origin, age, disability, genetic information or any other characteristics protected by law.  This organization participates in E-Verify. #DICE