1

Grc Risk Jobs in Washington, DC (NOW HIRING)

GRC Consultant / Analyst / IT Risk & Compliance role Location: Norwalk, Connecticut OR Houston, TX OR New York, NY OR Plano, TX (5 Days On-site, but some flexibility will be there) Duration: 3 Months ...

Cybersecurity GRC Manager

Washington, DC · Hybrid

$160K - $170K/yr

Tyto Athene is searching for a Cybersecurity GRC Manager to lead our ISSO team's compliance and risk management function. This is a critical mid-level leadership role responsible for maintaining ...

Cybersecurity GRC Manager

Washington, DC · On-site

$160K - $170K/yr

The GRC Manager will serve as the principal architect of our compliance, risk, and governance ecosystem, responsible for restoring discipline, transparency, and delivery excellence across all federal ...

Cybersecurity GRC Manager

Washington, DC · Hybrid

$160K - $170K/yr

The GRC Manager will serve as the principal architect of our compliance, risk, and governance ecosystem, responsible for restoring discipline, transparency, and delivery excellence across all federal ...

The Principal Governance, Risk, & Compliance (GRC) Analyst is an Individual contributor (IC) role that reports to the Manager of GRC. This role is within the team responsible for implementing and ...

New

next page

Showing results 1-20

Grc Risk information

See Washington, DC salary details

$25.5K

$133.9K

$237.8K

How much do grc risk jobs pay per year?

As of May 29, 2026, the average yearly pay for grc risk in Washington, DC is $133,939.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,700.00 and $164,200.00 per year, depending on experience, location, and employer.

What is the difference between Grc Risk vs Grc Analyst?

AspectGrc RiskGrc Analyst
CertificationsISO 31000, CRISC, COSOCISA, CRISC, CISSP
Work EnvironmentRisk management teams, compliance departmentsIT, audit, compliance teams
Industry UsageFinancial, healthcare, corporate sectorsIT, finance, consulting firms
Primary FocusIdentifying and managing enterprise risksAnalyzing controls, assessing risks in systems

Grc Risk professionals focus on enterprise-wide risk management strategies, while Grc Analysts typically analyze specific controls and systems to identify vulnerabilities. Both roles require similar certifications and often work within the same industries, but Grc Risk has a broader scope in risk oversight, whereas Grc Analysts concentrate on detailed control assessments.

What are popular job titles related to Grc Risk jobs in Washington, DC? For Grc Risk jobs in Washington, DC, the most frequently searched job titles are:
What job categories do people searching Grc Risk jobs in Washington, DC look for? The top searched job categories for Grc Risk jobs in Washington, DC are:
Governance, Risk, and Compliance (GRC) Analyst

Governance, Risk, and Compliance (GRC) Analyst

EdgeConneX

Herndon, VA

Other

Posted 4 days ago


Job description

We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a bachelor's degree or higher in a related field, and professional certifications in GRC or cybersecurity. As a GRC Analyst, you will play a pivotal role in ensuring our organization adheres to regulatory requirements, manage risks effectively, and maintain robust governance practices for industry standards, frameworks and international data protection law.

Responsibilities:

  • Develop, implement, and maintain governance, risk, and compliance frameworks, policies, standards and procedures.
  • Conduct risk assessments and analyze potential threats to the organization's information systems and business operations.
  • Monitor compliance with internal policies and external regulatory requirements (e.g., NIS2, DORA, ISO27001, AICPA Trust Principles, NIST, CIS, GDPR, SOX, HIPAA).
  • Track changes to regional data protection law in the regions where EdgeConneX operates (APAC, EU, North America and South America)
  • Collaborate with cross-functional teams to identify, assess, and mitigate risks across the organization.
  • Maintain risk registers, compliance metrics, and reporting dashboards
  • Support third-party risk management and vendor security assessments
  • Prepare and present regular reports on risk management activities, compliance status, and remediation efforts to management.
  • Support internal and external audits, including gathering documentation and facilitating audit processes.
  • Stay up to date with changes in relevant laws, regulations, and industry best practices.
  • Assist in the development and delivery of training programs related to governance, risk, and compliance topics.
  • Contribute to continuous improvement of GRC processes and tooling

Required education & experience:

  • Bachelor's degree or higher in Information Security, Computer Science, Business Administration, or a related field.
  • Minimum of 5 years of professional experience in governance, risk, and compliance or a related discipline.
  • Professional certifications such as CISA, CRISC, CISSP, CISM, ISO27001LA or similar are required.
  • Strong understanding of regulatory requirements and frameworks (e.g., ISO 27001, NIST, PCI DSS).
  • Risk assessment methodologies and control testing
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills, with the ability to work collaboratively across departments.
  • Experience with:
    • Policy development and lifecycle management
    • Third-party/vendor risk assessments
    • GRC tools and risk management platforms (e.g., DRATA, VANTA, Archer, OneTrust)
  • Detail-oriented and highly organized, with a proactive approach to identifying and managing risks.

Preferred experience:

  • Experience with GRC software platforms and tools.
  • Project management experience or certification.
  • Experience in a regulated industry (e.g., datacenter, finance, technology).
  • Ability to train and mentor junior staff.