Information Security Governance, Risk & Compliance (GRC) Analyst Location: Rockville, MD (Hybrid/Onsite) Job Type: Contract / Full Time Client: Direct Client Certificates are mandatory to Submit.
Information Security Governance, Risk & Compliance (GRC) Analyst Location: Rockville, MD (Hybrid/Onsite) Job Type: Contract / Full Time Client: Direct Client Certificates are mandatory to Submit.
ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering the Information Security Policy Exception Program and maintaining the ...
Quick apply
ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering the Information Security Policy Exception Program and maintaining the ...
IT Security Risk and Compliance Analyst II
Silver Spring, MD · Hybrid
$91K - $125K/yr
Support the organization's Information Security, Risk and Compliance programs (e.g., Vulnerability ... Develop and analyze reports and alerts to identify gaps and propose changes to improve the ...
IT Security Risk and Compliance Analyst II
Silver Spring, MD · Hybrid
$91K - $125K/yr
Support the organization's Information Security, Risk and Compliance programs (e.g., Vulnerability ... Develop and analyze reports and alerts to identify gaps and propose changes to improve the ...
Information Security Risk Specialist
Lexington Park, MD · On-site +1
$61K - $141K/yr
Share Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
Lexington Park, MD · On-site +1
$61K - $141K/yr
Share Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
Lexington Park, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
Lexington Park, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
Lexington Park, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
Lexington Park, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist
California, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
California, MD · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Analyst - SME
Camp Springs, MD · On-site +1
Conduct comprehensive security risk assessments and gap analyses * Implement and maintain ... Security Information and Event Management (SIEM) tools * Incident response and forensics * Security ...
Information Security Analyst - SME
Camp Springs, MD · On-site +1
Conduct comprehensive security risk assessments and gap analyses * Implement and maintain ... Security Information and Event Management (SIEM) tools * Incident response and forensics * Security ...
Conduct comprehensive security risk assessments and gap analyses * Implement and maintain ... Security Information and Event Management (SIEM) tools * Incident response and forensics * Security ...
Conduct comprehensive security risk assessments and gap analyses * Implement and maintain ... Security Information and Event Management (SIEM) tools * Incident response and forensics * Security ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$61K - $141K/yr
Job Number: R0239073 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$61K - $141K/yr
Job Number: R0239073 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$99K - $225K/yr
Job Number: R0239068 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$99K - $225K/yr
Job Number: R0239068 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$99K - $225K/yr
Job Number: R0237489 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$99K - $225K/yr
Job Number: R0237489 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Lexington Park, MD · On-site
$61K - $141K/yr
Job Number: R0240701 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
Information Security Risk Specialist with Security Clearance
Lexington Park, MD · On-site
$61K - $141K/yr
Job Number: R0240701 Information Security Risk Specialist The Opportunity: Cyber threats are ... Experience with eMASS and ACAS, including analysis and prioritization of scan results, development ...
... information assurance disciplines into the system design, development, integration, and ... risk analysis and incident response. • Four (4) years experience applying security risk ...
... information assurance disciplines into the system design, development, integration, and ... risk analysis and incident response. • Four (4) years experience applying security risk ...
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Risk Manager
$155K - $165K/yr
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Quick apply
Risk Manager
$155K - $165K/yr
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Risk Manager
Rockville, MD · On-site
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Risk Manager
Rockville, MD · On-site
Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$61K - $141K/yr
Job Number: R0243510 Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem ...
Information Security Risk Specialist with Security Clearance
Saint Inigoes, MD · On-site
$61K - $141K/yr
Job Number: R0243510 Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem ...
Information Security Risk Analyst information
See Maryland salary details
$31.03 - $34.87
6% of jobs
$34.87 - $38.71
5% of jobs
$38.71 - $42.55
8% of jobs
$44.37 is the 25th percentile. Wages below this are outliers.
$42.55 - $46.38
11% of jobs
$46.38 - $50.22
12% of jobs
The median wage is $53.82 / hr.
$50.22 - $54.06
8% of jobs
$54.06 - $57.90
7% of jobs
$57.90 - $61.74
9% of jobs
$63.48 is the 75th percentile. Wages above this are outliers.
$61.74 - $65.58
17% of jobs
$65.58 - $69.42
8% of jobs
$69.42 - $73.26
7% of jobs
$31
$56
$73
How much do information security risk analyst jobs pay per hour?
What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?
| Aspect | Information Security Risk Analyst | Cybersecurity Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment teams, compliance departments | Security operations centers, incident response teams |
| Employer & Industry Usage | Financial, healthcare, government sectors | Tech companies, cybersecurity firms, enterprises |
While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.
What are the key skills and qualifications needed to thrive as an Information Security Risk Analyst, and why are they important?
What are Information Security Risk Analysts?
What Does an Information Security Risk Analyst Do?
As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.
How does an Information Security Risk Analyst typically collaborate with other departments to address security risks?

Information Security Governance, Risk & Compliance (GRC) Analyst
Rockville, MD • On-site
Other
Posted 4 days ago
Job description
Job Title: Information Security Governance, Risk & Compliance (GRC) Analyst
Location: Rockville, MD (Hybrid/Onsite)
Job Type: Contract / Full Time
Client: Direct Client
Certificates are mandatory to Submit.
Required Qualifications
- Bachelor''''s degree in Cybersecurity, Information Systems, Information Technology, Computer Science, Business Information Systems, or a related field.
- Minimum 3+ year of experience in Information Security, Cybersecurity, Governance, Risk & Compliance (GRC), Risk Management, IT Audit, Compliance, or Information Technology.
- entry level candidates with relevant internships are encouraged to apply.
Required Skills
- ServiceNow (IRM preferred)
- Governance, Risk & Compliance (GRC)
- Information Security
- Risk Management
- Information Security Policy Exceptions
- Enterprise Risk Register
- Risk Analysis & Risk Assessment
- Cybersecurity Principles
- NIST Cybersecurity Framework (CSF)
- Microsoft Office 365
- Technical Documentation
- Customer Service
- Excellent Written & Verbal Communication
Responsibilities
- Administer Information Security Policy Exception requests.
- Perform risk assessments and document findings.
- Maintain the Enterprise Risk Register using ServiceNow IRM.
- Track risk mitigation activities, approvals, and documentation.
- Generate reports, dashboards, and risk metrics.
- Collaborate with IT teams, business stakeholders, and Information Security leadership.
Preferred Certifications
- CompTIA Security+
- CISM Fundamentals (CISM-F)
- NIST Cybersecurity Framework (NCSF) Practitioner
- ISACA IT Risk Fundamentals
- ISACA Cybersecurity Audit Certificate
- HIPAA Security/Compliance Certification
About Cyquent
Sourced by ZipRecruiter
Cyquent is a Technology Enabler, providing end-to-end IT Solutions and Services. Founded in 2001, we have spent the last two decades curating our processes and expertise. Our focus on providing solutions and not just technology has been the prime distinguishing factor in the success of our clients, and therefore, in our success as well. At Cyquent, we recognize that change is the only constant. We understand that staying on top of emerging technology trends is essential for driving innovation and helping our clients accomplish their business goals.
Company size
51 - 200 Employees
Headquarters location
Rockville, MD, US
Year founded
2001