2

Entry Level Governance Risk Compliance Jobs in Silver Spring, MD

AI Governance Sr Associate

Washington, DC · On-site

$72K - $212K/yr

In this role, you will be part of our Risk and Compliance team, where you will leverage your skills ... PwC does not intend to hire experienced or entry level job seekers who will need, now or in the ...

As an Experienced Associate, you'll contribute to projects that assess governance, risk, and ... Confirming regulatory compliance and managing risks effectively for client organizations ...

next page

Showing results 1-20

Entry Level Governance Risk Compliance information

Is governance risk and compliance a good career?

Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in risk management, regulatory adherence, and organizational governance. Entry-level roles often require knowledge of industry standards, compliance frameworks, and analytical skills, making it a stable career choice with potential for advancement in various industries.

What is an entry level governance, risk, and compliance (GRC) role?

An entry level governance, risk, and compliance (GRC) role involves helping organizations ensure they are following laws, regulations, and internal policies. In this position, you may assist with risk assessments, monitor compliance activities, prepare reports, and support audits. Entry level GRC professionals often work under supervision to learn about regulatory frameworks, company procedures, and best practices in risk management. This role is a great starting point for a career in corporate compliance, risk analysis, or internal audit.

How to get into governance risk and compliance?

To enter an entry-level governance, risk, and compliance (GRC) role, candidates typically need a bachelor's degree in fields like business, law, or cybersecurity. Gaining knowledge of regulations, risk management principles, and compliance frameworks such as ISO or GDPR, along with developing skills in auditing and using GRC tools, can improve job prospects. Certifications like CISA or CRISC can also enhance qualifications for these roles.

What are some common challenges faced by entry-level professionals in Governance, Risk, and Compliance (GRC) roles?

Entry-level GRC professionals often encounter challenges such as understanding complex regulatory frameworks and adapting to frequent changes in compliance requirements. They may also need to quickly learn how to analyze risk data and communicate findings to both technical and non-technical stakeholders. Collaborating with various departments—such as IT, legal, and operations—can be challenging at first, but it offers valuable experience in cross-functional teamwork. With time and mentorship, entry-level employees can develop a strong foundation in regulatory research, risk assessment, and policy implementation.

What is the salary of governance risk compliance?

Entry-level Governance, Risk, and Compliance (GRC) analysts typically earn between $50,000 and $70,000 annually, depending on location, industry, and certifications. Salaries can increase with experience, additional skills in compliance frameworks, and relevant certifications like CISA or CRISC.

What are the key skills and qualifications needed to thrive as an Entry Level Governance Risk Compliance professional, and why are they important?

To thrive as an Entry Level Governance Risk Compliance professional, you need a foundational understanding of risk management, internal controls, regulatory frameworks, and typically a bachelor's degree in a related field such as business, finance, or accounting. Familiarity with GRC software platforms (like RSA Archer or SAP GRC), data analysis tools, and relevant certifications (such as CRISC or CISA) can be beneficial. Strong attention to detail, analytical thinking, and effective communication skills help you interpret regulations and collaborate across departments. These competencies are crucial for ensuring organizations meet compliance standards, mitigate risks, and maintain operational integrity.

What is the difference between Entry Level Governance Risk Compliance vs Entry Level Internal Auditor?

AspectEntry Level Governance Risk ComplianceEntry Level Internal Auditor
CertificationsCompliance certifications (e.g., CCEP, CCRO)CPA, CIA (preferred but not always required)
Work EnvironmentCorporate compliance departments, risk management teamsInternal audit departments across various industries
Employer & Industry UsageFinancial services, healthcare, manufacturingFinancial institutions, government agencies, corporations
Search & Comparison IntentUnderstanding compliance roles and career pathsEvaluating internal audit responsibilities and career options

While both roles focus on organizational integrity, Governance Risk Compliance professionals primarily ensure adherence to laws and regulations, managing risks proactively. Internal Auditors evaluate internal controls and processes through audits. Entry Level GRC roles are more compliance and risk management-oriented, whereas Internal Auditors focus on assessing and improving internal controls.

Is GRC an entry level job?

Entry level Governance, Risk, and Compliance (GRC) roles are available and typically require minimal prior experience, focusing on foundational knowledge of compliance standards and risk management processes. These positions often serve as starting points for careers in GRC, with opportunities to develop skills in tools like audit software and certifications such as CISA or CRISC. Advancement usually involves gaining experience and additional certifications.
What are the most commonly searched types of Governance Risk Compliance jobs in Silver Spring, MD? The most popular types of Governance Risk Compliance jobs in Silver Spring, MD are:
What are popular job titles related to Entry Level Governance Risk Compliance jobs in Silver Spring, MD? For Entry Level Governance Risk Compliance jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Entry Level Governance Risk Compliance jobs in Silver Spring, MD look for? The top searched job categories for Entry Level Governance Risk Compliance jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Entry Level Governance Risk Compliance jobs? Cities near Silver Spring, MD with the most Entry Level Governance Risk Compliance job openings:
Infographic showing various Entry Level Governance Risk Compliance job openings in Silver Spring, MD as of July 2026, with employment types broken down into 1% As Needed, 80% Full Time, 16% Part Time, and 3% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.
Information Security Governance, Risk & Compliance (GRC) Analyst

Information Security Governance, Risk & Compliance (GRC) Analyst

ASSYST, Inc.

Rockville, MD

Full-time

Posted yesterday


Job description

ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an established enterprise Information Security Governance, Risk, and Compliance (GRC) program. This role will focus on managing Information Security Policy Exceptions and maintaining the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform.

The ideal candidate will work under the guidance of Information Security leadership to execute established governance processes, document and track information security risks, and support enterprise risk management activities. This position provides an excellent opportunity to gain hands-on experience with enterprise cybersecurity governance, information security risk management, ServiceNow IRM, and policy exception management while collaborating with experienced information security professionals.

Note: This position focuses on governance, documentation, and risk management activities. It does not involve performing security assessments, penetration testing, vulnerability assessments, audits, or compliance reviews.

Roles & Responsibilities:

  • Administer and support the Information Security Policy Exception Program.
  • Maintain and update the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform.
  • Execute established governance processes, standardized risk assessment methodologies, workflows, templates, and reporting procedures.
  • Review policy exception requests and document findings.
  • Perform information security risk analyses and provide approval or denial recommendations.
  • Document, track, and maintain identified information security risks within the enterprise Risk Register.
  • Prepare and maintain accurate policy exception tracking records.
  • Produce monthly metrics, quarterly reports, executive dashboards, and ServiceNow documentation.
  • Coordinate assigned tasks, workflows, and activities while ensuring timely completion.
  • Prepare clear and accurate technical documentation related to governance and risk management processes.
  • Collaborate with internal stakeholders to support enterprise information security governance initiatives.
  • Maintain high standards of documentation accuracy, consistency, and data integrity.
  • Provide excellent customer service while supporting governance and risk management activities.
  • Work independently while effectively managing multiple priorities and deadlines.

Required Skills & Qualifications:
Minimum Qualifications:

  • Professional experience in Information Security, IT Governance, Compliance, Risk Management, Information Technology, Audit, or a related field.
  • Basic understanding of Information Security Governance, Risk Management, and Cybersecurity principles.
  • Strong analytical and critical thinking skills.
  • Excellent written and verbal communication skills.
  • Strong organizational skills with exceptional attention to detail.
  • Ability to manage multiple priorities in a fast-paced environment.
  • Ability to quickly learn new technologies and business processes.
  • Demonstrated professionalism and ability to work independently.

Preferred Qualifications:

  • Experience using ServiceNow, preferably Integrated Risk Management (IRM).
  • Experience with Governance, Risk, and Compliance (GRC) programs or platforms.
  • Experience using Microsoft Office 365 applications.
  • Experience preparing technical documentation and reports.
  • Experience coordinating projects, tasks, or workflow activities.
  • Experience working in customer service or stakeholder-facing environments.

Knowledge & Technical Skills:

  • Cybersecurity Principles
  • Information Security Governance
  • Governance, Risk & Compliance (GRC)
  • Enterprise Risk Management
  • Risk Assessment Methodologies
  • Risk Register Management
  • ServiceNow Integrated Risk Management (IRM)
  • NIST Cybersecurity Framework (NIST CSF)
  • Risk Scoring Systems and Quantitative Risk Frameworks
  • HIPAA
  • Technical Documentation
  • Workflow Coordination
  • Microsoft Office 365

ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law.