Support the development, implementation, and maintenance of IT compliance policies, standards, procedures, and controls.
Assist with compliance activities related to information security, service management, and quality management frameworks.
Coordinate and support internal and external audits, including preparation of documentation, evidence collection, and remediation tracking.
Perform periodic compliance assessments, gap analyses, and risk assessments against applicable frameworks and standards.
Maintain compliance documentation, including system security plans (SSPs), policies, procedures, and control mappings.
Track and monitor corrective action plans (CAPs), plans of action and milestones (POA&Ms), and risk remediation efforts.
Collaborate with IT and security teams to ensure controls are implemented, operating effectively, and aligned with regulatory and contractual requirements.
Monitor changes to regulatory and standards-based requirements and assess impact to the organization.
Support vendor and third-party risk assessments related to IT and information security compliance.
Assist in developing compliance metrics, dashboards, and reporting for leadership.
Provide guidance and awareness to staff regarding compliance requirements and best practices.
Requirements
Bachelor’s degree in Information Technology, Cybersecurity, Information Systems, or a related field.
5-7 Years of relevant experience
Prior experience in an IT compliance, information security, or audit support role.
Familiarity with GRC tools and compliance management platforms.
Certifications such as CISA, ISO Lead Implementer/Auditor, CMMC Certified Auditor, or similar (preferred but not required).
Experience supporting government, defense, or regulated industry compliance programs.