Information Security Governance, Risk & Compliance (GRC) Analyst
ASSYST, Inc.
ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an established enterprise Information Security Governance, Risk, and Compliance (GRC) program. This role will focus on managing Information Security Policy Exceptions and maintaining the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. The ideal candidate will work under the guidance of Information Security leadership to execute established governance processes, document and track information security risks, and support enterprise risk management activities. This position provides an excellent opportunity to gain hands-on experience with enterprise cybersecurity governance, information security risk management, ServiceNow IRM, and policy exception management while collaborating with experienced information security professionals. Note: This position focuses on governance, documentation, and risk management activities. It does not involve performing security assessments, penetration testing, vulnerability assessments, audits, or compliance reviews. Roles & Responsibilities: Administer and support the Information Security Policy Exception Program. Maintain and update the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. Execute established governance processes, standardized risk assessment methodologies, workflows, templates, and reporting procedures. Review policy exception requests and document findings. Perform information security risk analyses and provide approval or denial recommendations. Document, track, and maintain identified information security risks within the enterprise Risk Register. Prepare and maintain accurate policy exception tracking records. Produce monthly metrics, quarterly reports, executive dashboards, and ServiceNow documentation. Coordinate assigned tasks, workflows, and activities while ensuring timely completion. Prepare clear and accurate technical documentation related to governance and risk management processes. Collaborate with internal stakeholders to support enterprise information security governance initiatives. Maintain high standards of documentation accuracy, consistency, and data integrity. Provide excellent customer service while supporting governance and risk management activities. Work independently while effectively managing multiple priorities and deadlines. Required Skills & Qualifications: Minimum Qualifications: Professional experience in Information Security, IT Governance, Compliance, Risk Management, Information Technology, Audit, or a related field. Basic understanding of Information Security Governance, Risk Management, and Cybersecurity principles. Strong analytical and critical thinking skills. Excellent written and verbal communication skills. Strong organizational skills with exceptional attention to detail. Ability to manage multiple priorities in a fast-paced environment. Ability to quickly learn new technologies and business processes. Demonstrated professionalism and ability to work independently. Preferred Qualifications: Experience using ServiceNow, preferably Integrated Risk Management (IRM). Experience with Governance, Risk, and Compliance (GRC) programs or platforms. Experience using Microsoft Office 365 applications. Experience preparing technical documentation and reports. Experience coordinating projects, tasks, or workflow activities. Experience working in customer service or stakeholder-facing environments. Knowledge & Technical Skills: Cybersecurity Principles Information Security Governance Governance, Risk & Compliance (GRC) Enterprise Risk Management Risk Assessment Methodologies Risk Register Management ServiceNow Integrated Risk Management (IRM) NIST Cybersecurity Framework (NIST CSF) Risk Scoring Systems and Quantitative Risk Frameworks
HIPAA
Technical Documentation Workflow Coordination Microsoft Office 365 ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law. #J-18808-Ljbffr ASSYST, Inc.- ...Job Description Job Description JUNIOR GRC ANALYST ROCKVILLE, MD - HYBRID LONG TERM CONTRACT SEEKING SOMEONE... ...~ The GRC Analyst supports the administration of Information Security Governance, Risk, and Compliance programs, including policy exception management and...SuggestedLong term contractInternship
- ASSYST, Inc. is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an enterprise GRC program. This role focuses on policy exceptions and maintaining the risk register using ServiceNow IRM,...Suggested
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$109k - $124.4k
Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst Security is essential to what we do at Capital One,... ...differentiator, not just a step in the compliance process. You thrive working with... ...know when to pull in experts to inform your recommendations and escalate...SuggestedFull timePart timeH1bLocal area$87.7k - $100.1k
The Enterprise Compliance Governance Training team is seeking a collaborative, analytically focused risk management professional to join our team. As a Sr Risk Specialist at the... ...existing and future learning platform to inform innovation agenda Perform Analysis and provide...SuggestedFull timePart timeWork at officeLocal area- Guidehouse is seeking an Associate Director to lead complex risk engagements in cybersecurity, information security, data governance, AI governance, and enterprise risk management for financial institutions. The role requires deep domain expertise across risk controls,...
$99k - $225k
Information Security Risk SpecialistThe Opportunity:As an Information Security Risk Specialist on our... ...closely with contractor and DoD government system owners, as well as system administrators... ...cybersecurity policiesKnowledge of compliance testing tools such as ACAS, SCAP,...Full timeContract workPart timeFor contractorsWork at officeLocal areaRemote work- SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing... ...GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal...Remote job
- Capital One is seeking a Principal Associate in Enterprise Risk Organization Governance & Reporting to drive governance and Board reporting processes. You will partner with ERO leadership and interact with CFRM, GovSec, and other stakeholders to deliver high-quality, audit...
- ...Cyber And It Security Risk AnalystLocation: Bethesda, MDContract: 12 MonthsPosition SummaryWe are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team... ...internal and external audits and compliance efforts.Document...For contractors
$120.8k - $137.9k
...Overview Enterprise Risk Organization Governance & Reporting Specialist... ...partners in Governance & Securities (GovSec), gaining exposure... ...synthesize and distill complex information into clear summaries and... ...to non-discrimination in compliance with applicable federal,...Full timePart timeLocal area$96.5k - $110.1k
Overview Senior Risk Specialist | Retail Bank The Conduct Risk... ...MPG (Monitoring, Process, & Governance) mission is a passionate and... ...with select business, Compliance, Human Resources and Risk stakeholders... ...business clients Additional information At this time, Capital One...Permanent employmentFull timePart timeWork at officeLocal area$100k - $120k
...Overview The Compliance and Risk Analyst assists the IT Program Manager in the registration of all Application and Database Management Systems... ...each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves...Temporary workWork at officeImmediate startFlexible hoursShift work- ...Canada in McLean, VA is hiring a Public Sector IT Internal Audit & Risk Senior Consultant. This full-time on-site role focuses on risk... ...for public sector clients, with diverse exposure to IT governance, cybersecurity and controls. The team seeks candidates with strong...Full time
- Vacancy: Security Risk Analyst The Security Risk Analyst specializes in audit coordination, fulfillment of auditor document requests, and in ensuring that information reflecting security compliance is in place and is conveyed to auditors. May 15, 2023U.S. citizenship is...Work experience placementWork at officeRemote workWork from home
$186.54k - $252.38k
...Able to Obtain: None Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications: Skills: AI Security Governance, Information Assurance, Security Controls Certifications: None Experience: 10 + years of related...Full timeTemporary workWork experience placementImmediate startRemote workWorldwideFlexible hours$176.97k - $303.37k
...days per week. Responsibilities Reporting to the Chief Risk Officer, the Chief Compliance Officer is a senior leadership position responsible... ...closely with business leaders, risk management, legal, information security, and audit functions to foster a strong culture of...Work at officeRemote workFlexible hours- Freddie Mac is seeking a Compliance Ops Senior Analyst to strengthen non‑financial risk reporting, data quality, and governance within Enterprise Risk. You will produce and coordinate reports, validate data, and partner with tech teams to deliver accurate source outputs...
- Capital One seeks a Principal Analyst in Capital Markets & Risks in McLean, VA to lead SOX advisory and end-to-end risk management across lines of... ...and remediation actions, driving control improvements and governance across financial reporting. The role requires 3+ years...
- ...SUMMARY: The Sr. Director, Global Information Security (GIS) Compliance Program is a key member of the GIS... ...portfolio or program management and governance reporting at executive levels Prior... ...to leadership. Raise and mitigate risks to compliance to the regulatory commitments...Full timeRemote workFlexible hours
$139.45k - $198.72k
...Overview The Senior Manager, Global Trade Compliance is a hands-on managerial role... ...strategies for associated trade compliance risk, in a manner that fully complies with all... ...consistent trade compliance practices. Support governance routines, performance tracking, and...Full timeWork at officeImmediate startWorldwide$107.71k - $161.56k
Responsible for conducting risk monitoring activities and ongoing risk assessments of... ...Deception, Money Laundering, and Market).FINRA Securities Industry Essentials (SIE) certification... ..., and assimilate large amounts of information.Work Conditions:Hybrid work environment,...Full timeTemporary workFor contractorsFor subcontractorLocal areaImmediate start$117.3k - $133.9k
...Overview The Compliance Tester III (Principal Associate) performs a key second line of defense... ...The Compliance Tester III will execute risk-based control reviews under the... ...Auditing, Accounting, Finance, Economics, Information Systems, or Business Administration 6+ years...Full timePart timeWork at officeLocal area$69.4k - $158k
...Risk Management Analyst The Opportunity: Use your industry or domain expertise to assess risk... ...selected will be subject to a security investigation and may need to meet eligibility... ...for access to classified information ; Top Secret clearance is required....Full timeContract workPart timeWork at officeLocal areaRemote work$107.71k - $161.56k
...Risk Monitoring DirectorResponsible for conducting risk monitoring activities and ongoing... ..., Money Laundering, and Market).FINRA Securities Industry Essentials (SIE) certification... ..., and assimilate large amounts of information.Work Conditions:Hybrid work environment,...$78k - $95k
Lafayette Federal Credit Union is seeking a Senior Contract Analyst to oversee contracts and vendor relationships in a hybrid work environment. The successful candidate will ensure compliance and alignment with strategic objectives. This role requires a bachelor's degree...Contract work- ...Summary NIST is seeking an Enterprise Risk Management Analyst to provide technical and analytical services for the NIST Enterprise Risk Management Office. This position involves analyzing and evaluating program operations. The analyst will develop elements of the Enterprise...Work at office
- A leading management consulting firm is seeking a Design Inspector | Safety Analyst to provide nuclear risk management solutions. The ideal candidate will conduct safety assessments and develop risk mitigation strategies. Candidates must have at least 5 years of experience...
- ...the broad spectrum of Risk Management, Compliance, Business Process,... ...00 Enterprises, and Government Agencies of all sizes... ...Seeks a Junior Data Analyst (Contract Contingent... ...and provides information on a number of critical... ...software management, data security, web publications,...Contract workFor contractors
$105.4k - $207.8k
...strengthen resilience, support compliance, and protect critical data.... ...that advance data governance, information protection, and regulatory... ...Purview and adjacent Microsoft security and compliance technologies... ...security posture and reduce risk. A successful candidate would...Local areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!
- regulatory affairs specialist Rockville, MD
- medicare compliance specialist Rockville, MD
- regulatory compliance analyst Rockville, MD
- compliance specialist Rockville, MD
- aml compliance analyst Rockville, MD
- regulatory officer Rockville, MD
- healthcare compliance officer Rockville, MD
- regulatory analyst Rockville, MD
- regulatory specialist Rockville, MD
- compliance associate Rockville, MD


