CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
CGRC (formerly CAP) * CompTIA CASP+ * (ISC)² CCSP * CompTIA Cloud+ * (ISC)² SSCP * CompTIA Security+ * GIAC GSEC Clearance: * Active Secret Clearance is required. * Must be a United States Citizen ...
Cgrc information
What is a CGRC professional?
What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (CGRC) professional?
What is the difference between Cgrc vs Compliance Analyst?
| Aspect | Cgrc | Compliance Analyst |
|---|---|---|
| Certifications | Certifications like CFE, CISA, or CMMC often preferred | Certifications such as CCEP, CISA, or CIA common |
| Work Environment | Typically in cybersecurity, risk management, or compliance teams within organizations | Usually in corporate compliance departments, auditing firms, or regulatory agencies |
| Industry Usage | Used in industries like finance, healthcare, and government for cybersecurity and risk management | Common across various industries for regulatory compliance and risk assessment |
The Cgrc (Certified Government Risk Compliance) focuses on government-specific regulations and cybersecurity risk management, while a Compliance Analyst generally handles broader regulatory compliance across industries. Both roles require understanding of compliance frameworks, but Cgrc emphasizes government standards and cybersecurity, making it more specialized in those areas.
What are some common challenges CGRC professionals face when managing compliance across multiple frameworks?

Full-time
Posted 15 days ago
Job description
ITI Solutions is a fast-growing business supporting DoD and other intelligence agencies worldwide. ITI Solutions develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.
About ITI Solutions, Inc.
ITI Solutions, Inc. is a Service-Disabled Veteran-Owned Small Business (SDVOSB) with a strong track record supporting Department of Defense (DoD) programs, including U.S. Army vehicle production, sustainment, and modernization efforts.
Founded by a Service-Disabled Veteran, we bring mission-driven expertise in engineering support, logistics coordination, and program execution to critical national defense initiatives.
As an Equal Opportunity Employer, ITI Solutions is committed to fostering a diverse, inclusive, and respectful workplace. We do not discriminate in employment decisions on the basis of race, color, religion, national origin, sex, gender, gender identity, sexual orientation, age, disability, protected veteran status, genetic information, or any other characteristic protected by applicable federal, state, or local law. We are dedicated to providing equal employment opportunities to all applicants and employees and maintaining a work environment that is free from discrimination and harassment.
Overview of position:
We are looking for an Information Assurance Analyst, Senior, to work in Indianapolis, IN.
An active Secret and a United States Citizenship is required to be considered for this position.
Responsibilities
- Provide senior Information Assurance support for DFAS CCE NIPRNet enclave
- Perform periodic security assessments IAW DoD RMF Process and FISMA
- Support CCE A&A to obtain and sustain ATO achieving 100% maintenance
- Document and validate IT general controls applicable to CCE infrastructure
- Support FISCAM compliance audits (internal and external) achieving 95% control pass rate
- Test and record results for annual self-assessment testing
- Coordinate and update process documentation to address control deficiencies
- Create and maintain RMF documentation and artifacts
- Review checklists for C&A processes (validations, DIP, SIP, POA&M, C&A checklist, scorecard)
- Support DSN SNAP database submissions
Experience/Skills:
- 8+ years Information Assurance/cybersecurity compliance experience
- DoD 8140 Work Role 722 Information Systems Security Manager (ISSM) Intermediate qualification
- Strong knowledge of DoD Risk Management Framework (RMF)
- Experience with FISMA compliance and control testing
- Proficiency with eMASS documentation
- Experience supporting FISCAM and internal audits
- Knowledge of IT general controls and audit requirements
- Experience creating security documentation and artifacts
- Understanding of POA&M management
Preferred Qualifications:
- CISSP or CISM certification
- CAP certification
- Experience with DFAS IA programs
- Prior DoD A&A/RMF experience
- Audit background or experience
- Knowledge of SSAE requirements
- Experience with NIPRNet authorization
Education:
- Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related field
Certifications:
- CGRC (formerly CAP)
- CompTIA CASP+
- (ISC)² CCSP
- CompTIA Cloud+
- (ISC)² SSCP
- CompTIA Security+
- GIAC GSEC
Clearance:
- Active Secret Clearance is required.
- Must be a United States Citizen and pass a background check.
About ITI Solutions
Sourced by ZipRecruiter
Company size
1 - 10 Employees
Headquarters location
San Antonio, TX, US
Year founded
2001