Act as a trusted consultant guiding clients through complex security and compliance challenges.
Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
Design and implement AWS and/or GCP security tools with deep expertise in cloud security.
Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.
Lead FedRAMP Moderate and CMMC readiness assessments, including system boundary validation and control gap analysis.
Design and implement cloud security architectures aligned to NIST 800-53 and NIST 800-171 requirements.
Develop and own System Security Plans (SSPs), control narratives, and compliance documentation.
Riveron helps organizations implement leading governance, risk and compliance practices with a hands-on approach. The company fosters an entrepreneurial culture with collaboration and diverse perspectives, offering flexible work and progressive benefits.
Lead security discovery workshops and translate high-level architectural requirements into actionable security roadmaps.
Design end-to-end cloud security frameworks and document controls for SOC 2 and HITRUST compliance.
Establish governance and security processes for AI and manage vulnerability remediation with development teams.
Ollion is a global technology partner that helps organizations solve their toughest business challenges in AI, data, and cloud. They are a remote-first, globally distributed team focused on making a world of difference through innovation and collaboration.
Lead a small, high-leverage team of senior and staff security engineers, setting technical direction and growing talent.
Partner with product and executives to deliver AI-first security capabilities and represent security to customers.
Turn compliance (ISO 27001, SOC 2) into continuous assurance, protecting customer trust.
Sysdig creates cloud security solutions, including the open standard Falco for threat detection, used by over 60% of the Fortune 500. Recognized as a Best Place to Work and one of Deloitte's fastest-growing companies for the past 5 years, they value diversity and open dialogue.
Serve as a trusted compliance advisor for DoD contractors, guiding them through NIST SP 800-171, CMMC 2.0, and DFARS requirements from gap analysis to audit readiness.
Conduct recurring strategy meetings, review implementation progress, translate complex regulations into practical recommendations, and collaborate with client leadership.
Prepare professional assessment reports, maintain compliance documentation, deliver training, and support clients through ongoing compliance management and SPRS submissions.
On Call Computer Solutions is a nationwide leader in cybersecurity, compliance, and managed IT services for Department of Defense contractors. Since 2003, they have helped organizations meet DFARS, NIST SP 800-171, and CMMC requirements with an award-winning team.
Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.
Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.
Own FedRAMP and GovRAMP certifications and roadmaps, including package management and compliance timelines.
Manage 3PAO relationships and assessments, coordinating scoping, evidence, and results validation.
Lead continuous monitoring, POA&M processes, and drive compliance automation and efficiency.
Smartsheet empowers teams to manage work seamlessly and scale solutions smarter, now uniting human teams with AI agents. It is an equal opportunity employer committed to fostering an inclusive environment with the best employees.
Strengthen company-wide security posture through hands-on engineering, collaboration, and pragmatic standards, focusing on application security, cloud and infrastructure security, and secure development practices.
Define and implement scalable security standards supporting SOC 2 readiness through practical, automated, and auditable solutions, partnering with Engineering, Infrastructure, IT, Product, Legal, and other teams.
Build and maintain internal security tools, automation, and services that support secure development, compliance workflows, vulnerability management, and operational visibility.
Later is the world’s most intelligent influencer marketing company, built to give brands the confidence to create unforgettable campaigns by combining real creator relationships, trusted intelligence, and expert guidance. Trusted by leading enterprise brands including Nike, Wayfair, Unilever, and Southwest Airlines, Later bridges creativity and performance so campaigns deliver results.
Lead delivery of FedRAMP, CMMC, HITRUST, and NIST compliance engagements where federal authorization is on the line.
Build reusable IP like control-mapping libraries, SSP templates, and evidence-collection playbooks for complex frameworks.
Own pricing, margin, and utilization for specialized federal engagements, plus leverage AI to standardize deliverables.
Sprinto is an Autonomous Trust Platform that centralizes trust requirements across security frameworks, vendors, and customers. Backed by top-tier investors like Accel, Elevation, and Blume Ventures, we've raised $31.8M and are trusted by over 3,000 organizations across 75 countries, with a remote culture built on ownership and progress over perfection.
Lead compliance initiatives across commercial and federal lines, driving FedRAMP, CMMC, ISO 27001, SOC 2, and HITRUST programs.
Coordinate internal and external audits, ensuring stakeholder readiness and timely remediation of findings.
Manage program roadmaps, risk registers, and cross-functional execution to translate regulatory requirements into actionable plans.
We provide an AI-infused scenario planning and analysis platform to optimize business decision-making. We serve over 2,400 global customers including Fortune 50 companies and foster a Winning Culture focused on innovation, diversity, and leadership.
Partner with clients to assess risk, design, and implement Microsoft security solutions across identity, endpoint, threat protection, and compliance.
Configure and support Microsoft Entra ID, Defender technologies, Sentinel, and Intune to enhance security posture.
Deliver trusted advisory services and help clients increase security maturity and operational readiness.
Quisitive is a leading global Microsoft partner specializing in cloud transformation, cybersecurity, and AI solutions. With significant growth since 2016, they have a collaborative culture and a team of experts across the US, Canada, and India.
Lead end-to-end Azure delivery engagements from design to operations.
Design secure, scalable cloud environments across identity, networking, compute, and security.
Translate business requirements into actionable architecture and implementation plans.
Jobgether uses an AI-powered matching process to connect candidates with hiring companies. They operate as a platform, focusing on efficient and fair candidate evaluation.
Own enterprise security platforms including CrowdStrike, Rapid7, Cisco Umbrella, and Duo.
Lead cloud infrastructure and identity modernization across Microsoft 365, Azure, and AWS.
Automate security and cloud operations using PowerShell, Graph APIs, and AI-assisted tools.
KPA is a provider of compliance and risk management solutions, focusing on security and technology. The company emphasizes a culture of trust, innovation, excellence, and results, with a collaborative and security-first mindset.
Own the end-to-end GRC strategy and roadmap, driving compliance maturity and reducing audit risk.
Design and implement policy-as-code systems, translating compliance frameworks into enforceable code.
Lead full audit cycles, manage evidence collection, and architect GRC platform strategy for continuous compliance.
Smartsheet empowers teams to manage work and scale solutions, now uniting human teams with AI agents to automate tasks and uncover insights. With a history of over 20 years, the company fosters a culture of inclusion, creativity, and big thinking, offering professional growth and a supportive environment.
Take ownership of building and scaling comprehensive security, privacy, and compliance programs that protect customer data.
Lead compliance initiatives such as SOC 2 Type 2 audits and evaluate additional frameworks like ISO 27001 and HIPAA.
Build scalable automated security processes by replacing manual tasks with scripts, APIs, and AI-powered solutions.
Our partner is a technology company focused on building secure, scalable systems. They operate with a remote, collaborative culture emphasizing ownership, transparency, and continuous improvement, with around 50–300 employees.
Lead multifaceted security conversations with Canada Finserv customers, addressing AI and cloud security concerns.
Support pre- and post-sales efforts by responding to questionnaires, conducting customer calls, and presenting at conferences.
Contribute to security messaging, incident investigations, and contract negotiations as a cloud security expert.
ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter. We are a global team of forward-thinking security professionals, embracing a disruptive, hardworking, and humble culture.
Own RMF authorizations across Department of War components and FedRAMP High, alongside CMMC 2.0 and SOC 2 compliance for corporate systems.
Maintain authorization and audit evidence, including SSPs, SARs, POA&Ms, STIGs, and control mappings.
Partner with Engineering, Product, and Security to embed compliance requirements into system design and CI/CD workflows.
Onebrief builds collaboration and AI-powered workflow software for military planning and operational coordination. Founded in 2019, valued at over $2 billion, they are a distributed team of builders from military, operational, and technology backgrounds.
Lead the end-to-end authorization process for FedRAMP High, while driving alignment with CMMC and MARS-E.
Manage ongoing FedRAMP continuous monitoring, including monthly deliverables and vulnerability management.
Collaborate with engineering, security, and operations teams to develop a 'comply once, satisfy many' strategy.
Amwell provides a technology-enabled care platform for healthcare organizations, offering services across the care continuum. With a team passionate about transforming care delivery, they have served large healthcare organizations for nearly two decades.
Own the Secure + MDR offering end-to-end, including security operations, compliance programs, and client-facing credibility.
Manage SecOps tooling, incident response, and compliance automation platforms such as Drata, Vanta, or Secureframe.
Build and lead the security operations team, establishing metrics and reporting for leadership and board.
van den Boom & Associates is a managed security service provider (MSSP) building a security-led practice for life sciences clients. As a growing organization, they seek a hands-on leader to own their Secure + MDR offering and establish security operations from the ground up.
Partner with the CISO to drive security strategy, roadmap, and execution across application security, GRC, and operations.
Support compliance initiatives including PCI, SOC 2, ISO 27001, DORA, and FedRAMP readiness.
Serve as a trusted security leader in customer-facing settings, translating technical risks into business language.
Sardine is the leading agentic risk platform for fighting financial crime, integrating data across risk teams to stop fraud and automate AML operations. With over 6 billion profiled devices and 800 million consumers, we maintain a remote-first culture that values performance over hours worked.