Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Governance, Risk & Compliance (GRC) Analyst

ASSYST, Inc.

ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an established enterprise Information Security Governance, Risk, and Compliance (GRC) program. This role will focus on managing Information Security Policy Exceptions and maintaining the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. The ideal candidate will work under the guidance of Information Security leadership to execute established governance processes, document and track information security risks, and support enterprise risk management activities. This position provides an excellent opportunity to gain hands-on experience with enterprise cybersecurity governance, information security risk management, ServiceNow IRM, and policy exception management while collaborating with experienced information security professionals. Note: This position focuses on governance, documentation, and risk management activities. It does not involve performing security assessments, penetration testing, vulnerability assessments, audits, or compliance reviews. Roles & Responsibilities: Administer and support the Information Security Policy Exception Program. Maintain and update the Enterprise Information Security Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. Execute established governance processes, standardized risk assessment methodologies, workflows, templates, and reporting procedures. Review policy exception requests and document findings. Perform information security risk analyses and provide approval or denial recommendations. Document, track, and maintain identified information security risks within the enterprise Risk Register. Prepare and maintain accurate policy exception tracking records. Produce monthly metrics, quarterly reports, executive dashboards, and ServiceNow documentation. Coordinate assigned tasks, workflows, and activities while ensuring timely completion. Prepare clear and accurate technical documentation related to governance and risk management processes. Collaborate with internal stakeholders to support enterprise information security governance initiatives. Maintain high standards of documentation accuracy, consistency, and data integrity. Provide excellent customer service while supporting governance and risk management activities. Work independently while effectively managing multiple priorities and deadlines. Required Skills & Qualifications: Minimum Qualifications: Professional experience in Information Security, IT Governance, Compliance, Risk Management, Information Technology, Audit, or a related field. Basic understanding of Information Security Governance, Risk Management, and Cybersecurity principles. Strong analytical and critical thinking skills. Excellent written and verbal communication skills. Strong organizational skills with exceptional attention to detail. Ability to manage multiple priorities in a fast-paced environment. Ability to quickly learn new technologies and business processes. Demonstrated professionalism and ability to work independently. Preferred Qualifications: Experience using ServiceNow, preferably Integrated Risk Management (IRM). Experience with Governance, Risk, and Compliance (GRC) programs or platforms. Experience using Microsoft Office 365 applications. Experience preparing technical documentation and reports. Experience coordinating projects, tasks, or workflow activities. Experience working in customer service or stakeholder-facing environments. Knowledge & Technical Skills: Cybersecurity Principles Information Security Governance Governance, Risk & Compliance (GRC) Enterprise Risk Management Risk Assessment Methodologies Risk Register Management ServiceNow Integrated Risk Management (IRM) NIST Cybersecurity Framework (NIST CSF) Risk Scoring Systems and Quantitative Risk Frameworks

HIPAA

Technical Documentation Workflow Coordination Microsoft Office 365 ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law. #J-18808-Ljbffr ASSYST, Inc.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information Security Governance, Risk & Compliance (GRC) Analyst in Rockville, MD vacancy
  •  ...Job Description Job Description JUNIOR GRC ANALYST ROCKVILLE, MD - HYBRID LONG TERM CONTRACT SEEKING SOMEONE...  ...~ The GRC Analyst supports the administration of Information Security Governance, Risk, and Compliance programs, including policy exception management and... 
    Suggested
    Long term contract
    Internship

    System One

    Rockville, MD
    4 days ago
  • ASSYST, Inc. is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering and maintaining an enterprise GRC program. This role focuses on policy exceptions and maintaining the risk register using ServiceNow IRM,... 
    Suggested

    ASSYST, Inc.

    Rockville, MD
    4 days ago
  • $99k - $225k

    Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    5 days ago
  • $109k - $124.4k

    Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst Security is essential to what we do at Capital One,...  ...differentiator, not just a step in the compliance process. You thrive working with...  ...know when to pull in experts to inform your recommendations and escalate... 
    Suggested
    Full time
    Part time
    H1b
    Local area

    Capital One National Association

    Mc Lean, VA
    5 days ago
  • $87.7k - $100.1k

    The Enterprise Compliance Governance Training team is seeking a collaborative, analytically focused risk management professional to join our team. As a Sr Risk Specialist at the...  ...existing and future learning platform to inform innovation agenda Perform Analysis and provide... 
    Suggested
    Full time
    Part time
    Work at office
    Local area

    Capital One

    Mc Lean, VA
    2 days ago
  • Guidehouse is seeking an Associate Director to lead complex risk engagements in cybersecurity, information security, data governance, AI governance, and enterprise risk management for financial institutions. The role requires deep domain expertise across risk controls,... 

    Guidehouse

    Mc Lean, VA
    3 days ago
  • $99k - $225k

    Information Security Risk SpecialistThe Opportunity:As an Information Security Risk Specialist on our...  ...closely with contractor and DoD government system owners, as well as system administrators...  ...cybersecurity policiesKnowledge of compliance testing tools such as ACAS, SCAP,... 
    Full time
    Contract work
    Part time
    For contractors
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    4 days ago
  • SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing...  ...GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal... 
    Remote job

    SkyePoint Decisions

    Bethesda, MD
    5 days ago
  • Capital One is seeking a Principal Associate in Enterprise Risk Organization Governance & Reporting to drive governance and Board reporting processes. You will partner with ERO leadership and interact with CFRM, GovSec, and other stakeholders to deliver high-quality, audit... 

    Capital One National Association

    Mc Lean, VA
    1 day ago
  •  ...Cyber And It Security Risk AnalystLocation: Bethesda, MDContract: 12 MonthsPosition SummaryWe are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team...  ...internal and external audits and compliance efforts.Document... 
    For contractors

    InteliX Systems

    Bethesda, MD
    2 days ago
  • $120.8k - $137.9k

     ...Overview Enterprise Risk Organization Governance & Reporting Specialist...  ...partners in Governance & Securities (GovSec), gaining exposure...  ...synthesize and distill complex information into clear summaries and...  ...to non-discrimination in compliance with applicable federal,... 
    Full time
    Part time
    Local area

    Capital One

    McLean, VA
    9 days ago
  • $96.5k - $110.1k

    Overview Senior Risk Specialist | Retail Bank The Conduct Risk...  ...MPG (Monitoring, Process, & Governance) mission is a passionate and...  ...with select business, Compliance, Human Resources and Risk stakeholders...  ...business clients Additional information At this time, Capital One... 
    Permanent employment
    Full time
    Part time
    Work at office
    Local area

    Capital One

    Mc Lean, VA
    1 day ago
  • $100k - $120k

     ...Overview The Compliance and Risk Analyst assists the IT Program Manager in the registration of all Application and Database Management Systems...  ...each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves... 
    Temporary work
    Work at office
    Immediate start
    Flexible hours
    Shift work

    Integral Services Company

    McLean, VA
    2 days ago
  •  ...Canada in McLean, VA is hiring a Public Sector IT Internal Audit & Risk Senior Consultant. This full-time on-site role focuses on risk...  ...for public sector clients, with diverse exposure to IT governance, cybersecurity and controls. The team seeks candidates with strong... 
    Full time

    Baker Tilly Canada

    Mc Lean, VA
    5 days ago
  • Vacancy: Security Risk Analyst The Security Risk Analyst specializes in audit coordination, fulfillment of auditor document requests, and in ensuring that information reflecting security compliance is in place and is conveyed to auditors. May 15, 2023U.S. citizenship is... 
    Work experience placement
    Work at office
    Remote work
    Work from home

    Omni Systems

    McLean, VA
    1 day ago
  • $186.54k - $252.38k

     ...Able to Obtain: None Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications: Skills: AI Security Governance, Information Assurance, Security Controls Certifications: None Experience: 10 + years of related... 
    Full time
    Temporary work
    Work experience placement
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Bethesda, MD
    2 days ago
  • $176.97k - $303.37k

     ...days per week. Responsibilities Reporting to the Chief Risk Officer, the Chief Compliance Officer is a senior leadership position responsible...  ...closely with business leaders, risk management, legal, information security, and audit functions to foster a strong culture of... 
    Work at office
    Remote work
    Flexible hours

    Eagle Bancorp Inc

    Bethesda, MD
    2 days ago
  • Freddie Mac is seeking a Compliance Ops Senior Analyst to strengthen non‑financial risk reporting, data quality, and governance within Enterprise Risk. You will produce and coordinate reports, validate data, and partner with tech teams to deliver accurate source outputs... 

    Freddie Mac

    Mc Lean, VA
    1 day ago
  • Capital One seeks a Principal Analyst in Capital Markets & Risks in McLean, VA to lead SOX advisory and end-to-end risk management across lines of...  ...and remediation actions, driving control improvements and governance across financial reporting. The role requires 3+ years... 

    Capital One Group

    Mc Lean, VA
    4 days ago
  •  ...SUMMARY: The Sr. Director, Global Information Security (GIS) Compliance Program is a key member of the GIS...  ...portfolio or program management and governance reporting at executive levels Prior...  ...to leadership. Raise and mitigate risks to compliance to the regulatory commitments... 
    Full time
    Remote work
    Flexible hours

    Marriott International

    Bethesda, MD
    4 days ago
  • $139.45k - $198.72k

     ...Overview The Senior Manager, Global Trade Compliance is a hands-on managerial role...  ...strategies for associated trade compliance risk, in a manner that fully complies with all...  ...consistent trade compliance practices. Support governance routines, performance tracking, and... 
    Full time
    Work at office
    Immediate start
    Worldwide

    US Pharmacopeia

    Rockville, MD
    21 hours ago
  • $107.71k - $161.56k

    Responsible for conducting risk monitoring activities and ongoing risk assessments of...  ...Deception, Money Laundering, and Market).FINRA Securities Industry Essentials (SIE) certification...  ..., and assimilate large amounts of information.Work Conditions:Hybrid work environment,... 
    Full time
    Temporary work
    For contractors
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Rockville, MD
    21 hours ago
  • $117.3k - $133.9k

     ...Overview The Compliance Tester III (Principal Associate) performs a key second line of defense...  ...The Compliance Tester III will execute risk-based control reviews under the...  ...Auditing, Accounting, Finance, Economics, Information Systems, or Business Administration 6+ years... 
    Full time
    Part time
    Work at office
    Local area

    kozmetickesluzby.vecnakraska.sk - Jobboard

    McLean, VA
    1 day ago
  • $69.4k - $158k

     ...Risk Management Analyst The Opportunity: Use your industry or domain expertise to assess risk...  ...selected will be subject to a security investigation and may need to meet eligibility...  ...for access to classified information ; Top Secret clearance is required.... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    BOOZ, ALLEN & HAMILTON, INC.

    Potomac, MD
    1 day ago
  • $107.71k - $161.56k

     ...Risk Monitoring DirectorResponsible for conducting risk monitoring activities and ongoing...  ..., Money Laundering, and Market).FINRA Securities Industry Essentials (SIE) certification...  ..., and assimilate large amounts of information.Work Conditions:Hybrid work environment,... 

    FINRA

    Rockville, MD
    9 hours ago
  • $78k - $95k

    Lafayette Federal Credit Union is seeking a Senior Contract Analyst to oversee contracts and vendor relationships in a hybrid work environment. The successful candidate will ensure compliance and alignment with strategic objectives. This role requires a bachelor's degree... 
    Contract work

    Lafayette Federal Credit Union

    Rockville, MD
    2 days ago
  •  ...Summary NIST is seeking an Enterprise Risk Management Analyst to provide technical and analytical services for the NIST Enterprise Risk Management Office. This position involves analyzing and evaluating program operations. The analyst will develop elements of the Enterprise... 
    Work at office

    National Institute of Standards and Technology

    Gaithersburg, MD
    5 days ago
  • A leading management consulting firm is seeking a Design Inspector | Safety Analyst to provide nuclear risk management solutions. The ideal candidate will conduct safety assessments and develop risk mitigation strategies. Candidates must have at least 5 years of experience... 

    ProSidian Consulting, LLC

    Rockville, MD
    4 days ago
  •  ...the broad spectrum of Risk Management, Compliance, Business Process,...  ...00 Enterprises, and Government Agencies of all sizes...  ...Seeks a Junior Data Analyst (Contract Contingent...  ...and provides information on a number of critical...  ...software management, data security, web publications,... 
    Contract work
    For contractors

    ProSidian Consulting

    Rockville, MD
    1 day ago
  • $105.4k - $207.8k

     ...strengthen resilience, support compliance, and protect critical data....  ...that advance data governance, information protection, and regulatory...  ...Purview and adjacent Microsoft security and compliance technologies...  ...security posture and reduce risk. A successful candidate would... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!