Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IT Risk and Compliance Analyst

$90k - $115k

Berkeley Research Group, LLC

BRG is an Equal Employment Opportunity/Affirmative Action Employer. All qualified candidates will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Position Title: IT Risk and Compliance Analyst Location: Washington, DC | New York, NY | Boston, MA | Chicago, IL Position Type: Full time Requisition ID: JR100812 Job Summary The IT Risk and Compliance Analyst position is a highly visible, client‑facing role which works closely with the Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager. This role is responsible for providing assistance in evaluating, assessing, and monitoring the firm’s risk and compliance with applicable information security standards and frameworks, industry best practices, and applicable laws and regulations. This role will also help coordinate and maintain the firm’s Information Security Management Program and assist in implementing security policy objectives in ways that align with business and mission objectives. Reporting Relationships IT Risk and Compliance Manager Key Contacts Works closely with the Legal and Business Unit stakeholders. This role will work with the clients in response to security assessments and due diligence questionnaires covering a broad range of business disciplines and industries (i.e., Healthcare, Financial Services, Construction, Government Contracts, Insurance, Real Estate, etc.). This role will work in conjunction with the IT Security and Infrastructure Team. Major Responsibilities / Job Functions Provide IT security, risk, and compliance advice to business units on an ongoing basis. Analyze and address gaps in operations to ensure integrity of processes, controls, and policies. Assist in maintaining and updating Information Security Program policies and procedures as needed, also completing a yearly review to ensure all documentation is properly updated. Provide governance for participation in the information security incident response process by ensuring that the process is being followed and documented. Respond to escalated security events and drive the security incident response process. Participate in the evaluation, development and implementation of security standards, procedures and guidelines for multiple platforms and diverse systems environments. Work with internal and external auditors to demonstrate and provide evidence for controls that are in place. May conduct additional testing to validate that items found during testing have been remediated. Responsible for completion of client security questionnaires and working with the business units to assist with RFI responses related to IT security. Assist in vendor vetting to ensure our vendors, business partners, or suppliers use the same or higher security practices. Assist in conducting Risk Assessments and annual reviews for any new or current vendors, business partners, or suppliers. Assist with complex security assessments that require both analytical and technical skills across a broad range of Information Technology topics (e.g., Identity and Access Management, Security Architecture, Physical and Environmental, etc.). Assist with evaluating, testing, documenting, and maintaining the firmwide Disaster Recovery and Business Continuity Plan policies, processes, and standards. Assist with the Security Awareness Training program initiatives related to phishing campaigns and coordinate with HR to deliver ongoing employee training. Requirements Associate Degree or equivalent work experience 3 years of experience in two or more major information technology functions (infrastructure, operations, data center, application support, etc.) 3 years IT security, IT compliance, or IT risk management experience desired. 3 years of experience involving ISO27001 annual surveillance audits and full recertification audits. Familiarity with industry frameworks and standards such as SOC2, HIPAA, HITRUST is a plus. Familiarity with GDPR and CCPA. Familiarity using GRC tools. Knowledge of application and network security, information security risk and industry best practice (how to best manage risk). Experience with building, executing, and maintaining DR and BCP program. Ability to effectively prioritize and execute tasks in a high‑pressure environment. Excellent written and verbal communication skills and time management skills. Strong troubleshooting, problem‑solving and analytical skills. Position may require traveling for short periods. Trips will sometimes extend to 5 working days and could on rare occasions extend beyond 5 business days. All travel expenses will be reimbursed. Salary Range: $90,000-$115,000 Candidate must be able to submit verification of his/her legal right to work in the U.S., without company sponsorship.

#LI-SJ1

#J-18808-Ljbffr Berkeley Research Group, LLC

Vacancy posted 16 hours ago
Similar jobs that could be interesting for youBased on the IT Risk and Compliance Analyst in Washington DC vacancy
  •  ...ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness | Engineering | Environmental |...  ...Description ProSidian Seeks a Compliance Reporting Analyst | Human Capital Programmatic Evaluation & Compliance... 
    Suggested
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    ProSidian Consulting, LLC

    Alexandria, VA
    7 days ago
  •  ...than 70 countries across all 7 continents. The SCA and DBA Compliance Analyst will support the company’s compliance with Service Contract Act...  ...departments to promote organizational integrity, mitigate risks, and ensure adherence to Code of Conduct. The ideal candidate... 
    Suggested
    Hourly pay
    Contract work
    Work experience placement
    For subcontractor
    Work at office
    Local area
    Remote work

    Amentum

    Washington DC
    4 days ago
  • Description SAIC is seeking a Cybersecurity Compliance analyst in Arlington, VA. The roles and responsibilities include providing administrative, technical, and analytical expertise of the Risk Management Framework with knowledge of network operations and vulnerability... 
    Suggested

    Saic

    Arlington, VA
    16 hours ago
  • Insight Global is seeking a Cyber Security Analyst in Washington, DC, for a 5-month contract with potential extensions...  ...developing cybersecurity policies, performing risk assessments, and supporting compliance initiatives. Candidates should have strong knowledge of... 
    Suggested
    Contract work
    3 days per week

    Insight Global

    Washington DC
    3 days ago
  • $90k - $115k

    Job Summary IT Risk and Compliance Analyst position is a highly visible, client‑facing role that works closely with Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager. This role is responsible for evaluating, assessing, and monitoring... 
    Suggested
    Work experience placement
    Local area

    BRG

    Washington DC
    4 days ago
  • $90k - $115k

    Position Title: IT Risk and Compliance Analyst Location: Washington, DC | New York, NY | Boston, MA | Chicago, IL Position Type: Full time Requisition ID: JR100812 Job Summary The IT Risk and Compliance Analyst is a highly visible, client-facing role that works closely... 
    Full time
    Work experience placement

    Koitecc Solutions

    Washington DC
    1 day ago
  • $90k - $115k

    Koitecc Solutions is seeking an IT Risk and Compliance Analyst to evaluate and monitor compliance with information security standards. This role involves close collaboration with business units and Legal, providing security advice and conducting assessments. Qualified... 

    Koitecc Solutions

    Washington DC
    16 hours ago
  • Saic is seeking a Cybersecurity Compliance analyst in Arlington, VA. This role involves providing expertise in Risk Management Framework and managing cybersecurity compliance for the Joint Staff. Key responsibilities include tracking compliance, consolidating risk metrics... 

    Saic

    Arlington, VA
    16 hours ago
  • Saic is seeking a Cybersecurity Compliance Analyst in Arlington, VA. This role involves providing technical and analytical expertise of the Risk Management Framework and managing compliance reporting requirements. The candidate must have a Bachelor's degree, 3+ years of... 

    Saic

    Arlington, VA
    3 days ago
  •  ...Title: IT Risk and Compliance Professional Location: Washington, DC Duration: 6+ Months Description The IT risk and compliance or IT audit professional will support Client's IT Risk & Compliance team in its efforts to establish an ongoing... 

    TWO95 International

    Washington DC
    7 days ago
  • PingWind is looking for a Cybersecurity Analyst in Alexandria, VA to lead governance, risk, and compliance activities, ensuring compliance with DoD cybersecurity standards. You will have a role in monitoring security controls and managing vulnerability assessments. The... 

    PingWind

    Alexandria, VA
    3 days ago
  • A federal services provider is seeking a Cybersecurity Analyst in Alexandria, VA, focused on governance, risk, and compliance (GRC) activities. The ideal candidate should have a minimum of 10 years of relevant experience and senior-level cybersecurity certifications. You... 

    Medium

    Alexandria, VA
    1 day ago
  • A leading federal services provider is seeking a Cybersecurity Analyst in Alexandria, VA. This role includes managing governance, risk, and compliance activities to ensure compliance with DoD requirements. The ideal candidate will have at least 10 years of relevant experience... 

    PingWind

    Alexandria, VA
    16 hours ago
  • Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their... 
    Full time
    Remote work

    Districttechgroup

    Washington DC
    2 days ago
  • $130k - $180k

     ...building a cutting‑edge security compliance program aligned with FedRAMP,...  ...other frameworks. As a GRC Analyst you’ll help manage these initiatives...  ..., and SaaS services. Conduct risk assessments across business...  ...in information security, IT audit, IT risk management, or... 
    Local area
    Flexible hours

    Neier Inc.

    Washington DC
    16 hours ago
  •  ...About the Role: Join CFM Partners GRC, Inc. as a Regulatory Compliance Specialist - Content & Product. In this dynamic role, you will...  ...Partners GRC, Inc. helps organizations strengthen governance, manage risk, and build a lasting culture of compliance. Based in Washington... 
    Work from home
    Flexible hours

    CFM Partners GRC, Inc.

    Washington DC
    9 days ago
  •  ...This role involves developing and implementing compliance strategies, ensuring adherence to federal regulations, and mitigating compliance risks. The Senior Consultant will be instrumental in helping our clients achieve compliance excellence while aligning with governmental... 

    Federal Mangement Systems

    Washington DC
    4 days ago
  •  ...transformative results. Trilogy Federal is seeking a Section 508 Compliance & Accessibility Analyst to support the Department of Veterans Affairs (VA) T4NG...  ...workflows, and design reviews. Cybersecurity & Risk Management (Secondary Focus) Support cybersecurity... 
    For contractors

    Trilogy Federal

    Arlington, VA
    2 days ago
  •  ...Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid, Washington, DC (DMV Area)...  ...The Compliance Analyst (GRC/RMF Focused) supports governance, risk, and compliance (GRC) initiatives by developing, maintaining,... 
    Full time
    Monday to Friday

    Quzara LLC

    Washington DC
    2 days ago
  • $90k - $110k

     ...currently has an opening for a Cloud Security & Compliance Specialist to support a federal client....  ...for cloud-hosted and modernized IT environments. This position is contingent...  .... Experience with Governance, Risk, and Compliance (GRC) platforms such as Archer... 
    Contract work
    Temporary work
    For contractors
    Work experience placement
    Remote work

    OCT Consulting, LLC

    Hyattsville, MD
    11 days ago
  •  ...Job Description Job Description Monitors computer networks and systems for security issues, suspicious activities, and compliance with established standards. Assists in investigating security breaches or incidents and participates in documenting findings and... 

    Bow Wave LLC

    Washington DC
    29 days ago
  • $111k - $159k

     ...or equivalent practical experience. 4 years of experience in compliance, risk management, investigation, auditing, legal, or consulting. 2...  ...big idea, we always have our bases covered. As a Compliance Analyst within the Governance, Risk, and Compliance (GRC) team, you... 
    Full time
    Temporary work
    Local area
    Flexible hours
    Shift work

    Google

    Washington DC
    7 hours ago
  • $136k - $253k

     ...Lead Governance & Compliance Analyst Are you ready to help secure the trusted technology that powers mission-critical decisions across government...  ...in-process platforms for products such as Legal Research and Risk & Fraud. This role is central to sustaining and evolving... 
    Contract work
    Work at office
    Local area
    Flexible hours
    2 days per week
    3 days per week

    Thomson Reuters

    Washington DC
    2 days ago
  • $120k - $180k

     ...Job Description Job Description Compliance and Data Governance Specialist - Department of State The Position: We are seeking driven...  ...Implement AI-powered predictive analytics to assess sponsor risk and detect anomalies Establish secure data-sharing protocols... 
    Full time
    For contractors
    Work at office
    Remote work
    Work from home
    Flexible hours
    Night shift

    Censeo Consulting Group

    Washington DC
    8 days ago
  •  ...tailored solutions based on industry-leading practices. ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness | Engineering | Environmental | Sustainability | Human Capital. We help forward-thinking... 
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    ProSidian Consulting, LLC

    Alexandria, VA
    7 days ago
  •  ...Job Description Job Description Healthcare Compliance Consultant (Full-Time) - Alexandria, VA (Hybrid) Strategic Management is seeking...  ...of a compliance program, regulatory compliance and compliance risk areas. Responsibilities Include Leads and provides... 
    Full time
    Interim role
    Work at office

    Strategic Management

    Alexandria, VA
    15 days ago
  • $96k - $120k

    Amentum is seeking an SCA and DBA Compliance Analyst to support compliance with the Service Contract Act and Davis-Bacon Act. The role involves oversight of local and federal laws, collaboration with various departments, and managing compliance audits. The ideal candidate... 
    Remote job
    Contract work
    Local area

    Amentum

    Washington DC
    4 days ago
  •  ...Bethesda, Maryland. This role involves developing and executing vulnerability scans, coordinating mitigation efforts, and maintaining compliance for various systems. Ideal candidates will possess a BS in a relevant field and have 12-15 years of cybersecurity experience. The... 

    Leidos

    Bethesda, MD
    2 days ago
  • LIS Solutions is seeking a Junior Compliance Officer to join their team in Arlington, VA. This role focuses on supporting federal law enforcement by handling sensitive data and conducting audits related to Employment Eligibility Verification Forms (I-9). The ideal candidate... 
    Work at office

    LIS Solutions

    Arlington, VA
    2 days ago
  •  ...leading defense and technology company is seeking a Data Analyst for its Global Trade Compliance team in Arlington, VA. This full-time, in-office...  ...collecting and analyzing data to support compliance and risk analysis. The ideal candidate will have extensive data analysis... 
    Full time
    Work at office

    L3Harris Technologies

    Arlington, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IT Risk and Compliance Analyst. Be the first to apply!