1

Governance Risk And Compliance Jobs in Silver Spring, MD

AVP, AI Risk and Governance

Arlington, VA · On-site

$117.21 - $195.29/hr

Conduct risk assessments and gap analyses on AI solutions to identify and evaluate risks and ensure compliance with internal policies and external regulations. * Evaluate AI governance practices such ...

Demonstrated professional consulting (internal or external) experience with enterprise IT-security, information security and Governance Risk Compliance services gained in previous delivery capacity.

AVP, AI Risk and Governance

Arlington, VA · On-site +1

$117K - $195K/yr

This role involves managing and establishing AI governance frameworks, performing risk assessments, and ensuring compliance with regulatory requirements. With a strong analytical background, the AVP ...

AVP, AI Risk and Governance

Arlington, VA · On-site

$117K - $195K/yr

This role involves managing and establishing AI governance frameworks, performing risk assessments, and ensuring compliance with regulatory requirements. With a strong analytical background, the AVP ...

Showing results 41-60

Governance Risk And Compliance information

See Silver Spring, MD salary details

$102.3K

$198.2K

$397K

How much do governance risk and compliance jobs pay per year?

As of Aug 11, 2026, the average yearly pay for governance risk and compliance in Silver Spring, MD is $198,240.00, according to ZipRecruiter salary data. Most workers in this role earn between $174,200.00 and $196,900.00 per year, depending on experience, location, and employer.

What are governance risk and compliance roles?

Governance, Risk, and Compliance (GRC) roles are positions within organizations focused on ensuring that business operations align with legal standards, manage risk effectively, and follow internal policies. Professionals in GRC help organizations set up frameworks to oversee compliance with laws and regulations, identify and mitigate potential risks, and establish governance structures to guide decision-making. These roles are essential for protecting organizations from financial, legal, and reputational harm while promoting ethical practices and efficient processes.

What is the work of governance risk and compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks effectively, and maintain ethical standards. They often use tools like risk assessments, audits, and compliance frameworks to identify vulnerabilities and ensure organizational integrity.

Is governance risk and compliance a good career?

Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in industries such as finance, healthcare, and technology. It requires skills in regulatory knowledge, risk assessment, and often certifications like CISA or CRISC, making it a stable and in-demand career path for those interested in organizational integrity and security.

What are the key skills and qualifications needed to thrive as a governance risk and compliance professional?

To thrive as a Governance, Risk, and Compliance (GRC) professional, you need a solid understanding of regulatory frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in business, finance, or a related field. Familiarity with GRC platforms (like RSA Archer or MetricStream), audit management tools, and relevant certifications such as CISA, CRISC, or CISSP is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These skills are crucial for identifying risks, ensuring organizational compliance, and supporting informed decision-making to protect the business.

What are some common challenges faced by professionals in governance risk and compliance roles, and how can they be addressed?

Professionals in Governance, Risk, and Compliance (GRC) roles often face challenges such as staying updated with changing regulations, ensuring company-wide adherence to policies, and managing cross-functional collaboration. To address these, GRC specialists must develop strong communication skills to educate and train staff, leverage technology to automate compliance tracking, and build effective relationships with departments such as IT, legal, and operations. Regular professional development and proactive engagement with regulatory updates are also key to overcoming these challenges and maintaining effective governance.

What is the difference between Governance Risk And Compliance vs Compliance Analyst?

AspectGovernance Risk And ComplianceCompliance Analyst
CertificationsISO 31000, ISO 27001, Certified Risk Management ProfessionalCertified Compliance & Ethics Professional (CCEP), ISO 19600
Work EnvironmentCorporate, regulated industries, risk management departmentsLegal, audit, compliance departments within organizations
Employer & Industry UsageFinancial services, healthcare, energy, governmentFinancial institutions, healthcare, manufacturing, retail

Governance Risk And Compliance professionals focus on establishing frameworks, managing risks, and ensuring overall compliance strategies across organizations. Compliance Analysts primarily focus on implementing and monitoring specific compliance policies, often within legal or audit teams. While both roles require understanding regulations and certifications, Governance Risk And Compliance roles have a broader scope involving risk management and governance structures.

What are popular job titles related to Governance Risk And Compliance jobs in Silver Spring, MD? For Governance Risk And Compliance jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Governance Risk And Compliance jobs in Silver Spring, MD look for? The top searched job categories for Governance Risk And Compliance jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Governance Risk And Compliance jobs? Cities near Silver Spring, MD with the most Governance Risk And Compliance job openings:
Infographic showing various Governance Risk And Compliance job openings in Silver Spring, MD as of August 2026, with employment types broken down into 3% Internship, 84% Full Time, 9% Part Time, and 4% Contract. Highlights an 79% In-person, 14% Hybrid, and 7% Remote job distribution, with an average salary of $198,240 per year, or $95.3 per hour.

Manager - Information Security Compliance

Verisign

Reston, VA • Hybrid

$135K - $183K/yr

Full-time

Posted 7 days ago


Job description

Verisign is seeking a hands-on technical manager to join an impactful Information Security Governance, Risk, and Compliance (GRC) team. In this role, you will support an enterprise-wide governance, risk, and compliance program focusing on security control assurance, security risk management, policies and standards, continuous control monitoring, and ensuring compliance with internal and external security requirements.

Some immediate focus areas include:

  • Reviewing information security control design and conducting tests
  • Standing up automated evidence collection practices
  • Responding to external regulatory information requests

An ideal candidate cares deeply about automation and reducing friction. We expect the candidate to possess competencies that allow them to bring noticeable and measurable improvements in some of the above-mentioned areas. This position requires the technical depth and communication range to brief audiences from system engineers to senior leadership.

Primary Responsibilities:

  • Manage a security control assurance program, including planning and executing test procedures, assessing design and operating effectiveness, and driving identified gaps to remediation.
  • Manage compliance with external regulatory obligations, translating requirement into control objectives, coordinating regulator information requests, and tracking remediation commitments.
  • Build a continuous control monitoring program by collaborating with control and system owners and translating security control requirements into automated tests.
  • Interface directly with technical engineering teams to design and improve security controls, define implementation requirements, and determine what effective security control operations should look like.
  • Report on compliance and control assessment results, risk trends, and remediation priorities to audiences ranging from controls owners to senior leadership through clear reporting, executive briefings, and dashboards.
  • Assist with the development of enterprise information security policies and standards.
  • Lead a team of practitioners, setting priorities and quality standards, and ensuring commitments are met.

Qualifications:

  • Domain expertise in cyber security standard methodologies and security control frameworks such as CIS Controls, SOC 2/3 Trust Services Criteria, NIST Cybersecurity Framework, and NIST SP800-53; with hands-on experience testing and mapping controls across frameworks
  • Experience in a public company environment managing compliance across multiple regulatory and security frameworks
  • Technical understanding of security controls, identifying control objectives, and how to implement them in a complex enterprise IT environment
  • Ability to creatively develop and refine control tests tailored to specific control implementations
  • 8+ years progressively responsible experience in information security governance, risk, compliance, or security assessment/audit
  • 4+ years of security control assessment experience required
  • 2+ years of related experience leading or managing others
  • Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are preferred
  • Bachelor's degree in Information Systems, Computer Science, or related field, or equivalent experience, required

This position is based in our Reston, VA office and offers a hybrid work schedule.

The pay range is $135,800 - $183,800.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.