13 grc specialist jobs at 10 companies in Vienna, VA

3w
Save
Mark Applied
Hide
Cyber GRC Specialist
Baltimore, Maryland, United States
$95k-$115k/yr OnsiteFull Time
Brown Advisory
Brown Advisory: Independent, privately held, colleague-owned investment management and strategic advisory firm serving private clients and institutions worldwide.
3+ YOE3–6 years in cyber GRC, information security, technology risk, IT audit, compliance, or control management preferred; knowledge of security frameworks and GRC platforms required.
Vanta, Archer, ServiceNow GRC, OneTrust, Drata, ISO 27001, SOC 2, NIST CSF, CIS Controls, Microsoft Excel
3mo
Save
Mark Applied
Hide
Security Authorization Specialist
Washington, District of Columbia, United States
$119k-$160k/yr RemoteFull Time
Second Front Systems
Second Front Systems: Public-benefit software helping governments and defense organizations securely deploy mission-critical SaaS.
5+ YOE5+ years in security compliance/GRC with FedRAMP experience; experience authoring SSPs/POA&Ms; knowledge of NIST 800-53/800-37 and FedRAMP; TS/SCI eligibility; CISSP/CISM/Security+; strong written communication.
GRC, Drata, Xacta, Terraform, AWS Config, Python, Bash, SQL
3d
Save
Mark Applied
Hide
Advisory Specialist I, Risk & Audit
Singapore or Australia or New Zealand or Sydney or New York City or Washington, D.C. or Vancouver or London or Galway or Budapest or Munich or Bengaluru
HybridFull Time
Diligent
Diligent: Private GRC SaaS providing governance, risk, compliance, audit, and ESG software to boards and organizational leaders.
1+ YOERequires approximately 12+ months of relevant client-facing experience, English communication skills, collaboration ability, and GRC knowledge or willingness to learn. Degree and professional GRC accreditation are preferred.
Diligent One Platform
1mo
Save
Mark Applied
Hide
Sr. Security Specialist
Washington, District of Columbia, United States
OnsiteFull Time
AnaVation
AnaVation: Private federal IT contractor serving U.S. government agencies with intelligence, cloud, big-data, cybersecurity, and software-engineering services.
6+ YOE6+ years working with NIST, FISMA, RMF, and SA&A; FedRAMP and multi-cloud (Azure, AWS, OCI) experience; CISSP required; ability to obtain/maintain Public Trust; experience with GRC tools, vulnerability and endpoint tools, and presenting to leadership.
Azure, AWS, Oracle (OCI), Nessus, BigFix, SCCM, ePO, eMASS, JCAM, CSAM, Microsoft Excel, Microsoft Power BI
3d
Save
Mark Applied
Hide
Advisory Specialist I, Risk & Audit
Singapore or Australia or New Zealand or New York City or Washington, D.C. or Vancouver or London or Galway or Budapest or Munich or Bengaluru or Singapore or Sydney
HybridFull Time
Diligent
Diligent: Private GRC SaaS providing governance, risk, compliance, audit, and ESG software to boards and organizational leaders.
1+ YOE12+ months of consulting, professional services, SaaS implementation, customer success, or client-facing experience; English communication skills; willingness to learn GRC disciplines and Diligent products.
Diligent One Platform
4d
Save
Mark Applied
Hide
Advisory Specialist I, Compliance - Americas
Vancouver or New York City or Washington or London or Galway or Budapest or Munich or Bengaluru or Singapore or Sydney
$56k-$70k/yr HybridFull Time
Diligent
Diligent: Private GRC SaaS providing governance, risk, compliance, audit, and ESG software to boards and organizational leaders.
1+ YOERequires 12+ months of consulting, professional services, SaaS implementation, customer success, or client-facing experience; English communication skills; GRC knowledge or willingness to learn; collaboration and problem-solving abilities.
2mo
Save
Mark Applied
Hide
Cloud Cybersecurity Specialist - Senior
Herndon or United States
$100k-$130k/yr RemoteFull Time
BDR Solutions
BDR Solutions: Service-disabled veteran-owned small IT services firm modernizing health, social-service, and disaster-relief systems for U.S. federal agencies.
5+ YOEActive MBI (required), U.S. citizenship, 5+ years in FedRAMP High or comparable AWS environments, CISSP/CCSP/Security+ (current), AWS Security experience, POA&M/GRC and ATO support, bachelor's degree in cybersecurity/IT.
AWS, Security Hub, GuardDuty, CloudTrail, Config, IAM Access Analyzer, Splunk, ELK, eMASS, Archer, ServiceNow GRC, Tenable, Qualys, Inspector, Terraform, Git, Databricks, Lake Formation, OSCAL, Python
2mo
Save
Mark Applied
Hide
A&A Specialist
Washington or Cleveland or California or Colorado or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or New Jersey or New York or Vermont or Virginia or Washington or District of Columbia
$64k-$221k/yr HybridFull Time
Accenture Federal Services
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
2+ YOEManage full RMF lifecycle for federal/DoD systems; implement and assess NIST SP 800-53 controls; perform vulnerability scans, security control assessments, risk analysis, and maintain SSPs/POA&Ms. Requires 2+ years information security experience.
RMF, NIST SP 800-37, NIST SP 800-53, FISMA, FedRAMP, GRC
2mo
Save
Mark Applied
Hide
Risk Mitigation Specialist
Washington, District of Columbia, United States
$63k-$132k/yr OnsiteFull Time
SOS International
SOS International: Technology and services integrator for government and defense missions.
5+ YOEActive Top Secret/SCI clearance, Bachelor’s degree, 5+ years in risk management/internal controls or related DoD/IC experience; experience with DoD RMIC, FOCI, ServiceNow IRM/SPM, and Microsoft Office.
ServiceNow Integrated Risk Management (IRM), Strategic Portfolio Management (SPM), Microsoft Excel, Microsoft Word, Microsoft PowerPoint, GRC
2d
Save
Mark Applied
Hide
IT Risk and Compliance Specialist Principal
Washington, District of Columbia, United States
$136k-$184k/yr HybridFull Time
General Dynamics Information Technology
General Dynamics Information TechnologyNew York Stock Exchange: GD: Provider of enterprise IT services and defense solutions.
5+ YOERequires 5+ years of related experience, US citizenship, active Secret clearance, RMF and ATO experience, Azure security expertise, GRC tool experience, and federal environment experience.
Microsoft Azure Security Stack, Microsoft Sentinel, Microsoft Defender, Risk Management Framework (RMF), Plan of Action and Milestones (POA&M), Security Content Automation Protocol (SCAP), CSAM, STIG, eMASS, Azure for Government, SIPRNET
3w
Save
Mark Applied
Hide
Continuous Monitoring Specialist (SCA)? Level III (DC, Washington)
Washington, District of Columbia, United States
OnsiteFull Time
RiVidium
RiVidium: RiVidium is a privately held federal contractor providing cybersecurity, IT, human-capital, and intelligence services to government agencies.
7+ YOEActive TS/SCI clearance, 7+ years cybersecurity/continuous monitoring experience, expertise with NIST RMF and vulnerability management, experience with Nessus/ACAS/Tenable and GRC/SIEM platforms, bachelor's degree required.
Nessus, ACAS, Tenable Security Center, RSA Archer, SIEM, PowerShell, Python, NIST SP 800-137, NIST SP 800-53, NIST Risk Management Framework (RMF), CNSSI 1253, Continuous Diagnostics and Mitigation (CDM)
2mo
Save
Mark Applied
Hide
GDMS Senior AI Governance & Risk Specialist
Chantilly or Taunton or Scottsdale or San Jose
HybridFull Time
General Dynamics Mission Systems
General Dynamics Mission SystemsNew York Stock Exchange: GD: Defense electronics manufacturer and systems integrator for mission-critical solutions.
8+ YOEBachelor's degree plus 8+ years or master's degree plus 6+ years in AI governance, technology risk, cybersecurity GRC, responsible AI, or AI/ML compliance; U.S. citizenship required.
Microsoft Copilot, Microsoft Purview, OpenAI, Anthropic, Google, Palantir, Snowflake, Databricks, ServiceNow, NIST AI RMF, OWASP Top 10 for LLMs, MITRE ATLAS, EU AI Act, ISO 42001, NIST CSF, GDPR, MCP
3mo
Save
Mark Applied
Hide
SAP Application Security Specialist
Washington, District of Columbia, United States
$85k-$160k/yr HybridFull Time
Accenture Federal Services
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
1+ YOE6+ months SAP experience; implement and maintain SAP Application Security controls; US citizenship.
SAP, GRC, ABAC, Information Assurance