About the role
As a Governance, Risk & Compliance (GRC) Engineer, you will make an impact by supporting the implementation, assessment, and continuous improvement of security and compliance controls across the organization. You will be a valued member of the Governance, Risk & Compliance team and work collaboratively with Security, IT, Infrastructure, PMO, Facilities, and business stakeholders.
In this role, you will:
- Support implementation and validation of security and compliance controls aligned to NIST SP 800-171 and CMMC Level 2.
- Conduct risk assessments, document findings, residual risks, and mitigation plans, and track remediation activities through closure.
- Prepare audit evidence and support internal and external audits to ensure ongoing compliance readiness.
- Develop and maintain compliance, risk, and remediation reporting for stakeholders and leadership teams.
- Partner with cross-functional teams to embed compliance requirements into business and technology processes while driving continuous improvement initiatives.
Work model
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a hybrid position requiring regular attendance at a Cognizant or client office in Blue Ash, Ohio. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered
- 3–7 years of experience in Governance, Risk & Compliance, Information Security, Risk Management, Audit, or a related discipline.
- Experience supporting security and compliance frameworks, including NIST SP 800-171 and/or CMMC.
- Working knowledge of risk management practices, remediation tracking, and audit support activities.
- Experience with ServiceNow ITSM and vulnerability management tools such as Qualys.
- Strong communication, stakeholder management, and analytical skills with the ability to work across technical and business teams.
These will help you stand out
- Security+, CISA, CISM, CISSP, ISO 27001 Lead Implementer/Auditor, CCP, or CMMC-related certifications.
- Experience supporting ISO 27001 compliance programs and security awareness initiatives.
- Experience maintaining audit-ready documentation and evidence repositories.
- Knowledge of regulatory and contractual compliance requirements within complex enterprise environments.
- Experience identifying opportunities for automation and process improvement within GRC functions.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Sobre a Cognizant
Cognizant (NASDAQ: CTSH) é uma construtora de IA e fornecedora de serviços de tecnologia, criando a ponte entre o investimento em IA e o valor para as empresas por meio do desenvolvimento de soluções de IA completas para nossos clientes. Nossa profunda experiência em setores, processos e engenharia nos permite incorporar o contexto único de cada organização em sistemas tecnológicos que potencializam a capacidade humana, geram resultados tangíveis e mantêm empresas globais à frente em um mundo em rápida transformação. Saiba mais em cognizant.ai ou @cognizant.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Informações adicionais de emprego
Os candidatos podem ser obrigados a comparecer a entrevistas presenciais ou por videoconferência. Além disso, os candidatos podem ser obrigados a apresentar seu documento de identificação emitido pelo estado ou governo atual durante cada entrevista.
Embora nosso sistema permita a candidatura em todos os idiomas, o(s) idioma(s) e o(s) nível(is) de proficiência exigidos para o trabalho variam. No entanto, é necessário um nível básico de inglês para fins de comunicação em toda a empresa.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Se você tem uma deficiência que requer adaptações razoáveis para procurar uma vaga de emprego ou enviar uma candidatura, envie um e-mail para [email protected] com sua solicitação e informações de contato.











