Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Governance & Compliance Analyst

$136k - $253k

Thomson Reuters

Lead Governance & Compliance Analyst Are you ready to help secure the trusted technology that powers mission-critical decisions across government and highly regulated industries? At Thomson Reuters, our technology supports customers who depend on secure, reliable, and compliant platforms to deliver essential outcomes. We are seeking a Lead Governance & Compliance Analyst to join our Operations and Technology organization, supporting our federal government portfolio, including FedRAMP-authorized and in-process platforms for products such as Legal Research and Risk & Fraud. This role is central to sustaining and evolving the FedRAMP compliance posture of Thomson Reuters' federal-facing products. As a senior technical and governance leader, you will help ensure our cloud environments remain continuously compliant, secure, audit-ready, and aligned with federal requirements. You will partner closely with engineering, product, operations, security, federal agencies, the FedRAMP PMO, and third-party assessment organizations to support authorization activities, strengthen security practices, and help maintain customer trust. Please note: This position requires access to U.S. Federal Government systems and data under a federal government contract. In accordance with contractual requirements, applicants must be U.S. citizens. This requirement applies only to this role and is mandated by the applicable government contract; it is not a general company policy. Thomson Reuters is an equal opportunity employer. About the Role Serve as a primary liaison with federal agencies, the FedRAMP PMO, third-party assessment organizations, consultants, and internal stakeholders to support ongoing authorization and compliance activities. Lead FedRAMP Continuous Monitoring activities, including POA&M management, vulnerability reporting, monthly deliverables, and recurring agency reporting requirements. Maintain and update the System Security Plan, risk documentation, assessment artifacts, and other required FedRAMP documentation to ensure ongoing audit readiness. Manage vulnerability, risk, and incident response processes in alignment with FedRAMP, NIST RMF, and NIST SP 800-53 Rev. 5 requirements. Support annual security assessments, including planning, scope definition, SAP preparation, security testing coordination, SAR development, POA&M updates, and project closure. Partner with engineering, product, operations, and security teams to drive risk mitigation, compliance improvements, and secure delivery of federal-facing cloud solutions. Educate and guide internal stakeholders on FedRAMP security requirements, continuous monitoring expectations, significant change processes, and compliance best practices. About You 5+ years of experience in cloud security architecture, security engineering, governance, risk, compliance, or related roles supporting federal or highly regulated workloads. Demonstrated expertise with FedRAMP, NIST Risk Management Framework, and NIST SP 800-53 Rev. 5 security controls. Experience supporting FedRAMP Continuous Monitoring, including vulnerability management, POA&M tracking, evidence collection, reporting, and control monitoring. Experience conducting or supporting risk assessments, vulnerability scans, incident analysis, and remediation activities within a FedRAMP or regulated environment. Strong communication skills with the ability to engage effectively with federal agencies, auditors, third-party assessors, technical teams, and senior stakeholders. Ability to analyze security and compliance data, identify trends or risks, and produce clear reports for leadership, agencies, and audit partners. Bachelor's degree in cybersecurity, information security, computer science, or a related discipline, or equivalent professional experience. Preferred Qualifications Experience with cloud environments such as AWS, Azure, or Google Cloud Platform. Experience supporting the FedRAMP Authorization to Operate process. Familiarity with state-level compliance programs such as StateRAMP, GovRAMP, or TX-RAMP. Relevant security or compliance certifications such as CISSP, CISM, CISA, CCSP, Security+, or similar credentials. What's in it for you Hybrid Work Model: We've adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected. Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance. Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow's challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future. Industry Competitive Benefits: We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing. Culture: Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge Your Thinking, Act Fast / Learn Fast, and Stronger Together. Social Impact: Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives. Making a Real-World Impact: We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world. In the United States, Thomson Reuters offers a comprehensive benefits package to our employees. Our benefit package includes market competitive health, dental, vision, disability, and life insurance programs, as well as a competitive 401k plan with company match. We also offer a variety of other benefits such as paid holidays (including two company mental health days off), parental leave, sabbatical leave, and more. Benefits of competing compensation: base pay range $136,000 – $253,000 USD (location-dependent). May also be eligible for an annual bonus. We welcome candidates from all backgrounds. Thomson Reuters complies with local laws that require upfront disclosure of the expected pay range for a position. This role may also be eligible for an Annual Bonus based on a combination of enterprise and individual performance. Thomson Reuters is an equal opportunity employer providing a drug-free workplace. #J-18808-Ljbffr Thomson Reuters

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Lead Governance & Compliance Analyst in Washington DC vacancy
  •  ...Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the...  ...Professional development and certification support ★ Mentorship from industry-leading security experts #J-18808-Ljbffr... 
    Suggested
    Full time
    Remote work

    Districttechgroup

    Washington DC
    5 days ago
  • The Treaty Compliance Analyst provides support to U.S.Army Nuclear and Countering Weapons of Mass Destruction Agency (USANCA) to include study and assessment of USG, DoD, Joint, and Army Countering Weapons of Mass Destruction (CWMD) and counter‑proliferation guidance issues... 
    Suggested
    Temporary work
    Flexible hours

    Integral Federal, Inc.

    Washington DC
    1 day ago
  • Integral Federal, Inc. is seeking a Treaty Compliance Analyst to support the U.S. Army Nuclear and Countering Weapons of Mass Destruction Agency. The role involves studying and assessing guidance related to counter-proliferation issues and AC treaty compliance. Ideal candidates... 
    Suggested
    Flexible hours

    Integral Federal, Inc.

    Washington DC
    5 days ago
  • $90k - $115k

    Koitecc Solutions is seeking an IT Risk and Compliance Analyst to evaluate and monitor compliance with information security standards. This role involves close collaboration with business units and Legal, providing security advice and conducting assessments. Qualified... 
    Suggested

    Koitecc Solutions

    Washington DC
    4 days ago
  •  ...Records Management & Compliance Analyst ProSidian is a Management And Operations Consulting...  ...tailored solutions based on industry-leading practices. ProSidian provides enterprise...  ...Management & Business Intelligence - Data Governance & Privacy [NSF0122122] for Program... 
    Suggested
    Full time
    Contract work
    H1b
    Work at office

    ProSidian Consulting

    Alexandria, VA
    3 days ago
  •  ...Records Management & Compliance Analyst ProSidian is a management and operations consulting services...  ...tailored solutions based on industry-leading practices. We seek a Records...  ...Management & Business Intelligence, Data Governance & Privacy) to support professional services... 
    Full time
    H1b
    Work at office
    Visa sponsorship

    ProSidian Consulting

    Alexandria, VA
    9 hours ago
  •  ...Description: Company Description Citizant is a leading provider of professional IT services to the U.S. government. We seek to address some of our country’s most...  .... This role is responsible for ensuring compliance with federal identity verification standards, optimizing... 
    Immediate start
    Flexible hours

    Citizant Inc

    Washington DC
    28 days ago
  •  ...solutions based on industry-leading practices. ProSidian provides...  ...solutions for Risk Management | Compliance | Business Process | IT...  ...private, defense and civilian government, and non-profit organizations...  ...Seeks a Compliance Reporting Analyst | Human Capital Programmatic... 
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    ProSidian Consulting, LLC

    Alexandria, VA
    16 days ago
  • Improvix Technologies is looking for a Cybersecurity Analyst in Washington, DC. The role requires strong expertise in leading Authorization to Operate (ATO) processes and experience in NIST Risk Management Framework. The ideal candidate will independently manage ATO documentation... 
    Full time

    Improvix Technologies

    Washington DC
    4 days ago
  • $130k - $180k

     ...About Virtru: Virtru is a leading data protection provider backed...  ...a cutting edge security compliance program aligned with FedRAMP,...  ...performant service. As a GRC Analyst at Virtru, you will be the primary...  ...program. As a Security Governance Risk & Compliance (GRC)... 
    Remote job
    Local area
    Flexible hours
    Shift work

    Virtru

    Washington DC
    more than 2 months ago
  •  ...and approve promotional and non‑promotional materials, ensuring compliance with applicable FDA regulations, guidance, and industry...  ...balanced, compliant, and scientifically accurate communications Lead discussions on risk assessment and mitigation strategies, offering... 

    Parexel

    Washington DC
    3 days ago
  • Thomson Reuters is seeking a Lead Governance & Compliance Analyst in Washington, DC to ensure our federal-facing products maintain compliance with FedRAMP standards. This role involves collaboration with various stakeholders to support security and authorization activities... 
    Flexible hours

    Thomson Reuters

    Washington DC
    5 days ago
  •  ...for senior-level records and information management support. This role involves managing physical and electronic records to ensure compliance with federal requirements and facilitating operations under the Freedom of Information Act (FOIA). The ideal candidate will... 
    Remote work

    HeiTech Services, Inc.

    Arlington, VA
    1 day ago
  •  ...and will manage both physical and electronic records according to legal and internal standards. Responsibilities include ensuring compliance, supervising staff, and enhancing operational efficiency. Strong organizational and communication skills are essential for this... 
    Work at office

    Spectrum Financial Inc

    Washington DC
    21 hours ago
  • Tripoint Solutions, LLC is looking for an experienced IT Portfolio Manager to support a federal government contract. The role involves ensuring alignment of IT projects with organizational goals and optimizing resource allocation. Candidates should have at least 4 years... 
    Contract work
    1 day per week

    Tripoint Solutions

    Arlington, VA
    3 days ago
  •  ...ecosystem. The role involves managing committee assignments and member recognition while ensuring excellent operational support across governance activities. Ideal candidates will have at least 5 years of experience in volunteer engagement or association management, and a... 
    Work at office
    Remote work

    New England Society of Association Executives

    Washington DC
    3 days ago
  • A defense consulting firm is looking for a Senior Requirements Analyst in Washington, DC. This role entails supporting the Integrated Air and Missile Defense (IAMD) capability development and requires a Master’s degree and extensive defense experience. Candidates should... 

    Apparatus Solutions, Inc.

    Washington DC
    2 days ago
  • Aretum is seeking a Functional Analyst for the Trusted Workforce 2.0 Governance & Compliance Lead role in Arlington, Virginia. This position is crucial in translating policy into actionable controls and ensuring audit readiness across personnel vetting processes. The ideal... 

    Aretum

    Arlington, VA
    3 days ago
  • $160k - $165k

    Edgewater Federal Solutions, Inc. seeks a PMO Lead in Washington, DC, to provide leadership for the Program Management Office. This...  ...establishing PMO functions. Key responsibilities include overseeing IT governance, managing program delivery schedules, and improving PMO... 
    Work at office

    Edgewater Federal Solutions

    Washington DC
    4 days ago
  •  ...Bank Group is seeking a Practice Manager in Washington, DC to lead the Governance - Financial Management unit. The ideal candidate will have...  ...team, leading strategic governance projects, and ensuring compliance with international financial standards. Join a dynamic... 

    The World Bank Group

    Washington DC
    4 days ago
  • Refinitiv is seeking a Lead Governance & Compliance Analyst in Washington, DC to support federal government portfolios, ensuring compliance with FedRAMP requirements. This role involves managing the security compliance posture, collaborating closely with engineering, product... 

    Refinitiv

    Washington DC
    5 days ago
  • A global professional services firm is seeking a skilled IT Risk Advisor to lead risk management engagements and enhance cloud risk governance frameworks. You will engage with clients at an executive level, managing multiple teams while analyzing and improving internal... 
    Flexible hours

    Ernst & Young Oman

    Washington DC
    3 days ago
  • CACI International Inc in Arlington, Virginia is seeking an AI Governance SME to craft and lead innovative AI strategies for the Army Intelligence Enterprise. You will manage high-impact AI projects and spearhead research initiatives that integrate cutting-edge technology... 

    CACI International Inc

    Arlington, VA
    2 days ago
  • ProSidian Consulting, LLC is seeking a Stakeholder Engagement Manager to support independent engineering advisory services and program governance for the DOE Loan Programs Office. The role involves working on high-impact energy infrastructure projects while providing... 
    Remote job
    Work at office

    ProSidian Consulting, LLC

    Washington DC
    4 days ago
  • Selby Jennings is looking for a Governance Specialist to enhance enterprise governance frameworks across international operations. This role focuses on ensuring compliance with regulatory obligations and organizational objectives while promoting transparency and operational... 

    Selby Jennings

    Washington DC
    5 days ago
  • $137.7k - $241k

    Servicenow is seeking a Senior Engagement Manager to lead the delivery team, ensuring on-time project execution using the NowCreate methodology. Responsibilities include governance management, navigating complex project issues, and mentoring team members. Ideal candidates... 
    Remote work

    Servicenow

    Washington DC
    2 days ago
  • $116.9k - $243.1k

     ...Federal Services is seeking an AI/ML Strategist to implement governance frameworks for AI/ML models in Arlington, Virginia. You will develop...  ...responsible AI practices within the organization, including compliance with ethical principles and regulatory requirements.... 

    Accenture Federal Services

    Arlington, VA
    5 days ago
  • Alpha Omega is seeking a Governance Lead for the Power Platform and Copilot. This role involves defining, managing, and optimizing governance for Microsoft 365 Copilot, ensuring compliance with federal standards. Candidates must possess significant experience in administration... 
    Remote job
    Full time

    Alpha Omega

    Arlington, VA
    2 days ago
  • Graceconsulate is seeking a Senior Volunteer Component Relations Manager to lead volunteer engagement efforts remotely. The role involves...  ...database, and coordinating with internal teams to enhance governance activities. Ideal candidates will have over 5 years in related... 
    Remote job

    Graceconsulate

    Washington DC
    3 days ago
  • Chenega Corporation is seeking a Senior Enterprise Architecture Governance Process Engineer to develop and implement governance processes that support enterprise architecture initiatives within CDAO programs. The role involves directly supporting CDAO stakeholders and... 

    Chenega Corporation

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Governance & Compliance Analyst. Be the first to apply!