Senior GRC (Governance Risk and Compliance)/ Risk Analyst - Washington DC (Remote)
YSI Jobs - YSI Admin
Yakshna Solutions, Inc., (YSI) is a CMMI Level 3 assessed, ISO 9001, 20000:1, 27001 certified, woman-owned small business enterprises, headquartered in Herndon, Virginia, USA. YSI provides professional IT solutions and services to business corporations and government organizations. YSI is committed to serve its business communities as a leading IT vendor providing innovative, quality, and cost-effective IT business solutions and services.
YSI offers a competitive benefits package that includes the following: 401(k), health, dental, and vision insurance, Life insurance, short-term and long-term disability insurance, paid time off, training and professional development assistance.
YSI is seeking a Risk Analyst. The ideal candidate will be responsible for the following:
Supports enterprise cyber risk and compliance activities by implementing and sustaining Integrated Risk Management (IRM) processes aligned with federal mandates. Leads development and maturation of Supply Chain Risk Management (SCRM) and Third-Party Risk Management (TPRM) programs, ensuring consistent risk identification, assessment, and reporting across vendors and partners.
Maintains the Cyber Risk Register, tracks evolving cybersecurity regulations and data calls, and supports continuous improvement of FISMA scores and maturity levels. Normalizes and translates technical cyber risks into business-relevant terms to enable enterprise-wide risk visibility and executive decision-making. Develops cybersecurity dashboards and leverages automation and AI to enhance risk reporting, compliance tracking, performance analysis, and forward-looking risk forecasting.
Required skills and experience
- Bachelor's degree in relative field.
- 8 years of experience in Risk Analysis, Governance, Risk, and Compliance (GRC),
- Integrated Risk Management (IRM), Cyber Risk Register, Supply Chain Risk Management (SCRM), Third-Party Risk Management (TPRM),
- FISMA reporting and maturity modeling
- NIST Risk Management Framework (RMF), Risk normalization and enterprise risk translation,
- Cybersecurity metrics, KPIs, and dashboards
- Regulatory compliance tracking and data calls, GRC platforms (e.g., ServiceNow GRC, Archer, eMASS, Xacta), Automation and AI-driven risk analytics, Continuous monitoring and compliance reporting
- Required Certifications: CRISC, CISM, CISSP, or CAP
Salary: $165K/A with benefits
US Citizenship
W-2 Only
YSI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
| ID |
Job Title |
Job Description |
| 7711120 |
Penetration TesterSenior GRC (Governance Risk and Compliance)/ Risk Analyst |
|
Please e-mail your profile / referrals to resumes@yakshna.com
|