1

Grc In Usa Jobs in Washington (NOW HIRING)

NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, AWS GovCloud, Azure Preferred : • ... Founded in 2014, the company is headquartered in Sterling, USA, with a team of 201-500 employees.

Senior ServiceNow Developer

Chantilly, VA · On-site

$55.75 - $76.75/hr

... GRC/IRM, and SecOps. • Build custom data models and table hierarchies, develop advanced server ... Founded in 2007, the company is headquartered in Columbia, USA, with a team of 201-500 employees.

Lead Software Developer

Washington, DC · On-site

$130K - $164K/yr

... GRC tools Company : AnaVation is a trusted partner that delivers high-value, cost-effective ... Founded in 2013, the company is headquartered in Reston, USA, with a team of 51-200 employees. The ...

... GRC tools is desired Company : AnaVation is a trusted partner that delivers high-value, cost ... Founded in 2013, the company is headquartered in Reston, USA, with a team of 51-200 employees. The ...

NIST 800-53, RMF, FedRAMP, ICD 503, RSA Archer, ServiceNow GRC, Splunk, Azure Sentinel, Nessus ... Founded in 2014, the company is headquartered in Sterling, USA, with a team of 201-500 employees.

NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, Azure Sentinel, Nessus, ACAS, AWS ... Founded in 2014, the company is headquartered in Sterling, USA, with a team of 201-500 employees.

Showing results 21-40

Grc In Usa information

What is the difference between Grc In Usa vs Compliance Analyst?

AspectGRC In UsaCompliance Analyst
Required CertificationsGRC certifications, such as CRISC or CGEITCompliance certifications like CCEP or CISA
Work EnvironmentCorporate, risk management, and audit settingsRegulatory agencies, corporate compliance departments
Industry UsageUsed across finance, healthcare, and technology sectorsPrimarily in finance, healthcare, and manufacturing
Search & Comparison IntentUnderstanding GRC roles vs compliance roles in the USComparing compliance responsibilities with GRC functions

GRC In Usa professionals focus on governance, risk management, and compliance strategies, often requiring certifications like CRISC. Compliance Analysts concentrate on regulatory adherence and may hold certifications such as CCEP. While both roles operate within similar industries and environments, GRC roles have a broader scope encompassing risk management, whereas Compliance Analysts focus specifically on regulatory compliance.

What are popular job titles related to Grc In Usa jobs in Washington? For Grc In Usa jobs in Washington, the most frequently searched job titles are:
What cities in Washington are hiring for Grc In Usa jobs? Cities in Washington with the most Grc In Usa job openings:
Infographic showing various Grc In Usa job openings in Washington as of August 2026, with employment types broken down into 76% Full Time, 20% Part Time, and 4% Contract. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution.

Security Engineer

Core One

Mclean, VA • On-site

Full-time

Re-posted 6 days ago


Job description

Job Summary:
Core One is dedicated to addressing complex national security challenges through innovative solutions. They are seeking a Senior Security Engineer to support cybersecurity operations and compliance for FedRAMP-authorized systems, ensuring they meet federal security requirements while enabling secure cloud and on-premises solutions.
Responsibilities:
• Lead and support FedRAMP Moderate/High and IC ATO authorization efforts, ensuring compliance with NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements.
• Conduct risk assessments, security control assessments, gap analyses, and security architecture reviews to identify and mitigate cybersecurity risks.
• Manage the full Risk Management Framework (RMF) lifecycle, including system categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
• Develop and maintain security documentation such as SSPs, SARs, POA&Ms, and control traceability artifacts, while tracking remediation activities.
• Execute Continuous Monitoring (ConMon) programs through vulnerability assessments, compliance reviews, security control validation, and reporting.
• Lead vulnerability management activities using tools such as Nessus, ACAS, SCAP, and STIG Viewer, validating remediation and coordinating risk mitigation efforts.
• Support Security Operations and Incident Response, including threat monitoring, alert analysis, incident investigations, root cause analysis, and coordination with SOCs and government stakeholders.
• Design and assess security controls for AWS GovCloud, Azure Government, and other government cloud environments, implementing IAM, encryption, logging, and least-privilege access controls.
• Integrate security into DevSecOps and CI/CD pipelines through automated security testing, vulnerability scanning, compliance validation, and Infrastructure-as-Code security practices.
• Support audits and assessments, including 3PAO reviews, FedRAMP assessments, agency ATO reviews, and IG audits, while preparing evidence and coordinating with auditors and assessors.
• Administer and utilize governance, compliance, monitoring, and vulnerability management tools such as ServiceNow GRC, Splunk, and Azure.
• Collaborate with developers, engineers, cloud architects, ISSOs/ISSMs, compliance teams, and government stakeholders to provide cybersecurity guidance throughout system development and operations.
• Contribute to security governance, policy development, cybersecurity program maturity, and organizational security culture, while mentoring junior staff and promoting risk-informed decision-making.
Qualifications:
Required:
• Active TS/SCI with Polygraph
• Bachelor's degree or higher in Cybersecurity, IT, or related field and 5+ years' experience in Cybersecurity in federal or IC environments
• OR Masters and 3+ years of experience in Cybersecurity in federal or IC environments
• Strong Knowledge of NIST RMF (800-37), NIST 800-53 controls, and FedRAMP requirements
• At least one of the following certifications: CISM or CISA, CompTIA Security+ (baseline), Certified Authorization Professional (CAP), CCSP (cloud security)
• Experience in the following tools: NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, AWS GovCloud, Azure
Preferred:
• Experience with cloud-native security tools
• Knowledge of Zero Trust Architecture
• Experience with cross-domain solutions
• Familiarity with DevSecOps pipelines in regulated environments
Company:
Core One is the frontier of innovative ideas and creative solutions to solve our nation's most complex challenges. Founded in 2014, the company is headquartered in Sterling, USA, with a team of 201-500 employees. The company is currently Growth Stage.

Core One logo

About Core One

Sourced by ZipRecruiter

Industry

Guided missile and space vehicle manufacturing

Company size

51 - 200 Employees

Headquarters location

Sterling, VA, US