1

It Risk Compliance Jobs in Washington, DC (NOW HIRING)

A financial services organization in Virginia is seeking an IT Risk & Controls Analyst to join their team in Vienna. About the Opportunity: * Schedule: Monday to Friday * Hours: Standard business

Be Seen First

Experience leading ongoing self-audits and updates to documentation and plans surrounding risk, compliance, IT Security, R&D Information Sharing and related areas; experience with NIST and or CMMC ...

The Counsel, AI Risk & Compliance serve at the intersection of legal, technology, risk management ... Partner closely with IT, Information Security, Procurement, Marketing and Business Development ...

IT Advisory Manager

Mclean, VA ยท On-site

$110 - $150/hr

**Job Family:**IT Risk & Controls Consulting**Travel Required:**Up to 10%**Clearance Required ... ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS ...

next page

Showing results 1-20

It Risk Compliance information

See Washington, DC salary details

$33.3K

$124.6K

$216.3K

How much do it risk compliance jobs pay per year?

As of Aug 30, 2026, the average yearly pay for it risk compliance in Washington, DC is $124,641.00, according to ZipRecruiter salary data. Most workers in this role earn between $94,482.00 and $154,070.00 per year, depending on experience, location, and employer.

What is IT Risk Compliance?

IT Risk Compliance refers to the process of identifying, assessing, and managing risks related to information technology systems to ensure that an organization complies with internal policies, industry standards, and regulatory requirements. Professionals in this field help organizations protect sensitive data, prevent security breaches, and maintain the integrity of their IT operations. They often work closely with other departments to implement controls, conduct audits, and ensure that IT practices align with laws such as GDPR, HIPAA, or SOX. The role is critical for minimizing risks and avoiding costly penalties stemming from non-compliance.

What are the key skills and qualifications needed to thrive as an IT Risk Compliance professional?

To thrive as an IT Risk Compliance professional, you need a solid understanding of risk assessment, regulatory frameworks (like SOX, GDPR), and information security principles, often supported by a degree in IT, cybersecurity, or a related field. Familiarity with compliance management tools, risk analysis software, and certifications such as CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and articulate compliance needs to stakeholders. These competencies are crucial for safeguarding organizational data, ensuring regulatory adherence, and minimizing operational risks.

What are some common challenges faced by professionals in IT Risk Compliance roles, and how can they be addressed?

Professionals in IT Risk Compliance often encounter challenges such as staying updated with rapidly changing regulations, managing competing priorities, and ensuring organization-wide adherence to compliance standards. Navigating these obstacles requires effective communication skills, continuous professional development, and strong collaboration with IT, legal, and business units. Proactively fostering a culture of compliance and leveraging automation tools can also help streamline processes and reduce manual workload.

What is the difference between It Risk Compliance vs It Security Analyst?

AspectIt Risk ComplianceIt Security Analyst
CertificationsISO 27001, CISSP, CISACISSP, Security+
Work EnvironmentPolicy development, audits, compliance assessmentsMonitoring security systems, incident response
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

It Risk Compliance focuses on ensuring organizations adhere to regulatory standards and manage risks through policies and audits. In contrast, It Security Analysts primarily monitor and respond to security threats, implementing technical safeguards. Both roles are vital in protecting organizational assets but differ in their core responsibilities and focus areas.

What are popular job titles related to It Risk Compliance jobs in Washington, DC?

For It Risk Compliance jobs in Washington, DC, the most frequently searched job titles are:

Infographic showing various It Risk Compliance job openings in Washington, DC as of August 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $124,641 per year, or $59.9 per hour.

IT Risk Consulting Manager

Kearney & Company, P.C.

Washington, DC โ€ข On-site

$77 - $125/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

This job post hasย expired 2 days ago.ย Applications are no longer accepted.


Job description

Kearney is seeking an IT Risk Consulting Manager to join our growing consulting practice. This role is responsible for partnering with federal clients to strengthen IT governance, improve technology risk management, modernize internal control environments, and support regulatory and compliance initiatives. The Manager will support consulting engagements focused on IT risk, financial systems controls, cybersecurity governance, compliance, and remediation while also supporting internal IT audit and control assessment activities when required.

This position requires a client-focused professional who can balance strategic advisory services with handsโ€‘on delivery, build trusted relationships, and lead teams in solving complex technology and compliance challenges.

Additional skills and responsibilities are defined below:

  • Support consulting engagements that help clients strengthen IT governance, risk management, and internal control environments across enterprise applications, cloud platforms, and business systems.
  • Advise clients on designing, implementing, and maturing IT controls that support regulatory compliance, operational effectiveness, and organizational objectives.
  • Perform and oversee IT control assessments, including IT General Controls (ITGCs), Business Process Application Controls (BPACs), internal IT audits, and OMB A-123 evaluations.
  • Assess technology risks and identify practical recommendations that improve security, compliance, operational efficiency, and business resilience.
  • Partner with client executives, business stakeholders, system owners, and implementation teams to develop sustainable solutions for identified control deficiencies.
  • Collaborate with system integrators and client leadership to develop actionable remediation strategies, Plans of Action and Milestones (POA&Ms), and long-term control improvements.
  • Review remediation activities and provide guidance to ensure corrective actions effectively address root causes and satisfy compliance requirements.
  • Support financial system modernization, ERP implementations, cloud migrations, and digital transformation initiatives by integrating governance, risk, and control considerations throughout the project lifecycle.
  • Facilitate workshops, walkthroughs, risk assessments, and client meetings to evaluate business processes, system controls, and technology risks.
  • Develop executive-ready presentations, assessment reports, and client deliverables that clearly communicate risks, recommendations, and implementation priorities.
  • Mentor seniors and staffing by providing technical guidance, quality reviews, coaching, and career development.
  • Support business development activities, including proposal development, client presentations, solution design, and identification of followโ€‘on consulting opportunities.
  • Contribute to the continuous improvement of the firm's Governance, Risk, and Compliance (GRC) methodologies, templates, accelerators, and service offerings.
Qualifications Required Qualifications
  • Bachelor's degree from an accredited college/university.
  • Minimum of four years of experience in IT risk consulting, technology advisory, internal IT audit, IT compliance, or related consulting services.
  • Experience advising clients on improving and maturing IT governance, risk management, and internal control environments.
  • Experience leading IT control assessments, internal audits, or compliance evaluations involving enterprise applications, ERP systems, cloud technologies, or financial systems.
  • Strong understanding of IT General Controls (ITGCs), application controls, technology risk management, and control frameworks.
  • Experience working directly with client stakeholders, presenting recommendations, and managing consulting engagements.
  • Excellent written and verbal communication skills with the ability to translate technical concepts into businessโ€‘focused recommendations.
  • Ability to manage multiple client engagements, priorities, and project teams in a consulting environment.
  • Ability to work onsite at client locations throughout the Washington, DC metropolitan area.
  • Ability to obtain and maintain a US Security Clearance (US Citizenship Required)
  • Must have at least one professional certification such as CISA, CISSP, CRISC, CGEIT, Security+, CPA, or equivalent.
Preferred Qualifications
  • Experience supporting OMB A-123 IT evaluations within federal agencies.
  • Experience with Oracle, Oracle Cloud ERP, Oracle Federal Financials business applications.
  • Experience supporting cloud governance and security within AWS, Azure, Oracle Cloud Infrastructure (OCI), or Google Cloud Platform.
  • Experience implementing or administering Governance, Risk, and Compliance (GRC) platforms such as ServiceNow GRC, Diligent HighBond, or Archer.
  • Experience supporting FISMA, NIST Cybersecurity Framework, NIST SP 800-53, FedRAMP, or related federal compliance initiatives.
  • Bachelor's degree in information systems, Computer Science, Accounting, Business, Cybersecurity, or a related field from an accredited college/university.
Overview

Exclusively focused on the Government, Kearney & Company provides financial services, including auditing, consulting, and technology services. Our commitment to our employees and clients as well as to dedication and trust, critical values to our Firm, have led to Kearneyโ€™s recognition as one of the leading accounting firms in the country. Based on our employeesโ€™ feedback, we are also consistently rated a Best Place to Work. Employment at Kearney means a flexible, collaborative, and openโ€‘minded work environment. We hope it is your โ€œfirst easy decision.โ€ Learn more at www.kearneyco.com/careers.

The expected salary range for this position is between $77,000 and $125,000. This range is representative of base pay only and does not include straight time pay for hours worked over 40 per week, company contributions towards paid benefits, and/or bonuses. Actual compensation (meeting or exceeding the range) will be determined based on specific experience, education, work location, clearance level, and other factors permitted by law. This position is eligible for bonuses (when applicable).

We also offer a competitive benefits package that includes:

  • Medical, Dental, Vision, Life, AD&D, and Disability Insurance
  • 401(k) Retirement Plan and 529 Education Savings Plan
  • Flexible Spending & Health Savings Account
  • Accident, Critical Illness, Hospital Indemnity Insurances
  • Legal Insurance and Pet Insurance
  • Employee Assistance Program, fitness and wellness benefits, and other firm benefits.
  • Paid holidays, vacation, and sick time

Applicants have rights under Federal Employment Laws

EEO Notice

Work location is subject to change based on client requirements. Kearney & Company is an Equal Opportunity Employer and will consider all qualified applicants without regard to race, color, national origin, ethnicity, ancestry, genetic information, religion, sex, gender, gender identity, sexual orientation, marital status, pregnancy, childbirth, any medical condition related to pregnancy or childbirth, age, disability, protected veteran status, relationship or association to a protected veteran, or any other characteristic protected by local, state or federal laws, rules or regulation. Click here for more information on Kearneyโ€™s EEO Policy. If you would like to request a reasonable accommodation, regarding accessibility of our website, a modification or adjustment of the job application or interview process due to a disability, please call 703-236-2391 or email accommodations@kearneyco.com. Please be advised that this contact information is for accommodation requests only and cannot be used to inquire about the status of an application.

Family and Medical Leave Act (FMLA)

FMLA is designed to help employees balance their work and family responsibilities by allowing them to take reasonable unpaid leave for certain family and medical reasons. Kearney & Company provides eligible employees with up to 12 weeks of unpaid, jobโ€‘protected leave per year. Military family leave is available for up to 26 weeks under FMLA. Click here to learn more.

Employee Polygraph Protection Act (EPPA)

The EPPA prohibits most private employers from using lie detector tests either for preโ€‘employment screening or during the course of employment. Kearney & Company adheres all provisions of the EPPA. Click here to learn more.

#J-18808-Ljbffr