Job Description
Job Title: Data Risk Analyst
Location: Vienna, VA
Type: Contract
Contractor Work Model: Hybrid
Description
Data Risk Analyst
We are seeking a detail-oriented and analytical Data Risk Analyst to join the Data Risk Governance team within the Human Resources (HR) Risk Office. In this role, you will help identify, assess, and mitigate risks related to data classification, data privacy, data quality, data use, and regulatory compliance. You will support the implementation of governance frameworks that ensure effective data risk management not only for across the enterprise.
Key Responsibilities:
• Support the HR Principal Managing Data Steward in assigned tasks related to established procedures, such as Data Transfer Authorizations.
• Collaborate with business and IT stakeholders to identify data risks and recommend appropriate mitigation strategies.
• Assist in the development and maintenance of data governance policies, standards, and procedures.
• Monitor compliance with internal data policies and external regulatory requirements (e.g., Enterprise Data Governance and Information Security instructions and standards, GDPR, CCPA, HIPAA, etc.).
• Support risk reporting by analyzing data and producing dashboards, scorecards, and executive summaries, as requested.
• Participate in data incident investigations, root cause analyses, and remediation tracking.
• Work with data stewards, data owners, legal, and compliance teams to promote awareness and accountability for data risk.
• Maintain a register of data risks and control gaps and ensure timely follow-up and resolution.
• Stay up-to-date on emerging data risks, industry best practices, and regulatory changes.
• Contribute to continuous improvement of data risk documentation, assessments and control evaluation processes.
Qualifications:
• Bachelor’s degree in Data Science, Risk Management, Information Systems, Business, or related field.
• 5+ years of experience in risk management, data governance, audit, or compliance; experience with data risk preferred.
• Strong understanding of data risk concepts, including privacy, quality, security, and ethical use of data.
• Familiarity with regulatory requirements such as GDPR, CCPA, SOX, or industryspecific standards.
• Strong analytical mindset with proficiency in Excel, Power BI, Tableau, or similar tools.
• Excellent communication and interpersonal skills; ability to translate complex issues for non-technical audiences.
• Experience with GRC tools (e.g., ServiceNow, Archer, OneTrust, LogicGate) is a plus.
• Ability to work independently and collaboratively in a fast-paced, evolving environment.
• Familiarity with our client’s policies and procedures is preferred (financial services industry).
Preferred/Desirable Certifications:
• Certified Data Privacy Solutions Engineer (CDPSE)
• Certified Information Privacy Professional (CIPP)
• Certified Risk and Information Systems Control (CRISC)
• DAMA Certified Data Management Professional (CDMP)