Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Governance, Risk & Compliance (GRC) Analyst

ASSYST

ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an established enterprise Information Security Governance, Risk, and Compliance (GRC) program. This role will focus on managing Information Security Policy Exceptions and maintaining the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. The ideal candidate will work under the guidance of Information Security leadership to execute established governance processes, document and track information security risks, and support enterprise risk management activities. This position provides an excellent opportunity to gain hands-on experience with enterprise cybersecurity governance, information security risk management, ServiceNow IRM, and policy exception management while collaborating with experienced information security professionals. Note: This position focuses on governance, documentation, and risk management activities. It does not involve performing security assessments, penetration testing, vulnerability assessments, audits, or compliance reviews. Roles & Responsibilities: Administer and support the Information Security Policy Exception Program. Maintain and update the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. Execute established governance processes, standardized risk assessment methodologies, workflows, templates, and reporting procedures. Review policy exception requests and document findings. Perform information security risk analyses and provide approval or denial recommendations. Document, track, and maintain identified information security risks within the enterprise Risk Register. Prepare and maintain accurate policy exception tracking records. Produce monthly metrics, quarterly reports, executive dashboards, and ServiceNow documentation. Coordinate assigned tasks, workflows, and activities while ensuring timely completion. Prepare clear and accurate technical documentation related to governance and risk management processes. Collaborate with internal stakeholders to support enterprise information security governance initiatives. Maintain high standards of documentation accuracy, consistency, and data integrity. Provide excellent customer service while supporting governance and risk management activities. Work independently while effectively managing multiple priorities and deadlines. Required Skills & Qualifications: Minimum Qualifications: Professional experience in Information Security, IT Governance, Compliance, Risk Management, Information Technology, Audit, or a related field. Basic understanding of Information Security Governance, Risk Management, and Cybersecurity principles. Strong analytical and critical thinking skills. Excellent written and verbal communication skills. Strong organizational skills with exceptional attention to detail. Ability to manage multiple priorities in a fast-paced environment. Ability to quickly learn new technologies and business processes. Demonstrated professionalism and ability to work independently. Preferred Qualifications: Experience using ServiceNow, preferably Integrated Risk Management (IRM). Experience with Governance, Risk, and Compliance (GRC) programs or platforms. Experience using Microsoft Office 365 applications. Experience preparing technical documentation and reports. Experience coordinating projects, tasks, or workflow activities. Experience working in customer service or stakeholder-facing environments. Knowledge & Technical Skills: Cybersecurity Principles Information Security Governance Governance, Risk & Compliance (GRC) Enterprise Risk Management Risk Assessment Methodologies Risk Register Management ServiceNow Integrated Risk Management (IRM) NIST Cybersecurity Framework (NIST CSF) Risk Scoring Systems and Quantitative Risk Frameworks

HIPAA

Technical Documentation Workflow Coordination Microsoft Office 365 ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law. #J-18808-Ljbffr Assyst

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information Security Governance, Risk & Compliance (GRC) Analyst in Rockville, MD vacancy
  • ASSYST, Inc. is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an enterprise GRC program. This role focuses on policy exceptions and maintaining the risk register using ServiceNow IRM,... 
    Suggested

    ASSYST, Inc.

    Rockville, MD
    4 days ago
  • $99k - $225k

    Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    12 hours ago
  •  ...Job Description Job Description JUNIOR GRC ANALYST ROCKVILLE, MD - HYBRID LONG TERM CONTRACT SEEKING SOMEONE...  ...~ The GRC Analyst supports the administration of Information Security Governance, Risk, and Compliance programs, including policy exception management and... 
    Suggested
    Long term contract
    Internship

    System One

    Rockville, MD
    18 days ago
  • $109k - $124.4k

    Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst Security is essential to what we do at Capital One,...  ...differentiator, not just a step in the compliance process. You thrive working with...  ...know when to pull in experts to inform your recommendations and escalate... 
    Suggested
    Full time
    Part time
    H1b
    Local area

    Capital One National Association

    Mc Lean, VA
    12 hours ago
  • $99k - $225k

    Information Security Risk SpecialistThe Opportunity:As an Information Security Risk Specialist on our...  ...closely with contractor and DoD government system owners, as well as system administrators...  ...cybersecurity policiesKnowledge of compliance testing tools such as ACAS, SCAP,... 
    Suggested
    Full time
    Contract work
    Part time
    For contractors
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  • SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing...  ...GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal... 
    Remote job

    SkyePoint Decisions

    Bethesda, MD
    12 hours ago
  • $96.5k - $110.1k

    Overview Senior Risk Specialist | Retail Bank The Conduct Risk...  ...MPG (Monitoring, Process, & Governance) mission is a passionate and...  ...with select business, Compliance, Human Resources and Risk stakeholders...  ...business clients Additional information At this time, Capital One... 
    Permanent employment
    Full time
    Part time
    Work at office
    Local area

    Capital One

    Mc Lean, VA
    1 day ago
  •  ...Compliance And Risk Analyst The Compliance And Risk Analyst assists the IT Program Manager in the registration of all Application and Database...  ...each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves clients... 
    Temporary work
    Work at office
    Immediate start
    Flexible hours

    Integral Federal

    McLean, VA
    4 days ago
  •  ...Canada in McLean, VA is hiring a Public Sector IT Internal Audit & Risk Senior Consultant. This full-time on-site role focuses on risk...  ...for public sector clients, with diverse exposure to IT governance, cybersecurity and controls. The team seeks candidates with strong... 
    Full time

    Baker Tilly Canada

    Mc Lean, VA
    12 hours ago
  • RSM US LLP is seeking a Technology Risk Consultant to join our Risk Consulting practice. You will help clients strengthen IT governance, control design, and assurance over enterprise...  ..., and internal audits across ERP and security domains. Travel to client sites may be required... 
    Flexible hours

    RSM US LLP

    Mc Lean, VA
    4 days ago
  • Vacancy: Security Risk Analyst The Security Risk Analyst specializes in audit coordination, fulfillment of auditor document requests, and in ensuring that information reflecting security compliance is in place and is conveyed to auditors. May 15, 2023U.S. citizenship is... 
    Work experience placement
    Work at office
    Remote work
    Work from home

    Omni Systems

    McLean, VA
    1 day ago
  •  ...SUMMARY: The Sr. Director, Global Information Security (GIS) Compliance Program is a key member of the GIS...  ...portfolio or program management and governance reporting at executive levels Prior...  ...to leadership. Raise and mitigate risks to compliance to the regulatory commitments... 
    Full time
    Remote work
    Flexible hours

    Marriott International

    Bethesda, MD
    4 days ago
  • Freddie Mac is seeking a Compliance Ops Senior Analyst to strengthen non‑financial risk reporting, data quality, and governance within Enterprise Risk. You will produce and coordinate reports, validate data, and partner with tech teams to deliver accurate source outputs... 

    Freddie Mac

    Mc Lean, VA
    1 day ago
  • $107.71k - $161.56k

    About the RoleJoin FINRA's Risk Monitoring team and play a meaningful...  ...As a Senior Risk Monitoring Analyst, you'll work at the forefront...  ..., or Market RiskFINRA Securities Industry Essentials (SIE) certification...  ...on an ongoing basis.The information provided above has been... 
    Full time
    Temporary work
    For contractors
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Rockville, MD
    3 days ago
  •  ...America, Chicago, IllinoisCompliance Advisor ManagerThe Compliance Advisor Manager performs a key risk management role (second line of defense) by ensuring...  ..., religion, physical and mental disability, genetic information, marital status, sexual orientation, gender identity... 
    Full time
    Local area

    Capital One

    McLean, VA
    3 days ago
  • $105.4k - $207.8k

     ...strengthen resilience, support compliance, and protect critical data....  ...that advance data governance, information protection, and regulatory...  ...Purview and adjacent Microsoft security and compliance technologies...  ...security posture and reduce risk. A successful candidate would... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    12 hours ago
  • $78k - $95k

    Lafayette Federal Credit Union is seeking a Senior Contract Analyst to oversee contracts and vendor relationships in a hybrid work environment. The successful candidate will ensure compliance and alignment with strategic objectives. This role requires a bachelor's degree... 
    Contract work

    Lafayette Federal Credit Union

    Rockville, MD
    2 days ago
  • A leading management consulting firm is seeking a Design Inspector | Safety Analyst to provide nuclear risk management solutions. The ideal candidate will conduct safety assessments and develop risk mitigation strategies. Candidates must have at least 5 years of experience... 

    ProSidian Consulting, LLC

    Rockville, MD
    4 days ago
  •  ...Senior Data Analyst ProSidian is a Management...  ...the broad spectrum of Risk Management, Compliance, Business Process,...  ...00 Enterprises, and Government Agencies of all sizes...  ...and provides information on a number of critical...  ...software management, data security, web publications,... 
    Contract work

    ProSidian Consulting

    Rockville, MD
    5 days ago
  •  ...Junior Data Analyst ProSidian is a Management...  ...the broad spectrum of Risk Management, Compliance, Business Process,...  ...00 Enterprises, and Government Agencies of all sizes...  ...and provides information on a number of critical...  ...software management, data security, web publications,... 
    Contract work
    For contractors

    ProSidian Consulting

    Rockville, MD
    12 hours ago
  • Senior Manager, ERP Risk, Governance & Compliance 1 week ago Be among the first 25...  ...Governance, Risk, Compliance (GRC) & Internal Control...  ...architecture, migration and security. Responsible for the analysis...  ..., Accounting, Management Information Systems or a related field... 
    Full time
    Flexible hours

    Highspring (Formerly MorganFranklin Consulting)

    Mc Lean, VA
    12 hours ago
  • $170k - $200k

    Let’s be #BrilliantTogether The Chief Compliance Officer (CCO) is responsible for overseeing...  ...leadership to maintain a robust, risk-based compliance framework, promote a strong...  ...Responsibilities Compliance Framework & Governance Own, design, and continuously enhance the... 

    Institutional Shareholder Services

    Rockville, MD
    3 days ago
  • $151.9k - $173.4k

    Compliance Privacy Advisor, Manager The Capital One Privacy Compliance...  ...for mitigation privacy risks at a tech focused finance institution...  ...or audit. CIPP (Certified Information Privacy Professional)...  ...certification, or AIGP (Certified AI Governance Professional). At this time... 
    Full time
    Temporary work
    Part time
    Local area

    Capital One

    Mc Lean, VA
    1 day ago
  • COMFORT SYSTEMS is looking for a Compliance Privacy Advisor, Manager to mitigate privacy risks and manage compliance activities in McLean, VA. The ideal candidate should have a strong background in privacy compliance, experience in risk management, and the ability to work... 

    COMFORT SYSTEMS

    Mc Lean, VA
    12 hours ago
  •  ...the broad spectrum of Risk Management, Compliance, Business Process,...  ...00 Enterprises, and Government Agencies of all sizes...  ...Inspector | Safety Analyst (NDI5) [Key Personnel...  ...this role. Staying informed about evolving safety...  ...on a daily basis.Security Clearance: Due to the... 
    Full time
    For contractors
    H1b
    Work at office
    Flexible hours

    Prosidian Consultng

    Rockville, MD
    1 day ago
  •  ...Actuarial Analyst II - Large Group Pricing This individual contributor is primarily...  ...determining the likelihood of financial risk to the organization, reviewing actuarial...  ...relationships with others by sharing resources, information, and knowledge with coworkers and... 
    Temporary work
    Work experience placement

    Kaiser Permanente

    Rockville, MD
    4 days ago
  • $73.36k - $118.77k

    Highspring (Formerly MorganFranklin Consulting) in McLean, Virginia is seeking professionals for roles involving SOX compliance, internal audit, and risk management. Applicants should have a Bachelor’s degree in Accounting or related fields and at least 2 years of... 

    Highspring (Formerly MorganFranklin Consulting)

    Mc Lean, VA
    1 day ago
  •  ...Actuarial Analyst II - Large Group PricingThis individual contributor is primarily responsible...  ...determining the likelihood of financial risk to the organization, reviewing actuarial...  ...with others by sharing resources, information, and knowledge with coworkers and customers... 
    Work experience placement

    Kaiser Permanente

    Rockville, MD
    19 hours ago
  • Institutional Shareholder Services (ISS) seeks a Chief Compliance Officer to oversee the compliance program for ISS and its affiliates...  ...to the Advisers Act and related U.S. laws, guiding governance, risk assessments, and regulatory interactions. The role leads a global... 

    Institutional Shareholder Services

    Rockville, MD
    3 days ago
  • $69.4k - $158k

    Risk Management AnalystThe Opportunity:Use your industry or domain expertise to assess...  ...selected will be subject to a security investigation and may need to meet eligibility...  ...eligibility requirements for access to classified information;Top Secret clearance is required.... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!