TEKsystems has a client looking to add a GRC Analyst that is responsible for establishing, maintaining, and operationalizing governance, risk, and compliance programs across regulated automotive and defense environments. This role ensures ongoing compliance with TISAX Assessment Level 2, NIST CSF 2.0, NIST SP 800 171, and CMMC 2.0, while reducing audit fatigue, legal risk, and operational disruption. The position requires a strong technical understanding of security controls across IT, OT, and engineering environments, combined with the ability to produce audit grade documentation and evidence that withstands third party and government assessments.
*Skills*
Compliance, Risk management, Audit, Nist, Risk assessment, CMMC, TISAX, Security, Information security, Risk analysis
*Additional Skills & Qualifications*
Governance, Risk & Compliance Management
*Own and maintain compliance programs aligned to:
oTISAX 6.0 (Assessment Level 2)
oNIST Cybersecurity Framework (CSF) 2.0
oNIST SP 800 171
oCMMC 2.0 (Level 1 & Level 2)
*Operationalize the NIST CSF 2.0 "Govern" function, including policy integration, leadership reporting, and measurable risk outcomes.
*Perform control gap assessments and coordinate remediation activities with IT, OT, Engineering, and Legal teams.
Audit & Assessment Readiness
*Prepare and manage self assessments and third party audits, including:
oTISAX AL2 assessments and remote audits
oCMMC Level 2 C3PAO readiness
*Develop and maintain:
oSystem Security Plans (SSPs)
oPlans of Action & Milestones (POA&Ms)
oSPRS documentation and submissions
*Serve as the primary point of contact for auditors, assessors, and internal stakeholders.
Technical Control Validation
*Validate the implementation and effectiveness of security controls across:
oIdentity & Access Management (IAM), MFA, RBAC, PAM
oLogging, monitoring, and audit logging (SIEM concepts)
oEndpoint and server security (hardening, patching, EDR)
oNetwork security (segmentation, firewalls, remote access)
oIncident response and tabletop exercises
*Review system configurations and technical artifacts to ensure they meet control intent and audit expectations.
Preferred Qualifications
*Experience supporting automotive OEMs or defense contractors
*Direct involvement in TISAX AL2 or CMMC Level 2 assessments
*Familiarity with GRC platforms (e.g., Archer, ServiceNow GRC, similar tools)
*Certifications such as:
oCISSP, CISM, CRISC
oCMMC RP, CMMC CCP
oISO 27001 Lead Implementer/Auditor
*Job Type & Location*
This is a Contract position based out of Auburn Hills, MI.
*Pay and Benefits*The pay range for this position is $53.00 - $58.00/hr.
Eligibility requirements apply to some benefits and may depend on your job
classification and length of employment. Benefits are subject to change and may be
subject to specific elections, plan, or program terms. If eligible, the benefits
available for this temporary role may include the following:
...engaged team with a "family" spirit. Our team of dedicated Childcare teachers provide a child centric approach to care in accordance with... ...for the KCH Kid's Club include: ~ Comprehensive on the job training ~ Education Assistance and Guided Career Pathways ~ Paid PTO...
A public school system in Georgia is seeking a part-time ES English teacher who will provide instruction that enables students to learn and demonstrate mastery of Georgia Performance Standards. This role requires a Bachelor's degree, valid Georgia Teaching Certification...
...Senior Executive Director, Regulatory Affairs About the Company Well-funded clinical-stage biotech company Industry Biotechnology Type Privately Held About the Role The Company is seeking a Senior Executive Director for Regulatory Affairs to play...
..., and must have ability to confidently utilize service recovery methods. Basic Qualifications : Proficient in English and Japanese Language Previous cash handling experience Previous computer experience Ability to perform in a fast-paced and sometimes...
Marshfield Clinic - Archive is seeking a detail-oriented Phlebotomist to join the Healthcare & Medical Services department within Marshfield... ...initiatives to enhance efficiency, accuracy, and patient experience. You will work as part of a multidisciplinary team that...