Security and Compliance Lead

Vaga não está no LinkedIn

🕒 Abril 1

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $180.000 - $215.000 / ano

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Aalyria

Aalyria

51 - 200 funcionários

📡 Telecomunicações

🏢 Corporativo

☁️ SaaS

Telecommunications • Enterprise • SaaS

A Aalyria é uma empresa de tecnologia espacial e de comunicações que cria, organiza e gerencia redes em escala planetária, combinando comunicações a laser em espaço livre atmosférico coerente (Tightbeam) com uma plataforma de orquestração de rede impulsionada por IA (Spacetime). A empresa possibilita conectividade multidomínio e multi-órbita através de terra, mar, ar e espaço — apoiando constelações de satélites, arquiteturas 5G/NTN e redes híbridas — e trabalha com parceiros comerciais e governamentais para implantar hardware e software para comunicações resilientes e de alta capacidade.

Descrição

• Own CMMC L2 certification and FedRAMP High authorization efforts end-to-end, including gap analysis, remediation tracking, evidence collection, and assessment coordination. • Maintain compliance with DFARS cybersecurity clauses (7012, 7019, 7020), ITAR, EAR and other federal requirements; manage SPRS score and supplier requirements. • Develop and maintain System Security Plans, POA&Ms, policies, procedures, and supporting artifacts across all compliance frameworks. • Serve as primary point of contact for C3PAO/3PAO assessors, government customers, prime contractors, and agency authorizing officials. • Manage continuous monitoring activities including vulnerability scanning, access reviews, evidence collection, and monthly/annual reporting. • Monitor regulatory changes across CMMC, FedRAMP, NIST 800-171/800-53, DFARS, and ITAR; assess impact and drive necessary updates. • Implement security controls hands-on, including identity and access management, logging, encryption, and endpoint security. • Harden cloud infrastructure in GCP, AWS, implementing security configurations and access controls aligned with compliance requirements. • Build automation and tooling for evidence collection and compliance reporting; integrate security into CI/CD pipelines. • Define, document, and enforce CUI boundaries and enclave architecture. • Translate compliance requirements into actionable technical guidance for engineering teams. • Support customer security assessments, due diligence requests, and contract security requirements.

🎯 Requisitos

• 7+ years of experience in security roles with demonstrated compliance and technical responsibilities. • Deep knowledge of federal compliance frameworks: NIST 800-171, NIST 800-53 Rev 5, CMMC 2.0, FedRAMP, and ITAR compliance and cybersecurity requirements. • Experience preparing for and supporting third-party assessments (C3PAO, 3PAO, FedRAMP JAB/Agency, or equivalent). • Hands-on technical skills: ability to write scripts, Terraform, and troubleshoot access issues. • Cloud security experience securing cloud environments (GCP preferred; AWS GovCloud). • Experience with enterprise IAM platforms (Okta, Azure AD, or similar). • Excellent documentation skills with ability to write policies that satisfy auditors and implementation guides that engineers can use. • Strong communication skills with comfort presenting to auditors, executives, government customers, and authorizing officials. • Combined experience in both compliance/GRC and hands-on technical security implementation. • Ability to interpret NIST 800-53 controls and implement them in cloud environments. • Working knowledge of CMMC, FedRAMP, and DFARS frameworks, including overlapping control requirements. • Demonstrated ability to operate effectively in fast-paced environments with competing priorities. • Experience building or significantly maturing a compliance program. • U.S. Citizenship required.

🏖️ Benefícios

• Innovative Environment: Work at a cutting-edge company shaping the future of aerospace communications. • Impactful Work: Directly contribute to critical national security programs and initiatives. • Growth Opportunities: Expand your career with opportunities for professional development and advancement. • Inclusive Culture: Be part of a collaborative, supportive, and inclusive workplace where your contributions matter. • Flexibility: Flexible working arrangements including hybrid remote/in-office schedules. • Competitive salary, comprehensive benefits (401(k), dental, vision, health, life insurance), paid time off, and equity options.

Candidatar-se

Vagas Similares

🕒 Abril 1

MindSet

1 - 10

🤝 B2B

📚 Educação

👥 RH Tech

Social Security Disability Case Manager assisting clients with the application process for Social Security Disability benefits. Advocating and ensuring claims are processed accurately and efficiently.

🗣️🇪🇸 Espanhol obrigatório

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

NVIDIA

10.000+ funcionários

🤖 Inteligência Artificial

🎮 Jogos

Senior Systems Software Security Engineer focused on securing NVIDIA’s Data Center Systems. Delivering security features and innovations for AI Data Center systems with industry standards compliance.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Avertium

201 - 500

🔒 Cibersegurança

🏢 Corporativo

Cybersecurity Consultant focusing on Microsoft Cloud for Avertium, requiring expertise in cybersecurity and cloud platforms. Lead projects and establish security strategies for clients' cloud infrastructure.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Espresso Systems

11 - 50

₿ Cripto

🌐 Web 3

Security Engineering Lead responsible for auditing Espresso's codebase and enhancing security practices. Leading efforts in ensuring software security and collaborating with engineering teams.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Conduent

10.000+ funcionários

🤝 B2B

🛍️ Comércio Eletrônico

🏛️ Governo

Information Security Engineer III at Conduent assisting in internal audits and security compliance for clients and business units. Responsible for risk assessments, security reports, and incident response coordination.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $91.438 - $118.750 / ano

💰 Venture Round em 2009-01

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório