1

Grc Risk Analyst Jobs in Washington (NOW HIRING)

We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...

Cyber Risk Analyst

Chantilly, VA ยท On-site

$86K - $138K/yr

We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...

We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...

We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...

We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...

next page

Showing results 1-20

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What are GRC Risk Analysts?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in Washington look for? The top searched job categories for Grc Risk Analyst jobs in Washington are:
What cities in Washington are hiring for Grc Risk Analyst jobs? Cities in Washington with the most Grc Risk Analyst job openings:
Infographic showing various Grc Risk Analyst job openings in Washington as of June 2026, with employment types broken down into 1% As Needed, 89% Full Time, 9% Part Time, and 1% Contract. Highlights an 73% Physical, 8% Hybrid, and 19% Remote job distribution.
Operational Risk Analyst -Security Governance & Risk Issues Management

Operational Risk Analyst -Security Governance & Risk Issues Management

NAVA Software Solutions

Merrifield, VA โ€ข On-site

Full-time

Posted 19 days ago


Job description

NAVA Software solutions is looking for an Operational Risk Analyst -Security Governance & Risk Issues Management
Details:
Operational Risk Analyst -Security Governance & Risk Issues Management
Location: Merrifield VA - Hybrid
Duration: 12 months
Basic Purpose
This role is specifically designated as an Operational Risk Management (ORM) role for Issue Management. The Contractor Analyst will be experienced in risk management, issue management, risk and control self-assessments (RCSA), and have an understanding of security standards, and familiarity with risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework applies to the business and be able to articulate the need for issue management. The Contractor Analyst will be responsible for supporting the daily operations of issue management and partnering with groups across security, IT and business risk teams. A successful candidate will be required to research issues, support the business in ensuring issues are captured timely, ensure issues are correctly risk assessed and remediation plans are documented and align to the underlying root cause.
Responsibilities
  • Attend meetings with stakeholders within security, IT and across the credit union to assess and encourage the need for submitting issues impacting information security.
  • Aid in the development of remediation plans.
  • Facilitate root cause analysis
  • Assess the impact and likelihood of an issue and provide justification for the ratings
  • Leverage various communication channels to obtain required information.
  • Work within the Logic Manager (GRC) platform
  • Support metrics and reporting focused on issues and event processes.
  • Aid business partners in understanding the importance of issue management.
  • Keep current with Information Security best practices and industry trends, and communicate/apply these practices to policy improvements and compliance actions.
  • Perform other duties as assigned

Qualifications
  • Experience in the credit union/financial services industry with a focus on regulatory frameworks, information security assessments, and remediation activities
  • Experience managing issues from identification to remediation
  • IT Audit or first line IT or security risk experience a plus
  • Desired knowledge of NCUA, FFIEC, BSA/AML, NIST (including the Cyber Security Framework and 800 Series)
  • Effective planning and organizational skills
  • Effective research, analytical and problem solving skills
  • Strong verbal, written and interpersonal communication skills, including technical writing
  • Desired Bachelor Degree in business, information systems or related field or equivalent work/military experience
  • Ability to present findings and conclusions clearly and concisely
  • Experience in working with all levels of staff, management, stakeholders, and third parties
  • Ability to build effective relationships through rapport, trust, diplomacy, and tact
  • Strong word processing and spreadsheet software skills

NAVA Software Solutions logo

About NAVA Software Solutions

Sourced by ZipRecruiter

NAVA is a strategic partner for companies seeking to develop or customize software and products. Our team of experts leverages cutting-edge technology and deep industry knowledge to provide customized solutions that drive business success. Whether you're looking to improve your operations, increase efficiency, or bring a new product to market, NAVA has the expertise and resources to help you achieve your goals. Trust us to be your partner in software and product development.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Rocky Hill, CT, US

Social media