1

Governance Risk Compliance Jobs in Silver Spring, MD

The Counsel, AI Risk & Compliance serve at the intersection of legal, technology, risk management ... This role guides the evaluation, deployment, and governance of artificial intelligence tools and ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

AI Governance Coordinator Type: Contract Compensation: $44/HR Work Model: 100% Remote Role Overview ... Partner with Risk, Compliance, Privacy, and Security teams; draft clear communications and reports ...

Showing results 21-40

Governance Risk Compliance information

See Silver Spring, MD salary details

$32.6K

$71.1K

$115.8K

How much do governance risk compliance jobs pay per year?

As of Aug 22, 2026, the average yearly pay for governance risk compliance in Silver Spring, MD is $71,053.00, according to ZipRecruiter salary data. Most workers in this role earn between $50,700.00 and $89,400.00 per year, depending on experience, location, and employer.

What is governance risk compliance?

Governance, Risk, and Compliance (GRC) is a coordinated strategy that organizations use to manage overall governance, enterprise risk management, and compliance with regulations and standards. GRC professionals help organizations align their business objectives with risk management practices and regulatory requirements. This role involves identifying potential risks, implementing policies to mitigate those risks, and ensuring that the organization adheres to legal, ethical, and internal standards. Effective GRC management can improve decision-making, optimize processes, and protect the organization from financial or reputational harm.

What are jobs in governance risk compliance?

Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.

What are the key skills and qualifications needed to thrive as a governance risk compliance professional?

To thrive as a Governance Risk Compliance professional, you need a solid understanding of regulatory frameworks, risk management principles, and policy development, often supported by a degree in business, law, or information security. Familiarity with GRC software platforms, compliance management systems, and certifications like CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These competencies are essential for ensuring organizational compliance, minimizing risks, and maintaining robust corporate governance.

How does a governance risk compliance professional typically collaborate with other departments within an organization?

GRC professionals work closely with a variety of departments, including IT, legal, finance, and operations, to ensure that organizational policies and regulatory requirements are consistently met. Collaboration often involves leading risk assessments, facilitating compliance training, and coordinating audits to identify and mitigate potential risks. Effective communication and relationship-building are key, as GRC teams must translate complex regulations into actionable steps for different business units. This cross-functional approach helps embed a culture of compliance and risk awareness throughout the organization.

What is the difference between Governance Risk Compliance vs Risk Analyst?

AspectGovernance Risk ComplianceRisk Analyst
CertificationsCRISC, CISA, CISSPCFA, FRM, CRISC
Work EnvironmentCorporate, regulated industriesFinancial, consulting firms
Employer & Industry UsageFinancial institutions, healthcare, governmentBanking, investment firms, insurance

Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.

What is the work of governance risk compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks, and maintain ethical standards. They analyze business processes, conduct audits, and use tools like risk management software to identify vulnerabilities and ensure compliance across departments.

What are the most commonly searched types of Governance Risk Compliance jobs in Silver Spring, MD?

The most popular types of Governance Risk Compliance jobs in Silver Spring, MD are:

What are popular job titles related to Governance Risk Compliance jobs in Silver Spring, MD?

For Governance Risk Compliance jobs in Silver Spring, MD, the most frequently searched job titles are:

What cities near Silver Spring, MD are hiring for Governance Risk Compliance jobs?

Cities near Silver Spring, MD with the most Governance Risk Compliance job openings:

Infographic showing various Governance Risk Compliance job openings in Silver Spring, MD as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $71,053 per year, or $34.2 per hour.

Governance, Risk, and Compliance Engineer

Baker Botts Llp

Washington, DC • On-site, Remote

$120K - $135K/yr

Full-time

Re-posted yesterday


Job description

Baker Botts L.L.P. is seeking a highly skilled Governance, Risk, and Compliance (GRC) Engineer with expertise in Microsoft Purview to provide technical leadership and subject-matter expertise for our firm’s data governance, security, and compliance initiatives. This role will be responsible for designing, implementing, and managing Microsoft Purview solutions and Microsoft 365 security services to ensure data governance, security, and compliance initiatives. This role serves as a trusted advisor to the Office of General Counsel, eDiscovery, IT, and Information Governance stakeholders to protect sensitive data, mitigate risks, and support legal hold and eDiscovery processes. This is a Firmwide, full-time, exempt, remote position resident in our Austin, Dallas, Houston, New York, or Washington DC office with excellent benefits.

Essential Duties and Responsibilities:

  • Implement, configure, and maintain Microsoft Purview components including Data Map, Unified Catalog, Information Protection, and Compliance Manager.
  • Design and execute legal hold strategies using Purview’s eDiscovery and retention capabilities.
  • Develop and enforce data governance policies and procedures.
  • Conduct regular audits and assessments of data practices and compliance posture.
  • Generate reports and insights using Power BI and Purview dashboards.
  • Implement information protection strategies to safeguard sensitive data across Microsoft 365 and Azure environments.
  • Configure and enforce Data Loss Prevention (DLP) policies to prevent unauthorized data sharing and leakage.
  • Establish and manage data retention policies to ensure regulatory adherence.
  • Monitor and manage insider threats and respond to security alerts and incidents.
  • Develop and implement data classification and labeling strategies.
  • Continuously assess and improve the security posture of collaboration environments.
  • Experience with IAM strategies for Microsoft 365 collaboration services.
  • Familiarity with Entra ID (formerly Azure AD), including service principals, managed identities, and federation.
  • Enforce access controls and identity governance policies.
  • Collaborate with legal, IT, and governance teams to align security and compliance goals.
  • Work with workload administrators and business application owners to implement necessary controls.
  • Provide training and support to staff on data governance and security best practices.
  • Maintain detailed documentation of security policies, procedures, and incident responses.

Qualifications:

  • Bachelor’s degree in Information Technology, Computer Science, Law, or a related field required.
  • 5–8 years of experience managing and securing Microsoft 365 environments.
  • Proven expertise with Microsoft Purview, Entra ID, Exchange Online, SharePoint Online, and Exchange On-Premises.
  • Strong understanding of legal hold, privacy regulations, and compliance standards.
  • Experience with Azure Information Protection and data-at-rest encryption (e.g., Thales HSMs).
  • Proficiency in PowerShell for automation and management tasks.
  • Familiarity with identity federation and business continuity planning.

Preferred Certifications:

  • Microsoft 365 Certified: Fundamentals
  • Microsoft 365 Certified: Administrator Expert
  • Microsoft 365 Certified: Information Security Administrator Associate
  • Certified Information Privacy Professional (CIPP)
  • Certified Information Governance Professional (IGP)

Physical Demands:

  • Must be able to sit for extensive periods of time, either while using the telephone or computer.
  • Must be able to work in a high-pressure environment with time restraints and frequent interruptions.

Working Condition and Environment:

  • Work is normally performed in a typical office environment, which includes the ability to visit face-to-face and virtually with colleagues. 
  • Position is full-time and requires a five-day work week and standard hours as outlined in the Firm policy manual. Additional hours, including weekend and evening hours may be required to perform the essential functions of the job.
  • Position may require some out-of-town travel, including weekends.
  • Position is fully remote. Must have the ability to work remotely, and live within commutable distance of the office for occasional on-site attendance.

Baker Botts is committed to cultivating a culture where our attorneys and staff thrive professionally and personally. We are proud to offer a comprehensive benefits program designed to support and enhance the overall wellbeing of our employees and their families.

The salary range for this position if filled in New York is $128,000-$140,000 annually, or if filled in Washington, DC is $120,000 - $135,000 annually. The actual compensation will be based on a combination of factors.

Baker Botts L.L.P.  is an equal opportunity employer and considers all qualified applicants for employment without regard to race, color, gender, sex, age, religion, creed, national origin, citizenship, marital status, sexual orientation, disability, medical condition, military and veteran status, gender identity or expression, genetic information or any other basis protected by federal, state, or local law.