Lead clients through the NIST 800-53 and FedRAMP authorization lifecycles while managing the creation of critical compliance documentation. Provide leadership and mentorship to a small team of compliance professionals to ensure consistent delivery of security milestones.
Workstreet
13 Remote Job Openings at Workstreet
The role focuses on completing customer security questionnaires and due diligence requests using established compliance frameworks. It involves researching client-specific questions and collaborating with internal security teams to ensure accurate and consistent submissions.
Establish and grow the LATAM market by owning the full sales cycle for early-stage companies and creating the regional sales playbook. Collaborate with partners like Vanta to drive referrals and manage deals across both LATAM and US territories.
Manage the full sales cycle from discovery to close, focusing on converting warm demand generated through partner channels. Develop deep technical expertise in compliance frameworks to act as a trusted advisor for technical and executive stakeholders.
Manage the full sales cycle for early-stage companies, focusing on cybersecurity and compliance solutions. Act as a technical advisor to guide prospects through complex buying decisions and refine sales playbooks.
Design and implement security controls across AWS, GCP, and Azure environments to ensure compliance and risk mitigation. Act as the primary point of contact for clients, guiding them through security initiatives and translating technical risks into business value.
Lead federal and state cloud compliance engagements, guiding clients through the full FedRAMP and GovRAMP authorization lifecycles. Manage delivery teams of GRC engineers and oversee the implementation of NIST SP 800-53 controls and continuous monitoring programs.
The Senior GRC Engineer will serve as the primary point of contact for a portfolio of clients, managing compliance engagements and ensuring exceptional service delivery. Additionally, the role involves leading and developing a pod of analysts to ensure high-quality, timely execution of cybersecurity compliance projects.
Lead a global team in managing security questionnaires, contractual security clauses, and compliance documentation for SaaS clients. Collaborate with legal, IT, and sales teams to ensure high-quality, accurate, and timely delivery of security assessments and contract reviews.
The Internal Auditor will be responsible for reviewing and validating control evidence within the GRC platform (Vanta) to ensure ongoing compliance with standards like ISO 27001, ISO 42001, HIPAA, and GDPR. This includes coordinating internal audits, assessing control gaps, and communicating audit insights and remediation recommendations to internal teams.
This role involves assisting in the implementation and maintenance of cybersecurity compliance programs aligned with standards like SOC 2 and ISO 27001, which includes developing documentation and supporting audits. The engineer will also engage with clients to gather evidence, coordinate project tasks, and perform basic control testing under senior guidance.
The role involves overseeing multiple cybersecurity compliance engagements, ensuring timely delivery, and leading the development and mentorship of GRC managers and analysts across various accounts. This includes driving resource strategy, managing client escalations, and ensuring adherence to quality standards across all projects.
The GRC Engineer I will assist in implementing and maintaining cybersecurity compliance programs aligned with standards like SOC 2 and ISO 27001, while developing and updating necessary policies and procedures to support audits. This role also involves engaging with clients to gather evidence and supporting multiple compliance projects under senior guidance.