Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Governance & Risk Analyst
Alexandria, VA · Hybrid
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
Governance & Risk Analyst
Alexandria, VA · Hybrid
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Quick apply
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
IT Governance and Compliance Analyst
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance.
Quick apply
IT Governance and Compliance Analyst
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance.
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Experience: * 5-10 years in IT governance, risk, or compliance roles required. * Experience with AI Governance and Compliance in higher education or regulated environments preferred. * Education:
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Experience: * 5-10 years in IT governance, risk, or compliance roles required. * Experience with AI Governance and Compliance in higher education or regulated environments preferred. * Education:
Lead Information Security Engineer - Governance & Risk (GRC) The Lead Information Security Engineer ... Review security questionnaires, SOC reports, penetration test results, compliance certifications ...
Lead Information Security Engineer - Governance & Risk (GRC) The Lead Information Security Engineer ... Review security questionnaires, SOC reports, penetration test results, compliance certifications ...
Identify gaps in governance, risk management, and compliance capabilities * Develop actionable recommendations to improve governance structure and compliance posture What You've Done: * 8+ years of ...
Quick apply
Identify gaps in governance, risk management, and compliance capabilities * Develop actionable recommendations to improve governance structure and compliance posture What You've Done: * 8+ years of ...
AWS Cloud Governance & Compliance Advisor (Top Secret)
Springfield, VA · On-site
$110K - $160K/yr
CISSP - broad coverage across governance, risk, and controls CISM (Certified Information Security ... emphasis Compliance-Specific: CISA (Certified Information Systems Auditor) ISO/IEC 27001 Lead ...
AWS Cloud Governance & Compliance Advisor (Top Secret)
Springfield, VA · On-site
$110K - $160K/yr
CISSP - broad coverage across governance, risk, and controls CISM (Certified Information Security ... emphasis Compliance-Specific: CISA (Certified Information Systems Auditor) ISO/IEC 27001 Lead ...
Archer Governance, Risk, and Compliance (GRC) Consultant
Reston, VA · On-site
$80K - $120K/yr
KYM is seeking a Archer Governance, Risk, and Compliance (GRC) Consultant to execute and support the implementation of a successful DHS program. Responsibilities: * Develop, administer, and configure ...
Quick apply
Archer Governance, Risk, and Compliance (GRC) Consultant
Reston, VA · On-site
$80K - $120K/yr
KYM is seeking a Archer Governance, Risk, and Compliance (GRC) Consultant to execute and support the implementation of a successful DHS program. Responsibilities: * Develop, administer, and configure ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework ...
Audit Compliance Analyst
Richmond, VA · On-site +1
$125K/yr
Practical experience applying governance, risk, and compliance (GRC) principles * Familiarity with governance tools such as the Unified Control Framework (UCF) and SIG * Strong collaboration ...
Audit Compliance Analyst
Richmond, VA · On-site +1
$125K/yr
Practical experience applying governance, risk, and compliance (GRC) principles * Familiarity with governance tools such as the Unified Control Framework (UCF) and SIG * Strong collaboration ...
Risk Business Analyst
Merrifield, VA · On-site
$40 - $54/hr
Operate effectively within a technology, cybersecurity, governance, risk, and compliance environment. * Support initiatives involving information security, operational risk, technology risk ...
Risk Business Analyst
Merrifield, VA · On-site
$40 - $54/hr
Operate effectively within a technology, cybersecurity, governance, risk, and compliance environment. * Support initiatives involving information security, operational risk, technology risk ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Manager - Information Security Compliance
Reston, VA · Hybrid
$135K - $183K/yr
In this role, you will support an enterprise-wide governance, risk, and compliance program focusing on security control assurance, security risk management, policies and standards, continuous control ...
New
Manager - Information Security Compliance
Reston, VA · Hybrid
$135K - $183K/yr
In this role, you will support an enterprise-wide governance, risk, and compliance program focusing on security control assurance, security risk management, policies and standards, continuous control ...
New
Governance Risk And Compliance information
See Virginia salary details
$98.2K - $123.8K
1% of jobs
$123.8K - $149.5K
21% of jobs
$170.9K is the 25th percentile. Wages below this are outliers.
$149.5K - $175.2K
3% of jobs
The median wage is $184K / yr.
$175.2K - $200.9K
71% of jobs
$200.9K - $226.6K
0% of jobs
$226.6K - $252.3K
3% of jobs
$252.3K - $278K
0% of jobs
$278K - $303.6K
0% of jobs
$303.6K - $329.3K
0% of jobs
$329.3K - $355K
0% of jobs
$355K - $380.7K
0% of jobs
$98.2K
$190.1K
$380.7K
How much do governance risk and compliance jobs pay per year?
What are governance risk and compliance roles?
What is the work of governance risk and compliance?
Is governance risk and compliance a good career?
What are the key skills and qualifications needed to thrive as a governance risk and compliance professional?
What are some common challenges faced by professionals in governance risk and compliance roles, and how can they be addressed?
What is the difference between Governance Risk And Compliance vs Compliance Analyst?
| Aspect | Governance Risk And Compliance | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, ISO 27001, Certified Risk Management Professional | Certified Compliance & Ethics Professional (CCEP), ISO 19600 |
| Work Environment | Corporate, regulated industries, risk management departments | Legal, audit, compliance departments within organizations |
| Employer & Industry Usage | Financial services, healthcare, energy, government | Financial institutions, healthcare, manufacturing, retail |
Governance Risk And Compliance professionals focus on establishing frameworks, managing risks, and ensuring overall compliance strategies across organizations. Compliance Analysts primarily focus on implementing and monitoring specific compliance policies, often within legal or audit teams. While both roles require understanding regulations and certifications, Governance Risk And Compliance roles have a broader scope involving risk management and governance structures.

Other
Medical, Dental, Vision, Life, Retirement
Posted 21 days ago
Job description
Position Summary
The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs. This role works across Information Security, Engineering, Product, IT, and business stakeholders to ensure compliance with applicable regulatory, contractual, and industry security requirements.Â
The GRC Analyst will assist in maintaining compliance with the NIST Cybersecurity Framework (NIST CSF), Cybersecurity Maturity Model Certification (CMMC), Cyber Essentials Plus, SOC 2, and ISO/IEC 27001 requirements through evidence collection, control monitoring, risk assessments, audit support, policy management, and remediation tracking.Â
Key ResponsibilitiesÂ
Compliance & Audit ManagementÂ
- Maintain compliance programs aligned with NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, and ISO/IEC 27001.
- Coordinate internal and external audits, assessments, and attestation activities.
- Collect, validate, and maintain compliance evidence and audit artifacts.
- Track audit findings and remediation activities through completion.
- Support control testing and validation to ensure ongoing compliance.Â
Governance & Risk ManagementÂ
- Conduct security risk assessments and assist with enterprise risk management activities.
- Maintain risk registers, track mitigation plans, and monitor remediation progress.
- Assist with development and maintenance of security policies, standards, procedures, and guidelines.
- Monitor security and compliance control effectiveness and identify opportunities for improvement.
- Support control mapping and crosswalk activities across multiple compliance frameworks.Â
Third-Party Risk ManagementÂ
- Perform security reviews of vendors, suppliers, and third-party service providers.
- Track vendor assessment findings and remediation activities.
- Support ongoing monitoring of third-party security and compliance risks.Â
Customer & Regulatory SupportÂ
- Respond to customer security questionnaires, due diligence requests, and compliance inquiries.
- Support sales and customer-facing teams with security documentation and assurance materials.
- Assist with documenting compliance posture and security program maturity.Â
Program AdministrationÂ
- Maintain GRC platforms and compliance repositories.
- Develop metrics, dashboards, and compliance reporting for management.
- Coordinate annual security awareness, compliance, and policy review activities.
- Support continuous improvement initiatives across the security and compliance program.Â
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Information Systems, Business, or related field (or equivalent experience).
- 3+years of experience in Governance, Risk, and Compliance, Information Security, Audit, or related disciplines.
- Working knowledge of: Â
- NIST Cybersecurity Framework (CSF)
- CMMC
- Cyber Essentials Plus
- ISO/IEC 27001
- SOC 2
- Risk assessment methodologies
- Experience supporting audits, assessments, or certification activities.Â
- Strong written communication, documentation, and organizational skills.
- Ability to manage multiple priorities and deadlines in a fast-paced environment.Â
Benefits at Babel Street (just to name a few...)
- Health Benefits: Babel Street covers 85-100% monthly premium costs for Medical, Dental, Vision, Life & Disability insurances - for you and your family!
- Retirement Plans:Â Babel Street offers both a Traditional and Roth 401(K) with a very competitive match.
- Unlimited Flexible Leave: We trust our employees to manage their own time and balance their personal and work lives.
- Holidays: Babel Street provides employees with 12 paid Federal Holidays
- Tuition Reimbursement: We are committed to investing in our employees. One way we do that is with our Tuition Reimbursement Program for continuing education.        Â
Babel Street is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Further, Babel Street will not discriminate against applicants for inquiring about, discussing or disclosing their pay or, in certain circumstances, the pay of their coworker, Pay Transparency Nondiscrimination. In addition, Babel Street's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request, we will provide you with more information about such accommodations.
About Babel Street
Sourced by ZipRecruiter
Company size
1 - 10 Employees
Headquarters location
Reston, VA, US
Year founded
2009