1

Grc Manager Jobs in Virginia (NOW HIRING)

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Own and manage FedRAMP and related authorization programs end to end, including relationships with ...

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization ... Own and manage FedRAMP and related authorization programs end to end, including relationships with ...

As a Principal Program Manager on the Cybersecurity Risk team, you will own and evolve our ... About You Basic Qualifications * 12+ years experience in GRC, leading GRC initiatives, developing ...

As a Principal Program Manager on the Cybersecurity Risk team, you will own and evolve our ... About You Basic Qualifications * 12+ years experience in GRC, leading GRC initiatives, developing ...

Lead the assessment, configuration, and deployment of ServiceNow IRM, GRC, and SecOps modules, including ITSM, ITAM, CMDB, and automation workflows. * Drive continuous improvement by applying ...

Lead the assessment, configuration, and deployment of ServiceNow IRM, GRC, and SecOps modules, including ITSM, ITAM, CMDB, and automation workflows. * Drive continuous improvement by applying ...

ServiceNow Developer

Chantilly, VA

$55.25 - $76/hr

Create, manage, and deploy update sets across environments. * Develop data imports into ServiceNow GRC application tables. * Build and maintain system integrations using REST APIs and Integration Hub.

ServiceNow Developer

Falls Church, VA

$57.50 - $79.25/hr

Create, manage, and deploy update sets across environments. * Develop data imports into ServiceNow GRC application tables. * Build and maintain system integrations using REST APIs and Integration Hub.

ServiceNow Developer

West Mclean, VA

$54.50 - $75/hr

Create, manage, and deploy update sets across environments. * Develop data imports into ServiceNow GRC application tables. * Build and maintain system integrations using REST APIs and Integration Hub.

ServiceNow Developer

Great Falls, VA

$54.50 - $75/hr

Create, manage, and deploy update sets across environments. * Develop data imports into ServiceNow GRC application tables. * Build and maintain system integrations using REST APIs and Integration Hub.

ServiceNow Developer

Burke, VA · On-site

$53.25 - $73.25/hr

Create, manage, and deploy update sets across environments. * Develop data imports into ServiceNow GRC application tables. * Build and maintain system integrations using REST APIs and Integration Hub.

New

Showing results 21-40

Grc Manager information

See Virginia salary details

$27.7K

$123.7K

$188.2K

How much do grc manager jobs pay per year?

As of Aug 17, 2026, the average yearly pay for grc manager in Virginia is $123,735.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,253.00 and $160,953.00 per year, depending on experience, location, and employer.

What is a GRC manager?

A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

What does a GRC manager do?

A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.

What are the key skills and qualifications needed to thrive as a GRC manager?

To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.

What are the most commonly searched types of Grc jobs in Virginia?

The most popular types of Grc jobs in Virginia are:

What are popular job titles related to Grc Manager jobs in Virginia?

For Grc Manager jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Grc Manager jobs in Virginia look for?

The top searched job categories for Grc Manager jobs in Virginia are:

What cities in Virginia are hiring for Grc Manager jobs?

Cities in Virginia with the most Grc Manager job openings:

Infographic showing various Grc Manager job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 86% Full Time, 12% Part Time, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $123,735 per year, or $59.5 per hour.

SIPR Governance, Risk, and Compliance (GRC) & Security Specialis with Security Clearance

SPA

Arlington, VA • On-site

Other

Retirement

Re-posted 15 days ago


Job description

Overview Intrepid, an SPA Company, brings more than 20 years of experience supporting the Department of Defense and U.S. Government, consistently setting the standard for excellence in the federal marketplace. Committed to advancing the mission of the U.S. Warfighter, Intrepid leverages technological superiority to deliver innovative solutions across air, space, land, and sea domains. We are proud to foster a collaborative, dynamic work environment, offering competitive compensation and an industry-leading 401k contribution. Our team is built through merit and achievement, and we're always looking for the best and brightest to join us in our growth. We treat our people like family, we are mission-focused, and we give back! Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army Financial Management Command (USAFMCOM) , Systems Support Operations (SSO) Division. We provide effective functional systems support, user technical support, training support, and governance support of the Army's modernized and deployed FM domain ERP systems (GFEBS / GFEBS-SA / GCSS-A (Finance)), ensuring technological capabilities maturation and evolution aligns with Army and FM domain goals and objectives . SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within the U.S. Army's General Fund Enterprise Business System - Sensitive Activities (GFEBS-SA). This role requires onsite work 5 days a week in customer's SIPR location. Responsibilities Managing GRC system and its related processes: * Manage the full lifecycle of GRC tickets to support user access provisioning. * Conduct Segregation of Duties (SOD) Analysis simulations to identify and mitigate potential conflicts before assigning roles. This includes creating mock requests to troubleshoot user-reported issues. * Deliver User Support & GRC training to groups of end-users, such as Supervisors and Role Approvers. * Guide users in completing 4th Tier Hierarchy worksheets to facilitate security role updates, Developing job aids and process documentation . Working on SAP ECC/BI Security concepts and administration: * Execute SAP Transactions. * Conducging SAP Role Design & Objects. * Gathering functional requirements from business users and translating them into clear, actionable specifications for the SAP Security team. Navigating Audit & Compliance * Participating in multiple cycles of internal and external audits . * Facilitating SOC-1 and SOC-2 audits. * Conducting Control Examination related to security, availability, processing integrity, and privacy. Responsible for User Access Reviews & Systems * Conducting Critical Access Monitoring (CAM) and engaging directly with end-users. * Executing User Reaffirmation cycles, guiding users on removing unnecessary roles and resolving identified SOD conflicts. * Managing and resolving incidents in ServiceNow. As a part of FSO duties, conducting Physical Security in SCIF : * Either opening SIPR office space at 0700EST daily or close SIPR 1700EST M-F. * Creating Visitor Access Requests (VARS) and verifying background clearances. * Maintain sign-in and sign-out roster for visitors; Monitor and assist during on-site clas sified meetings. Qualifications Required Qualifications: * Active TS clearance * 10+ years of position related experience in GRC systems, SAP ECC/BI Security, Audit & Compliance, Critical Access Monitoring. * MA/MS degree The candidate must demonstrate mastery of the GRC system and its related processes: * Ticket & Workflow Management : Experience m anaging the full lifecycle of GRC tickets to support user access provisioning. Must be able to articulate the purpose of each stage in the GRC workflow. * Segregation of Duties (SOD) Analysis : Experience conducting SOD simulations to identify and mitigate potential conflicts before assigning roles. * User Support & Training : Experience delivering GRC training to groups of end-users. * Process Documentation : Experience guide users in completing 4th Tier Hierarchy worksheets to facilitate security role updates. Ability to develop job aids and process documentation (e.g., how to request a FireFighter ID). * I ssue Resolution : Understand the utilization of GRC "escape paths" to resolve complex access issues. The candidate must have a strong technical foundation in SAP ECC/BI Security concepts and administration. * SAP Transactions : Proficiency in executing and understanding the purpose of key SAP transactions, including: SE16n, SU01D, SUIM, SU53, WE02, FMZ3, and SM37. * Role Design & Objects : Experience & knowledge of SAP role design (single vs. composite) and a thorough understanding of core authorization objects (e.g., S_TABU_DIS, S_ PROGRAM, S _USR_* tables). * Requirements Translation : Proven ability to gather functional requirements from business users and translate them into clear, actionable specifications for the SAP Security team. The candidate must be experienced in Audit & Compliance , navigating the demands of both internal and external audits. * Audit Participation : Direct experience participating in multiple cycles of internal and external audits, including responding to Provided by Client (PBC) requests. * SOC Audits : Direct experience facilitating SOC-1 and SOC-2 audits in a federal environment. Must be able to articulate their specific role, contributions, and challenges faced. * Auditor Communication : Adept at discussing Segregation of Duties (SOD) controls and policies with internal and external auditors. * Control Examination : Ability to examine controls related to security, availability, processing integrity, and privacy, and provide concrete examples of evidence supplied for audit reviews such as responding to NFRs (notice of findings and recommendations), describing significance of a POAM (plan of action & milestones), and responding to PBCs (provided by client). Must be experienced in User Access Reviews & System Proficiency, in cyclical user access reviews and must be proficient in using a help desk system. * Critical Access Monitoring (CAM) : Experience with the CAM process, including its purpose, risks, and benefits, as well as engaging directly with end-users. * User Reaffirmation : Proven ability to execute User Reaffirmation cycles, guiding users on removing unnecessary roles and resolving identified SOD conflicts. * ServiceNow : Proficiency in using ServiceNow as a help desk ticketing system to manage and resolve incidents. Experience in Physical Security is a plus: * Role requires availability to either open SIPR office space at 0700EST daily or close SIPR 1700EST M-F.
* Experience using DISS: creating Visitor Access Requests (VARS) and verifying background clearances.