Onebrief-posted 3 months ago
101-250 employees

You will play a critical role in building and sustaining Onebrief’s cybersecurity compliance program. Leveraging your expertise with CMMC 2.0 and SOC 2, you will ensure compliance evidence is created, validated, and continuously organized in our GRC platform. You will lead efforts to automate control testing, close gaps, and prepare for audits, directly contributing to Onebrief’s ability to obtain and maintain accreditations.

  • Maintain compliance documentation and evidence in the GRC platform
  • Coordinate internal assessments and readiness checks ahead of external audits
  • Partner with engineering and IT to design compliant cloud-native solutions
  • Track regulatory changes and advise leadership on compliance implications
  • Conduct periodic risk assessments and suggest appropriate risk treatment actions
  • Develop internal cybersecurity awareness and training presentations for employees
  • Conduct supply chain risk management assessments for current and future vendors
  • 7+ years in Cybersecurity Compliance and related roles
  • Experience with GRC platforms and leveraging automated evidence collection and testing capabilities
  • Familiarity with cloud security standards (e.g., FedRAMP, ISO 27001, NIST 800-171)
  • Strong background in policy development, control testing, and evidence gathering
  • Excellent communication skills for working with both technical and non-technical stakeholders
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field
  • Hands-on expertise with CMMC 2.0 and SOC 2 frameworks
  • Certifications (one or more required): CISSP, CISM, CISSO, CPTE, CySA+, FITSP-A, GCSA, CISA, ISSEP, GSLC, or GSNA
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service