×
Register Here to Apply for Jobs or Post Jobs. X

GRC – ITGC; General Control) SME

Remote / Online - Candidates ideally in
New York City, Richmond County, New York, USA
Listing for: Cognizant
Remote/Work from Home position
Listed on 2026-09-01
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Position: GRC – ITGC(General Control) SME

Cybersecurity Audit & Compliance Specialist

As a Cybersecurity Audit & Compliance Specialist, you will make an impact by supporting global cybersecurity audit, compliance, certification, and governance initiatives across the organization. You will be a valued member of the Cybersecurity and Risk Management team and work collaboratively with Information Security, Legal, Vendor Management, IT, Internal Audit, and business stakeholders to ensure compliance with industry standards, regulatory requirements, and corporate security policies.

In this role, you will help strengthen the organization's security posture through audit readiness, certification management, compliance monitoring, and continuous improvement initiatives while supporting global information security frameworks and standards.

In This Role, You Will
  • Support cybersecurity audit and compliance initiatives, including ISO 27001 certification, ENS certification, and other global information security standards and regulatory requirements.
  • Prepare the organization for internal and external security audits by coordinating audit activities, tracking deliverables, and ensuring timely completion of remediation efforts.
  • Partner with cross-functional teams, external auditors, advisors, and vendors to collect, validate, organize, and present audit evidence and compliance documentation.
  • Conduct compliance reviews, gap assessments, and remediation tracking to identify and address deficiencies against applicable security frameworks and policies.
  • Review information security requirements within vendor and customer contracts and provide guidance to ensure alignment with corporate cybersecurity standards and controls.
Work Model

We strive to provide flexibility wherever possible. Based on this role's business requirements, this is a remote position open to qualified applicants in the United States. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.

The working arrangements for this role are accurate as of the date of posting. This may change based on the project you're engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.

What You Need to Have to Be Considered
  • Bachelor's degree in Cybersecurity, Information Technology, Information Systems, Business Administration, Risk Management, or a related field, or equivalent professional experience.
  • Experience supporting cybersecurity audits, compliance programs, regulatory assessments, or certification initiatives.
  • Knowledge of ISO 27001 requirements, controls, risk management principles, and certification processes.
  • Experience conducting compliance assessments, gap analyses, evidence collection, and remediation tracking activities.
  • Strong understanding of information security governance, policies, standards, and audit methodologies.
  • Experience managing audit documentation, compliance records, and evidence repositories.
  • Ability to coordinate multiple projects and compliance initiatives while meeting deadlines.
  • Strong stakeholder management skills with experience collaborating across technical and business teams.
  • Excellent written and verbal communication skills with exceptional attention to detail.
  • Strong analytical, organizational, and problem-solving abilities.
These Will Help You Stand Out
  • Experience supporting ISO 27001 certification or recertification efforts.
  • Knowledge of ENS (Esquema Nacional de Seguridad) requirements and other global cybersecurity compliance frameworks.
  • Experience working with third-party risk management, vendor security reviews, and contract security assessments.
  • Familiarity with NIST Cybersecurity Framework, SOC 2, CIS Controls, GDPR, or other regulatory and security frameworks.
  • Experience managing corrective action plans and compliance remediation programs.
  • Professional certifications such as CISA, CRISC, CISM, ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, or similar credentials.
  • Knowledge of cybersecurity risk assessments, security governance, and control testing methodologies.
  • Experience supporting global audit and compliance programs within large enterprise…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary