1

It Risk And Compliance Jobs in Indiana (NOW HIRING)

IT Director

Terre Haute, IN · On-site

$65K - $70K/yr

Direct and enforce IT change control processes in alignment with college-wide protocols to ensure consistency and compliance. * Administer the management of hardware and software assets following ...

Direct and enforce IT change control processes in alignment with college-wide protocols to ensure consistency and compliance. * Administer the management of hardware and software assets following ...

New

Showing results 41-60

It Risk And Compliance information

What is IT Risk and Compliance?

IT Risk and Compliance refers to the process of identifying, assessing, and managing risks associated with an organization's information technology systems, while ensuring that these systems adhere to relevant laws, regulations, and internal policies. Professionals in this field work to protect sensitive data, prevent security breaches, and ensure that the organization's IT practices are compliant with industry standards such as GDPR, HIPAA, or SOX. They often conduct risk assessments, implement controls, monitor compliance, and respond to audits. The goal is to minimize potential threats to IT infrastructure and maintain the trust of customers and stakeholders.

What are the key skills and qualifications needed to thrive as an IT Risk and Compliance professional?

To thrive as an IT Risk and Compliance professional, you need a solid understanding of IT governance, risk management frameworks, regulatory requirements, and a relevant degree such as in information technology, cybersecurity, or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, as well as certifications such as CISA, CRISC, or CISSP, is typically required. Strong analytical thinking, attention to detail, and effective communication help professionals excel in navigating complex regulations and collaborating with cross-functional teams. These skills and qualifications are crucial for ensuring organizational compliance, mitigating security risks, and maintaining trust with stakeholders.

How does an IT Risk and Compliance professional typically collaborate with other departments to ensure regulatory adherence?

IT Risk and Compliance professionals regularly work with teams across the organization—such as IT, legal, audit, and business operations—to identify risks, interpret regulations, and implement compliance controls. They facilitate training, conduct assessments, and coordinate responses to audits or incidents, ensuring that everyone understands their responsibilities. Effective communication and strong relationship-building skills are essential, as much of the role involves translating technical requirements into actionable steps for non-technical staff. This cross-functional collaboration helps maintain a culture of compliance and minimizes organizational risk.

What is the difference between It Risk And Compliance vs Cybersecurity Analyst?

AspectIt Risk And ComplianceCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, risk assessments, compliance auditsMonitoring security threats, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, financial institutions, government agencies

While both roles focus on protecting information, It Risk And Compliance emphasizes establishing policies, ensuring regulatory adherence, and managing overall risk frameworks. Cybersecurity Analysts primarily focus on identifying and mitigating security threats through technical measures. Understanding these differences helps organizations assign the right responsibilities and professionals for their security needs.

Is IT risk and compliance a good career?

IT risk and compliance is a growing field that involves managing cybersecurity threats, ensuring regulatory adherence, and implementing security controls. Professionals in this area often require certifications like CISSP or CISA and work in environments that demand strong analytical and technical skills. It offers opportunities for career advancement and job stability due to increasing regulatory requirements and cybersecurity concerns.
Infographic showing various It Risk And Compliance job openings in Indiana as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 13% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Sr. Information Security GRC Analyst

Discount Tire

South Bend, IN • On-site

$115K - $125K/yr

Full-time

Posted 3 days ago

New


Key responsibilities

  • Advise IT and business stakeholders on governance, risk, and compliance requirements by interpreting standards and translating them into control recommendations.

  • Coordinate internal and external audits, including planning, evidence collection, stakeholder coordination, and remediation tracking.

  • Support security initiatives and technology projects by embedding governance, risk, and compliance practices into delivery.


Discount Tire rating

6.1

Company rating: 6.1 out of 10

Based on 1,060 frontline employees who took The Breakroom Quiz

352nd of 739 rated retailers


Job description

Overview:

Sr. Information Security GRC Analyst

Location: Tire Rack – South Bend, IN (On-Site)
Department: Information Security

Employment Type: Full-Time
Salary Range: $115,000-$125,000 annually

About the Role

Tire Rack is seeking a Senior Information Security GRC Analyst to support and advance our Information Security Governance, Risk, and Compliance (GRC) program.

In this role, you will assess and strengthen IT and security controls across the organization while ensuring alignment with regulatory, statutory, and industry security standards including ISO/IEC 27001:2022, PCI DSS, and internal security policies.

This position works closely with IT teams, business leaders, and audit stakeholders to identify risk exposures, strengthen control frameworks, support audit readiness, and drive continuous improvement in Tire Rack’s overall security posture.

This role requires a strong mix of technical understanding, risk assessment expertise, and the ability to translate compliance requirements into practical, business-aligned security controls.

At Tire Rack, we operate with the values of IOOGA — Integrity, Our People, Our Customers, Growth, and Attitude.

What You'll Do

Governance, Risk & Compliance Leadership

  • Advise IT and business stakeholders on governance, risk, and compliance requirements by interpreting regulatory, statutory, and security standards and translating them into actionable control recommendations.
  • Lead and support the organization’s information security risk management program, including risk identification, assessment, documentation, and monitoring mitigation strategies.
  • Evaluate technology risks and recommend practical mitigation strategies aligned with business objectives.

Controls & Compliance

  • Develop and maintain GRC program documentation including:
    • Security policies
    • Standards and procedures
    • Risk registers
    • Control inventories
    • Evidence repositories
  • Strengthen internal security controls by identifying opportunities to improve standardization, documentation, and compliance alignment.
  • Define and communicate control expectations, testing procedures, and audit evidence requirements across teams.

Audit & Testing

  • Coordinate internal and external audits, including planning, evidence collection, stakeholder coordination, and remediation tracking.
  • Execute security control testing by:
    • Defining scope
    • Reviewing and validating evidence
    • Documenting results
    • Identifying deficiencies
    • Tracking remediation through resolution.
  • Manage compliance findings, corrective actions, and risk acceptance documentation.

Program Improvement

  • Support security initiatives and technology projects by embedding governance, risk, and compliance practices into delivery.
  • Track program metrics, audit results, and compliance trends to improve security maturity over time.
  • Provide recommendations to strengthen Tire Rack’s overall security and compliance framework.
  • Perform other duties as assigned in support of the Information Security and Technology organization.

What We're Looking For

We are looking for a security professional who brings both technical understanding and risk management expertise while partnering effectively across teams.

Required Experience

  • 5–7 years of experience in IT, cybersecurity, risk management, audit, or compliance roles.
  • Strong knowledge of information security frameworks including:
    • ISO/IEC 27001
    • PCI DSS
    • Familiarity with GDPR concepts
  • Understanding of IT environments, systems, and security controls across infrastructure, applications, and data environments.

Skills & Competencies

  • Strong analytical and problem-solving abilities with the capacity to identify trends, patterns, and control risks.
  • Ability to evaluate control design and operational effectiveness.
  • Excellent documentation, organization, and attention to detail.
  • Strong communication skills with the ability to explain complex technical or compliance concepts to both technical and non-technical audiences.
  • Ability to work independently while collaborating effectively with cross-functional stakeholders.

Required Certifications (One or more)

Candidates must possess one or more of the following professional certifications, or be able to obtain one within a reasonable period after hire:

  • CISA (Certified Information Systems Auditor)
  • CRISC (Certified in Risk and Information Systems Control)
  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CompTIA Security+

Equivalent or comparable information security, audit, risk, or compliance certifications may also be considered.

Education

  • Bachelor’s Degree in Information Systems, Information Technology, Cybersecurity, Risk Management, or a related field.

Work Schedule

Work Days:
Monday through Friday
Occasional weekends may be required.

Work Hours:
8:00 a.m. – 5:00 p.m.
Additional hours may be required depending on project or audit needs.

#tireracklv


What Discount Tire employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Discount Tire logo

About Discount Tire

Sourced by ZipRecruiter

In 1960, Bruce T. Halle founded the first Discount Tire in Ann Arbor, Michigan. Starting with an inventory of only six tires, Halle grew his store by cultivating connections to the community and honoring relationships with customers and employees. Through respect, fairness, and a willingness to always pay it forward, Halle transformed his store into a thriving, responsible business. Today, Discount Tire is America's largest independent tire and wheel retailer. Our 1,100+ locations across 37 states provide a wide range of product choices, affordable pricing, and expert staff. More importantly, all our stores offer the individual customer focus and warm personal touch you'd expect from a neighborhood store. In the spirit of the first Discount Tire store, we maintain commitments to mutual respect and fairness for all through community engagement and responsible growth. Discount Tire continues to prosper because of the vision that lives and thrives in the hearts of our employees, from the store level to the corporate level. Visit one of our stores today and experience the values that make Discount Tire the nation's most trusted tire and wheel retailer. Learn more about our Company, our culture, and our benefits by visiting careers.discounttire.com

Industry

Motor vehicle and motor vehicle parts wholesalers

Company size

10,000+ Employees

Headquarters location

Scottsdale, AZ, US

Year founded

1960