Information Security Governance, Risk & Compliance (GRC) Analyst
ASSYST
ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an established enterprise Information Security Governance, Risk, and Compliance (GRC) program. This role will focus on managing Information Security Policy Exceptions and maintaining the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. The ideal candidate will work under the guidance of Information Security leadership to execute established governance processes, document and track information security risks, and support enterprise risk management activities. This position provides an excellent opportunity to gain hands-on experience with enterprise cybersecurity governance, information security risk management, ServiceNow IRM, and policy exception management while collaborating with experienced information security professionals. Note: This position focuses on governance, documentation, and risk management activities. It does not involve performing security assessments, penetration testing, vulnerability assessments, audits, or compliance reviews. Roles & Responsibilities: Administer and support the Information Security Policy Exception Program. Maintain and update the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. Execute established governance processes, standardized risk assessment methodologies, workflows, templates, and reporting procedures. Review policy exception requests and document findings. Perform information security risk analyses and provide approval or denial recommendations. Document, track, and maintain identified information security risks within the enterprise Risk Register. Prepare and maintain accurate policy exception tracking records. Produce monthly metrics, quarterly reports, executive dashboards, and ServiceNow documentation. Coordinate assigned tasks, workflows, and activities while ensuring timely completion. Prepare clear and accurate technical documentation related to governance and risk management processes. Collaborate with internal stakeholders to support enterprise information security governance initiatives. Maintain high standards of documentation accuracy, consistency, and data integrity. Provide excellent customer service while supporting governance and risk management activities. Work independently while effectively managing multiple priorities and deadlines. Required Skills & Qualifications: Minimum Qualifications: Professional experience in Information Security, IT Governance, Compliance, Risk Management, Information Technology, Audit, or a related field. Basic understanding of Information Security Governance, Risk Management, and Cybersecurity principles. Strong analytical and critical thinking skills. Excellent written and verbal communication skills. Strong organizational skills with exceptional attention to detail. Ability to manage multiple priorities in a fast-paced environment. Ability to quickly learn new technologies and business processes. Demonstrated professionalism and ability to work independently. Preferred Qualifications: Experience using ServiceNow, preferably Integrated Risk Management (IRM). Experience with Governance, Risk, and Compliance (GRC) programs or platforms. Experience using Microsoft Office 365 applications. Experience preparing technical documentation and reports. Experience coordinating projects, tasks, or workflow activities. Experience working in customer service or stakeholder-facing environments. Knowledge & Technical Skills: Cybersecurity Principles Information Security Governance Governance, Risk & Compliance (GRC) Enterprise Risk Management Risk Assessment Methodologies Risk Register Management ServiceNow Integrated Risk Management (IRM) NIST Cybersecurity Framework (NIST CSF) Risk Scoring Systems and Quantitative Risk Frameworks
HIPAA
Technical Documentation Workflow Coordination Microsoft Office 365 ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law. #J-18808-Ljbffr Assyst- ASSYST, Inc. is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an enterprise GRC program. This role focuses on policy exceptions and maintaining the risk register using ServiceNow IRM,...Suggested
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...Job Description Job Description JUNIOR GRC ANALYST ROCKVILLE, MD - HYBRID LONG TERM CONTRACT SEEKING SOMEONE... ...~ The GRC Analyst supports the administration of Information Security Governance, Risk, and Compliance programs, including policy exception management and...SuggestedLong term contractInternship
$109k - $124.4k
Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst Security is essential to what we do at Capital One,... ...differentiator, not just a step in the compliance process. You thrive working with... ...know when to pull in experts to inform your recommendations and escalate...SuggestedFull timePart timeH1bLocal area$99k - $225k
Information Security Risk SpecialistThe Opportunity:As an Information Security Risk Specialist on our... ...closely with contractor and DoD government system owners, as well as system administrators... ...cybersecurity policiesKnowledge of compliance testing tools such as ACAS, SCAP,...SuggestedFull timeContract workPart timeFor contractorsWork at officeLocal areaRemote work- SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing... ...GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal...Remote job
$96.5k - $110.1k
Overview Senior Risk Specialist | Retail Bank The Conduct Risk... ...MPG (Monitoring, Process, & Governance) mission is a passionate and... ...with select business, Compliance, Human Resources and Risk stakeholders... ...business clients Additional information At this time, Capital One...Permanent employmentFull timePart timeWork at officeLocal area- ...Compliance And Risk Analyst The Compliance And Risk Analyst assists the IT Program Manager in the registration of all Application and Database... ...each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves clients...Temporary workWork at officeImmediate startFlexible hours
- ...Canada in McLean, VA is hiring a Public Sector IT Internal Audit & Risk Senior Consultant. This full-time on-site role focuses on risk... ...for public sector clients, with diverse exposure to IT governance, cybersecurity and controls. The team seeks candidates with strong...Full time
- RSM US LLP is seeking a Technology Risk Consultant to join our Risk Consulting practice. You will help clients strengthen IT governance, control design, and assurance over enterprise... ..., and internal audits across ERP and security domains. Travel to client sites may be required...Flexible hours
- Vacancy: Security Risk Analyst The Security Risk Analyst specializes in audit coordination, fulfillment of auditor document requests, and in ensuring that information reflecting security compliance is in place and is conveyed to auditors. May 15, 2023U.S. citizenship is...Work experience placementWork at officeRemote workWork from home
- ...SUMMARY: The Sr. Director, Global Information Security (GIS) Compliance Program is a key member of the GIS... ...portfolio or program management and governance reporting at executive levels Prior... ...to leadership. Raise and mitigate risks to compliance to the regulatory commitments...Full timeRemote workFlexible hours
- Freddie Mac is seeking a Compliance Ops Senior Analyst to strengthen non‑financial risk reporting, data quality, and governance within Enterprise Risk. You will produce and coordinate reports, validate data, and partner with tech teams to deliver accurate source outputs...
$107.71k - $161.56k
About the RoleJoin FINRA's Risk Monitoring team and play a meaningful... ...As a Senior Risk Monitoring Analyst, you'll work at the forefront... ..., or Market RiskFINRA Securities Industry Essentials (SIE) certification... ...on an ongoing basis.The information provided above has been...Full timeTemporary workFor contractorsFor subcontractorLocal areaImmediate start- ...America, Chicago, IllinoisCompliance Advisor ManagerThe Compliance Advisor Manager performs a key risk management role (second line of defense) by ensuring... ..., religion, physical and mental disability, genetic information, marital status, sexual orientation, gender identity...Full timeLocal area
$105.4k - $207.8k
...strengthen resilience, support compliance, and protect critical data.... ...that advance data governance, information protection, and regulatory... ...Purview and adjacent Microsoft security and compliance technologies... ...security posture and reduce risk. A successful candidate would...Local areaVisa sponsorship$78k - $95k
Lafayette Federal Credit Union is seeking a Senior Contract Analyst to oversee contracts and vendor relationships in a hybrid work environment. The successful candidate will ensure compliance and alignment with strategic objectives. This role requires a bachelor's degree...Contract work- A leading management consulting firm is seeking a Design Inspector | Safety Analyst to provide nuclear risk management solutions. The ideal candidate will conduct safety assessments and develop risk mitigation strategies. Candidates must have at least 5 years of experience...
- ...Senior Data Analyst ProSidian is a Management... ...the broad spectrum of Risk Management, Compliance, Business Process,... ...00 Enterprises, and Government Agencies of all sizes... ...and provides information on a number of critical... ...software management, data security, web publications,...Contract work
- ...Junior Data Analyst ProSidian is a Management... ...the broad spectrum of Risk Management, Compliance, Business Process,... ...00 Enterprises, and Government Agencies of all sizes... ...and provides information on a number of critical... ...software management, data security, web publications,...Contract workFor contractors
- Senior Manager, ERP Risk, Governance & Compliance 1 week ago Be among the first 25... ...Governance, Risk, Compliance (GRC) & Internal Control... ...architecture, migration and security. Responsible for the analysis... ..., Accounting, Management Information Systems or a related field...Full timeFlexible hours
$170k - $200k
Let’s be #BrilliantTogether The Chief Compliance Officer (CCO) is responsible for overseeing... ...leadership to maintain a robust, risk-based compliance framework, promote a strong... ...Responsibilities Compliance Framework & Governance Own, design, and continuously enhance the...$151.9k - $173.4k
Compliance Privacy Advisor, Manager The Capital One Privacy Compliance... ...for mitigation privacy risks at a tech focused finance institution... ...or audit. CIPP (Certified Information Privacy Professional)... ...certification, or AIGP (Certified AI Governance Professional). At this time...Full timeTemporary workPart timeLocal area- COMFORT SYSTEMS is looking for a Compliance Privacy Advisor, Manager to mitigate privacy risks and manage compliance activities in McLean, VA. The ideal candidate should have a strong background in privacy compliance, experience in risk management, and the ability to work...
- ...the broad spectrum of Risk Management, Compliance, Business Process,... ...00 Enterprises, and Government Agencies of all sizes... ...Inspector | Safety Analyst (NDI5) [Key Personnel... ...this role. Staying informed about evolving safety... ...on a daily basis.Security Clearance: Due to the...Full timeFor contractorsH1bWork at officeFlexible hours
- ...Actuarial Analyst II - Large Group Pricing This individual contributor is primarily... ...determining the likelihood of financial risk to the organization, reviewing actuarial... ...relationships with others by sharing resources, information, and knowledge with coworkers and...Temporary workWork experience placement
$73.36k - $118.77k
Highspring (Formerly MorganFranklin Consulting) in McLean, Virginia is seeking professionals for roles involving SOX compliance, internal audit, and risk management. Applicants should have a Bachelor’s degree in Accounting or related fields and at least 2 years of...- ...Actuarial Analyst II - Large Group PricingThis individual contributor is primarily responsible... ...determining the likelihood of financial risk to the organization, reviewing actuarial... ...with others by sharing resources, information, and knowledge with coworkers and customers...Work experience placement
- Institutional Shareholder Services (ISS) seeks a Chief Compliance Officer to oversee the compliance program for ISS and its affiliates... ...to the Advisers Act and related U.S. laws, guiding governance, risk assessments, and regulatory interactions. The role leads a global...
$69.4k - $158k
Risk Management AnalystThe Opportunity:Use your industry or domain expertise to assess... ...selected will be subject to a security investigation and may need to meet eligibility... ...eligibility requirements for access to classified information;Top Secret clearance is required....Full timeContract workPart timeWork at officeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!
- it risk analyst Rockville, MD
- risk analyst Rockville, MD
- risk officer Rockville, MD
- risk consultant Rockville, MD
- compliance coordinator Rockville, MD
- regulatory specialist Rockville, MD
- compliance associate Rockville, MD
- risk and compliance analyst Rockville, MD
- regulatory officer Rockville, MD
- compliance specialist Rockville, MD

