Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Governance & Risk Analyst
Alexandria, VA · Hybrid
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
Governance & Risk Analyst
Alexandria, VA · Hybrid
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
IT Governance and Compliance Analyst
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance.
Quick apply
IT Governance and Compliance Analyst
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance.
Director, Governance
Alexandria, VA · On-site
$110 - $126/hr
Director, Governance Full Time Director Alexandria, VA, US 4 days ago Requisition ID: 35241 Salary ... Ensure compliance with Articles of Incorporation, Bylaws, Board policies, and nonprofit regulations.
New
Director, Governance
Alexandria, VA · On-site
$110 - $126/hr
Director, Governance Full Time Director Alexandria, VA, US 4 days ago Requisition ID: 35241 Salary ... Ensure compliance with Articles of Incorporation, Bylaws, Board policies, and nonprofit regulations.
New
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Quick apply
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance. Skill Matrix: Experience with governance frameworks (COBIT, ITIL) and compliance standards (NIST, ISO). Required 10 Years Experience in ...
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance. Skill Matrix: Experience with governance frameworks (COBIT, ITIL) and compliance standards (NIST, ISO). Required 10 Years Experience in ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
In this role, you will apply your expertise in IT governance, risk management, and compliance to drive successful client engagements from initiation through delivery. You will serve as a primary ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
In this role, you will apply your expertise in IT governance, risk management, and compliance to drive successful client engagements from initiation through delivery. You will serve as a primary ...
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$100 - $130/hr
Mobility Global is developing and building its third‑party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$100 - $130/hr
Mobility Global is developing and building its third‑party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head ...
Audit Compliance Analyst
Richmond, VA · On-site +1
$125K/yr
This is a hands on, execution focused role with direct responsibility for operational delivery What ... Practical experience applying governance, risk, and compliance (GRC) principles * Familiarity with ...
Audit Compliance Analyst
Richmond, VA · On-site +1
$125K/yr
This is a hands on, execution focused role with direct responsibility for operational delivery What ... Practical experience applying governance, risk, and compliance (GRC) principles * Familiarity with ...
Identify gaps in governance, risk management, and compliance capabilities * Develop actionable recommendations to improve governance structure and compliance posture What You've Done: * 8+ years of ...
Quick apply
Identify gaps in governance, risk management, and compliance capabilities * Develop actionable recommendations to improve governance structure and compliance posture What You've Done: * 8+ years of ...
AWS Cloud Governance & Compliance Advisor (Top Secret)
Springfield, VA · On-site
$110K - $160K/yr
CISSP - broad coverage across governance, risk, and controls CISM (Certified Information Security ... emphasis Compliance-Specific: CISA (Certified Information Systems Auditor) ISO/IEC 27001 Lead ...
AWS Cloud Governance & Compliance Advisor (Top Secret)
Springfield, VA · On-site
$110K - $160K/yr
CISSP - broad coverage across governance, risk, and controls CISM (Certified Information Security ... emphasis Compliance-Specific: CISA (Certified Information Systems Auditor) ISO/IEC 27001 Lead ...
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. * Hands-on experience administering, implementing, or utilizing Governance ...
Director, Cybersecurity and IT Risk Management
Vienna, VA · On-site
$170K - $180K/yr
... governance, incident response, third-party risk management, security awareness, and compliance ... The Director will help protect SourceAmerica's information assets, systems, mission, and federal ...
Quick apply
Director, Cybersecurity and IT Risk Management
Vienna, VA · On-site
$170K - $180K/yr
... governance, incident response, third-party risk management, security awareness, and compliance ... The Director will help protect SourceAmerica's information assets, systems, mission, and federal ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework ...
Archer Governance, Risk, and Compliance (GRC) Consultant
Reston, VA · On-site
$80K - $120K/yr
KYM is seeking a Archer Governance, Risk, and Compliance (GRC) Consultant to execute and support the implementation of a successful DHS program. Responsibilities: * Develop, administer, and configure ...
Quick apply
Archer Governance, Risk, and Compliance (GRC) Consultant
Reston, VA · On-site
$80K - $120K/yr
KYM is seeking a Archer Governance, Risk, and Compliance (GRC) Consultant to execute and support the implementation of a successful DHS program. Responsibilities: * Develop, administer, and configure ...
Director Governance Risk Compliance information
What is the difference between Director Governance Risk Compliance vs Risk Manager?
| Aspect | Director Governance Risk Compliance | Risk Manager |
|---|---|---|
| Certifications | CRC, CCEP, or similar | FRM, CRM, or similar |
| Work Environment | Strategic oversight, leadership roles | Operational risk assessment, implementation |
| Industry Usage | Financial, corporate governance, compliance-heavy sectors | Financial services, insurance, corporate risk teams |
The Director Governance Risk Compliance typically holds a senior leadership role focusing on strategic governance, compliance policies, and risk oversight. In contrast, Risk Managers are more involved in operational risk assessment and mitigation. Both roles require similar certifications and are common in regulated industries, but the Director position emphasizes leadership and strategic planning, while Risk Managers focus on day-to-day risk management activities.
What does a director of governance, risk, and compliance (GRC) do?
What are some common challenges faced by a director of governance, risk, and compliance (GRC) when aligning cross-functional teams with regulatory requirements?
What are the key skills and qualifications needed to thrive as a director of governance, risk, and compliance (GRC), and why are they important?

Full-time
Medical, Dental, Vision, Life, Retirement
Posted 25 days ago
Job description
Position Summary
The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs. This role works across Information Security, Engineering, Product, IT, and business stakeholders to ensure compliance with applicable regulatory, contractual, and industry security requirements.Â
The GRC Analyst will assist in maintaining compliance with the NIST Cybersecurity Framework (NIST CSF), Cybersecurity Maturity Model Certification (CMMC), Cyber Essentials Plus, SOC 2, and ISO/IEC 27001 requirements through evidence collection, control monitoring, risk assessments, audit support, policy management, and remediation tracking.Â
Key ResponsibilitiesÂ
Compliance & Audit ManagementÂ
- Maintain compliance programs aligned with NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, and ISO/IEC 27001.
- Coordinate internal and external audits, assessments, and attestation activities.
- Collect, validate, and maintain compliance evidence and audit artifacts.
- Track audit findings and remediation activities through completion.
- Support control testing and validation to ensure ongoing compliance.Â
Governance & Risk ManagementÂ
- Conduct security risk assessments and assist with enterprise risk management activities.
- Maintain risk registers, track mitigation plans, and monitor remediation progress.
- Assist with development and maintenance of security policies, standards, procedures, and guidelines.
- Monitor security and compliance control effectiveness and identify opportunities for improvement.
- Support control mapping and crosswalk activities across multiple compliance frameworks.Â
Third-Party Risk ManagementÂ
- Perform security reviews of vendors, suppliers, and third-party service providers.
- Track vendor assessment findings and remediation activities.
- Support ongoing monitoring of third-party security and compliance risks.Â
Customer & Regulatory SupportÂ
- Respond to customer security questionnaires, due diligence requests, and compliance inquiries.
- Support sales and customer-facing teams with security documentation and assurance materials.
- Assist with documenting compliance posture and security program maturity.Â
Program AdministrationÂ
- Maintain GRC platforms and compliance repositories.
- Develop metrics, dashboards, and compliance reporting for management.
- Coordinate annual security awareness, compliance, and policy review activities.
- Support continuous improvement initiatives across the security and compliance program.Â
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Information Systems, Business, or related field (or equivalent experience).
- 3+years of experience in Governance, Risk, and Compliance, Information Security, Audit, or related disciplines.
- Working knowledge of: Â
- NIST Cybersecurity Framework (CSF)
- CMMC
- Cyber Essentials Plus
- ISO/IEC 27001
- SOC 2
- Risk assessment methodologies
- Experience supporting audits, assessments, or certification activities.Â
- Strong written communication, documentation, and organizational skills.
- Ability to manage multiple priorities and deadlines in a fast-paced environment.Â
Benefits at Babel Street (just to name a few...)
- Health Benefits: Babel Street covers 85-100% monthly premium costs for Medical, Dental, Vision, Life & Disability insurances - for you and your family!
- Retirement Plans:Â Babel Street offers both a Traditional and Roth 401(K) with a very competitive match.
- Unlimited Flexible Leave: We trust our employees to manage their own time and balance their personal and work lives.
- Holidays: Babel Street provides employees with 12 paid Federal Holidays
- Tuition Reimbursement: We are committed to investing in our employees. One way we do that is with our Tuition Reimbursement Program for continuing education.        Â
Babel Street is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Further, Babel Street will not discriminate against applicants for inquiring about, discussing or disclosing their pay or, in certain circumstances, the pay of their coworker, Pay Transparency Nondiscrimination. In addition, Babel Street's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request, we will provide you with more information about such accommodations.
About Babel Street
Sourced by ZipRecruiter
Company size
1 - 10 Employees
Headquarters location
Reston, VA, US
Year founded
2009