You will lead the development and management of client Governance, Risk, and Compliance programs.
You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
You will provide advisory services and manage client expectations to ensure successful engagements.
This company provides cybersecurity compliance consulting services to organizations in the U.S. Defense Industrial Base. They foster a collaborative, security-first culture with a focus on advocacy and resilience.
Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.
Strategic Growth Partners provides cybersecurity and compliance services to clients across multiple time zones. They foster a collaborative, innovative, and diverse work environment.
Lead end-to-end CMMC implementations for customers, owning the customer experience from kickoff through handoff and readiness milestones.
Translate customer requirements into clear implementation plans, including scope, timeline, milestones, owners, risks, dependencies, and success criteria.
Build repeatable implementation assets, including kickoff templates, project plans, RACI models, discovery questionnaires, evidence checklists, status reports, readiness criteria, risk registers, and handoff runbooks.
Secureframe is a cybersecurity compliance platform that helps companies achieve and maintain compliance standards. It is a fast-growing startup backed by top venture capital firms, fostering a culture of creativity and continuous learning.
Provide Level 2 technical support across assigned clients within the CMMC Service Delivery pod, resolving issues across Microsoft 365, Google Workspace, endpoints, identity, and security platforms.
Troubleshoot and resolve technical issues while maintaining clear ticket documentation and adhering to established escalation and change management procedures.
Deliver technical support in accordance with CMMC, NIST SP 800-171, and other security requirements, handling Controlled Unclassified Information (CUI) with care.
SugarShot is a managed services provider (MSP) and part of Treeline, a technology services organization spanning managed IT, cybersecurity, compliance, and advisory services. They are building a dedicated Technical Services pod to support clients with CMMC and other regulated technology requirements.
Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
Oversee preparation and execution of external compliance audits, including facilitating security assessments.
Support mapping of compliance requirements to security control implementation using agile development processes.
Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.
Own compliance operations for FedRAMP, DoD Impact Levels, and CMMC programs.
Manage federal obligation registers, POA&Ms, and continuous monitoring.
Produce artifacts including NIST 800-171 self-assessments and certification packages.
Kaizen builds modern, AI-native software for government services to restore public trust. Founded in 2022 and based in NYC, the company has raised $35 million from top venture firms and reaches 55 million Americans across 50+ agencies.
Lead the technical roadmap for FedRAMP Continuous Monitoring, moving from manual reporting to automated, real-time telemetry.
Architect compliance outcomes by translating NIST 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering solutions.
Engineer evidence generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.
Wiz provides an AI-powered platform to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a global team and a culture that values world-class talent.
Design and operate a continuous monitoring and authorization capability portable across frameworks.
Translate CMMC 2.0 and FedRAMP requirements into practical controls and evidence pipelines.
Partner with engineering and product security to connect federal requirements to cloud-native systems.
Chainguard delivers hardened, secure builds of open source software to help organizations build faster and stay compliant. They are venture-backed by leading investors and serve Fortune 500 enterprises including OpenAI, Snap Inc., and Snowflake.
Manage the Compliance and Security workstream, coordinating SOC 2, ISO 27001, GDPR, and related audit-readiness activities.
Build and maintain execution plans with clear owners, milestones, dependencies, risks, and decision points.
Facilitate workshops, track evidence, and escalate risks to keep audits on schedule.
Miratech is a global IT services and consulting company that helps visionaries change the world through digital transformation. With nearly 1000 full-time professionals across 25+ countries, the company maintains a culture of Relentless Performance and has achieved over 99% project success since 1989.
Assist in monitoring compliance with frameworks like ISO 27001, SOC 2, and Cyber Essentials.
Maintain the central Risk Register and track remediation progress across departments.
Support policy management and compliance training across the organization.
We are a global Physical AI company using data and AI to improve critical industries like healthcare, water, energy, and telecom. Our teams are ambitious, curious, and practical, with colleagues across Africa, Europe, the UK, and the US.
Maintain traceability from Federal Zero Trust guidance and VA objectives to assessment criteria, architecture patterns, and implementation priorities.
Support preparation and documentation for Architecture Review Boards, technical reviews, and executive governance forums.
Coordinate documentation needed to transition implementation outcomes into sustainable governance and RMF processes.
True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. It has been recognized as a Best Places to Work in 2023 and 2025, and made the Inc. 5000 list in 2022, 2023, and 2025, reflecting a people-first culture and sustained growth.
Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
Represent the compliance program in customer-facing discussions and security due diligence reviews.
Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.
Support enterprise cybersecurity governance, compliance, and risk management programs.
Conduct security control assessments, audit readiness, and policy development.
Coordinate with technical teams and executive leadership to drive cybersecurity modernization.
ERP International is a nationally respected provider of health, science, and technology solutions supporting government and commercial clients. The company has been named a Top Workplace by WTOP News for 7 years and offers a culture of employee recognition, community outreach, and professional development.
Manage governance forums, agendas, decision logs, and action tracking.
Support execution of strategic compliance priorities and monitor cross-functional dependencies.
Coordinate departmental KPIs and executive dashboarding.
HealthEdge is a healthcare technology company that provides software solutions for health plans and payers. The company fosters a culture of accountability, transparency, and compliance, operating remotely across the US.
Maintain traceability between federal Zero Trust guidance and organizational objectives.
Support governance forums and documentation for architecture decisions.
Coordinate with technical and program stakeholders to ensure alignment.
The company supports federal Zero Trust cybersecurity initiatives. It is a collaborative, people-focused environment emphasizing professional development and innovation.
Execute NIST SP 800-53 control mappings and implement security baselines.
Develop and maintain SSPs, POA&Ms, and authorization documentation.
Support continuous monitoring and gap assessments for ATO and FedRAMP.
This company provides cybersecurity and compliance consulting services, supporting defense contractors and federal organizations with NIST and FedRAMP requirements. It is an early-stage, remote-first company with a collaborative culture focused on federal cybersecurity.