Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Position Summary The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs.
Senior Analyst, Cybersecurity Governance, Risk and Compliance, Washington, DC The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related ...
Senior Analyst, Cybersecurity Governance, Risk and Compliance, Washington, DC The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related ...
Governance, Risk & Compliance (GRC) Lead, Federal
Washington, DC · Hybrid
$177K/yr
The Role We are looking for a senior Governance, Risk, and Compliance leader to own Peregrine's FedRAMP High program and establish the security and compliance foundation required to support ...
Governance, Risk & Compliance (GRC) Lead, Federal
Washington, DC · Hybrid
$177K/yr
The Role We are looking for a senior Governance, Risk, and Compliance leader to own Peregrine's FedRAMP High program and establish the security and compliance foundation required to support ...
Security Governance Risk & Compliance (GRC) Analyst
Washington, DC · On-site +1
$130K - $170K/yr
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: * Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure ...
Security Governance Risk & Compliance (GRC) Analyst
Washington, DC · On-site +1
$130K - $170K/yr
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: * Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Governance, Risk & Compliance (GRC) Lead, Federal
Washington, DC · On-site
$177K/yr
The Role We are looking for a senior Governance, Risk, and Compliance leader to own Peregrine's FedRAMP High program and establish the security and compliance foundation required to support ...
Governance, Risk & Compliance (GRC) Lead, Federal
Washington, DC · On-site
$177K/yr
The Role We are looking for a senior Governance, Risk, and Compliance leader to own Peregrine's FedRAMP High program and establish the security and compliance foundation required to support ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Quick apply
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business ... We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy ...
IT Risk & Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
In addition to FedRAMP, the role supports NORC's enterprise governance, risk, and compliance (GRC) program across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific security ...
IT Risk & Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
In addition to FedRAMP, the role supports NORC's enterprise governance, risk, and compliance (GRC) program across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific security ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
In this role, you will apply your expertise in IT governance, risk management, and compliance to drive successful client engagements from initiation through delivery. You will serve as a primary ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90 - $139/hr
In this role, you will apply your expertise in IT governance, risk management, and compliance to drive successful client engagements from initiation through delivery. You will serve as a primary ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$155K/yr
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head of ...
The Director, Federal Security Governance, Risk & Compliance (SGRC) serves as the senior accountable lead for the SGRC pillar. This role drives the strategy, risk governance, regulatory compliance ...
The Director, Federal Security Governance, Risk & Compliance (SGRC) serves as the senior accountable lead for the SGRC pillar. This role drives the strategy, risk governance, regulatory compliance ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$100 - $130/hr
Mobility Global is developing and building its third‑party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head ...
Procurement Risk & Compliance Lead
Centreville, VA · On-site
$100 - $130/hr
Mobility Global is developing and building its third‑party governance framework to support regulatory compliance, information security, and enterprise risk management. Reporting to the Global Head ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
Overview The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
Overview The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
Overview The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
Overview The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational ...
Governance, Risk, and Compliance Engineer
Washington, DC · On-site +1
$120K - $135K/yr
P. is seeking a highly skilled Governance, Risk, and Compliance (GRC) Engineer with expertise in Microsoft Purview to provide technical leadership and subject-matter expertise for our firm's data ...
Governance, Risk, and Compliance Engineer
Washington, DC · On-site +1
$120K - $135K/yr
P. is seeking a highly skilled Governance, Risk, and Compliance (GRC) Engineer with expertise in Microsoft Purview to provide technical leadership and subject-matter expertise for our firm's data ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational support for ...
Information Governance Compliance Analyst
Washington, DC · On-site
$106K - $107K/yr
The Information Governance Compliance Analyst supports the firm's Information Governance program with a focus on compliance, risk mitigation, data lifecycle management, and IG operational support for ...
Security Governance Risk & Compliance (GRC) Analyst with Security Clearance
Washington, DC · On-site
$130K - $170K/yr
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: * Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure ...
Security Governance Risk & Compliance (GRC) Analyst with Security Clearance
Washington, DC · On-site
$130K - $170K/yr
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: * Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure ...
Governance Risk Compliance information
See Springfield, VA salary details
$32.9K - $40.5K
12% of jobs
$40.5K - $48.2K
7% of jobs
$50.8K is the 25th percentile. Wages below this are outliers.
$48.2K - $55.8K
17% of jobs
$55.8K - $63.5K
10% of jobs
The median wage is $65.5K / yr.
$63.5K - $71.1K
16% of jobs
$71.1K - $78.8K
9% of jobs
$83.7K is the 75th percentile. Wages above this are outliers.
$78.8K - $86.4K
7% of jobs
$86.4K - $94.1K
5% of jobs
$94.1K - $101.7K
7% of jobs
$101.7K - $109.3K
5% of jobs
$109.3K - $117K
4% of jobs
$32.9K
$71.8K
$117K
How much do governance risk compliance jobs pay per year?
What is governance risk compliance?
What are jobs in governance risk compliance?
Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.
What are the key skills and qualifications needed to thrive as a governance risk compliance professional?
How does a governance risk compliance professional typically collaborate with other departments within an organization?
What is the difference between Governance Risk Compliance vs Risk Analyst?
| Aspect | Governance Risk Compliance | Risk Analyst |
|---|---|---|
| Certifications | CRISC, CISA, CISSP | CFA, FRM, CRISC |
| Work Environment | Corporate, regulated industries | Financial, consulting firms |
| Employer & Industry Usage | Financial institutions, healthcare, government | Banking, investment firms, insurance |
Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.
What is the work of governance risk compliance?
What are the most commonly searched types of Governance Risk Compliance jobs in Springfield, VA?
The most popular types of Governance Risk Compliance jobs in Springfield, VA are:
What cities near Springfield, VA are hiring for Governance Risk Compliance jobs?
Cities near Springfield, VA with the most Governance Risk Compliance job openings:

Full-time
Medical, Dental, Vision, Life, Retirement
Re-posted 9 days ago
Job description
Position Summary
The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs. This role works across Information Security, Engineering, Product, IT, and business stakeholders to ensure compliance with applicable regulatory, contractual, and industry security requirements.
The GRC Analyst will assist in maintaining compliance with the NIST Cybersecurity Framework (NIST CSF), Cybersecurity Maturity Model Certification (CMMC), Cyber Essentials Plus, SOC 2, and ISO/IEC 27001 requirements through evidence collection, control monitoring, risk assessments, audit support, policy management, and remediation tracking.
Key Responsibilities
Compliance & Audit Management
- Maintain compliance programs aligned with NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, and ISO/IEC 27001.
- Coordinate internal and external audits, assessments, and attestation activities.
- Collect, validate, and maintain compliance evidence and audit artifacts.
- Track audit findings and remediation activities through completion.
- Support control testing and validation to ensure ongoing compliance.
Governance & Risk Management
- Conduct security risk assessments and assist with enterprise risk management activities.
- Maintain risk registers, track mitigation plans, and monitor remediation progress.
- Assist with development and maintenance of security policies, standards, procedures, and guidelines.
- Monitor security and compliance control effectiveness and identify opportunities for improvement.
- Support control mapping and crosswalk activities across multiple compliance frameworks.
Third-Party Risk Management
- Perform security reviews of vendors, suppliers, and third-party service providers.
- Track vendor assessment findings and remediation activities.
- Support ongoing monitoring of third-party security and compliance risks.
Customer & Regulatory Support
- Respond to customer security questionnaires, due diligence requests, and compliance inquiries.
- Support sales and customer-facing teams with security documentation and assurance materials.
- Assist with documenting compliance posture and security program maturity.
Program Administration
- Maintain GRC platforms and compliance repositories.
- Develop metrics, dashboards, and compliance reporting for management.
- Coordinate annual security awareness, compliance, and policy review activities.
- Support continuous improvement initiatives across the security and compliance program.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Information Systems, Business, or related field (or equivalent experience).
- 3+years of experience in Governance, Risk, and Compliance, Information Security, Audit, or related disciplines.
- Working knowledge of:
- NIST Cybersecurity Framework (CSF)
- CMMC
- Cyber Essentials Plus
- ISO/IEC 27001
- SOC 2
- Risk assessment methodologies
- Experience supporting audits, assessments, or certification activities.
- Strong written communication, documentation, and organizational skills.
- Ability to manage multiple priorities and deadlines in a fast-paced environment.
Benefits at Babel Street (just to name a few...)
- Health Benefits: Babel Street covers 85-100% monthly premium costs for Medical, Dental, Vision, Life & Disability insurances - for you and your family!
- Retirement Plans: Babel Street offers both a Traditional and Roth 401(K) with a very competitive match.
- Unlimited Flexible Leave: We trust our employees to manage their own time and balance their personal and work lives.
- Holidays: Babel Street provides employees with 12 paid Federal Holidays
- Tuition Reimbursement: We are committed to investing in our employees. One way we do that is with our Tuition Reimbursement Program for continuing education.
Babel Street is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Further, Babel Street will not discriminate against applicants for inquiring about, discussing or disclosing their pay or, in certain circumstances, the pay of their coworker, Pay Transparency Nondiscrimination. In addition, Babel Street's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request, we will provide you with more information about such accommodations.
About Babel Street
Sourced by ZipRecruiter
Company size
1 - 10 Employees
Headquarters location
Reston, VA, US
Year founded
2009