Governance, Risk & Compliance (GRC) Analyst
Chaos, Inc.
Governance, Risk & Compliance (GRC) Analyst Washington D.C. CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage domain dominance. The company's products are powered by Coherent Distributed Networks (CDN), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats. CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit . Role Overview: Own and mature the CHAOS Industries cybersecurity GRC program by establishing governance structure, policies, standards, expectations, and accountability across CHAOS businesses. You’ll report to the IT/Cybersecurity Program Director and work daily with IT, Cybersecurity, Physical Security, and Manufacturing - teams with different priorities and vocabulary; therefore, you’ll spend real time translating broad requirements into controls people adopt. Build and manage cybersecurity risk processes, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance. If you enjoy designing frameworks that fit the organization rather than forcing the organization to fit a template, and you want direct input into how a defense company governs risk, this is the seat. Responsibilities: Own risk assessments across several departments and maintain the centralized risk register. Design and maintain a unified, original control framework tailored to CHAOS Industries’ operating environment, including a security-by-design approach to systems development and defined: Maximum Tolerable Downtime (MTD), Recovery Point Objective (RPO), and Recovery Time Objective (RTO) for critical systems. Write and maintain policy that goes beyond minimum mandatory compliance, building genuine security maturity rather than satisfying the floor of any one requirement. Manage GRC tooling and related workflows to support risk assessments, control monitoring, and reporting. Prepare for, coordinate, and help run third-party and certification audits, including evidence collection, gap assessments, and auditor liaison. Act as the connective tissue between different department to then develop security and compliance requirements for partner teams and drive them to execution. Report regularly to the Program Director and executive stakeholders on risk posture, audit status, and program maturity. Onsite presence required 4 days per week. Travel: up to 25%, primarily to support Manufacturing and Physical Security control validation across company sites. Physical demands: occasional access to manufacturing floor environments, including required PPE and periods of standing or walking during facility walkthroughs. Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services. Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking in partnership with Legal, Compliance, commercial teams, IT, and business leaders. Bachelor's degree or equivalent experience in computer science, cybersecurity, information security, Information Technology, Information Assurance, or a related field, or equivalent practical experience. Deep knowledge of NIST CSF, NIST RMF, the ISO/IEC 27000 series, UK Cyber Essentials, CMMC/NIST 800-171, NIST 800-53. Experience selecting, implementing, or administering GRC tooling and workflows. Exposure to widely recognized governance, risk, and compliance frameworks spanning security, privacy, and quality management domains. Familiarity with OT/ICS security concepts. Minimum of 5 years hands-on GRC or compliance experience combined with prior experience in a DoD environment or military service. Has directly supported a third-party or certification audit from evidence collection through closure. Can apply recognized governance, risk, and compliance frameworks well enough to design real, working controls tailored to a specific organization, not just describe them generically. Has performed or directly supported a formal risk assessment (identification, scoring, and treatment) using a defined methodology. Preferred Requirements: Experience supporting third-party audits in a cloud-centric environment. Has built or materially contributed to a risk register, control framework, or compliance program, not only operated within one already established elsewhere. Has written policy or procedure documentation that a non-security audience could follow and act on. Why CHAOS? Health Benefits: Medical, dental, and vision benefits 100% paid for by the company Additional benefits : 401k (+ 50% company match up to 6% of pay), FSA, HSA, life insurance, and more Our Perks: Free daily lunch, 'No meeting Fridays', unlimited PTO, casual dress code Compensation Components: Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and (coming soon!) annual bonuses Team Growth: 350 employees and counting across 5 global offices #J-18808-Ljbffr Chaos, Inc.
$95k - $105k
...Contract Award Remote with occasional on-site support Connected Logistics is seeking a senior Risk and Compliance Analyst to support cybersecurity governance, enterprise risk management, compliance oversight, audit readiness, and continuous monitoring...SuggestedContract workRemote work$120.8k - $137.9k
...Overview Principal Risk Specialist, Compliance Governance Analyst The Compliance Governance, Oversight and Validation (CGOV) team within Compliance & Ethics is seeking a collaborative, analytically-focused risk management professional to support our well-managed...SuggestedFull timePart timeLocal areaImmediate start- ...Significant experience with full cycle Risk Management processes, including cATO, Risk... ...functional application via Service Now IRM/GRC environment. Significant experience... ...creation and integrations. Nice to have: Privacy (HIPAA) and PCI Compliance experience....Suggested
- ...Security Risk Management Specialist In depth understanding and hand on experience with... ...application via Service Now IRM/GRC environment. Significant experience with... ...creation and integrations. Nice to have: Privacy (HIPAA) and PCI Compliance experience....Suggested
$62k - $141k
GRC Analyst The Opportunity: Cyber threats evolve constantly. In... ...this role, you’ll turn complex risk into clear action by... ...risk management or security compliance functions ~ Experience applying... ...health or research-focused government entities Experience communicating...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...the Future seeks a Senior Business Management Analyst to support the Cybersecurity and Infrastructure Security Agency’s Sector Risk Management Engagement activities in Arlington, VA. The role provides analytical, governance, project-management, and executive-level support...
- ...integrators in the defense and government services industry. We deliver... ...seeking a highly qualified Risk Mitigation Specialist to support... ...DCSA FOCI policies to ensure compliance with emplaced mitigation... ...working with enterprise systems or GRC/IRM tools. Preferred...Contract workWork at officeWorldwide
- ...provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness... ...and private, defense and civilian government, and non-profit organizations. Our... ...DescriptionProSidian Seeks a Compliance Reporting Analyst | Human Capital Programmatic...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
- ...Job Summary The Analyst, AI Model Governance is responsible for supporting the oversight and compliance of AI models within the organization. This role tracks model inventories, conducts risk assessments, and prepares documentation for audits and regulatory inquiries....Full timeWork at officeRemote workFlexible hours
$77.2k - $115.8k
...Position – Safeguarding Trust, One Contract at a Time: Be the Linchpin of Security and Compliance at WWT As an Information Security (InfoSec) Governance, Risk, and Compliance (GRC) Analyst within Audit and Compliance, you will play a pivotal role in ensuring that WWT’s...Full timeContract workPart timeRemote workFlexible hoursShift work$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical...Full timeContract workPart timeWork at officeLocal areaRemote work- IBM Consulting seeks a Security Consultant to help client IT and business executives understand key governance, risk, and compliance issues, and to define tactical and strategic roadmaps for security objectives. You will collaborate with the CISO/BISO teams, demonstrate...
- ...practices. ProSidian services focus on the broad spectrum of Risk Management, Compliance, Business Process, IT Effectiveness, Energy &... ...engagements for Private Companies, Fortune 1,000 Enterprises, and Government Agencies of all sizes. Our Services are deployed across...Contract workFor contractorsWork at officeFlexible hours
- ...Compliance Data Analyst ProSidian is a Management And Operations Consulting Services firm that focuses... ...enterprise services/solutions for Risk Management | Compliance | Business... ...[NSF0098098] candidates with relevant Government And Public Services Sector Experience...Contract workH1bWork at office
- Newrez LLC is seeking a Sr. Compliance Analyst in Originations Compliance to support the company’s compliance program through testing, reporting, and policy implementation. The role will aid multiple lines of business in aligning with federal, state, and local regulations...Local area
$120.8k - $137.9k
...Overview Enterprise Risk Organization Governance & Reporting Specialist The Enterprise Risk Organization (ERO) Chief of Staff Team serves... ...disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital...Full timePart timeLocal area- ...position serves as a Management & Program Analyst (AI) evaluating and improving... ...collaboration across technical teams, governance bodies, and leadership to deploy AI capabilities... ..., ensuring alignment with governance, risk, and compliance frameworks. Designs and executes...Full timePart timeWork at officeTrial period
$90k - $200k
...Investigations Kroll's North American Investigations, Diligence and Compliance practice is seeking a Senior Manager based in the U.S. This is... ...intelligence, internal (client) investigations, insider risk compliance assessments, consulting projects and forensic matters...Temporary workFlexible hours- The Physical Security Risk & Compliance Analyst serves as a senior security professional responsible for evaluating, assessing, and strengthening... ...vulnerability analyses to ensure adherence to applicable government regulations, customer requirements, and industry best...For contractors
- ...Job Description Job Description Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid,... ...Responsibilities The Compliance Analyst (GRC/RMF Focused) supports governance, risk, and compliance (GRC) initiatives by developing,...Full timeMonday to Friday
- ...provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness... ...and private, defense and civilian government, and non-profit organizations. Our... ...DescriptionProSidian Seeks a Governance & Risk Analyst | Human Capital Programmatic...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
- ...general supervision of the Senior Market Compliance Analyst (Natural Gas, LNG, and Dry Bulk), this... ...closely with Trading, Commercial, Risk, Operations, Legal, senior management,... ...investigations, training initiatives, governance activities, and regulatory readiness efforts...Full timeWork at officeLocal areaVisa sponsorshipWork visa
- ...proactively address legal and regulatory issues as Palantir continues to drive and deliver positive impact in the world. As a Risk and Compliance Specialist - Global Trade, you will manage and scale a first-class, global trade compliance program. You’ll be a key leader...Overseas
- ...institutional partners. You will perform due diligence, financial assessments, and risk profiling, ensuring alignment with donor requirements and organizational policies. The role requires strong compliance expertise, ability to adapt during emergencies, and willingness to travel...
- ...cybersecurity architecture and engineering. We are seeking Risk and Compliance Analysts to own the risk, compliance, and supply chain reporting... ...are risk and compliance experience at a large company or Government agency similar in size and scope to VA, DoD, GSA, or IRS....Full timeContract workInterim roleWork at officeRemote work
$125k - $175k
...Enterprise Risk Analyst Denver, CO or Long Beach, CA or Washington... ...engineering, security, legal, compliance, and operations teams to... ...Jira, Confluence, enterprise GRC platforms, and MS Project.... ...assessor interactions, and government partner reviews. Qualifications...Permanent employmentContract workWork at office$43k - $44.63k
...Headquartered in Alpharetta, Georgia, DataScan stands at the forefront of delivering cutting-edge wholesale asset financing and inventory risk management solutions. Our commitment lies in empowering lenders to efficiently oversee their operations and manage risk through our...Temporary workLive inImmediate startFlexible hoursNight shift- ...strategic role within the Analytics & Modeling team, analyzing the risk exposure across current and future initiatives, ensuring... ...YOU WILL MAKE The SF Risk - Analytics and Modeling - Senior Analyst role will offer you the flexibility to make each day your own,...Work at officeRemote work
$70k - $150k
...Kroll’s North American Investigations, Diligence and Compliance - Specialist practice is seeking an Associate Manager based in the U.S.... ...adequacy and effectiveness of internal controls, performing insider risk compliance assessments, managing projects and resources,...Temporary workInterim roleFlexible hours$260k - $365k
## Financial Services Regulatory & Compliance Associate (Senior Level)Applyremote type: Onsitelocations: Miami: Atlanta: Washington, D.C.... ...services laws and regulations (e.g., BSA/AML, sanctions, third-party risk management, and consumer compliance). Enforcement experience is...Full timeTemporary workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!
- risk consultant Washington DC
- it risk analyst Washington DC
- operational risk specialist Washington DC
- risk analyst Washington DC
- third party risk analyst Washington DC
- risk officer Washington DC
- transaction risk analyst Washington DC
- senior quantitative risk analyst Washington DC
- operational risk consultant Washington DC
- regulatory analyst Washington DC



