1

Governance Risk Compliance Manager Jobs in Silver Spring, MD

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

The Counsel, AI Risk & Compliance serve at the intersection of legal, technology, risk management ... governance and plays a central role in enabling innovation while helping the firm manage legal ...

AI Governance Coordinator

Baltimore, MD ยท Remote

$44/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Bachelor's degree in Business, Information Systems, Risk Management, or related field (or equivalent experience) * 3-5 years of experience in business analysis, governance, risk, or compliance in a ...

Showing results 21-40

Governance Risk Compliance Manager information

See Silver Spring, MD salary details

$39.8K

$98.3K

$162.3K

How much do governance risk compliance manager jobs pay per year?

As of Aug 16, 2026, the average yearly pay for governance risk compliance manager in Silver Spring, MD is $98,315.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,400.00 and $120,400.00 per year, depending on experience, location, and employer.

What does a Governance Risk Compliance (GRC) manager do?

A Governance Risk Compliance (GRC) Manager is responsible for developing, implementing, and overseeing policies and procedures to ensure that an organization complies with regulatory requirements and manages risks effectively. They work closely with various departments to identify potential risks, ensure proper governance frameworks are in place, and monitor compliance with relevant laws and standards. GRC Managers play a key role in maintaining ethical practices, preventing legal issues, and helping organizations achieve their business objectives securely and efficiently.

How does a Governance Risk Compliance (GRC) manager typically collaborate with other departments to ensure effective risk management?

A GRC Manager works closely with various departments such as IT, legal, finance, and operations to identify, assess, and mitigate risks across the organization. This often involves facilitating cross-departmental meetings, guiding teams through compliance requirements, and ensuring that controls are implemented effectively. Strong communication and project management skills are essential, as GRC Managers must translate complex regulatory requirements into actionable steps for different teams. This collaborative approach helps ensure that risk management strategies are integrated into daily business processes and that compliance goals are met organization-wide.

What are the key skills and qualifications needed to thrive as a Governance Risk Compliance manager, and why are they important?

To thrive as a Governance Risk Compliance Manager, you need expertise in risk assessment, regulatory frameworks, and compliance management, typically supported by a degree in business, law, or a related field. Familiarity with GRC platforms (like RSA Archer or MetricStream), internal audit tools, and relevant certifications such as CISA, CISM, or CRISC is common. Strong analytical thinking, attention to detail, and effective communication help manage complex regulations and drive organizational compliance culture. These skills ensure the organization can proactively identify risks, comply with legal requirements, and maintain operational integrity.

What is the difference between Governance Risk Compliance Manager vs Compliance Analyst?

AspectGovernance Risk Compliance ManagerCompliance Analyst
CertificationsISO 31000, CRISC, CISACCA, CCEP, or similar
Work EnvironmentStrategic, managerial, policy-focusedOperational, detail-oriented, audit-focused
Employer & Industry UsageFinancial, healthcare, corporate sectorsRegulatory agencies, corporations, consulting firms
Search & Comparison IntentUnderstanding managerial roles in governance and riskDetailing compliance procedures and analysis

The Governance Risk Compliance Manager oversees organizational policies, risk management strategies, and compliance frameworks at a strategic level. In contrast, the Compliance Analyst focuses on implementing and monitoring compliance procedures, conducting audits, and ensuring adherence to regulations. Both roles require relevant certifications and are vital in maintaining organizational integrity, but they differ in scope and responsibilities.

Is governance risk compliance a good career?

A career as a Governance, Risk, and Compliance (GRC) Manager is considered stable and in demand, especially in regulated industries like finance and healthcare. It involves developing policies, managing compliance frameworks, and using tools like audit software, often requiring certifications such as CISA or CRISC. The role offers opportunities for advancement and specialization in areas like cybersecurity or internal audit.

What are the most commonly searched types of Governance Risk Compliance jobs in Silver Spring, MD?

The most popular types of Governance Risk Compliance jobs in Silver Spring, MD are:

What are popular job titles related to Governance Risk Compliance Manager jobs in Silver Spring, MD?

For Governance Risk Compliance Manager jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Governance Risk Compliance Manager jobs in Silver Spring, MD look for?

The top searched job categories for Governance Risk Compliance Manager jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Governance Risk Compliance Manager jobs?

Cities near Silver Spring, MD with the most Governance Risk Compliance Manager job openings:

IT Risk & Compliance Analyst

NORC at the University of Chicago

Washington, DC โ€ข On-site

$106K - $107K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 26 days ago


Job description

JOB SUMMARY: NORC at the University of Chicago is seeking an IT Risk & Compliance Analyst to join our DSS Security & Compliance team. This role is primarily responsible for supporting NORC's FedRAMP Continuous Monitoring Program, ensuring the ongoing effectiveness of security controls and maintaining compliance with FedRAMP requirements. Working closely with engineering, cloud operations, infrastructure, development, and business teams, the analyst will help assess security control effectiveness, coordinate compliance activities, collect and validate evidence, track remediation efforts, and support ongoing audit readiness. In addition to FedRAMP, the role supports NORC's enterprise governance, risk, and compliance (GRC) program across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific security requirements. The successful candidate will contribute to the continued maturity of NORC's security compliance program by improving continuous monitoring processes, strengthening governance practices, developing compliance metrics, and identifying opportunities to automate and streamline compliance activities. Citizenship: U.S. Citizenship required due to federal project requirements. DEPARTMENT: Digital Data Services & Solutions (DDS) NORC's Digital Services & Solutions (DSS) organization provides enterprise technology services that enable research, innovation, and client success. The Security & Compliance team partners across the organization to strengthen cybersecurity, reduce organizational risk, and maintain compliance with government, client, and industry security requirements. RESPONSIBILITIES: Serve as a primary contributor to NORC's FedRAMP Continuous Monitoring Program, coordinating recurring activities required to maintain FedRAMP authorization. Coordinate monthly, quarterly, annual, and ongoing FedRAMP Continuous Monitoring activities, including evidence collection, security control assessments, vulnerability management, POA&M management, metrics reporting, and security documentation updates. Monitor the effectiveness of administrative, technical, and operational security controls across cloud and enterprise environments. Partner with engineering, cloud, infrastructure, and operations teams to validate security controls, resolve compliance findings, and improve overall security posture. Track security findings, vulnerabilities, and remediation efforts to ensure compliance with FedRAMP and other applicable security requirements. Develop, review, validate, and maintain security documentation, including policies, standards, procedures, System Security Plans (SSPs), control implementation statements, and supporting compliance evidence. Support internal and external audits by coordinating evidence requests, responding to assessor questions, and managing remediation activities. Assist in developing compliance dashboards, metrics, and executive reporting that measure security posture, control effectiveness, and continuous monitoring performance. Support governance and compliance initiatives across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific requirements. Identify opportunities to improve compliance processes through automation, standardization, and continuous improvement. Provide guidance to technical and business teams regarding security requirements, compliance obligations, and cybersecurity best practices. Support Authorization to Operate (ATO) activities, annual assessments, and significant system changes as needed. REQUIRED SKILLS: Education & Certifications Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent professional experience). CAP, CGRC, CISSP, CISM, CISA or other cybersecurity certification preferred. 1. FedRAMP Continuous Monitoring & Compliance (Primary Focus) Minimum of two years of experience supporting cybersecurity, governance, risk, or compliance programs. Experience supporting or maintaining a FedRAMP Authorized or FedRAMP Ready cloud environment is strongly preferred. Knowledge of FedRAMP Continuous Monitoring requirements, including monthly, quarterly, annual, and significant change activities. Experience coordinating evidence collection, security control assessments, vulnerability management, remediation tracking, POA&M management, and compliance reporting. Experience monitoring security control effectiveness and partnering with technical teams to resolve compliance findings. Experience supporting internal or external assessments and audit activities. Familiarity with FedRAMP templates, documentation, assessment processes, and security reporting. Familiarity with vulnerability management platforms, cloud security technologies, configuration compliance tools, endpoint security, and security monitoring solutions. 2. Security Governance & Compliance Strong understanding of cybersecurity governance principles and security compliance frameworks including NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and related industry standards. Experience developing, reviewing, or maintaining security documentation including policies, standards, procedures, security plans, control documentation, and compliance evidence. Experience supporting governance processes that improve compliance consistency, audit readiness, and operational maturity. Experience using Governance, Risk, and Compliance (GRC) platforms such as CSAM, ServiceNow GRC, Archer, or similar solutions. Experience supporting internal and external audits and working with customers, assessors, auditors, or Third-Party Assessment Organizations (3PAOs) is preferred. 3. Risk Management Experience conducting or supporting security risk assessments, security impact analyses, and control gap assessments. Ability to identify security risks, assess business impact, and recommend practical remediation strategies. Experience reviewing vulnerability findings and supporting remediation activities. Understanding of enterprise risk management methodologies and cybersecurity risk management principles. 4. Communication & Collaboration Strong written and verbal communication skills. Ability to communicate technical security concepts to both technical and non-technical audiences. Experience collaborating with engineering, infrastructure, cloud operations, software development, business stakeholders, and leadership teams. Strong organizational skills with the ability to manage multiple priorities in a fast-paced, highly regulated environment. Experience coordinating cross-functional initiatives and driving remediation efforts to completion. 5. Authorization to Operate (ATO) Support Familiarity with the Authorization to Operate (ATO) process, NIST Risk Management Framework (RMF), FISMA, and FedRAMP authorization processes. Experience assisting with System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), or related authorization documentation. Experience supporting annual assessments, ongoing authorization activities, or significant system changes is preferred. SALARY AND BENEFITS: The pay range for this position is $77,000 โ€“ $95,000. This position is classified as regular. Regular staff are eligible for NORCโ€™s comprehensive benefits program. Benefits include, but are not limited to: Generously subsidized health insurance, effective on the first day of employment Dental and vision insurance A defined contribution retirement program, along with a separate voluntary 403(b) retirement program Group life insurance, long-term and short-term disability insurance Benefits that promote work/life balance, including generous paid time off, holidays; paid parental leave, bereavement leave, tuition assistance, and an Employee Assistance Program (EAP). NORC is committed to equity and transparency in its pay practices. We publish salary ranges and benefit information for every job. The listed hiring range reflects what we, in good faith, expect to pay at the time of posting, though actual compensation may vary and may be adjusted over time. A candidateโ€™s placement within the range depends on factors such as competencies, education, qualifications, experience, skills, performance, and organizational needs. WHAT WE DO: NORC at the University of Chicago is an objective, non-partisan research institution that delivers reliable data and rigorous analysis to guide critical programmatic, business, and policy decisions. Since 1941, our teams have conducted groundbreaking studies, created and applied innovative methods and tools, and advanced principles of scientific integrity and collaboration. Today, government, corporate, and nonprofit clients around the world partner with us to transform increasingly complex information into useful knowledge. WHO WE ARE: For over 80 years, NORC has evolved in many ways, moving the needle with research methods, technical applications and groundbreaking research findings. But our tradition of excellence, passion for innovation, and commitment to collegiality have remained constant components of who we are as a brand, and who each of us is as a member of the NORC team. With world-class benefits, a business casual environment, and an emphasis on continuous learning, NORC is a place where people join for the stellar research and analysis work for which weโ€™re known, and stay for the relationships they form with their colleagues who take pride in the impact their work is making on a global scale. EEO STATEMENT: NORC is an equal opportunity employer. NORC evaluates qualified applicants without regard to race, color, religion, sex, gender, national origin, disability, status as a protected veteran, sexual orientation, and other legally protected characteristics.