1

Grc Jobs in Silver Spring, MD (NOW HIRING)

Senior Product Manager, GRC

Mclean, VA ยท On-site

$127K - $168K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Senior Product Manager, GRC The Opportunity: Our Product team is defining a new product-led growth business within Booz Allen where you will have the opportunity to design, build, and deliver product ...

Manager, SAP Security & Controls

Washington, DC

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Plan and execute client engagements focusing on SAP security, SAP GRC, and the audit readiness of complex SAP environments (including S/4HANA) * Evaluate the design and effectiveness of SAP controls ...

The ideal candidate is an early-career information security or Governance, Risk, and Compliance (GRC) professional who possesses strong analytical, organizational, and communication skills, and is ...

Security GRC Lead

Herndon, VA ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization, sitting at the heart of our public sector growth. Our team works to maintain and expand the compliance ...

Security GRC Lead

Mclean, VA ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization, sitting at the heart of our public sector growth. Our team works to maintain and expand the compliance ...

Security GRC Lead

Washington, DC ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

The Public Sector GRC Lead role is part of Informatica's Security and Compliance organization, sitting at the heart of our public sector growth. Our team works to maintain and expand the compliance ...

Senior Product Manager, GRC

Mclean, VA ยท On-site

$99 - $225/hr

  • Medical

  • Life

  • Retirement

  • PTO

... GRC) methods. You will be able to leverage the decades of experience Booz Allen has in delivering differentiated and successful compliance outcomes for customers, and reshape it. One challenge will ...

Showing results 41-60

Grc information

See Silver Spring, MD salary details

$49

$72

$83

How much do grc jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for grc in Silver Spring, MD is $72.34, according to ZipRecruiter salary data. Most workers in this role earn between $69.57 and $79.52 per hour, depending on experience, location, and employer.

What is a GRC?

A GRC (Governance, Risk, and Compliance) job involves managing an organization's policies, regulations, and risk management frameworks to ensure compliance with legal and industry standards. Professionals in this role assess risks, implement controls, and develop strategies to mitigate potential threats while aligning business operations with regulatory requirements. They often work with stakeholders across IT, security, and legal departments to maintain compliance and improve risk management processes.

What are the daily responsibilities of a GRC professional?

In a GRC position, your day-to-day tasks often include conducting risk assessments, monitoring compliance with internal policies and external regulations, and collaborating with various departments to implement controls or corrective actions. You may also manage and update policies, prepare reports for management, and respond to regulatory audits or inquiries. Additionally, GRC professionals facilitate training sessions to improve organizational awareness of risks and ensure ongoing adherence to compliance standards. The role is dynamic and involves proactive problem-solving to help keep the organization secure and compliant.

What are the key skills and qualifications needed for a GRC role?

To thrive in a GRC (Governance, Risk, and Compliance) role, you need a solid understanding of regulatory frameworks, risk assessment methodologies, and compliance standards, often supported by a degree in business, information technology, or a related field. Familiarity with GRC software platforms (such as RSA Archer, LogicGate, or MetricStream), and professional certifications like CRISC, CISA, or CISSP, are highly valued. Strong analytical thinking, attention to detail, and clear communication skills are important for interpreting regulations and working with cross-functional teams. These skills ensure that organizations manage risks effectively, meet regulatory requirements, and maintain enterprise-wide compliance.

Are GRC jobs hard to get?

GRC (Governance, Risk, and Compliance) jobs can be competitive, especially for entry-level positions, but having relevant certifications like CISA or CISSP and experience with compliance frameworks can improve your chances. The difficulty of securing a GRC role depends on your skills, education, and the current job market demand for compliance professionals.

Is GRC a good career?

GRC (Governance, Risk, and Compliance) is a growing field within cybersecurity and corporate management, focusing on ensuring organizations meet regulatory requirements and manage risks effectively. It often requires knowledge of compliance standards, risk assessment, and security frameworks, with certifications like CISA or CISSP enhancing job prospects. The career offers opportunities in various industries, with roles typically involving analysis, policy development, and audits.

Is GRC still in demand?

GRC (Governance, Risk, and Compliance) roles remain in demand as organizations prioritize cybersecurity, regulatory adherence, and risk management. Professionals with skills in compliance frameworks, audit, and security tools are sought after across various industries, especially in regulated sectors like finance and healthcare.

What are GRC jobs?

GRC jobs refer to roles focused on Governance, Risk Management, and Compliance within organizations. These positions involve developing policies, assessing risks, ensuring regulatory adherence, and often require knowledge of frameworks like ISO, COBIT, or NIST, as well as certifications such as CISA or CISSP.

What are the most commonly searched types of Grc jobs in Silver Spring, MD?

The most popular types of Grc jobs in Silver Spring, MD are:

What are popular job titles related to Grc jobs in Silver Spring, MD?

For Grc jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Grc jobs in Silver Spring, MD look for?

The top searched job categories for Grc jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Grc jobs?

Cities near Silver Spring, MD with the most Grc job openings:

Infographic showing various Grc job openings in Silver Spring, MD as of August 2026, with employment types broken down into 1% As Needed, 93% Full Time, 1% Part Time, and 5% Contract. Highlights an 75% Physical, 10% Hybrid, and 15% Remote job distribution, with an average salary of $150,457 per year, or $72.3 per hour.

SIPR Governance, Risk, and Compliance (GRC) & Security Specialis with Security Clearance

SPA

Arlington, VA โ€ข On-site

Other

Retirement

Re-posted 16 days ago


Job description

Overview Intrepid, an SPA Company, brings more than 20 years of experience supporting the Department of Defense and U.S. Government, consistently setting the standard for excellence in the federal marketplace. Committed to advancing the mission of the U.S. Warfighter, Intrepid leverages technological superiority to deliver innovative solutions across air, space, land, and sea domains. We are proud to foster a collaborative, dynamic work environment, offering competitive compensation and an industry-leading 401k contribution. Our team is built through merit and achievement, and we're always looking for the best and brightest to join us in our growth. We treat our people like family, we are mission-focused, and we give back! Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army Financial Management Command (USAFMCOM) , Systems Support Operations (SSO) Division. We provide effective functional systems support, user technical support, training support, and governance support of the Army's modernized and deployed FM domain ERP systems (GFEBS / GFEBS-SA / GCSS-A (Finance)), ensuring technological capabilities maturation and evolution aligns with Army and FM domain goals and objectives . SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within the U.S. Army's General Fund Enterprise Business System - Sensitive Activities (GFEBS-SA). This role requires onsite work 5 days a week in customer's SIPR location. Responsibilities Managing GRC system and its related processes: * Manage the full lifecycle of GRC tickets to support user access provisioning. * Conduct Segregation of Duties (SOD) Analysis simulations to identify and mitigate potential conflicts before assigning roles. This includes creating mock requests to troubleshoot user-reported issues. * Deliver User Support & GRC training to groups of end-users, such as Supervisors and Role Approvers. * Guide users in completing 4th Tier Hierarchy worksheets to facilitate security role updates, Developing job aids and process documentation . Working on SAP ECC/BI Security concepts and administration: * Execute SAP Transactions. * Conducging SAP Role Design & Objects. * Gathering functional requirements from business users and translating them into clear, actionable specifications for the SAP Security team. Navigating Audit & Compliance * Participating in multiple cycles of internal and external audits . * Facilitating SOC-1 and SOC-2 audits. * Conducting Control Examination related to security, availability, processing integrity, and privacy. Responsible for User Access Reviews & Systems * Conducting Critical Access Monitoring (CAM) and engaging directly with end-users. * Executing User Reaffirmation cycles, guiding users on removing unnecessary roles and resolving identified SOD conflicts. * Managing and resolving incidents in ServiceNow. As a part of FSO duties, conducting Physical Security in SCIF : * Either opening SIPR office space at 0700EST daily or close SIPR 1700EST M-F. * Creating Visitor Access Requests (VARS) and verifying background clearances. * Maintain sign-in and sign-out roster for visitors; Monitor and assist during on-site clas sified meetings. Qualifications Required Qualifications: * Active TS clearance * 10+ years of position related experience in GRC systems, SAP ECC/BI Security, Audit & Compliance, Critical Access Monitoring. * MA/MS degree The candidate must demonstrate mastery of the GRC system and its related processes: * Ticket & Workflow Management : Experience m anaging the full lifecycle of GRC tickets to support user access provisioning. Must be able to articulate the purpose of each stage in the GRC workflow. * Segregation of Duties (SOD) Analysis : Experience conducting SOD simulations to identify and mitigate potential conflicts before assigning roles. * User Support & Training : Experience delivering GRC training to groups of end-users. * Process Documentation : Experience guide users in completing 4th Tier Hierarchy worksheets to facilitate security role updates. Ability to develop job aids and process documentation (e.g., how to request a FireFighter ID). * I ssue Resolution : Understand the utilization of GRC "escape paths" to resolve complex access issues. The candidate must have a strong technical foundation in SAP ECC/BI Security concepts and administration. * SAP Transactions : Proficiency in executing and understanding the purpose of key SAP transactions, including: SE16n, SU01D, SUIM, SU53, WE02, FMZ3, and SM37. * Role Design & Objects : Experience & knowledge of SAP role design (single vs. composite) and a thorough understanding of core authorization objects (e.g., S_TABU_DIS, S_ PROGRAM, S _USR_* tables). * Requirements Translation : Proven ability to gather functional requirements from business users and translate them into clear, actionable specifications for the SAP Security team. The candidate must be experienced in Audit & Compliance , navigating the demands of both internal and external audits. * Audit Participation : Direct experience participating in multiple cycles of internal and external audits, including responding to Provided by Client (PBC) requests. * SOC Audits : Direct experience facilitating SOC-1 and SOC-2 audits in a federal environment. Must be able to articulate their specific role, contributions, and challenges faced. * Auditor Communication : Adept at discussing Segregation of Duties (SOD) controls and policies with internal and external auditors. * Control Examination : Ability to examine controls related to security, availability, processing integrity, and privacy, and provide concrete examples of evidence supplied for audit reviews such as responding to NFRs (notice of findings and recommendations), describing significance of a POAM (plan of action & milestones), and responding to PBCs (provided by client). Must be experienced in User Access Reviews & System Proficiency, in cyclical user access reviews and must be proficient in using a help desk system. * Critical Access Monitoring (CAM) : Experience with the CAM process, including its purpose, risks, and benefits, as well as engaging directly with end-users. * User Reaffirmation : Proven ability to execute User Reaffirmation cycles, guiding users on removing unnecessary roles and resolving identified SOD conflicts. * ServiceNow : Proficiency in using ServiceNow as a help desk ticketing system to manage and resolve incidents. Experience in Physical Security is a plus: * Role requires availability to either open SIPR office space at 0700EST daily or close SIPR 1700EST M-F.
* Experience using DISS: creating Visitor Access Requests (VARS) and verifying background clearances.