Security Governance Risk & Compliance GRC Analyst Virtru CorpSecurity Governance Risk & Compliance GRC AnalystWashington, DC$130,000–$170,000 / yearTeam & Position Details: Here at Virtru you'll help build a cutting edge security compliance program aligned with FedRAMP, SOC 2, PCI, HIPAA, GDPR, and just about any other security/privacy framework you can think of, whilst getting your hands on some of today's most important tools and tech like Kubernetes, GCP, AWS, Terraform. Backed by Iconiq Capital, Bessemer Venture Partners, Foundry Capital, and Tiger Global, we''re helping Fortune 500 companies and government agencies discover that true data security means having the freedom to share, collaborate, and innovate - without compromise.
Senior Data Analyst, Risk Management and Compliance Paul Hastings LLPSenior Data Analyst, Risk Management and ComplianceWashington, D.C., DCQualifications: Bachelor's degree in Mathematics, Statistics, Business Analytics, Computer Science, Information Management, Business, or related field, or equivalent experience preferred; 5-7 years of data analysis experience, including senior or lead analyst responsibilities; Law Firm or professional services experience strongly preferred; Advanced proficiency in Power BI, SQL, SSAS, VBA, and Microsoft Excel; Access and PowerPoint experience a plus; Experience with systems like Intapp Open, Intapp Walls, iManage, 3E, SQL/MySQL/PL-SQL/T-SQL, and ETL or programming frameworks preferred; and. Proficiencies: Strong communication skills, including the ability to explain data concepts to technical and business audiences; Advanced analytical, problem-solving, and data interpretation skills; Ability to manage multiple priorities independently, use sound judgment, and meet deadlines; and.
Governance, Risk & Compliance (GRC) Analyst CHAOS IndustriesGovernance, Risk & Compliance (GRC) AnalystWashingtonDesign and maintain a unified, original control framework tailored to CHAOS Industries' operating environment, including a security-by-design approach to systems development and defined: Maximum Tolerable Downtime (MTD), Recovery Point Objective (RPO), and Recovery Time Objective (RTO) for critical systems. You'll report to the IT/Cybersecurity Program Director and work daily with IT, Cybersecurity, Physical Security, and Manufacturing – teams with different priorities and vocabulary; therefore, you’ll spend real time translating broad requirements into controls people adopt.
Risk and Compliance Systems Analyst System OneRisk and Compliance Systems AnalystVienna, VAWe are looking for an Oracle ERP Fusion security and controls analyst who manages user access, monitors Oracle Risk Management Cloud (RMC) compliance issues, supports audits, documents processes, tests system changes, and coordinates with Finance, HR, Procurement, and IT teams to keep the ERP environment secure and compliant. The ideal candidate will work across Finance, Procurement, HR, and Technology teams to strengthen security controls, support audits and ICFR compliance, improve processes, conduct testing (SIT/UAT), and drive operational improvements using automation and AI tools like Microsoft Copilot.
Summer Associate Internship (Technical Risk Analyst - Security Regulatory Compliance) Navy Federal Credit UnionSummer Associate Internship (Technical Risk Analyst - Security Regulatory Compliance)Vienna, VAThe Security Regulatory Testing team within the Security Governance and Risk division (SG&R) is responsible for examining transactions and program documentation within the Security Business Units to ensure compliance with applicable regulations, or rules as directed by the Compliance Testing and Monitoring team. Cross-function Shadowing - Shadow staff and leaders from other Security, Governance, and Risk functions to gain visibility into cross-team enterprise efforts such as issues management, incident management, and leadership reporting.
NewAI Risk, Compliance, and Technology Readiness Lead Creative G CAI Risk, Compliance, and Technology Readiness LeadWashington, DC$50Job Details: Role: AI Risk, Compliance, and Technology Readiness Lead Location: Washington, DC 20005 (On-site with Hybrid) Duration: 12+ Months Contract Position Summary: CGC is seeking an AI Risk, Compliance, and Technology Readiness Lead to assess the client s ability to adopt artificial intelligence securely, responsibly, and effectively. The successful candidate will evaluate the client s existing technology environment, data capabilities, security and privacy controls, regulatory obligations, and readiness to support traditional AI, generative AI, and potential agentic AI use cases.
Lead, Governance, Risk & Compliance (Remote) Emergent BioSolutions IncLead, Governance, Risk & Compliance (Remote)Gaithersburg, MDRemote$155,500–$188,200 / yearUnsolicited resumes or candidate information submitted to Emergent BioSolutions by search/recruiting agencies not already on Emergent BioSolutions' approved agency list shall become the property of Emergent BioSolutions and if the candidate is subsequently hired by Emergent BioSolutions, Emergent BioSolutions shall not owe any fee to the submitting agency. The ideal candidate combines strong cybersecurity expertise with program leadership, executive communications and experience implementing security programs leveraging governance and technologies.
Information Security Governance, Risk and Compliance (GRC) Analyst Cyquent, IncInformation Security Governance, Risk and Compliance (GRC) AnalystRockville, MDCyquent is a CMMI & ISO Certified Technology Enabler providing end-to-end IT solutions and services to organizations in both the public and private sectors since 2001. Our client is seeking an Information Security Risk Analyst to support policy exception administration, risk analysis, and enterprise risk management activities.
Senior Risk Specialist, Compliance Governance Training Analyst Capital One Financial CorpSenior Risk Specialist, Compliance Governance Training AnalystMcLean, VA$87,700–$100,100 / yearCandidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com.
Senior Risk Specialist, Compliance Governance Analyst Capital OneSenior Risk Specialist, Compliance Governance AnalystMcLean, VirginiaSenior Risk Specialist, Compliance Governance Analyst The Compliance Governance, Oversight and Validation (CGOV) team within Compliance & Ethics is seeking a collaborative, analytically-focused risk management professional to support our well-managed governance processes and protocols. Stakeholder Communication & Change Management: Communicate the results of assessments, process outcomes, refresher training, and issue management to ensure leadership remains informed on Compliance priorities and impactful change.
Principal Risk Specialist, Compliance Governance Analyst Capital One Financial CorpPrincipal Risk Specialist, Compliance Governance AnalystMcLean, VA$120,800–$137,900 / yearStakeholder Communication & Change Management: Communicate the results of assessments, process outcomes, and issue management to ensure leadership remains informed on Compliance priorities and impactful change. Audit/Exam Support: Assist with Compliance related audits and exams, engage in pre-planning, prepare and distribute status reports, track requests, timelines, milestones, and progress for key stakeholders.
SIPR Governance, Risk, and Compliance (GRC) & Security Specialist Systems Planning And Analysis, Inc.SIPR Governance, Risk, and Compliance (GRC) & Security SpecialistArlington, VAWe provide effective functional systems support, user technical support, training support, and governance support of the Army's modernized and deployed FM domain ERP systems (GFEBS / GFEBS-SA / GCSS-A (Finance)), ensuring technological capabilities maturation and evolution aligns with Army and FM domain goals and objectives. The candidate must demonstrate mastery of the GRC system and its related processes: Ticket & Workflow Management: Experience managing the full lifecycle of GRC tickets to support user access provisioning.
Governance, Risk & Compliance / Cloud Security Subject Matter Expert Lexical Intelligence LLCGovernance, Risk & Compliance / Cloud Security Subject Matter ExpertBethesda, MDAdvise developers, DevOps engineers, and data scientists on secure architecture and AWS security best practices across a multi-account environment, including IAM, AWS Organizations and service control policies, encryption and key management (KMS), logging and monitoring (CloudTrail, CloudWatch, GuardDuty, Security Hub, AWS Config), and network security. The GRC / Cloud SME will own the development and maintenance of the systems Authority to Operate (ATO) package within JCAM (NIHs enterprise GRC platform), advise the program on the security implications of change and configuration management, and serve as the systems Contingency Planning and Incident Response Coordinator.
NewRisk and Compliance Lawyer Freshfields LLPRisk and Compliance LawyerWashington, DC$165,000–$190,000 / yearAs a member of the Legal Department's US team, the Risk & Compliance Lawyer will have the following responsibilities: Advise the partnership on business acceptance issues relating to conflicts of interest, confidential information, reputational risk and sanctions issues globally, to assess the business suitability of potential new matters and new clients; Undertake due diligence and reputational risk assessment of new clients and matters; Assist the partnership with solutions to resolve conflicts, confidentiality, reputational and commercial risk, anti-money laundering (AML) compliance and sanctions issues including assistance with drafting waivers and maintaining information barriers; Answer questions from partners, associates and staff at all levels across the firm regarding US law, regulations and firm policies pertaining to conflicts of interest, ethics and regulatory compliance; Review and advise on client engagement letters and outside counsel guidelines, particularly with respect to conflicts of interest and US applicable law and regulation; Advise the partnership on ad hoc queries relating to ethics and regulatory compliance including audit letters, securities dealing, anti-bribery regulations, outside appointments, qualification and practice of law, attorney advertising, fee-sharing and other fee arrangements; Assist in review of incoming lateral hires for potential conflicts of interest; Remain current on the type of work that Freshfields undertakes across all sectors and join a sector team in at least two sectors building strong and trusted relationships with Sector Group Leaders; and. Strong analytical skills and ability to grasp relevant issues quickly and to understand complex conflicts and regulatory issues, within a commercial context; Combination of confidence, presence and a diplomatic manner; Reputation as a proactive problem solver, who applies pragmatic commercial thinking to every issue, and always strives to identify workable solutions that conform with the firm's regulatory obligations, and are aligned with its business priorities; Fast thinker, quick learner who is able to work efficiently and assess options thoroughly; Excellent communicator who articulates advice confidently and succinctly; Demonstrates high level of confidentiality, integrity and professionalism.
Risk and Compliance Analyst Triumph Enterprises IncRisk and Compliance AnalystWashington, DCTriumph Enterprises is building the team for a Department of Veterans Affairs Office of Information and Technology / Office of Information Security (OIT/OIS) program covering enterprise cybersecurity architecture and engineering. Report FISMA and CISA compliance quarterly, and report performance metrics against committed data quality thresholds: at least 97 percent asset coverage, at least 98 percent data accuracy and completeness on a 30-day rolling average, and 97 percent tagging accuracy.
Services Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program) Deloitte Touche Tohmatsu LtdServices Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program)Baltimore, MD$51,900–$95,500 / yearThe Independence & Conflicts Network (ICN) team performs a critical consultative, quality-assurance and risk management function for the Deloitte US Firms, helping the organization remain unbiased and free from conflicts-of-interest, in fact and appearance, when providing service to attest/audit clients. As a Services Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program) on the Independence & Conflicts Network team, you will: Work closely with outside brokerage firms and Deloitte professionals to support brokerage account compliance activities.
Risk, Compliance, and Quality Assurance Specialist / SME :: Washington, DC (Hybrid) ARK SOLUTIONS, INCRisk, Compliance, and Quality Assurance Specialist / SME :: Washington, DC (Hybrid)Washington, DCRequired Qualifications: Bachelor's degree or higher in Computer Science, Information Systems, Cybersecurity, or related field. Support vulnerability assessments, security hardening, and disaster recovery testing.
Director Governance Risk and Compliance SureScripts LLCDirector Governance Risk and ComplianceArlington, VA$208,550–$254,850 / yearLead third-party risk management for vendors and downstream partners handling PHI, including due diligence, BAA security terms, and ongoing monitoring; serve as the security escalation point for customer and partner security reviews, questionnaires, and contractual security obligations. Advanced skills in the areas of project management and implementing initiatives including proven experience with control frameworks and certifications such as NIST CSF, DirectTrust, HITRUST, SOC-2, EHNAC, etc.
Sr. Manager, Data Analyst - Compliance Risk Capital OneSr. Manager, Data Analyst - Compliance RiskMcLean, VirginiaCurrently has, or is in the process of obtaining a Bachelor’s Degree in quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Computer Science or a related quantitative field) plus at least 7 years of experience performing data analytics, or currently has, or is in the process of obtaining a Master’s Degree plus at least 5 years of experience performing data analytics with an expectation that required degree will be obtained on or before the scheduled start date. As a Senior Manager, you will leverage your analytical skills and partner cross-functionally with teams throughout the company (senior business and compliance leaders, Technology, Product, Risk office, Legal, and Risk Management) to create and implement innovative solutions to identify and mitigate potential Compliance risks to the company, driving current and future Compliance Testing strategy.
Governance, Risk & Compliance GRC Lead, Federal Peregrine Technologies IncGovernance, Risk & Compliance GRC Lead, FederalWashington, DC$158,000–$184,000 / yearWorking knowledge of NIST SP 800-53 and SP 800-37, FedRAMP, the DoD Cloud Computing Security Requirements Guide, DoD cybersecurity risk management (RMF and the successor Cybersecurity Risk Management Construct), DISA SRGs/STIGs, applicable FIPS requirements, control overlays, and federal assessment and authorization practices. 10+ years of experience in information security, GRC, security assurance, or cybersecurity risk management, including personally leading significant portions of obtaining and maintaining FedRAMP High authorization for a cloud service provider (CSP) with one or more cloud service offerings (CSOs).