Lead compliance initiatives across commercial and federal lines, driving FedRAMP, CMMC, ISO 27001, SOC 2, and HITRUST programs.
Coordinate internal and external audits, ensuring stakeholder readiness and timely remediation of findings.
Manage program roadmaps, risk registers, and cross-functional execution to translate regulatory requirements into actionable plans.
We provide an AI-infused scenario planning and analysis platform to optimize business decision-making. We serve over 2,400 global customers including Fortune 50 companies and foster a Winning Culture focused on innovation, diversity, and leadership.
Lead FedRAMP Moderate and CMMC readiness assessments, including system boundary validation and control gap analysis.
Design and implement cloud security architectures aligned to NIST 800-53 and NIST 800-171 requirements.
Develop and own System Security Plans (SSPs), control narratives, and compliance documentation.
Riveron helps organizations implement leading governance, risk and compliance practices with a hands-on approach. The company fosters an entrepreneurial culture with collaboration and diverse perspectives, offering flexible work and progressive benefits.
Lead the end-to-end authorization process for FedRAMP High, while driving alignment with CMMC and MARS-E.
Manage ongoing FedRAMP continuous monitoring, including monthly deliverables and vulnerability management.
Collaborate with engineering, security, and operations teams to develop a 'comply once, satisfy many' strategy.
Amwell provides a technology-enabled care platform for healthcare organizations, offering services across the care continuum. With a team passionate about transforming care delivery, they have served large healthcare organizations for nearly two decades.
Own FedRAMP and GovRAMP certifications and roadmaps, including package management and compliance timelines.
Manage 3PAO relationships and assessments, coordinating scoping, evidence, and results validation.
Lead continuous monitoring, POA&M processes, and drive compliance automation and efficiency.
Smartsheet empowers teams to manage work seamlessly and scale solutions smarter, now uniting human teams with AI agents. It is an equal opportunity employer committed to fostering an inclusive environment with the best employees.
Serve as a trusted compliance advisor for DoD contractors, guiding them through NIST SP 800-171, CMMC 2.0, and DFARS requirements from gap analysis to audit readiness.
Conduct recurring strategy meetings, review implementation progress, translate complex regulations into practical recommendations, and collaborate with client leadership.
Prepare professional assessment reports, maintain compliance documentation, deliver training, and support clients through ongoing compliance management and SPRS submissions.
On Call Computer Solutions is a nationwide leader in cybersecurity, compliance, and managed IT services for Department of Defense contractors. Since 2003, they have helped organizations meet DFARS, NIST SP 800-171, and CMMC requirements with an award-winning team.
Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
Oversee preparation and execution of external compliance audits, including facilitating security assessments.
Support mapping of compliance requirements to security control implementation using agile development processes.
Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.
Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.
Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.
Identify products or programs through the FedRAMP (Joint Authorization Board or Agency) authorization process.
Collaborate with the Program Manager Public Sector Compliance to define strategic roadmaps and support full product lifecycle.
Provide product architectural guidance for Vultr's public sector cloud product roadmap.
Vultr makes high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators worldwide. We are the world's largest privately-held cloud infrastructure company, trusted by hundreds of thousands of active customers across 185 countries.
Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.
Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.
Lead end-to-end CMMC implementations for customers, owning the customer experience from kickoff through handoff and readiness milestones.
Translate customer requirements into clear implementation plans, including scope, timeline, milestones, owners, risks, dependencies, and success criteria.
Build repeatable implementation assets, including kickoff templates, project plans, RACI models, discovery questionnaires, evidence checklists, status reports, readiness criteria, risk registers, and handoff runbooks.
Secureframe is a cybersecurity compliance platform that helps companies achieve and maintain compliance standards. It is a fast-growing startup backed by top venture capital firms, fostering a culture of creativity and continuous learning.
Lead end-to-end service delivery operations for cybersecurity and cloud security professional services engagements.
Own the delivery lifecycle for FedRAMP advisory, implementation, continuous monitoring, and related security programs.
Develop operational strategies and governance models ensuring compliance with NIST 800-53, FedRAMP, and DoD frameworks.
This company specializes in cybersecurity and cloud service delivery for federal agencies, managing mission-critical environments with strict compliance requirements. They are a mid-sized organization focused on scalable operations and measurable outcomes.
Provide expert guidance on cybersecurity policies, Risk Management Framework (RMF) processes, and security control implementation.
Conduct vulnerability assessments, penetration testing, and Cybersecurity Compliance and Readiness Inspections (CCRI).
Prepare detailed technical reports and briefings for senior leadership on cybersecurity findings and progress.
The company is a partner organization focused on cybersecurity and mission-critical IT environments. They offer a remote work culture and support complex security initiatives for government and enterprise clients.
Own the design and implementation of Onebrief's GRC framework across RMF, FedRAMP, CMMC, SOC 2, and other applicable standards.
Build and manage the control environment, including policies, procedures, and evidence collection systems.
Design and implement technical security controls in partnership with Product, Engineering, Infrastructure and Corporate IT.
Onebrief builds collaboration and AI-powered workflow software for military planning and operational coordination. Founded in 2019 and valued at over $2 billion, the company is a distributed team of builders from military, operational, and technology backgrounds.
Lead a team of 4-6 security consultants serving small to enterprise organizations across the Defense Industrial Base.
Provide compliance consulting, cloud security solutions, and thought leadership for CMMC certification readiness.
Develop standardized methodologies, mentor team members, and foster a culture of client success and technical excellence.
Aprio is a Top 20 CPA and advisory firm providing compliance advisory and automation services for fast-growing industries. With 40 U.S. office locations and over 3,200 team members globally, Aprio fosters a top-rated culture focused on growth and collaboration.
Serves as a cybersecurity SME for Assessment and Authorization (A&A) of information systems, applying NIST 800-53 security controls and the Risk Management Framework (RMF) process.
Possesses five years of relevant RMF, NIST, and A&A experience, including assessing security controls for large, complex organizations like DLA.
Briefs senior management on authorization progress and understands cybersecurity in emerging technology areas such as Cloud and Industrial Control Systems.
Horizon Industries Limited is a dynamic IT and Management Consulting firm based in the Washington, DC area, providing full-cycle IT consulting and management support to both private and public sectors. Founded in 1996, the company prides itself on a diverse, employee- and family-centric culture with a focus on professional growth.