Remote job
Cybersecurity Compliance Lead
Job details
About this role
Role overview
A senior cybersecurity compliance leader is needed to own and mature an organization's compliance posture against federal security frameworks. The role centers on NIST 800-171 and NIST 800-53, Controlled Unclassified Information (CUI) handling, and EAR/ITAR export-control compliance, while serving as the primary liaison to government security stakeholders during audits and accreditation efforts.
Responsibilities
- Own and evolve the cybersecurity compliance program against NIST 800-171 and NIST 800-53 - Serve as the primary liaison to government cyber security teams, assessors, and sponsors during audits and reviews - Develop and maintain System Security Plans (SSPs), POA&Ms, and supporting compliance documentation - Establish controls for handling, storage, and transmission of CUI, and ensure compliance with EAR and ITAR export-control regulations across systems, data, and personnel - Conduct security control assessments, gap analyses, and risk assessments, and drive remediation to closure - Prepare the organization for third-party assessments and government accreditation efforts such as CMMC, including supporting RMF/ATO packages and ISSM/ISSO-type duties for classified information systems
Requirements
- 8+ years of experience in cybersecurity compliance, information assurance, or a closely related field - Hands-on experience implementing and assessing NIST 800-171 and NIST 800-53 controls, with a track record interfacing directly with government cyber security teams - Experience handling and protecting Controlled Unclassified Information (CUI) and working knowledge of EAR and ITAR export-control regulations - Experience developing and maintaining compliance artifacts such as System Security Plans (SSPs) and POA&Ms - Active U.S. security clearance (TS/SCI preferred) and hands-on RMF experience including ATO package development; familiarity with NISPOM / 32 CFR Part 117 - Proven ability to operate independently with minimal supervision
Nice to have
- Experience leading CMMC readiness or certification efforts - Background supporting DoD or other U.S. Government programs - Familiarity with DFARS, FedRAMP, or CMMC requirements - Relevant certifications such as CISSP, CISM, or CAP
Benefits and work setup
- Salary range of $145,000 - $207,000, plus a competitive equity grant and comprehensive benefits - Remote-eligible within approved U.S. locations - Medical, dental, and vision insurance; 401(k) retirement plan; short- and long-term disability; life insurance - Three weeks paid vacation for new employees, 12 paid holidays, unlimited sick time, and paid parental leave