Federal Compliance Lead/Federal GRC Manager
Listed on 2026-01-12
-
IT/Tech
Cybersecurity
Overview
We are looking for a strategic builder to lead our journey toward federal authorization and operational excellence. This is not a "check-the-box" role; it is a mission-critical position owning our roadmap to ATO (Authority to Operate).
You will be the architect of our compliance program, partnering directly with Engineering, Product, and Operations to translate frameworks like NIST 800-53, CMMC, and SOC 2 into sustainable, real-world practices. You won't just document controls—you will ensure they live and breathe in our daily operations.
Note:
This is a strategic Governance & Compliance role, not a hands-on Security Engineering role. While the role is remote, ideal candidates will be located in Eastern Standard Timezone (EST) to interface with internal teams during normal business hours.
- The ATO Mission: You are the captain of our authorization journey. You will own the readiness roadmap, manage external consultants and assessors, and drive the remediation work required to achieve and sustain compliance.
- Governance & Translation: You will translate complex federal requirements into clear, actionable steps for technical teams. You will operationalize policies so that compliance becomes part of the DNA of our infrastructure and cloud environments.
- Risk & Vigilance: You will look around corners, conducting readiness reviews, managing POA&Ms, and validating that our controls are effective—not just on paper, but in practice.
- Cross-Functional Leadership: You will serve as a trusted advisor to the C‑suite and Engineering leads, providing clear visibility into risks, blockers, and timelines.
- A Program Owner: you take accountability and drive outcomes
- A Builder: you design processes that work in real-world environments
- A Partner: you collaborate across teams and influence without authority
- A Translator: you turn framework language into practical action
- A Problem Solver: you see compliance as a system to improve, not paperwork to maintain
- Experience: 4–7+ years in GRC, Security Compliance, or Information Assurance.
- Framework Fluency: Deep, hands‑on expertise with NIST 800-53 is required. Exposure to CMMC, SOC 2, or NIST 800-171 is highly valued.
- Operational Mindset: Demonstrated experience implementing controls, not just auditing or documenting them.
- Communication: Elite written communication and executive reporting skills; you can summarize complex risk postures for non-technical stakeholders.
- Citizenship: U.S. Citizenship is required to support federal compliance mandates.
Wired People provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, Wired People complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).