Compliance Advisor

Quzara LLC
87d

About The Position

We are seeking an experienced and hands-on Compliance Advisor to lead and deliver security compliance advisory services, with a particular emphasis on FedRAMP, FISMA, CMMC, and NIST-based frameworks. This position is ideal for a self-directed professional with a strong background in cloud security and governance, who thrives in dynamic environments and brings a deep understanding of regulatory compliance, technical auditing, and risk-based assessment approaches. The role requires expert-level engagement with both technical and compliance stakeholders, project leadership, and the ability to mentor others while producing high-quality deliverables under tight timelines. Candidates should be fluent in the nuances of federal compliance frameworks and capable of conducting audits, developing documentation, and advising on secure cloud architectures and remediation strategies.

Requirements

  • Bachelor’s degree in Information Technology, Cybersecurity, Information Systems, or a related field.
  • Minimum 5 years of experience in cybersecurity compliance, auditing, or advisory roles (with a strong focus on FedRAMP).
  • Project leadership experience within security assessment or advisory teams.
  • Experience working with FedRAMP Authorized Boundaries, ISO, or CMMC frameworks preferred.
  • Demonstrated expertise with FedRAMP, FISMA, NIST 800-53, CMMC, and cloud security compliance frameworks.

Nice To Haves

  • Hands-on experience conducting and leading assessments across public and hybrid cloud environments.
  • Strong familiarity with technical and operational controls such as IAM, vulnerability management, continuous monitoring, SIEM, and security architecture.
  • Adept in developing client-ready documentation including SAPs, SARs, RARs, POA&Ms, control matrices, and executive summaries.
  • Excellent communication skills with the ability to engage effectively with both technical engineers and federal compliance officials.
  • Proficiency in tools such as Nessus, Burp Suite, Saint, and cloud platforms (AWS, Azure).

Responsibilities

  • Independently lead assessments, walkthroughs, and projects, ensuring alignment to FedRAMP timelines, budgets, and evolving technical requirements.
  • Execute and manage full lifecycle engagements: readiness assessments, gap analyses, SAP/SAR development, continuous monitoring, and POA&M remediation.
  • Review and validate third-party assessor work for accuracy, completeness, and adherence to FedRAMP and NIST 800-53 controls (Rev 4 and Rev 5).
  • Author, revise, and maintain critical compliance documentation such as policies, procedures, risk assessments, and system security plans.
  • Conduct detailed gap assessments and risk evaluations, identifying vulnerabilities and developing mitigation strategies.
  • Drive and facilitate technical discussions on cloud security (AWS, Azure) with client stakeholders, bridging security architecture and compliance objectives.
  • Serve as the primary point of contact for FedRAMP and federal clients, providing advisory on audit readiness, evidence collection, and compliance roadmaps.
  • Participate in or lead third-party audits, representing client organizations and resolving assessor questions on control implementations.
  • Monitor regulatory updates (FedRAMP, FISMA, DFARS, CMMC) and adapt internal methodologies to align with current standards.
  • Mentor team members and contribute to internal process improvements, compliance frameworks, and scalable delivery models.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Education Level

Bachelor's degree

Number of Employees

11-50 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service