logo inner

Senior Compliance Manager

OSIbeyondRockville, Maryland, United StatesRemote

Position Summary:
The Senior Cybersecurity Compliance Manager is responsible for the implementation of CMMC / NIST 800-171 cybersecurity requirements for an assigned portfolio of managed services clients. This is accomplished through the development of documentation including policies, procedures and supporting material. Key Responsibilities and Duties:

  • Serves as project lead for the implementation of projects for the implementation of CMMC / NIST 800-171 cybersecurity requirements. 

  • Provide collaborative business process analysis and environment scoping guidance to clients to allow for cybersecurity requirements to be implemented both efficiently and effectively. 

  • Develop and maintaindocumentation for both internal and client use including inventories, policies, procedures, scheduling documents and technical diagrams.

  • Works closely with and leverages the expertise of Technical Engineering, Security Operations and Compliance Teams for the buildout of compliant information systems.

  • Ensures that requirements, once implemented, are sustained by creating standardized procedures for ongoing execution by both the client and OSIbeyondTechnical Engineering, Security Operations and Compliance teams. 

  • Assist with client audits and assessments by compiling documentation and evidence for third party auditors 

  • Work closely with OSIbeyond CISO and CTO to ensure technical solutions and configurations are aligned with compliance objectives and client shared responsibility matrices for the delivery of compliant managed services. 

Job Qualifications:CoreCompetancies

  • Timeliness – Meets deadlines - Completes work in a timely manner.

  • Reliability –Achieves commitments - Arrives to work and meetings when scheduled/expected.

  • Attitude–Has a positive attitude about performing their job.

  • Organization–Manages their own work and schedule 

  • Accountability –Takes responsibility for actions and resolves own mistakes

  • Receptive – Open to feedback and willing to grow and improve

  • Adaptable –Flexible and open to change

  • Integrity –High work ethic and integrity 

  • Follow through –Ensures work completion

  • Quality – Complete all work with a high level of detail and accuracy 

  • Professionalism –Conduct oneself in an all-round professional manner

  • Communication – Communicate effectively

  • Team – Available and supportive of coworkers

Abilities

  • Knowledge of core Microsoft cloud solutions including Office 365 and how they are commonly used in SMB environments 

  • In-depth understanding CMMC Level 2 / NIST 800-171 Rev 2 requirements and their associated DFARS clauses

  • Able to evaluate proposed assessment objective responses and supporting evidence for viability during a CMMC assessment

  • Understanding of the DOD CUI program, including expectations for both DOD and contractorsregarding compliant labeling, handling, storage and destruction of CUI data. 

  • Provide accurate analysis and environment scoping guidance to clients to ensure proposed solutions are aligned with compliance controls in the most efficient manner 

  • Remediate POA&M deficiencies by developing necessary policies, processes, and procedures

  • Assist with client audits and assessments by providing timely, accurate documentation and evidence to third party auditors.

Security Responsibilities

  • Complete training for and maintain awareness of cybersecurity risks including insider threat, and appropriate handling of CUI and other regulated data.

  • Treat client data and OSIbeyond data as sensitive, and do not disclose, release or otherwise transfer it outside of OSIbeyond or client environments without written permission. 

  • Follow cybersecurity requirements as described in the Employee Handbook and other OSI policies.

  • Immediately follow incident response procedures when a security incident or concern is noticed.

  • Assist with user Awareness Training content and tracking

  • Participate in the testing and execution of Incident Response procedures

  • Assist with Risk Assessment activities

  • Assist with Security Assessment activities

  • Participate in Security Review Meetings

  • Assist with the development and management of POAMs

  • Assist with the development and dissemination of policies and procedures

Education and Certifications: 

  • Required – Either CISM, CISA, CySA+ or CISSP to meetDod 8140.3 612 Security Control Assessor) Advanced Certificationrequirements

Desired–CMMC CCP or CCA Certification

  • Note: Candidate must be willing to undergo DoD Tier 3 background investigation to meet CMMC certification requirements. 

Position:

  • Location – Remote (Must be located in the US)
  • Department – Security/Compliance
  • Employment Type - Full-Time
  • Compensation - $117,000-130,000
  • Travel -Occasional travel required as needed

Life at OSIbeyond

At OSIbeyond, we believe in perfectly orchestrated technology. We understand that your business relies on technology, which is why you can rely on us. Our mission has always been to provide our clients with a boutique, world-class customer experience, consisting of our team of IT professionals who are committed to providing proactive services through a strategic approach. Our clients range from small to medium-sized nonprofits, associations, defense contractors, and commercial businesses who rely on us as a strategic technology partner to streamline their IT management, and protect them from cyber threats. Effective technology and cyber security are critical to your organization and business. Our comprehensive services include: Managed IT IT Support Cloud Solutions Technology Strategy Cyber Security CMMC Compliance Solutions Managed Security Services Whether your organization is seeking to fully outsource all IT operations or supplement existing internal IT staff, OSIbeyond possesses the capabilities to accommodate solutions of varying scale. Our entire portfolio of Managed IT Services and Cyber Security solutions are backed by world-class customer service and our insatiable desire to nurture long-lasting partnerships with our clients. When you select OSIbeyond, you get more than a technology provider; you gain a technology partner. Specialties: Cyber Security Cybersecurity Maturity Model Certification (CMMC) Compliance Risk Assessment GAP Analysis Managed IT Services IT Helpdesk Support Cloud Solutions Microsoft 365/Azure Microsoft Certified Silver Cloud Platform partner Technology Strategy
Thrive Here & What We Value- Medical Insurance: OSIbeyond pays 80% of the premium for the Employee's base medical plan.- Vision and Dental Insurance: OSIbeyond pays 80% of the premium for the Employee's plans.- Life Insurance: OSIbeyond pays 100% of the premium for the Employee's plans.- Short Term Disability Insurance: OSIbeyond pays 100% of the premium for the Employee's plans.- 401K: OSIbeyond matches up to 4%.
Your tracker settings

We use cookies and similar methods to recognize visitors and remember their preferences. We also use them to measure ad campaign effectiveness, target ads and analyze site traffic. To learn more about these methods, including how to disable them, view our Cookie Policy or Privacy Policy.

By tapping `Accept`, you consent to the use of these methods by us and third parties. You can always change your tracker preferences by visiting our Cookie Policy.

logo innerThatStartupJob
Discover the best startup and their job positions, all in one place.
Copyright © 2025