1

Overnight Governance Risk Compliance Jobs in Reston, VA

next page

Showing results 1-20

Overnight Governance Risk Compliance information

See Reston, VA salary details

$32.8K

$71.5K

$116.5K

How much do overnight governance risk compliance jobs pay per year?

As of Sep 14, 2026, the average yearly pay for overnight governance risk compliance in Reston, VA is $71,505.00, according to ZipRecruiter salary data. Most workers in this role earn between $51,000.00 and $90,000.00 per year, depending on experience, location, and employer.

What is an overnight governance risk compliance role?

Overnight Governance Risk Compliance roles are positions responsible for monitoring and ensuring that an organization adheres to regulatory, legal, and internal policy requirements during overnight hours. Professionals in these roles often review transactions, assess risks, respond to compliance alerts, and implement controls to prevent violations outside of standard business hours. Their work helps organizations maintain operational integrity, identify potential risks early, and ensure continuous compliance with industry standards and regulations.

What are the key skills and qualifications needed to thrive as an overnight governance risk compliance professional?

To excel as an Overnight Governance Risk Compliance professional, you need a solid understanding of risk management, compliance frameworks (such as SOX, GDPR, or ISO 27001), and strong analytical abilities, often supported by a relevant degree or certifications like CISA or CRISC. Proficiency with GRC software platforms, audit management tools, and reporting systems is typically required. Attention to detail, integrity, effective communication, and the ability to work independently during off-peak hours are standout soft skills. These skills are crucial to ensure ongoing regulatory compliance, effective risk mitigation, and the safeguarding of organizational assets during non-standard business hours.

What are some common challenges faced by professionals working overnight in governance, risk, and compliance roles?

Overnight GRC professionals often encounter challenges such as maintaining consistent communication with daytime teams, managing fatigue due to unconventional hours, and ensuring timely responses to incidents that may arise outside of regular business hours. Additionally, they must remain vigilant to rapidly changing regulatory requirements and risks that can emerge overnight. Successful candidates typically develop strong time management skills and leverage technology to collaborate effectively with global teams and stakeholders.

What is the difference between Overnight Governance Risk Compliance vs Overnight Compliance Analyst?

AspectOvernight Governance Risk ComplianceOvernight Compliance Analyst
CertificationsGRC certifications, such as CRISC or CISACompliance certifications, such as CAMS or CCEP
Work EnvironmentFinancial institutions, 24/7 operations, risk-focusedFinancial firms, monitoring compliance, reporting
Employer & Industry UsageBanking, investment firms, regulatory bodiesBanking, asset management, financial services

Overnight Governance Risk Compliance professionals focus on managing and monitoring risk, governance, and compliance frameworks during overnight shifts, often dealing with high-level policies and regulatory adherence. Overnight Compliance Analysts primarily review daily compliance activities, ensure adherence to regulations, and handle reporting tasks. While both roles require compliance knowledge, GRC roles emphasize risk management strategies, whereas Compliance Analysts focus on operational compliance tasks during overnight hours.

What are the most commonly searched types of Governance Risk Compliance jobs in Reston, VA?

The most popular types of Governance Risk Compliance jobs in Reston, VA are:

What cities near Reston, VA are hiring for Overnight Governance Risk Compliance jobs?

Cities near Reston, VA with the most Overnight Governance Risk Compliance job openings:

Governance, Risk & Compliance (GRC) Analyst

Washington, DC • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description

CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage-domain dominance. The company's products are powered by Coherent Distributed Networks (CDN™), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats.
CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit www.chaosinc.com.
Role Overview:
  • Own and mature the CHAOS Industries cybersecurity GRC program by establishing governance structure, policies, standards, expectations, and accountability across CHAOS businesses.
  • You'll report to the IT/Cybersecurity Program Director and work daily with IT, Cybersecurity, Physical Security, and Manufacturing - teams with different priorities and vocabulary; therefore, you'll spend real time translating broad requirements into controls people adopt.
  • Build and manage cybersecurity risk processes, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance.
  • If you enjoy designing frameworks that fit the organization rather than forcing the organization to fit a template, and you want direct input into how a defense company governs risk, this is the seat.

Responsibilities:
  • Own risk assessments across several departments and maintain the centralized risk register.
  • Design and maintain a unified, original control framework tailored to CHAOS Industries' operating environment, including a security-by-design approach to systems development and defined: Maximum Tolerable Downtime (MTD), Recovery Point Objective (RPO), and Recovery Time Objective (RTO) for critical systems.
  • Write and maintain policy that goes beyond minimum mandatory compliance, building genuine security maturity rather than satisfying the floor of any one requirement.
  • Manage GRC tooling and related workflows to support risk assessments, control monitoring, and reporting.
  • Prepare for, coordinate, and help run third-party and certification audits, including evidence collection, gap assessments, and auditor liaison.
  • Act as the connective tissue between different department to then develop security and compliance requirements for partner teams and drive them to execution.
  • Report regularly to the Program Director and executive stakeholders on risk posture, audit status, and program maturity.
  • Onsite presence required 4 days per week.
  • Travel: up to 25%, primarily to support Manufacturing and Physical Security control validation across company sites.
  • Physical demands: occasional access to manufacturing floor environments, including required PPE and periods of standing or walking during facility walkthroughs.
  • Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services.
  • Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking in partnership with Legal, Compliance, commercial teams, IT, and business leaders.

Minimum Requirements:
  • Bachelor's degree or equivalent experience in computer science, cybersecurity, information security, Information Technology, Information Assurance, or a related field, or equivalent practical experience.
  • Deep knowledge of NIST CSF, NIST RMF, the ISO/IEC 27000 series, UK Cyber Essentials, CMMC/NIST 800-171, NIST 800-53.
  • Experience selecting, implementing, or administering GRC tooling and workflows.
  • Exposure to widely recognized governance, risk, and compliance frameworks spanning security, privacy, and quality management domains.
  • Familiarity with OT/ICS security concepts.
  • Minimum of 5 years hands-on GRC or compliance experience combined with prior experience in a DoD environment or military service.
  • Has directly supported a third-party or certification audit from evidence collection through closure.
  • Can apply recognized governance, risk, and compliance frameworks well enough to design real, working controls tailored to a specific organization, not just describe them generically.
  • Has performed or directly supported a formal risk assessment (identification, scoring, and treatment) using a defined methodology.

Preferred Requirements:
  • Experience supporting third-party audits in a cloud-centric environment.
  • Has built or materially contributed to a risk register, control framework, or compliance program, not only operated within one already established elsewhere.
  • Has written policy or procedure documentation that a non-security audience could follow and act on.

Why CHAOS?
  • Health Benefits: Medical, dental, and vision benefits 100% paid for by the company
  • Additional benefits: 401k (+ 50% company match up to 6% of pay), FSA, HSA, life insurance, and more
  • Our Perks: Free daily lunch, 'No meeting Fridays', unlimited PTO, casual dress code
  • Compensation Components: Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and (coming soon!) annual bonuses
  • Team Growth: 350 employees and counting across 5 global offices