1

Governance Risk And Compliance Jobs in Virginia (NOW HIRING)

Procurement Risk & Compliance Lead

Centreville, VA · On-site

$155K/yr

Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...

Audit Compliance Analyst

Richmond, VA · On-site +1

$125K/yr

Practical experience applying governance, risk, and compliance (GRC) principles * Familiarity with governance tools such as the Unified Control Framework (UCF) and SIG * Strong collaboration ...

Risk Business Analyst

Merrifield, VA · On-site

$40 - $54/hr

Operate effectively within a technology, cybersecurity, governance, risk, and compliance environment. * Support initiatives involving information security, operational risk, technology risk ...

next page

Showing results 1-20

Governance Risk And Compliance information

See Virginia salary details

$98.2K

$190.1K

$380.7K

How much do governance risk and compliance jobs pay per year?

As of Aug 6, 2026, the average yearly pay for governance risk and compliance in Virginia is $190,118.00, according to ZipRecruiter salary data. Most workers in this role earn between $167,100.00 and $188,900.00 per year, depending on experience, location, and employer.

What are governance risk and compliance roles?

Governance, Risk, and Compliance (GRC) roles are positions within organizations focused on ensuring that business operations align with legal standards, manage risk effectively, and follow internal policies. Professionals in GRC help organizations set up frameworks to oversee compliance with laws and regulations, identify and mitigate potential risks, and establish governance structures to guide decision-making. These roles are essential for protecting organizations from financial, legal, and reputational harm while promoting ethical practices and efficient processes.

What is the work of governance risk and compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks effectively, and maintain ethical standards. They often use tools like risk assessments, audits, and compliance frameworks to identify vulnerabilities and ensure organizational integrity.

Is governance risk and compliance a good career?

Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in industries such as finance, healthcare, and technology. It requires skills in regulatory knowledge, risk assessment, and often certifications like CISA or CRISC, making it a stable and in-demand career path for those interested in organizational integrity and security.

What are the key skills and qualifications needed to thrive as a governance risk and compliance professional?

To thrive as a Governance, Risk, and Compliance (GRC) professional, you need a solid understanding of regulatory frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in business, finance, or a related field. Familiarity with GRC platforms (like RSA Archer or MetricStream), audit management tools, and relevant certifications such as CISA, CRISC, or CISSP is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These skills are crucial for identifying risks, ensuring organizational compliance, and supporting informed decision-making to protect the business.

What are some common challenges faced by professionals in governance risk and compliance roles, and how can they be addressed?

Professionals in Governance, Risk, and Compliance (GRC) roles often face challenges such as staying updated with changing regulations, ensuring company-wide adherence to policies, and managing cross-functional collaboration. To address these, GRC specialists must develop strong communication skills to educate and train staff, leverage technology to automate compliance tracking, and build effective relationships with departments such as IT, legal, and operations. Regular professional development and proactive engagement with regulatory updates are also key to overcoming these challenges and maintaining effective governance.

What is the difference between Governance Risk And Compliance vs Compliance Analyst?

AspectGovernance Risk And ComplianceCompliance Analyst
CertificationsISO 31000, ISO 27001, Certified Risk Management ProfessionalCertified Compliance & Ethics Professional (CCEP), ISO 19600
Work EnvironmentCorporate, regulated industries, risk management departmentsLegal, audit, compliance departments within organizations
Employer & Industry UsageFinancial services, healthcare, energy, governmentFinancial institutions, healthcare, manufacturing, retail

Governance Risk And Compliance professionals focus on establishing frameworks, managing risks, and ensuring overall compliance strategies across organizations. Compliance Analysts primarily focus on implementing and monitoring specific compliance policies, often within legal or audit teams. While both roles require understanding regulations and certifications, Governance Risk And Compliance roles have a broader scope involving risk management and governance structures.

What are popular job titles related to Governance Risk And Compliance jobs in Virginia? For Governance Risk And Compliance jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Governance Risk And Compliance jobs in Virginia look for? The top searched job categories for Governance Risk And Compliance jobs in Virginia are:
What cities in Virginia are hiring for Governance Risk And Compliance jobs? Cities in Virginia with the most Governance Risk And Compliance job openings:
Infographic showing various Governance Risk And Compliance job openings in Virginia as of August 2026, with employment types broken down into 5% Internship, 90% Full Time, and 5% Contract. Highlights an 73% In-person, 16% Hybrid, and 11% Remote job distribution, with an average salary of $190,118 per year, or $91.4 per hour.

Governance, Risk and Compliance Analyst

Babel Street

Reston, VA

Other

Medical, Dental, Vision, Life, Retirement

Posted 21 days ago


Job description

Position Summary

The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs. This role works across Information Security, Engineering, Product, IT, and business stakeholders to ensure compliance with applicable regulatory, contractual, and industry security requirements. 

The GRC Analyst will assist in maintaining compliance with the NIST Cybersecurity Framework (NIST CSF), Cybersecurity Maturity Model Certification (CMMC), Cyber Essentials Plus, SOC 2, and ISO/IEC 27001 requirements through evidence collection, control monitoring, risk assessments, audit support, policy management, and remediation tracking. 

Key Responsibilities 

Compliance & Audit Management 

  • Maintain compliance programs aligned with NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, and ISO/IEC 27001.
  • Coordinate internal and external audits, assessments, and attestation activities.
  • Collect, validate, and maintain compliance evidence and audit artifacts.
  • Track audit findings and remediation activities through completion.
  • Support control testing and validation to ensure ongoing compliance. 

Governance & Risk Management 

  • Conduct security risk assessments and assist with enterprise risk management activities.
  • Maintain risk registers, track mitigation plans, and monitor remediation progress.
  • Assist with development and maintenance of security policies, standards, procedures, and guidelines.
  • Monitor security and compliance control effectiveness and identify opportunities for improvement.
  • Support control mapping and crosswalk activities across multiple compliance frameworks. 

Third-Party Risk Management 

  • Perform security reviews of vendors, suppliers, and third-party service providers.
  • Track vendor assessment findings and remediation activities.
  • Support ongoing monitoring of third-party security and compliance risks. 

Customer & Regulatory Support 

  • Respond to customer security questionnaires, due diligence requests, and compliance inquiries.
  • Support sales and customer-facing teams with security documentation and assurance materials.
  • Assist with documenting compliance posture and security program maturity. 

Program Administration 

  • Maintain GRC platforms and compliance repositories.
  • Develop metrics, dashboards, and compliance reporting for management.
  • Coordinate annual security awareness, compliance, and policy review activities.
  • Support continuous improvement initiatives across the security and compliance program. 

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Business, or related field (or equivalent experience).
  • 3+years of experience in Governance, Risk, and Compliance, Information Security, Audit, or related disciplines.
  • Working knowledge of:  
    • NIST Cybersecurity Framework (CSF)
    • CMMC
    • Cyber Essentials Plus
    • ISO/IEC 27001
    • SOC 2
    • Risk assessment methodologies
  • Experience supporting audits, assessments, or certification activities. 
  • Strong written communication, documentation, and organizational skills.
  • Ability to manage multiple priorities and deadlines in a fast-paced environment. 

Benefits at Babel Street (just to name a few...)

  • Health Benefits: Babel Street covers 85-100% monthly premium costs for Medical, Dental, Vision, Life & Disability insurances - for you and your family!
  • Retirement Plans: Babel Street offers both a Traditional and Roth 401(K) with a very competitive match.
  • Unlimited Flexible Leave: We trust our employees to manage their own time and balance their personal and work lives.
  • Holidays: Babel Street provides employees with 12 paid Federal Holidays
  • Tuition Reimbursement: We are committed to investing in our employees. One way we do that is with our Tuition Reimbursement Program for continuing education.                 

Babel Street is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Further, Babel Street will not discriminate against applicants for inquiring about, discussing or disclosing their pay or, in certain circumstances, the pay of their coworker, Pay Transparency Nondiscrimination. In addition, Babel Street's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request, we will provide you with more information about such accommodations.