About the role
As a Governance, Risk & Compliance (GRC) Engineer, you will make an impact by supporting the implementation, assessment, and continuous improvement of security and compliance controls across the organization. You will be a valued member of the Governance, Risk & Compliance team and work collaboratively with Security, IT, Infrastructure, PMO, Facilities, and business stakeholders.
In this role, you will:
- Support implementation and validation of security and compliance controls aligned to NIST SP 800-171 and CMMC Level 2.
- Conduct risk assessments, document findings, residual risks, and mitigation plans, and track remediation activities through closure.
- Prepare audit evidence and support internal and external audits to ensure ongoing compliance readiness.
- Develop and maintain compliance, risk, and remediation reporting for stakeholders and leadership teams.
- Partner with cross-functional teams to embed compliance requirements into business and technology processes while driving continuous improvement initiatives.
Work model
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a hybrid position requiring regular attendance at a Cognizant or client office in Blue Ash, Ohio. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered
- 3–7 years of experience in Governance, Risk & Compliance, Information Security, Risk Management, Audit, or a related discipline.
- Experience supporting security and compliance frameworks, including NIST SP 800-171 and/or CMMC.
- Working knowledge of risk management practices, remediation tracking, and audit support activities.
- Experience with ServiceNow ITSM and vulnerability management tools such as Qualys.
- Strong communication, stakeholder management, and analytical skills with the ability to work across technical and business teams.
These will help you stand out
- Security+, CISA, CISM, CISSP, ISO 27001 Lead Implementer/Auditor, CCP, or CMMC-related certifications.
- Experience supporting ISO 27001 compliance programs and security awareness initiatives.
- Experience maintaining audit-ready documentation and evidence repositories.
- Knowledge of regulatory and contractual compliance requirements within complex enterprise environments.
- Experience identifying opportunities for automation and process improvement within GRC functions.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
If you have a disability that requires reasonable accommodation to search for a job opening or submit an application, please email [email protected] with your request and contact information.











