Lead Governance & Compliance Analyst
$136k - $253kRefinitiv
- # Lead Governance & Compliance AnalystApplyremote type: Hybridlocations: United States of America, Washington, District of Columbiatime type: Full timeposted on: Posted Todaytime left to apply: End Date: July 12, 2026 (29 days left to apply)job requisition id: JREQ201268Are you ready to help secure the trusted technology that powers mission-critical decisions across government and highly regulated industries? At Thomson Reuters, our technology supports customers who depend on secure, reliable, and compliant platforms to deliver essential outcomes. We are seeking a**Lead Governance & Compliance Analyst**to join our Operations and Technology organization, supporting our federal government portfolio, including FedRAMP-authorized and in-process platforms for products such as Legal Research and Risk & Fraud.This role is central to sustaining and evolving the FedRAMP compliance posture of Thomson Reuters' federal-facing products. As a senior technical and governance leader, you will help ensure our cloud environments remain continuously compliant, secure, audit-ready, and aligned with federal requirements. You will partner closely with engineering, product, operations, security, federal agencies, the FedRAMP PMO, and third-party assessment organizations to support authorization activities, strengthen security practices, and help maintain customer trust.Please note: This position requires access to U.S. Federal Government systems and data under a federal government contract. In accordance with contractual requirements, applicants must be U.S. citizens. This requirement applies only to this role and is mandated by the applicable government contract; it is not a general company policy. Thomson Reuters is an equal opportunity employer.## About the RoleIn this opportunity as **Lead Governance & Compliance Analyst,** you will:* Serve as a primary liaison with federal agencies, the FedRAMP PMO, third-party assessment organizations, consultants, and internal stakeholders to support ongoing authorization and compliance activities.* Lead FedRAMP Continuous Monitoring activities, including POA&M management, vulnerability reporting, monthly deliverables, and recurring agency reporting requirements.* Maintain and update the System Security Plan, risk documentation, assessment artifacts, and other required FedRAMP documentation to ensure ongoing audit readiness.* Manage vulnerability, risk, and incident response processes in alignment with FedRAMP, NIST RMF, and NIST SP 800-53 Rev. 5 requirements.* Support annual security assessments, including planning, scope definition, SAP preparation, security testing coordination, SAR development, POA&M updates, and project closure.* Partner with engineering, product, operations, and security teams to drive risk mitigation, compliance improvements, and secure delivery of federal-facing cloud solutions.* Educate and guide internal stakeholders on FedRAMP security requirements, continuous monitoring expectations, significant change processes, and compliance best practices.## About YouYou're a fit for the role of **Lead Governance & Compliance Analyst** if your background includes:* 5+ years of experience in cloud security architecture, security engineering, governance, risk, compliance, or related roles supporting federal or highly regulated workloads.* Demonstrated expertise with FedRAMP, NIST Risk Management Framework, and NIST SP 800-53 Rev. 5 security controls.* Experience supporting FedRAMP Continuous Monitoring, including vulnerability management, POA&M tracking, evidence collection, reporting, and control monitoring.* Experience conducting or supporting risk assessments, vulnerability scans, incident analysis, and remediation activities within a FedRAMP or regulated environment.* Strong communication skills with the ability to engage effectively with federal agencies, auditors, third-party assessors, technical teams, and senior stakeholders.* Ability to analyze security and compliance data, identify trends or risks, and produce clear reports for leadership, agencies, and audit partners.* Bachelor's degree in cybersecurity, information security, computer science, or a related discipline, or equivalent professional experience.## Preferred Qualifications* Experience with cloud environments such as AWS, Azure, or Google Cloud Platform.* Experience supporting the FedRAMP Authorization to Operate process.* Familiarity with state-level compliance programs such as StateRAMP, GovRAMP, or TX-RAMP.* Relevant security or compliance certifications such as CISSP, CISM, CISA, CCSP, Security+, or similar credentials.#LI-LP2**What’s in it For You?*** **Hybrid Work Model:** We’ve adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected.* **Flexibility & Work-Life Balance:** Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance.* **Career Development and Growth:** By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future.* **Industry Competitive Benefits:** We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.* **Culture:** Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together.* **Social Impact:** Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.* **Making a Real-World Impact:** We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world.In the United States, Thomson Reuters offers a comprehensive benefits package to our employees. Our benefit package includes market competitive health, dental, vision, disability, and life insurance programs, as well as a competitive 401k plan with company match. In addition, Thomson Reuters offers market leading work life benefits with competitive vacation, sick and safe paid time off, paid holidays (including two company mental health days off), parental leave, sabbatical leave. These benefits meet or exceeds the requirements of paid time off in accordance with any applicable state or municipal laws. Finally, Thomson Reuters offers the following additional benefits: optional hospital, accident and sickness insurance paid 100% by the employee; optional life and AD&D insurance paid 100% by the employee; Flexible Spending and Health Savings Accounts; fitness reimbursement; access to Employee Assistance Program; Group Legal Identity Theft Protection benefit paid 100% by employee; access to 529 Plan; commuter benefits; Adoption & Surrogacy Assistance; Tuition Reimbursement; and access to Employee Stock Purchase Plan.Thomson Reuters complies with local laws that require upfront disclosure of the expected pay range for a position. The base compensation range varies across locations.Eligible office location(s) for this role include one or more of the following: New York City, San Francisco, Los Angeles, and/or Irvine, CA; McLean, VA; Washington, DC. The base compensation range for the role in any of those locations is $136,000 USD - $253,000 USD.Base pay is positioned within the range based on several factors including an individual’s knowledge, skills and experience with consideration given to internal equity. Base pay is one part of a comprehensive Total Reward program which also includes flexible and supportive benefits and other wellbeing programs.This role may also be eligible for an Annual Bonus based on a combination of enterprise and individual performance.
- J-18808-Ljbffr Refinitiv
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Lead Governance & Compliance Analyst in Washington DC vacancy
$136k - $253k
...Lead Governance & Compliance Analyst Are you ready to help secure the trusted technology that powers mission-critical decisions across government and highly regulated industries? At Thomson Reuters, our technology supports customers who depend on secure, reliable,...SuggestedContract workWork at officeLocal areaFlexible hours2 days per week3 days per week- ...solutions based on industry-leading practices. ProSidian provides... ...solutions for Risk Management | Compliance | Business Process | IT... ...private, defense and civilian government, and non-profit organizations... ...Seeks a Compliance Reporting Analyst | Human Capital Programmatic...SuggestedFull timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
- Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex... ...and certification support ★ Mentorship from industry-leading security experts #J-18808-Ljbffr DistricttechgroupSuggestedFull timeRemote work
- ...Why This Opportunity Join a highly visible, newly created Compliance Lead Analyst role where you'll serve as the subject matter expert on complex compliance, regulatory reporting, and technical accounting matters while partnering directly with senior finance leadership...Suggested
$130k - $180k
...Virtru is building a cutting‑edge security compliance program aligned with FedRAMP, SOC2, PCI,... ..., GDPR, and other frameworks. As a GRC Analyst you’ll help manage these initiatives using... ...Terraform, and others. Responsibilities Lead compliance efforts to achieve and maintain...SuggestedLocal areaFlexible hours- ...Treaty Compliance Analyst The Treaty Compliance Analyst provides support to U.S.Army Nuclear and Countering Weapons of Mass Destruction Agency (USANCA) to include study and assessment of USG, DoD, Joint, and Army Countering Weapons of Mass Destruction (CWMD) and counter...
$90k - $115k
Koitecc Solutions is seeking an IT Risk and Compliance Analyst to evaluate and monitor compliance with information security standards. This role involves close collaboration with business units and Legal, providing security advice and conducting assessments. Qualified...$120k - $180k
...Job Description Job Description Compliance and Data Governance Specialist - Department of State The Position: We are seeking driven, thoughtful... ...an environment for those with passion and initiative to lead. Our colleagues bring their own unique personalities to...Full timeFor contractorsWork at officeRemote workWork from homeFlexible hoursNight shift- ...A defense consulting firm is looking for a Senior Requirements Analyst in Washington, DC. This role entails supporting the Integrated Air and Missile Defense (IAMD) capability development and requires a Master’s degree and extensive defense experience. Candidates should...
- ...Software Incorporated is looking for a Privacy and Controlled Unclassified Information Lead in Washington, D.C. This role involves leading privacy initiatives, managing compliance activities, and supporting federal cybersecurity regulations. The ideal candidate will have...
- ...Selby Jennings is looking for a Governance Specialist to enhance enterprise governance frameworks across international operations. This role focuses on ensuring compliance with regulatory obligations and organizational objectives while promoting transparency and operational...
- ...A leading healthcare organization is seeking a detail-oriented professional to enhance action management and operational excellence. This role involves tracking and reporting on executive actions, promoting project management frameworks, and collaborating with senior leaders...
- ...Graceconsulate is seeking a Senior Volunteer Component Relations Manager to lead volunteer engagement efforts remotely. The role involves... ...database, and coordinating with internal teams to enhance governance activities. Ideal candidates will have over 5 years in related...Remote work
$132.23k - $176.31k
...We’re looking for top-tier talent ready to take on the challenge. Join us in building the future. The Role The Senior Lead, Funnel Governance & Performance Insights leads a new center‑of‑excellence that defines and enforces sales funnel hygiene standards, monitors...Temporary workRemote work- ...expertise is in the fields of monitoring and evaluation; democracy and governance; peace and stability; rule of law and accountability; education... ...Summary MSI requires a Communications and Editorial Lead to oversee all writing, editing, communications planning, and...Contract workFor contractorsWork at officeLocal area
$160k - $165k
...Overview The PMO Lead provides leadership, structure, and execution oversight for Program Management Office functions supporting IT governance, portfolio management, and project delivery. This role aligns PMO operations to organizational priorities and establishes...Work at officeFlexible hours$100k - $200k
Improvix-Technologies- is seeking a Cybersecurity Analyst based in Washington, DC, to support a federal cybersecurity program. The ideal candidate will have robust experience in ATO and RMF compliance, guiding systems through assessment and authorization with strong documentation...- Improvix Technologies is looking for a Cybersecurity Analyst in Washington, DC. The role requires strong expertise in leading Authorization to Operate (ATO) processes and experience in NIST Risk Management Framework. The ideal candidate will independently manage ATO documentation...Full time
- ...Refinitiv is seeking a Lead Governance & Compliance Analyst in Washington, DC, to support FedRAMP compliance for federal products. You will liaise with federal agencies and lead continuous monitoring activities to maintain compliance and security. The ideal candidate...
- ...Overview Enterprise Governance Lead Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business... ...initiatives. Develop governance policies, processes, and compliance mechanisms aligned with DoD standards. Collaborate with stakeholders...Work at officeWork from homeHome office
- ...Req ID: 40640 Summary Enterprise Governance Lead Arlington, VA Are you ready to enhance your skills and build your career in... ...initiatives. Develop governance policies, processes, and compliance mechanisms aligned with DoD standards. Collaborate with stakeholders...Work at officeWork from homeHome office
- ...advisory firm specializing in security operations, architecture, governance, and technology implementation for enterprise and regulated... .... Dragonfli Group is seeking an Information Security Compliance Lead for a high‑stakes, client‑facing engagement. This is a pure‑...Immediate start
- ...Visualization Lead Cydecor is a premier Federal Government solutions provider, delivering differentiated innovations in mission systems and business platforms... ...for DoW or Federal organizations Collaborate with analysts, data scientists, and stakeholders to translate...Hourly payContract workTemporary workWork experience placement
- ...to support a high-visibility National Security contract in Arlington, VA. The ISSM will use their expertise in DoD cybersecurity governance to enhance enterprise security practices and manage authorization workflows. The ideal candidate will have 10+ years of experience...Contract work
$89.65k - $152.4k
...Description We are seeking a Governance Lead to support enterprise IT governance in a complex, regulated environment where effective... ...alignment of governance processes with enterprise priorities, compliance expectations, and operational needs What You Must Have...Full timeContract workWork experience placementWork at office- ...functional teams in developing proposals and Statements of Qualifications (SOQs). You will manage the proposal lifecycle, ensuring compliance with all deliverables, and support technical project managers in formulating win themes. Ideal candidates will possess a Bachelor...Full time
- ...through tailored solutions based on industry-leading practices. ProSidian provides enterprise... .../solutions for Risk Management | Compliance | Business Process | IT Effectiveness |... ...public and private, defense and civilian government, and non-profit organizations. Our solution...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
$160k - $165k
...Edgewater Federal Solutions, Inc. seeks a PMO Lead in Washington, DC, to provide leadership for the Program Management Office. This... ...establishing PMO functions. Key responsibilities include overseeing IT governance, managing program delivery schedules, and improving PMO...Work at office$130k - $180k
...About Virtru: Virtru is a leading data protection provider backed... ...a cutting edge security compliance program aligned with FedRAMP,... ...performant service. As a GRC Analyst at Virtru, you will be the primary... ...program. As a Security Governance Risk & Compliance (GRC)...Remote jobLocal areaFlexible hoursShift work$75k - $125k
The Fai is seeking an American Governance Program Manager in Washington, DC to lead project development, engagement with policymakers, and ensure smooth operations of the American Governance team. The ideal candidate will demonstrate proactivity, collaboration, and situational...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Governance & Compliance Analyst. Be the first to apply!
Related searches
- information security compliance analyst Washington DC
- junior compliance analyst Washington DC
- governance risk & compliance analyst Washington DC
- senior compliance analyst Washington DC
- risk and compliance analyst Washington DC
- financial compliance analyst Washington DC
- legal compliance officer Washington DC
- regulatory analyst Washington DC
- regulatory compliance associate Washington DC
- legal compliance analyst Washington DC


