
51 - 200 employees
âď¸ SaaS
đ Cybersecurity
Cloud Computing ⢠SaaS ⢠Cybersecurity
Atmosera is a leading transformation services provider that specializes in Microsoft Azure solutions. They empower organizations to adopt, secure, and optimize their Azure environments, delivering managed services, cloud security, and technical training. With a focus on modern technology and human expertise, Atmosera offers services in Azure migration, application development, DevOps, data modernization, and security. They have been recognized for their excellence with the highest level of Microsoft Certification, ensuring high-quality service and client satisfaction.
đĽ 7 minutes ago
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
âď¸ SaaS
đ Cybersecurity
Cloud Computing ⢠SaaS ⢠Cybersecurity
Atmosera is a leading transformation services provider that specializes in Microsoft Azure solutions. They empower organizations to adopt, secure, and optimize their Azure environments, delivering managed services, cloud security, and technical training. With a focus on modern technology and human expertise, Atmosera offers services in Azure migration, application development, DevOps, data modernization, and security. They have been recognized for their excellence with the highest level of Microsoft Certification, ensuring high-quality service and client satisfaction.
⢠Lead Atmosera's internal GRC program and Managed Governance, Risk & Compliance services ⢠Establish standardized GRC methodologies, processes, templates, evidence requirements, and quality controls ⢠Lead risk assessments, control assessments, compliance readiness, policy governance, Managed Audit, Managed Questionnaires, and other GRC engagements ⢠Manage client commitments, priorities, capacity, deliverable quality, and service performance ⢠Identify opportunities for automation and AI to improve GRC delivery and scalability ⢠Partner with Sales and Client Success on service scoping, SOWs, pricing, and complex opportunities ⢠Lead and maintain System Security Plans for federal clients ⢠Develop and review control implementation statements and supporting evidence ⢠Coordinate with technical control owners to validate control implementation ⢠Manage POA&Ms, control deficiencies, remediation activities, milestones, and dependencies ⢠Coordinate responses to government, assessor, and auditor findings and requests ⢠Facilitate SSP and control working sessions with clients, engineers, security teams, and stakeholders ⢠Support continuous monitoring, security assessments, and authorization activities ⢠Maintain alignment between documented controls and the actual operating environment ⢠Support requirements involving NIST SP 800-53, NIST SP 800-171, FISMA, CMMC, FedRAMP concepts, and agency-specific requirements ⢠Lead cybersecurity risk assessments, control gap assessments, risk registers, treatment plans, exceptions, and remediation tracking ⢠Support SOC 2, NIST, CIS, ISO 27001, PCI DSS, HIPAA, CMMC, and Microsoft security benchmark frameworks ⢠Own Managed Audit methodology, including audit readiness, evidence management, auditor coordination, findings, and remediation ⢠Oversee Managed Security Questionnaire delivery and reusable response and evidence libraries ⢠Ensure policies, standards, procedures, and control documentation reflect operational practices ⢠Partner with the CISO to operate and mature Atmosera's internal security and compliance program ⢠Serve as a senior GRC advisor to client security, IT, risk, compliance, and executive leadership ⢠Translate regulatory and compliance requirements into actionable security improvements ⢠Partner with Security Operations, Managed Azure, Microsoft 365, and engineering teams to map control requirements to technical implementations ⢠Maintain working knowledge of Azure, Entra ID, Defender, Sentinel, Intune, Purview, and Azure Policy ⢠Support vCISO engagements requiring governance, risk, audit, or compliance expertise ⢠Lead, mentor, and develop GRC Analysts and Consultants ⢠Manage workload, capacity, priorities, quality assurance, and escalations ⢠Build repeatable processes that allow the GRC practice to scale ⢠Complete onboarding, shadow active engagements, and audit current MGRC workflows within 90 days ⢠Independently own the GRC function, manage the SOC 2 Type 2 program, lead MGRC delivery, and manage complex federal SSP activities within one year
⢠8+ years of cybersecurity, GRC, security assessment, audit, or related experience ⢠Demonstrated experience leading GRC programs or teams ⢠Hands-on experience with NIST SP 800-53, System Security Plans, POA&Ms, control implementation statements, and federal security requirements ⢠Experience managing audits, evidence, risk assessments, control gaps, policies, and remediation programs ⢠Ability to translate regulatory requirements into technical and operational security controls ⢠Strong client-facing, executive communication, and technical stakeholder management skills ⢠Experience in an MSSP, MSP, consulting, professional services, federal program, or government contractor environment (preferred) ⢠Microsoft Azure and Microsoft 365 security experience (preferred) ⢠CISSP, CISM, CRISC, CISA, CGEIT, or similar certifications (preferred)
⢠Competitive salaries commensurate with experience and skills ⢠100% company match on 401(k) contributions up to 4% of salary ⢠Performance-based compensation with bonus potential in addition to base salary ⢠100% employer-paid health, vision, and dental insurance for employees ⢠Company-paid life, AD&D, short-term disability, and long-term disability insurance ⢠Three weeks of paid time off ⢠11 paid holidays ⢠Paid community service leave ⢠Employee recognition and reward program ⢠Ability to work from home or from a local US office
Apply NowđĽ 51 minutes ago
Head of Compliance leading regulatory programs and advising stakeholders for MSIG USAâs commercial insurance business. Drafting and negotiating reinsurance and corporate agreements.
đĽ 4 hours ago
Staff Security Governance Engineer shaping security policies, standards, and automation for GitLabâs DevSecOps orchestration platform. Translating regulations into actionable governance for engineering, legal, and product teams.
đşđ¸ United States â Remote
đľ $168k - $238k / year
đ° Secondary Market on 2020-11
â° Full Time
đ´ Lead
đ Compliance
đĽ 13 hours ago
Regulatory affairs director guiding FDA advertising, promotion, and medical-material reviews for Definiumâs psychedelic therapeutics. Leading OPDP/APLB interactions and MLR compliance.
đ Yesterday
Director of Compliance launching Stonehavenâs U.S. specialty insurance fronting carrier. Overseeing policy forms, licensing, agreements, regulatory requirements, and compliance risk.
đşđ¸ United States â Remote
đľ $150k - $250k / year
đ° $65M Series C on 2025-07
â° Full Time
đ´ Lead
đ Compliance
đ Yesterday
Amgen regulatory director leading global strategies, filings, and agency interactions for inflammation and rare-disease medicines. Guiding cross-functional product teams toward worldwide approvals and labeling.
đşđ¸ United States â Remote
đľ $189.6k - $256.6k / year
đ° $28.5G Post-IPO Debt on 2022-12
â° Full Time
đ´ Lead
đ Compliance
đŚ H1B Visa Sponsor