1

Cgrc Jobs in Indiana (NOW HIRING)

Cgrc information

What is a CGRC professional?

CGRC professionals, or Certified in Governance, Risk and Compliance, are experts who help organizations manage risk, ensure regulatory compliance, and establish effective governance frameworks. They analyze processes, identify potential risks, and develop policies to maintain compliance with laws and industry standards. CGRC certification, previously known as CAP (Certified Authorization Professional), is offered by (ISC)² and validates knowledge in governance, risk management, and compliance best practices. These professionals often work in cybersecurity, IT, or regulatory roles across various industries.

What are the key skills and qualifications needed to thrive as a Cybersecurity Governance, Risk, and Compliance (CGRC) professional?

To thrive as a CGRC professional, you need a solid understanding of cybersecurity frameworks, risk management, and regulatory compliance, typically supported by a relevant degree and certifications such as CISSP, CISA, or CGRC (formerly CAP). Familiarity with GRC platforms like Archer, ServiceNow GRC, or RSA, as well as knowledge of NIST, ISO, or HIPAA standards, is commonly required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for interpreting regulations and collaborating across teams. These competencies ensure organizations remain secure and compliant, minimizing risk and avoiding costly penalties.

What is the difference between Cgrc vs Compliance Analyst?

AspectCgrcCompliance Analyst
CertificationsCertifications like CFE, CISA, or CMMC often preferredCertifications such as CCEP, CISA, or CIA common
Work EnvironmentTypically in cybersecurity, risk management, or compliance teams within organizationsUsually in corporate compliance departments, auditing firms, or regulatory agencies
Industry UsageUsed in industries like finance, healthcare, and government for cybersecurity and risk managementCommon across various industries for regulatory compliance and risk assessment

The Cgrc (Certified Government Risk Compliance) focuses on government-specific regulations and cybersecurity risk management, while a Compliance Analyst generally handles broader regulatory compliance across industries. Both roles require understanding of compliance frameworks, but Cgrc emphasizes government standards and cybersecurity, making it more specialized in those areas.

What are some common challenges CGRC professionals face when managing compliance across multiple frameworks?

CGRC (Cybersecurity Governance, Risk, and Compliance) professionals often encounter the challenge of aligning organizational policies with the requirements of various regulatory frameworks, such as NIST, ISO 27001, and GDPR. This can involve interpreting overlapping or conflicting controls and ensuring consistent documentation and reporting. Additionally, they must facilitate communication and collaboration between IT, legal, and business teams to ensure all stakeholders understand and meet compliance obligations. Keeping up with the evolving regulatory landscape and adapting internal processes accordingly is also a key aspect of the role.
Infographic showing various Cgrc job openings in Indiana as of August 2026, with employment types broken down into 35% Part Time, and 65% Contract. Highlights an 100% In-person job distribution.

Information Assurance Analyst, Senior

ITI Solutions, Inc

Indianapolis, IN • On-site

Full-time

Posted 15 days ago


Job description

ITI Solutions is a fast-growing business supporting DoD and other intelligence agencies worldwide. ITI Solutions develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.

About ITI Solutions, Inc.

ITI Solutions, Inc.  is a Service-Disabled Veteran-Owned Small Business (SDVOSB) with a strong track record supporting Department of Defense (DoD) programs, including U.S. Army vehicle production, sustainment, and modernization efforts.

Founded by a Service-Disabled Veteran, we bring mission-driven expertise in engineering support, logistics coordination, and program execution to critical national defense initiatives.

As an Equal Opportunity Employer, ITI Solutions is committed to fostering a diverse, inclusive, and respectful workplace. We do not discriminate in employment decisions on the basis of race, color, religion, national origin, sex, gender, gender identity, sexual orientation, age, disability, protected veteran status, genetic information, or any other characteristic protected by applicable federal, state, or local law. We are dedicated to providing equal employment opportunities to all applicants and employees and maintaining a work environment that is free from discrimination and harassment.

Overview of position:

We are looking for an Information Assurance Analyst, Senior, to work in Indianapolis, IN.

An active Secret and a United States Citizenship is required to be considered for this position.

Responsibilities

  • Provide senior Information Assurance support for DFAS CCE NIPRNet enclave
  • Perform periodic security assessments IAW DoD RMF Process and FISMA
  • Support CCE A&A to obtain and sustain ATO achieving 100% maintenance
  • Document and validate IT general controls applicable to CCE infrastructure
  • Support FISCAM compliance audits (internal and external) achieving 95% control pass rate
  • Test and record results for annual self-assessment testing
  • Coordinate and update process documentation to address control deficiencies
  • Create and maintain RMF documentation and artifacts
  • Review checklists for C&A processes (validations, DIP, SIP, POA&M, C&A checklist, scorecard)
  • Support DSN SNAP database submissions

Experience/Skills:

  • 8+ years Information Assurance/cybersecurity compliance experience
  • DoD 8140 Work Role 722 Information Systems Security Manager (ISSM) Intermediate qualification
  • Strong knowledge of DoD Risk Management Framework (RMF)
  • Experience with FISMA compliance and control testing
  • Proficiency with eMASS documentation
  • Experience supporting FISCAM and internal audits
  • Knowledge of IT general controls and audit requirements
  • Experience creating security documentation and artifacts
  • Understanding of POA&M management

Preferred Qualifications:

  • CISSP or CISM certification
  • CAP certification
  • Experience with DFAS IA programs
  • Prior DoD A&A/RMF experience
  • Audit background or experience
  • Knowledge of SSAE requirements
  • Experience with NIPRNet authorization

Education:

  • Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related field

Certifications:

  • CGRC (formerly CAP)
  • CompTIA CASP+
  • (ISC)² CCSP
  • CompTIA Cloud+
  • (ISC)² SSCP
  • CompTIA Security+
  • GIAC GSEC

Clearance:

  • Active Secret Clearance is required.
  • Must be a United States Citizen and pass a background check.