Senior Security Compliance Engineer, Public Sector
New
J
JobgetherCybersecurity / Public Sector
Based in the United StatesFull-TimeSenior
Salary$139,200–$196,000 annually
Apply NowOpens the employer's application page
Job Details
- Experience
- At least 5 years of experience
- Required Skills
- AWSCybersecurityGCP
Requirements
- U.S. citizenship and residency.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field, or equivalent experience.
- At least 5 years of experience in Governance, Risk, and Compliance, cybersecurity, or security assurance.
- Demonstrated experience with certifications like FedRAMP, CMMC, SOC 2, IRAP, or ISO 27001.
- Strong understanding of regulatory requirements applicable to public-sector organizations.
- Experience implementing compliance-as-code or policy-as-code and automating GRC processes.
- Working knowledge of FedRAMP requirements and continuous monitoring.
- Familiarity with cloud hyperscalers such as AWS and GCP.
- Strong analytical, project-management, and communication skills.
- Ability to operate independently and manage multiple projects.
- Professional certifications such as CISSP, CISM, or CISA are highly desirable.
Responsibilities
- Develop, implement, and manage Governance, Risk, and Compliance strategies and processes supporting regulatory and industry standards, including FedRAMP, IRAP, and related frameworks.
- Partner with highly regulated customers to understand their compliance requirements and develop practical solutions.
- Lead security assessments, audits, certification activities, and evidence-gathering processes.
- Support ongoing FedRAMP continuous monitoring commitments, including maintaining compliance evidence and operational processes.
- Collaborate with IT, Product, Engineering, and Legal teams to integrate compliance requirements into business operations.
- Develop and maintain comprehensive security and compliance documentation.
- Use scripting and coding capabilities to automate GRC workflows and implement compliance-as-code.
- Monitor regulatory developments and industry trends to identify compliance gaps.
- Provide training and guidance to internal teams and customers on GRC and regulatory requirements.
View Full Description & ApplyYou'll be redirected to the employer's site