Senior Compliance Analyst

Summit 7 Systems

$120K *
US-Anywhere
+ 3 other locationsRemote
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Associate's degree in IT or related field with 3+ years of relevant experience, or equivalent certifications and experience.
  • Familiarity with NIST SP.800-171, NIST SP.800-53, and similar regulatory standards is crucial.
  • CMMC Certified Professional (CCP) preferred; candidates must obtain within 6 months if not already certified.
  • Good written and interpersonal communication skills, with experience in technical writing valued.
  • Strong organizational skills; must be capable of managing multiple priorities.

Responsibilities

  • Review and update cybersecurity documentation including policies and procedures.
  • Assist in the creation and maintenance of System Security Plans and compliance-related monitoring schedules.
  • Conduct security assessments for on-premises and cloud environments, documenting findings.
  • Collaborate with teams to ensure comprehension of NIST standards related to CMMC certification.
  • Identify client challenges and propose effective solutions through expert knowledge and collaboration.
  • Perform additional responsibilities as necessary.

Benefits

  • Opportunity to work with leading cybersecurity compliance initiatives.
  • Collaborative environment with a focus on continuous learning and growth.
  • Possibility for advancement based on experience and contributions.
  • Support for obtaining necessary certifications and professional development.
Full Job Description
Salary*:

$120,000+

*Dependent upon qualifications

Essential Functions

The Senior Compliance Analyst assists Summit 7 and our clients in meeting key cybersecurity compliance initiatives including Cybersecurity Maturity Model Certification (CMMC) certification documentation preparation, readiness, and assessment activities.

Candidates with more experience will be considered at a senior level.

Duties and Responsibilities
  • Review, develop, update, and/or maintain cyber security documentation which may include policies, plans, procedures, checklists, and work instructions
  • Assist in development and maintenance of System Security Plans, Plans of Action and Milestones (POA&MS), security and compliance-related information system monitoring schedules and related tasks
  • Participate in security assessments including coordination, evaluation of on premises and cloud environments, collection of evidence and artifacts, and documenting results
  • Work collaboratively with internal teams to maintain applied knowledge of NIST 800-171, DFARS [redacted] and other associated standards and regulations related to CMMC certification
  • Leverage growing knowledge and expertise to identify client problem areas and collaborate to provide effective suggestions for solutions
  • Other duties as assigned

Requirements
  • Associate's degree in information technology, communications, or related fields with 3+ years of relevant experience, or a combination of industry certifications and experience that equates to that knowledge
  • Demonstrated understanding of NIST SP.800-171, NIST SP.800-171A, NIST SP.800-53, NIST SP.800-53A, FedRAMP and/or other similar federal government regulations and industry standards
  • CMMC Certified Professional (CCP). Highly qualified candidates who do not possess this certification may be considered - they must obtain within 6 months of hire at their own cost.
  • Ability to pass an extensive background check
  • Strong written and interpersonal communication skills; experience with technical writing, procedure and policy writing preferred
  • Excellent organizational skills with ability to prioritize
  • Proficient in Microsoft Office Online/Microsoft 365 (Word, PowerPoint, Excel, Outlook)
  • Creative and innovative thinking, problem solving and analytical skills
  • Possess strong customer service skills and customer-focused mindset
  • Must maintain a high degree of integrity, confidentiality, and privacy
  • Desire to ask questions and learn quickly
  • Working understanding of IT and Infrastructure acronyms and definitions

Export Control Notice: This position may involve access to information subject to U.S. export control laws, including the International Traffic in Arms Regulations (ITAR) or the Export Administration Regulations (EAR). Qualified applicants will be considered regardless of national origin or immigration status. If a candidate does not meet the definition of a "U.S. Person" (as defined in 22 CFR 120.15), the company will assess whether an export license is required. If a license is required, any offer of employment will be contingent upon the candidate's eligibility for, and the company's ability to obtain, such a license in accordance with U.S. law. A "U.S. Person" includes U.S. citizens, lawful permanent residents, asylees, and refugees.

Similar Jobs

More Jobs at Summit 7 Systems

More Information Technology Jobs

Find similar Senior Compliance Analyst jobs: