TEKsystems has a client looking to add a GRC Analyst that is responsible for establishing, maintaining, and operationalizing governance, risk, and compliance programs across regulated automotive and defense environments. This role ensures ongoing compliance with TISAX Assessment Level 2, NIST CSF 2.0, NIST SP 800 171, and CMMC 2.0, while reducing audit fatigue, legal risk, and operational disruption. The position requires a strong technical understanding of security controls across IT, OT, and engineering environments, combined with the ability to produce audit grade documentation and evidence that withstands third party and government assessments.
*Skills*
Compliance, Risk management, Audit, Nist, Risk assessment, CMMC, TISAX, Security, Information security, Risk analysis
*Additional Skills & Qualifications*
Governance, Risk & Compliance Management
*Own and maintain compliance programs aligned to:
oTISAX 6.0 (Assessment Level 2)
oNIST Cybersecurity Framework (CSF) 2.0
oNIST SP 800 171
oCMMC 2.0 (Level 1 & Level 2)
*Operationalize the NIST CSF 2.0 "Govern" function, including policy integration, leadership reporting, and measurable risk outcomes.
*Perform control gap assessments and coordinate remediation activities with IT, OT, Engineering, and Legal teams.
Audit & Assessment Readiness
*Prepare and manage self assessments and third party audits, including:
oTISAX AL2 assessments and remote audits
oCMMC Level 2 C3PAO readiness
*Develop and maintain:
oSystem Security Plans (SSPs)
oPlans of Action & Milestones (POA&Ms)
oSPRS documentation and submissions
*Serve as the primary point of contact for auditors, assessors, and internal stakeholders.
Technical Control Validation
*Validate the implementation and effectiveness of security controls across:
oIdentity & Access Management (IAM), MFA, RBAC, PAM
oLogging, monitoring, and audit logging (SIEM concepts)
oEndpoint and server security (hardening, patching, EDR)
oNetwork security (segmentation, firewalls, remote access)
oIncident response and tabletop exercises
*Review system configurations and technical artifacts to ensure they meet control intent and audit expectations.
Preferred Qualifications
*Experience supporting automotive OEMs or defense contractors
*Direct involvement in TISAX AL2 or CMMC Level 2 assessments
*Familiarity with GRC platforms (e.g., Archer, ServiceNow GRC, similar tools)
*Certifications such as:
oCISSP, CISM, CRISC
oCMMC RP, CMMC CCP
oISO 27001 Lead Implementer/Auditor
*Job Type & Location*
This is a Contract position based out of Auburn Hills, MI.
*Pay and Benefits*The pay range for this position is $53.00 - $58.00/hr.
Eligibility requirements apply to some benefits and may depend on your job
classification and length of employment. Benefits are subject to change and may be
subject to specific elections, plan, or program terms. If eligible, the benefits
available for this temporary role may include the following:
...required skill set, education requirements, and experience, please click the submit button and follow the next steps. Screening Security Officer Wage: $16.00/ hour Operate various technologies, including site camera systems, X-ray screening machines, Vision...
...Days) Overview: AvMed, a division of Sentara Health Plans in the Florida market, is hiring a Wellness Health Coach in Miami, FL! The role requires traveling... ...environment. For positions that are available as remote work, Sentara Health employs associates in...
...learn more. Base pay range $75,000.00/yr - $85,000.00/yr Direct message the job poster from Talent Harbor VA Medical Device Sales Representative Pelvic Health (Remote, US) Are you passionate about bringing life-changing womens health solutions to clinicians...
...GovCIO is actively seeking a Senior Business Analyst who will become an integral part of a cross-functional team dedicated to delivering impactful features. This fully remote position is available to candidates within the Continental United States (CONUS).The ideal candidate...
...Unmanned Aircraft Systems Maintenance This isn't just a maintenance job; this is a front-line operational role in the rapidly evolving Unmanned Aircraft Systems (UAS) industry. Work directly with UAS technology and automated "Nest" infrastructure. Get your 10k steps...