About the role
As a Governance, Risk & Compliance (GRC) Engineer, you will make an impact by supporting the implementation, assessment, and continuous improvement of security and compliance controls across the organization. You will be a valued member of the Governance, Risk & Compliance team and work collaboratively with Security, IT, Infrastructure, PMO, Facilities, and business stakeholders.
In this role, you will:
- Support implementation and validation of security and compliance controls aligned to NIST SP 800-171 and CMMC Level 2.
- Conduct risk assessments, document findings, residual risks, and mitigation plans, and track remediation activities through closure.
- Prepare audit evidence and support internal and external audits to ensure ongoing compliance readiness.
- Develop and maintain compliance, risk, and remediation reporting for stakeholders and leadership teams.
- Partner with cross-functional teams to embed compliance requirements into business and technology processes while driving continuous improvement initiatives.
Work model
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a hybrid position requiring regular attendance at a Cognizant or client office in Blue Ash, Ohio. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered
- 3–7 years of experience in Governance, Risk & Compliance, Information Security, Risk Management, Audit, or a related discipline.
- Experience supporting security and compliance frameworks, including NIST SP 800-171 and/or CMMC.
- Working knowledge of risk management practices, remediation tracking, and audit support activities.
- Experience with ServiceNow ITSM and vulnerability management tools such as Qualys.
- Strong communication, stakeholder management, and analytical skills with the ability to work across technical and business teams.
These will help you stand out
- Security+, CISA, CISM, CISSP, ISO 27001 Lead Implementer/Auditor, CCP, or CMMC-related certifications.
- Experience supporting ISO 27001 compliance programs and security awareness initiatives.
- Experience maintaining audit-ready documentation and evidence repositories.
- Knowledge of regulatory and contractual compliance requirements within complex enterprise environments.
- Experience identifying opportunities for automation and process improvement within GRC functions.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Acerca de Cognizant
Cognizant (Nasdaq: CTSH) es un creador de soluciones de IA y proveedor de servicios tecnológicos que conecta la inversión en IA con el valor empresarial mediante el desarrollo de soluciones de IA full‑stack para sus clientes. Su profundo conocimiento de la industria, junto con su experiencia en procesos e ingeniería, permite incorporar el contexto único de cada organización en sistemas tecnológicos que amplifican el potencial humano, generan resultados tangibles y mantienen a las empresas a la vanguardia en un entorno en constante cambio. Más información en cognizant.ai o @cognizant.
Información adicional de empleo
La información de compensación es precisa a la fecha de esta publicación. Cognizant se reserva el derecho de modificar esta información en cualquier momento, sujeto a la legislación aplicable.
Es posible que se requiera que los solicitantes asistan a entrevistas en persona o por videoconferencia. Además, es posible que se requiera que los candidatos presenten su identificación actual emitida por el estado o gobierno durante cada entrevista.
Cognizant es un empleador que ofrece igualdad de oportunidades. Tu solicitud y candidatura no serán consideradas en base a raza, color, sexo, religión, credo, orientación sexual, identidad de género, origen nacional, discapacidad, información genética, embarazo, condición de veterano o cualquier otra característica protegida por las leyes federales, estatales o locales.
Si tienes una discapacidad que requiere adaptaciones razonables para buscar una vacante de trabajo o enviar una solicitud, puedes enviar un correo electrónico a [email protected] con tu solicitud e información de contacto.










