About the role
As a Governance, Risk & Compliance (GRC) Engineer, you will make an impact by supporting the implementation, assessment, and continuous improvement of security and compliance controls across the organization. You will be a valued member of the Governance, Risk & Compliance team and work collaboratively with Security, IT, Infrastructure, PMO, Facilities, and business stakeholders.
In this role, you will:
- Support implementation and validation of security and compliance controls aligned to NIST SP 800-171 and CMMC Level 2.
- Conduct risk assessments, document findings, residual risks, and mitigation plans, and track remediation activities through closure.
- Prepare audit evidence and support internal and external audits to ensure ongoing compliance readiness.
- Develop and maintain compliance, risk, and remediation reporting for stakeholders and leadership teams.
- Partner with cross-functional teams to embed compliance requirements into business and technology processes while driving continuous improvement initiatives.
Work model
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a hybrid position requiring regular attendance at a Cognizant or client office in Blue Ash, Ohio. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered
- 3–7 years of experience in Governance, Risk & Compliance, Information Security, Risk Management, Audit, or a related discipline.
- Experience supporting security and compliance frameworks, including NIST SP 800-171 and/or CMMC.
- Working knowledge of risk management practices, remediation tracking, and audit support activities.
- Experience with ServiceNow ITSM and vulnerability management tools such as Qualys.
- Strong communication, stakeholder management, and analytical skills with the ability to work across technical and business teams.
These will help you stand out
- Security+, CISA, CISM, CISSP, ISO 27001 Lead Implementer/Auditor, CCP, or CMMC-related certifications.
- Experience supporting ISO 27001 compliance programs and security awareness initiatives.
- Experience maintaining audit-ready documentation and evidence repositories.
- Knowledge of regulatory and contractual compliance requirements within complex enterprise environments.
- Experience identifying opportunities for automation and process improvement within GRC functions.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
À propos de Cognizant
Cognizant (NASDAQ : CTSH) est un AI Builder et une entreprise de services numériques (ESN) élaborant des solutions complètes d’IA maximisant les investissements pour des résultats concrets. Sa profonde expertise des métiers, des processus et des technologies lui permet d’intégrer dans les systèmes technologiques le contexte unique de chaque organisation de l’ingénierie à la production à l’échelle. Son objectif : améliorer l’efficacité des équipes, créer de la valeur et permettre aux grandes entreprises de rester performantes dans un monde qui évolue rapidement. Pour en savoir plus : cognizant.ai ou @cognizant.
Renseignments suppplémentaires sur l'emploi
Les informations sur la rémunération sont exactes à la date de publication. Cognizant se réserve le droit de modifier ces informations à tout moment, conformément aux lois applicables.
Les exigences linguistiques varient selon les postes, mais nous demandons à tous les candidats d’avoir une connaissance de base de l’anglais afin de faciliter les communications internes à l’échelle de l’entreprise. Pour les postes basés au Québec, une maîtrise de l’anglais est requise puisque vous fournirez des services et collaborerez avec des parties prenantes situées hors de la province, qui ne parlent pas nécessairement le français.
Cognizant est un employeur souscrivant au principe de l’égalité d’accès à l’emploi. Votre candidature et votre dossier ne seront pas examinés en fonction de la race, de la couleur, du sexe, de la religion, des croyances, de l'orientation sexuelle, de l'identité de genre, de l'origine nationale, du handicap, de l'information génétique, de la grossesse, du statut d'ancien combattant ou de toute autre caractéristique protégée telle que décrite par les lois fédérales, provinciales ou locales.
Si vous avez un handicap qui nécessite un aménagement raisonnable pour rechercher une offre d'emploi ou poser une candidature, envoyiez un courriel à [email protected] avec votre demande et vos coordonnées.











