
11 - 50 funcionários
Fundada em 2023
🔒 Cibersegurança
📋 Conformidade
🤝 B2B
Cybersecurity • Compliance • B2B
A Workstreet é um provedor de serviços gerenciados de segurança e conformidade que ajuda empresas a automatizar e modernizar seus programas de segurança. Com expertise em frameworks de conformidade como SOC 2, ISO 27001, HIPAA e GDPR, a Workstreet ajuda empresas a alcançar seus objetivos de segurança e compliance com eficiência. Seus serviços incluem atuação como CISO virtual (vCISO), pentests de ponta a ponta e gestão de riscos de fornecedores, com o objetivo de simplificar os processos de segurança enquanto as empresas focam no crescimento.
🕒 Agosto 14
🗣️🇺🇸🇬🇧 Inglês obrigatório
Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

11 - 50 funcionários
Fundada em 2023
🔒 Cibersegurança
📋 Conformidade
🤝 B2B
Cybersecurity • Compliance • B2B
A Workstreet é um provedor de serviços gerenciados de segurança e conformidade que ajuda empresas a automatizar e modernizar seus programas de segurança. Com expertise em frameworks de conformidade como SOC 2, ISO 27001, HIPAA e GDPR, a Workstreet ajuda empresas a alcançar seus objetivos de segurança e compliance com eficiência. Seus serviços incluem atuação como CISO virtual (vCISO), pentests de ponta a ponta e gestão de riscos de fornecedores, com o objetivo de simplificar os processos de segurança enquanto as empresas focam no crescimento.
• Lead federal certification advisory engagements for FedRAMP 20x, Assessment & Authorization, and federal compliance lifecycles • Serve as an executive-level trusted advisor and translate complex federal requirements into business language • Direct, mentor, coach, and manage compliance professionals while enforcing quality and delivery accountability • Author and maintain Security Decision Records, Security Configuration Guides, and OSCAL/JSON/YAML compliance artifacts • Connect CSPM and GRC platforms into agency pipelines under the FedRAMP Collaborative Continuous Monitoring model • Conduct federal gap assessments, readiness reviews, and control mapping across FedRAMP 20x Class A, B, and C requirements • Orchestrate 3PAO assessments, C3PAO audits, and independent assessor evaluations • Monitor CR26, Significant Change Notifications, and the Rev5-to-20x transition timeline • Assume active portfolio ownership within the first 15 days • Represent clients on executive calls and maintain client engagement, satisfaction, and account retention
• 5+ years of direct experience implementing federal compliance, NIST SP 800-53, FedRAMP, or Risk Management Framework standards • 3+ years of experience leading multi-project client engagements, building executive trust, and managing account retention • Deep familiarity with FedRAMP 20x Program Certifications and Rev5 Agency Certifications • Hands-on experience with AWS, Azure, and GCP, specifically AWS GovCloud or Azure Government regions • Working ability with Python, OPA/Rego, infrastructure as code, and policy-as-code tooling • Practical experience working with or for a 3PAO, participating on security assessment teams, or conducting formal evidence adjudication • Active certification such as CISSP, CISM, CGRC, or Certified Authorization Professional • Active cloud certification such as AWS Solutions Architect Associate, Azure Security Engineer, or GCP Associate Cloud Engineer • Documented experience managing FedRAMP certification activities and real-time Collaborative Continuous Monitoring workflows • Practical experience authoring or validating machine-readable SSPs, POA&Ms, or KSI evidence using OSCAL, JSON, or YAML schemas • Excellent written and verbal English communication skills • Reliable high-speed internet connection and professional home office environment • Availability for a standard schedule of 8:00 AM–5:00 PM US Eastern Time, with occasional schedule flexibility • Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities • Must participate in live video interviews with camera on and verify identity during recruitment and onboarding • Employment contingent on identity verification and background screening where permitted by law • Must be authorized to work in the U.S. without current or future visa sponsorship
• Career development with mentorship and training opportunities • Reimbursement for approved role-related training and certification courses • Competitive base salary • Regular performance reviews linked to merit-based appraisals • Bonus opportunities • Career advancement opportunities • Remote-first work flexibility • Flexible working hours to accommodate business priorities and global collaboration
Candidatar-se🕒 Agosto 13
Senior Regulatory Affairs Specialist advancing Ōura’s software medical-device compliance. Supporting submissions, registrations, change assessments, and audit readiness for health-tracking products.
🗣️🇺🇸🇬🇧 Inglês obrigatório
🕒 Agosto 13
Compliance and Contract Manager advising a US industrial grinding technology manufacturer on agreements, compliance, and enterprise risk. Developing controls, audits, training, and regulatory programs across global operations.
🗣️🇺🇸🇬🇧 Inglês obrigatório
🕒 Agosto 12
Compliance and Contract Manager advising an industrial machinery manufacturer on commercial agreements, compliance systems, risk, and regulatory obligations. Partnering with Legal, Finance, Sales, IT, and executive management.
🗣️🇺🇸🇬🇧 Inglês obrigatório
🕒 Agosto 10
Creative compliance specialist reviewing healthcare marketing assets for MLR, FDA, brand, and copy accuracy at Power Digital. Managing Veeva PromoMats workflows and creative QA standards.
🗣️🇺🇸🇬🇧 Inglês obrigatório
🕒 Agosto 10
Senior Compliance Analyst maintaining Accident & Health and Property & Casualty insurance products for Crum & Forster. Drafting filings, reviewing marketing materials, and ensuring regulatory compliance across assigned lines.
🗣️🇺🇸🇬🇧 Inglês obrigatório