NewGovernance, Risk & Compliance / Cloud Security Subject Matter Expert Lexical Intelligence LLCGovernance, Risk & Compliance / Cloud Security Subject Matter ExpertBethesda, MDAdvise developers, DevOps engineers, and data scientists on secure architecture and AWS security best practices across a multi-account environment, including IAM, AWS Organizations and service control policies, encryption and key management (KMS), logging and monitoring (CloudTrail, CloudWatch, GuardDuty, Security Hub, AWS Config), and network security. The GRC / Cloud SME will own the development and maintenance of the systems Authority to Operate (ATO) package within JCAM (NIHs enterprise GRC platform), advise the program on the security implications of change and configuration management, and serve as the systems Contingency Planning and Incident Response Coordinator.
Information Security Governance, Risk and Compliance (GRC) Analyst Cyquent, IncInformation Security Governance, Risk and Compliance (GRC) AnalystRockville, MDCyquent is a CMMI & ISO Certified Technology Enabler providing end-to-end IT solutions and services to organizations in both the public and private sectors since 2001. Our client is seeking an Information Security Risk Analyst to support policy exception administration, risk analysis, and enterprise risk management activities.
Specialist Manager, Risk and Compliance Services (Chantilly) DeloitteSpecialist Manager, Risk and Compliance Services (Chantilly)Rosslyn, VAFull timeLeading, mentoring, and developing team leads and team members supporting classified security programs, while reinforcing accountability, workforce planning, and capability development. The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.
Sr. Manager, Data Analyst - Compliance Risk Capital OneSr. Manager, Data Analyst - Compliance RiskMcLean, VirginiaCurrently has, or is in the process of obtaining a Bachelor’s Degree in quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Computer Science or a related quantitative field) plus at least 7 years of experience performing data analytics, or currently has, or is in the process of obtaining a Master’s Degree plus at least 5 years of experience performing data analytics with an expectation that required degree will be obtained on or before the scheduled start date. As a Senior Manager, you will leverage your analytical skills and partner cross-functionally with teams throughout the company (senior business and compliance leaders, Technology, Product, Risk office, Legal, and Risk Management) to create and implement innovative solutions to identify and mitigate potential Compliance risks to the company, driving current and future Compliance Testing strategy.
EHS Compliance & Risk Advisor, Data Center Operations Nscale ASEHS Compliance & Risk Advisor, Data Center OperationsAshburn, VA$140,000–$165,000 / yearPartner directly and independently with Ops, construction, and engineering teams to embed compliance requirements into daily operations and project workflows, from construction oversight through operational/facility-ready turnover and manage external environmental or regulatory consultants, as required. This role serves as the SME for environmental and safety regulatory requirements, audit management, and enterprise risk identification, ensuring the organization stays ahead of regulatory obligations across jurisdictions,while serving as a trusted compliance partner to Operations, Engineering, and Construction.
NewGovernance, Risk & Compliance (GRC) Lead, Federal Peregrine TechnologiesGovernance, Risk & Compliance (GRC) Lead, FederalWashington, D.C.Full timeWorking knowledge of NIST SP 800-53 and SP 800-37, FedRAMP, the DoD Cloud Computing Security Requirements Guide, DoD cybersecurity risk management (RMF and the successor Cybersecurity Risk Management Construct), DISA SRGs/STIGs, applicable FIPS requirements, control overlays, and federal assessment and authorization practices. 10+ years of experience in information security, GRC, security assurance, or cybersecurity risk management, including personally leading significant portions of obtaining and maintaining FedRAMP High authorization for a cloud service provider (CSP) with one or more cloud service offerings (CSOs).
Distinguished Engineer, Cloud Risk and Compliance Google LLCDistinguished Engineer, Cloud Risk and ComplianceReston, VAAbout the jobAs a Distinguished Engineer for Cloud Risk & Compliance you will be the preeminent technical authority within the Cloud CISO organization responsible for the architectural vision and technical strategy of Google Clouds global risk and compliance posture. You will lead the development of specialized capabilities to manage readiness for complex risk domains-including AI Compliance by Design TPRM and Incident Management-that present ongoing regulatory and customer audit challenges.
Associate Director - Risk & Compliance (Internal Audit & SOX) CROSSCOUNTRY CONSULTING LLCAssociate Director - Risk & Compliance (Internal Audit & SOX)McLean, VAWhat You''ll Bring: 10+ years of professional services experience leading complex engagements at a Big Four accounting firm, leading consulting firm, or commensurate experience in the retail, manufacturing, telecommunications sector (non-financial services). As an Associate Director at CrossCountry Consulting specializing in financial and operational risk you will be responsible for a mix of client delivery, leading teams and developing junior team members, and participating in business development activities.
Counsel, AI Risk & Compliance McDermott Will & EmeryCounsel, AI Risk & ComplianceWashington, DC$167,000–$235,000 / yearSupport vendor diligence, contracting, and risk management processes for AI-related tools and services, including issues involving data rights, model training, service improvement, testing, analytics, retention, subprocessors, and cross-border data transfers. The Counsel provides guidance on issues involving confidentiality, attorney-client privilege, professional conduct obligations, client contractual commitments, and reputational risk, in addition to the legal, operational, cybersecurity, and regulatory issues associated with enterprise AI adoption.
Managing Consultant/Associate Director - Fraud Advisory - Financial Crimes Risk And Compliance (Fcrc) GuidehouseManaging Consultant/Associate Director - Fraud Advisory - Financial Crimes Risk And Compliance (Fcrc)Mclean, VA$122,000–$204,000 / yearFacilitate working sessions with client stakeholders and third parties to evaluate current-state capabilities, define target-state needs, and prioritize pragmatic improvements to reduce fraud losses and operational friction. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.
Senior Director, Global Risk and Compliance BLEND360Senior Director, Global Risk and ComplianceColumbia, MD$180,000–$250,000 / yearShared: SOC 2 (Risk owns the framework and audit; Engineer provides technical details), client questionnaires (Risk owns responses; Engineer provides technical input), AI risk (Risk owns policy; Engineer implements technical controls). This role will build the enterprise risk framework, develop and implement global policies (AI governance, data privacy, vendor risk management, ESG compliance), manage the corporate insurance program, and coordinate compliance execution across all regions.
Associate Director - Risk & Compliance (Internal Audit & SOX) CrossCountry ConsultingAssociate Director - Risk & Compliance (Internal Audit & SOX)McLean, VAWhat You'll Bring: 10+ years of professional services experience leading complex engagements at a Big Four accounting firm, leading consulting firm, or commensurate experience in the retail, manufacturing, telecommunications sector (non-financial services). As an Associate Director at CrossCountry Consulting specializing in financial and operational risk you will be responsible for a mix of client delivery, leading teams and developing junior team members, and participating in business development activities.
Services Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program) Deloitte Touche Tohmatsu LtdServices Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program)Baltimore, MD$51,900–$95,500 / yearThe Independence & Conflicts Network (ICN) team performs a critical consultative, quality-assurance and risk management function for the Deloitte US Firms, helping the organization remain unbiased and free from conflicts-of-interest, in fact and appearance, when providing service to attest/audit clients. As a Services Associate, Risk & Compliance (Tracking & Trading/Broker Data Import Program) on the Independence & Conflicts Network team, you will: Work closely with outside brokerage firms and Deloitte professionals to support brokerage account compliance activities.
NewDirector Governance Risk and Compliance SureScripts LLCDirector Governance Risk and ComplianceArlington, VA$208,550–$254,850 / yearLead third-party risk management for vendors and downstream partners handling PHI, including due diligence, BAA security terms, and ongoing monitoring; serve as the security escalation point for customer and partner security reviews, questionnaires, and contractual security obligations. Advanced skills in the areas of project management and implementing initiatives including proven experience with control frameworks and certifications such as NIST CSF, DirectTrust, HITRUST, SOC-2, EHNAC, etc.
Consultant, Regulatory, Risk, And Compliance - Economic Analysis DeloitteConsultant, Regulatory, Risk, And Compliance - Economic AnalysisRosslyn, VA$88,600–$147,600 / yearWorking under the direction of senior economists, regulatory analysts, and project leadership, this you will support research and literature reviews; information synthesis; quantitative and economic analyses; public-comment processing; regulatory and policy research; data and analytics activities; scenario analysis; and the preparation of reports, discussion papers, presentations, technical documents, databases, surveys, and project-status materials. This compensation range is specific to Arlington, VA and takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.
Senior Manager, Risk, Compliance and Ethics FTI ConsultingSenior Manager, Risk, Compliance and EthicsWashington, District of ColumbiaBroad experience in a number of different risk & compliance topics, including but not limited a good working knowledge of sanctions, anti-bribery and corruption, anti-fraud and insider trading laws, the analysis and operationalization of new laws, analysis of various risks and mitigation thereof as and when they arise. FTI Consulting, Inc.’s Risk& Compliance Department is seeking a Senior Manager/Director of Compliance -- Americas to oversee the Company’s risk, compliance and ethics programs in the Company’s North American and Latin America regions.
Senior Manager, Risk, Compliance And Ethics FTI Consulting, Inc.Senior Manager, Risk, Compliance And EthicsWashington, DCBroad experience in a number of different risk & compliance topics, including but not limited a good working knowledge of sanctions, anti-bribery and corruption, anti-fraud and insider trading laws, the analysis and operationalization of new laws, analysis of various risks and mitigation thereof as and when they arise. FTI Consulting, Inc.'s Risk& Compliance Department is seeking a Senior Manager/Director of Compliance -- Americas to oversee the Company's risk, compliance and ethics programs in the Company's North American and Latin America regions.
Director, Risk, Compliance and Ethics FTI Consulting IncDirector, Risk, Compliance and EthicsWashington, DCWorking with the global Risk & Compliance team on compliance programs related to specific legal requirements such as Anti-bribery laws, Anti-money laundering laws, Insider trading laws, Privacy compliance, and other regulatory compliance initiatives. FTI Consulting, Inc.'s Risk& Compliance Department is seeking a Director of Compliance -- Americas to oversee the Company's risk, compliance and ethics programs in the Company's North American and Latin America regions.
Governance, Risk & Compliance GRC Lead, Federal Peregrine Technologies IncGovernance, Risk & Compliance GRC Lead, FederalWashington, DC$158,000–$184,000 / yearWorking knowledge of NIST SP 800-53 and SP 800-37, FedRAMP, the DoD Cloud Computing Security Requirements Guide, DoD cybersecurity risk management (RMF and the successor Cybersecurity Risk Management Construct), DISA SRGs/STIGs, applicable FIPS requirements, control overlays, and federal assessment and authorization practices. 10+ years of experience in information security, GRC, security assurance, or cybersecurity risk management, including personally leading significant portions of obtaining and maintaining FedRAMP High authorization for a cloud service provider (CSP) with one or more cloud service offerings (CSOs).
Applications Engineer, Risk and Compliance Systems Paul Hastings LLPApplications Engineer, Risk and Compliance SystemsWashington, D.C., DCProficiencies: Possess strong communication, organization, customer service, and collaboration skills; Knowledge of cloud systems including features, integrations, and release management; Knowledge of system integrations including APIs, web services, FTP, and relational databases; Ability to work with project management on tasks and tools such as Confluence and JIRA; Familiarity with security best practices and procedures; Familiarity with data governance best practices and procedures; and. Qualifications: At least 5 years experience in risk and compliance, data governance, and general counsel business processes required; At least 3 years of information technology experience preferred; At least 3 years' experience working with and supporting enterprise platforms preferred; At least 3 years management level engagement and customer service preferred; and.