Brasfield & Gorrie LLC

Senior Compliance Specialist

Brasfield & Gorrie LLC$85K — $110K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in business, information systems, cybersecurity, compliance, or related field preferred
  • 7+ years of experience in compliance, audit, risk management, IT, cybersecurity, federal contracting, or regulated programs
  • Experience supporting cybersecurity compliance or audit readiness
  • Knowledge of CMMC, NIST SP 800-171, DFARS, or other federal cybersecurity requirements
  • Strong analytical, organizational, and problem-solving skills
  • Excellent written and verbal communication skills
  • Advanced proficiency in Microsoft Office Suite and compliance management systems

Responsibilities

  • Lead administration of the CMMC assessment inventory log
  • Ensure compliance records are complete and audit-ready
  • Oversee centralized compliance documentation repositories
  • Monitor compliance deadlines and remediation activities
  • Coordinate internal and external cybersecurity assessments and audits
  • Review submissions for completeness and regulatory alignment
  • Collaborate across teams to support compliance initiatives
  • Promote documentation standards and process improvements

Benefits

  • Flexible working hours with remote work options
  • Professional development and training opportunities
  • Collaborative work environment with cross-functional teams
  • Access to industry-standard compliance tools and systems
  • Opportunities for career progression within compliance and cybersecurity roles
Full Job Description
Responsibilities

This role serves as a key contributor to the company's federal cybersecurity compliance program by leading assessment readiness efforts, administering compliance operations, and ensuring alignment with contractual and regulatory requirements, including CMMC and NIST SP 800-171.

The Senior Compliance Specialist partners closely with Compliance, IT/Security, Legal/Contracts, and project teams to maintain a mature, audit-ready compliance program. This role requires strong organizational, analytical, and communication skills, along with the ability to independently manage complex compliance activities, drive process improvements, and support enterprise-wide readiness initiatives.

Responsibilities and Essential Duties include the following (other duties may be assigned):

Compliance Program Administration
  • Lead administration and maintenance of the CMMC assessment inventory log, including systems, assets, control owners, evidence status, remediation tracking, and audit documentation
  • Ensure compliance records and supporting documentation are complete, accurate, current, and audit-ready
  • Oversee centralized compliance documentation repositories, including evidence inventories, trackers, version logs, and status reports
  • Monitor compliance deadlines, remediation activities, and outstanding action items to support ongoing assessment readiness
  • Identify process gaps and recommend improvements to strengthen documentation accuracy, consistency, and operational efficiency

Assessment & Audit Readiness
  • Coordinate and support internal and external cybersecurity assessments, audits, and readiness reviews
  • Lead collection, organization, and validation of required evidence and compliance documentation
  • Review submissions for completeness, consistency, and alignment with contractual and regulatory requirements
  • Track remediation plans, corrective actions, and progress through resolution while escalating risks or delays as appropriate
  • Prepare and present readiness summaries, compliance metrics, dashboards, and status updates for leadership and stakeholders

Contract & Regulatory Compliance
  • Review contracts and client requirements related to federal cybersecurity compliance obligations
  • Assist in interpreting and tracking requirements associated with CMMC, NIST SP 800-171, and related federal cybersecurity standards
  • Ensure required documentation and records are maintained to support contractual compliance obligations and audit readiness
  • Partner with internal stakeholders to identify, escalate, and resolve compliance gaps, inconsistencies, or missing documentation

Cross-Functional Coordination
  • Collaborate with IT/Security teams to maintain accurate system, asset, and control documentation
  • Coordinate with Compliance, Legal/Contracts, Procurement, and project teams to support enterprise compliance initiatives
  • Serve as a resource to internal stakeholders regarding compliance documentation requirements, processes, and best practices
  • Facilitate meetings, working sessions, follow-up communications, and action item tracking across multiple teams

Process Improvement & Training Support
  • Lead efforts to develop, enhance, and maintain standard operating procedures, templates, workflows, and compliance checklists
  • Support and coordinate training initiatives related to cybersecurity compliance documentation and readiness activities
  • Promote consistent documentation standards, version control, and record retention practices across departments
  • Recommend and implement process improvements to increase efficiency, accountability, and compliance readiness

Reporting & Documentation Management
  • Serve as the primary coordinator and system administrator for compliance tracking and assessment inventory records
  • Validate updates across departments and maintain traceability and integrity of compliance documentation
  • Generate recurring and ad hoc reports related to compliance status, assessment readiness, remediation activities, and outstanding risks
  • Analyze trends and metrics to support leadership decision-making and continuous improvement initiatives

Education - Skills - Knowledge - Qualifications & Experience

  • Bachelor's degree in business, information systems, cybersecurity, compliance, or related field preferred
  • Minimum of 7 years of experience in compliance, audit, risk management, IT, cybersecurity, federal contracting, or a regulated program environment
  • Experience supporting or coordinating cybersecurity compliance programs, audit readiness activities, or documentation control processes
  • Working knowledge of CMMC, NIST SP 800-171, DFARS, or related federal cybersecurity requirements preferred
  • Strong analytical, organizational, and problem-solving skills with exceptional attention to detail
  • Ability to independently manage multiple priorities, deadlines, and cross-functional initiatives
  • Excellent written and verbal communication skills with the ability to effectively interact with technical and non-technical stakeholders
  • Advanced proficiency in Microsoft Office Suite, including Excel, Word, Teams, and reporting tools
  • Experience with compliance management systems, documentation repositories, or workflow tracking tools preferred
  • Ability to maintain confidentiality, exercise sound judgment, and operate with a high level of professionalism


The above description covers the principal duties and responsibilities of the job. The description shall not, however, be construed as a complete listing of all miscellaneous, incidental, or similar duties which may be required from day-to-day. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

About Brasfield & Gorrie LLC

Brasfield & Gorrie is a construction company that provides general contracting, design-build, and construction management services. The company serves a variety of industries, including healthcare, commercial, education, and industrial. Brasfield & Gorrie has completed projects across the United States and has been recognized for its safety record and sustainability efforts. The company was founded in 1964 and is headquartered in Birmingham, Alabama.
Learn more about Brasfield & Gorrie LLC
Size
3,000 employees
Industry
Founded
1964

Similar Jobs

More Jobs at Brasfield & Gorrie LLC

More Information Technology Jobs

Find similar Senior Compliance Specialist jobs: