1

It Risk And Compliance Jobs in Reston, VA (NOW HIRING)

The IT Risk and Compliance Analyst position is a highly visible, client facing role which works closely with the Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager.

CRISC - Certified in Risk and Information Systems Controls * SSCP - Systems Security Certified ... Expert level understanding of the following IT Compliance frameworks and regulations and how they ...

The IT Risk and Controls Managing Consultant will support stakeholder engagement and technical ... ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS ...

Be Seen First

... k-Compliance and related audits; experience working as the corporate driver/catalyst for enterprise IT risk management (including risk mitigation-remediation planning, risk control measures, and ...

IT Advisory Manager

Chantilly, VA · On-site

$97.30K - $119.30K/yr

Job Family: IT Risk & Controls Consulting Travel Required: Up to 10% Clearance Required: Active Top ... ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS ...

IT Advisory Manager

Mclean, VA · On-site

$96K - $117.80K/yr

Job Family: IT Risk & Controls Consulting Travel Required: Up to 10% Clearance Required: Active Top ... ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS ...

next page

Showing results 1-20

It Risk And Compliance information

What are the key skills and qualifications needed to thrive as an IT Risk and Compliance professional, and why are they important?

To thrive as an IT Risk and Compliance professional, you need a solid understanding of IT governance, risk management frameworks, regulatory requirements, and a relevant degree such as in information technology, cybersecurity, or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, as well as certifications such as CISA, CRISC, or CISSP, is typically required. Strong analytical thinking, attention to detail, and effective communication help professionals excel in navigating complex regulations and collaborating with cross-functional teams. These skills and qualifications are crucial for ensuring organizational compliance, mitigating security risks, and maintaining trust with stakeholders.

How does an IT Risk and Compliance professional typically collaborate with other departments to ensure regulatory adherence?

IT Risk and Compliance professionals regularly work with teams across the organization—such as IT, legal, audit, and business operations—to identify risks, interpret regulations, and implement compliance controls. They facilitate training, conduct assessments, and coordinate responses to audits or incidents, ensuring that everyone understands their responsibilities. Effective communication and strong relationship-building skills are essential, as much of the role involves translating technical requirements into actionable steps for non-technical staff. This cross-functional collaboration helps maintain a culture of compliance and minimizes organizational risk.

What is IT Risk and Compliance?

IT Risk and Compliance refers to the process of identifying, assessing, and managing risks associated with an organization's information technology systems, while ensuring that these systems adhere to relevant laws, regulations, and internal policies. Professionals in this field work to protect sensitive data, prevent security breaches, and ensure that the organization's IT practices are compliant with industry standards such as GDPR, HIPAA, or SOX. They often conduct risk assessments, implement controls, monitor compliance, and respond to audits. The goal is to minimize potential threats to IT infrastructure and maintain the trust of customers and stakeholders.

What is the difference between It Risk And Compliance vs Cybersecurity Analyst?

AspectIt Risk And ComplianceCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, risk assessments, compliance auditsMonitoring security threats, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, financial institutions, government agencies

While both roles focus on protecting information, It Risk And Compliance emphasizes establishing policies, ensuring regulatory adherence, and managing overall risk frameworks. Cybersecurity Analysts primarily focus on identifying and mitigating security threats through technical measures. Understanding these differences helps organizations assign the right responsibilities and professionals for their security needs.

What are popular job titles related to It Risk And Compliance jobs in Reston, VA? For It Risk And Compliance jobs in Reston, VA, the most frequently searched job titles are:
What cities near Reston, VA are hiring for It Risk And Compliance jobs? Cities near Reston, VA with the most It Risk And Compliance job openings:
IT Risk and Compliance Professional

IT Risk and Compliance Professional

Two95 International Inc.

Washington, DC

$106.50K - $107K/yr

Contractor

Posted 8 days ago


Job description

Title: IT Risk and Compliance Professional

Location: Washington, DC

Duration: 6+ Months

Description
The IT risk and compliance or IT audit professional will support Client's IT Risk & Compliance team in its efforts to establish an ongoing monitoring program over its information technology general controls (ITGCs) pervasive to our financial reporting objectives. Responsibilities include:

  • Executing test plans to evaluate the design and operating effectiveness of ITGCs
  • Evaluating test results to identify control gaps and control improvement opportunities
  • Perform monitoring activities to ensure that established controls continue to operate effectively over time
  • Assist with assessing risks and recommending control improvements
  • Prepare lead sheets, maintain audit documentation and working papers to support the conclusion reached
  • Draft findings and communicate recommendations

Requirements

  • Bachelor's degree in accounting, accounting information systems or computer science.
  • 5 or more years of IT internal/external audit experience (internal audit or risk management experience with a public company is preferable)
  • CISA certification
    • Experience performing integrated audits
    • Familiarity with the risk-based audit approach
    • Familiarity with industry frameworks (e.g. COSO, COBIT, NIST, etc.), best practices and methodologies
  • Proven interpersonal skills
  • Demonstrated ability to execute and deliver under challenging circumstances
  • Excellent communication skills - written and oral
  • Strong hands-on experience with Sarbanes Oxley (SOX) compliance
  • Strong ITGC testing experience

TWO95 International logo

About TWO95 International

Sourced by ZipRecruiter

At TWO95 International, we believe it is imperative that a hiring company is assured of procuring the right candidate to fill a job requirement. We have an extensive local and International network, and a fully digitalized sourcing approach that allows us to find a candidate best suited for the job. Furthermore, we strive to secure well matched opportunities that align with the personal and career aspirations of our candidates.

Industry

Recruiting and staffing services

Company size

11 - 50 Employees

Headquarters location

Cherry Hill, NJ, US

Year founded

2009

Social media