GRC Analyst, Federal Program

New
USFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
5+ years of experience in GRC, compliance, or security roles, including 3+ years in federal frameworks

Requirements

  • 5+ years of experience in GRC, compliance, or security roles
  • 3+ years in federal frameworks (CMMC, FedRAMP, or equivalent)
  • Proven experience leading or contributing to CMMC Level 2 or FedRAMP readiness efforts
  • Strong knowledge of NIST SP 800-171 controls, CUI handling, and scoping methodologies
  • Ability to produce and maintain audit-ready documentation (SSPs, POA&Ms, gap analyses)
  • Experience working directly with external auditors or assessment bodies
  • Strong communication skills
  • Experience with GRC platforms (e.g., Drata, Vanta, Hyperproof)

Responsibilities

  • Serve as a core member of the GRC team with ownership of CMMC and FedRAMP initiatives
  • Define assessment scope and maintain a defensible CMMC boundary across systems and environments
  • Perform NIST SP 800-171 mapping, gap analysis, and remediation tracking
  • Develop and maintain SSPs, POA&Ms, control narratives, and audit documentation
  • Translate compliance requirements into actionable remediation tasks for technical and non-technical teams
  • Coordinate directly with external auditors and assessors during formal evaluation cycles
  • Drive evidence collection, control implementation, and continuous monitoring activities
  • Support cross-framework compliance initiatives and organizational security maturity efforts
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now