Gentex Corp-posted 2 months ago
Full-time • Mid Level
Carbondale Township, PA
501-1,000 employees

The Cybersecurity Compliance Manager plays a critical role ensuring that our organization adheres to regulatory, contractual, and DoD cybersecurity requirements. This role is particularly important because of our handling of sensitive data, Controlled Unclassified Information (CUI), and our required adherence to a CMMC 2.0 framework.

  • Ensure adherence to frameworks like CMMC, NIST
  • Create and enforce cybersecurity policies and procedures
  • Identify, assess, and mitigate cybersecurity risks
  • Prepare for and manage internal and external audits
  • Maintain SSPs, POA&Ms, IRPs, and other compliance-related documents
  • Collaborate on incident response and ensure regulatory reporting
  • Educate employees on compliance requirements and best practices
  • Work with internal and external stakeholders to address compliance concerns
  • Monitor compliance posture and update controls as needed
  • Provide strategic guidance and lead compliance initiatives
  • Bachelor’s degree required
  • Certifications CISSP, CISM, or CCP
  • Minimum 5–10 years of experience in cybersecurity, IT governance, risk management, or compliance
  • Minimum 3–5 years of direct experience in managing compliance programs or audits
  • Experience in industries with strict regulatory requirements, such as defense contracting, healthcare, finance, or government
  • Familiarity with handling Controlled Unclassified Information (CUI) or other sensitive data is often required for roles tied to CMMC 2.0 compliance
  • Understanding of cybersecurity principles, including access control and identity management, network security and segmentation, data encryption, vulnerability management and patching, incident response and disaster recovery
  • Experience with tools and technologies used in cybersecurity, such as SIEM, Vulnerability Scanners, EDR tools, PAM tools, Configuration Management tools
  • Familiarity with IT systems, including operating systems, cloud platforms, and networking concepts
  • Experience implementing and managing compliance with CMMC 2.0, NIST SP 800-171, ISO 27001, GDPR, HIPAA, SOX
  • Experience preparing for and managing internal and external audits
  • Leadership and team management experience
  • Strong communication skills to convey complex concepts to non-technical stakeholders
  • Experience collaborating with external stakeholders
  • Medical/dental coverages
  • 401k
  • Paid time off
  • Excellent work schedules including a 9/80 work week
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service