1

Risk Assurance Jobs (NOW HIRING)

Risk Assurance SME

$87K - $157K/yr

The Risk Assurance SME will support the effort of ensuring successful implementation of a comprehensive and sustainable cyber security risk assurance program based on a defined strategy. They will ...

Construction Risk & Assurance Advisor Duration: Permanent Location: Mobile Hours: 08:30 to 17:30 Overview of the role; The purpose of the Risk & Assurance Advisor is to actively support the business ...

Construction Risk & Assurance Advisor Duration: Permanent Location: Mobile Hours: 08:30 to 17:30 Overview of the role; The purpose of the Risk & Assurance Advisor is to actively support the business ...

Director of Cyber Risk & Assurance

Madison, WI · On-site +1

$185K - $225K/yr

Our Director of Cyber Risk & Assurance within our Enterprise IT Security team leads our enterprise-wide cyber risk and assurance function and is responsible for establishing a modern, risk-based ...

next page

Showing results 1-20

Risk Assurance information

See salary details

$65K

$144.7K

$262.5K

How much do risk assurance jobs pay per year?

As of Jul 27, 2026, the average yearly pay for risk assurance in the United States is $144,712.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,000.00 and $174,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in a Risk Assurance role, and how can they be overcome?

Professionals in Risk Assurance often encounter challenges such as keeping up with rapidly changing regulatory requirements, managing tight deadlines during audit cycles, and communicating complex risks to non-technical stakeholders. These challenges can be mitigated by continuously updating knowledge through training, leveraging technology to streamline audit processes, and developing strong communication skills to clearly explain findings and recommendations. Collaborating closely with other departments also helps ensure a holistic understanding of the organization’s risk landscape.

What is risk assurance?

Risk assurance is a process used by organizations to identify, assess, and manage risks that could impact their business operations, financial performance, or reputation. Professionals in risk assurance help ensure that internal controls, compliance measures, and risk management processes are effective and reliable. They often work closely with audit, compliance, and management teams to evaluate systems, recommend improvements, and provide assurance that risks are being appropriately managed. This helps organizations achieve their objectives while minimizing the potential for unexpected losses or regulatory issues.

What are the key skills and qualifications needed to thrive as a Risk Assurance professional, and why are they important?

To thrive as a Risk Assurance professional, you need a solid foundation in auditing, risk management, and regulatory compliance, often supported by a degree in accounting, finance, or a related field. Familiarity with audit software, risk assessment tools, and certifications such as CPA, CIA, or CISA are typically required. Strong analytical thinking, attention to detail, and effective communication skills help you interpret complex data and convey findings to stakeholders. These skills ensure organizations can identify, assess, and mitigate risks while maintaining compliance and operational integrity.

What is the difference between Risk Assurance vs Internal Auditor?

AspectRisk AssuranceInternal Auditor
CertificationsCPA, CIA, CISACPA, CIA, CISA
Work EnvironmentConsulting firms, corporate risk teamsIn-house corporate departments
Primary FocusIdentifying and managing risks, compliance, controlsEvaluating internal controls, financial accuracy
Industry UsageFinancial services, consulting, large corporationsAll industries, especially finance and manufacturing

Risk Assurance professionals focus on identifying, assessing, and managing risks within organizations, often working in consulting or advisory roles. Internal Auditors primarily evaluate internal controls and financial processes within a company. While both roles require similar certifications and work environments, Risk Assurance emphasizes risk management strategies, whereas Internal Auditors concentrate on internal control effectiveness and compliance.

More about Risk Assurance jobs
What cities are hiring for Risk Assurance jobs? Cities with the most Risk Assurance job openings:
What are the most commonly searched types of Risk Assurance jobs? The most popular types of Risk Assurance jobs are:
What states have the most Risk Assurance jobs? States with the most job openings for Risk Assurance jobs include:
Infographic showing various Risk Assurance job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 89% Full Time, 8% Part Time, and 2% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $144,712 per year, or $69.6 per hour.
Risk Assurance SME

$87K - $157K/yr

Full-time

Posted 5 days ago


Leidos rating

8.4

Company rating: 8.4 out of 10

Based on 149 frontline employees who took The Breakroom Quiz

67th of 487 rated business services


Job description

The Leidos Partnership for Defense Health is seeking skilled and adaptable Risk Assurance SME to work remotely in support of its single-award DHMSM IDIQ contract for the system known as MHS GENESIS. This highly visible program modernized Electronic Health Record capabilities for the Department of War, supporting nearly 10 million service members and their families worldwide. While healthcare systems everywhere are challenged to improve quality, user experience, and cost, MHS GENESIS operates at DoW global scale and within a highly secure environment, all while supporting the Defense Health Agency's vision of a medically ready force-critical to our national defense.
The Risk Assurance SME will support the effort of ensuring successful implementation of a comprehensive and sustainable cyber security risk assurance program based on a defined strategy. They will accomplish this thru supporting the Cyber Assurance Lead in identification and implementation of risk assurance and RMF processes across multiple different delivery methods and engineering teams.
Responsibilities
  • Engage with engineering stakeholders to explain DHA risk assessment processes and ensure high-quality risk assessment packages for review and approval for submission to the DHMSM ISSOs and DHA RMED (Defense Health Agency, Risk Management Executive Division) for review and approval.
  • Coordinate and review risk assessment artifacts (POAMs, STIG/SRG Checklists, False Finding artifacts), providing feedback to engineering teams.
  • Track and support risk assessments in collaboration with the Cyber Assurance Lead.
  • Lead internal and external project meetings, providing updates on progress and milestones.
  • Support the development and maintenance of the Integrated Master Schedule (IMS) for projects, where applicable.
  • Leverage established intake processes for new risk assessments, ensuring proper coordination with engineering teams and the DHMSM Cyber team.
  • Coordinate and oversee risk assessment activities involving third-party resources to ensure alignment with program objectives.
  • Implement tools and solutions to automate and visualize metrics, reporting, and dashboards.
  • Facilitate daily meetings with stakeholders as needed, using a scrum approach for escalated risk assessments.
  • Assess and report on identified and anticipated project risks.

Qualifications
  • US Citizen with current U.S. Government Secret clearance (contract requirement).
  • Bachelor's degree and 4-8 years of relevant experience.
  • DoD 8570 IAM Level 1 or IAT Level 2 certification, or ability to obtain within 6 months of hire.
  • Excellent written and verbal communication skills.
  • Strong critical thinking and analytical skills.
  • Ability to organize and prioritize multiple requests in a fast-paced, deadline-driven environment.
  • Proficiency in Microsoft Office tools and project management tools such as JIRA.
  • Experience identifying applicable STIG checklists based on assessed technologies, conducting STIG compliance reviews, and analyzing Check Text and Fix Text to validate security control implementation and remediation requirements.
  • Ability to review POA&M data for accuracy and appropriateness, ensuring findings, remediation details, and statuses are correctly documented.

Preferred Qualifications
  • Knowledge of MHS GENESIS system and capabilities.
  • Experience with risk assessments in cloud environments (Oracle Cloud Infrastructure, Azure).
  • Familiarity with DoW/DHA cybersecurity policies and IA security principles.
  • Experience with DHMSM risk coordination and implementation practices.
  • Knowledge of networks, cyber defense toolsets, and related technologies.
  • Experience with Dow Information Assurance Vulnerability Management (IAVM) Program.
  • Proficiency in ACAS/NESSUS, SCAP, HBSS.
  • Experience with eMASS (Enterprise Mission Assurance Support Service).
  • Experience implementing DHA RMF Process and NIST 800-53 technical controls, including achieving and maintaining Authorization to Operate (ATO).

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.
Original Posting:
June 22, 2026
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $87,100.00 - $157,450.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media