Workstreet Logo

Workstreet

Senior GRC Engineer (CMMC/FedRAMP)

Posted 6 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Lead FedRAMP and CMMC compliance engagements: perform readiness assessments, author SSPs/POA&Ms, coordinate with 3PAOs, define authorization boundaries, manage continuous monitoring, and mentor delivery teams to achieve and sustain federal compliance.
The summary above was generated by AI

About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in frameworks such as CMMC, NIST 800-171, NIST 800-53, FedRAMP, enabling companies to meet regulatory requirements and strengthen their cybersecurity posture from day one.

The Opportunity 

We are seeking a Senior GRC Engineer who is highly motivated, detail-oriented, and experienced with FedRAMP Moderate and High authorizations, with complementary experience supporting CMMC and NIST SP 800-171–based programs. The ideal candidate brings strong client-facing communication skills, the ability to manage multiple compliance initiatives simultaneously, and experience leading or mentoring a small delivery team.

This role is primarily focused on guiding SaaS providers and federal contractors through the FedRAMP authorization lifecycle, including readiness, assessment support, and continuous monitoring. A smaller portion of the role supports defense contractors pursuing CMMC Level 1 and Level 2 compliance and related NIST 800-171 requirements. The successful candidate will play a critical role in helping clients achieve and sustain federal and DoD compliance while leading high-quality delivery across engagements.

What You'll Do
  • Interpret and Apply FedRAMP Requirements: Analyze and apply NIST SP 800-53 controls, FedRAMP baselines, and agency-specific requirements to ensure client compliance.
  • Develop and Maintain FedRAMP Documentation: Author and maintain System Security Plans (SSPs), control implementation narratives, POA&Ms, SAPs, SARs, and continuous monitoring artifacts.
  • Conduct FedRAMP Readiness Assessments: Perform gap analyses and readiness reviews to prepare organizations for JAB or Agency ATO pathways.
  • Support Authorization and Assessment Activities: Coordinate with Third-Party Assessment Organizations (3PAOs), cloud service providers, and government stakeholders throughout the FedRAMP lifecycle.
  • Boundary Definition & Scoping: Lead CMMC/FedRAMP authorization boundary definition and system scoping activities, including identification of in-scope components, interconnections, data flows, and shared responsibility models to ensure alignment with FedRAMP PMO and agency expectations.
  • Manage Continuous Monitoring Programs: Oversee monthly, quarterly, and annual FedRAMP continuous monitoring requirements, including vulnerability management, incident response reporting, and change control.
  • Lead FedRAMP Engagements: Manage multiple concurrent client projects, ensuring milestones, deliverables, and quality standards are consistently met or exceeded.
  • Support CMMC and NIST 800-171 Compliance Efforts: Assist defense contractors with interpreting CMMC 2.0 and NIST SP 800-171 controls and implementing compliant security programs.
  • Develop CMMC Documentation: Contribute to SSPs, POA&Ms, and supporting artifacts required for CMMC Level 1 and Level 2 readiness.
Who You Are
  • Strong organizational and project management skills with the ability to manage multiple FedRAMP-focused engagements concurrently
  • 5+ years of experience in GRC, with deep exposure to FedRAMP, NIST SP 800-53, and federal compliance programs
  • Working knowledge of CMMC 2.0 and NIST SP 800-171 requirements
  • 3+ years of experience leading or mentoring a small team
  • Experience authoring and reviewing SSPs, POA&Ms, and assessment artifacts
  • Familiarity with federal cloud environments (AWS GovCloud, Azure Government, GCC High)
  • Experience working with SaaS providers, federal contractors, or regulated technology organizations
  • Ability to thrive in a fast-paced, consulting or startup environment
Nice to Have 
  • FedRAMP-specific experience supporting JAB or Agency ATOs
  • CMMC Registered Practitioner (RP), CCP, or CCA certification
  • CISSP, CISM, or Security+ certification
  • Experience with DFARS clauses and CUI handling requirements
  • Familiarity with SPRS reporting and DoD assessment workflows
  • Prior experience working directly with 3PAOs or C3PAOs
What We Offer
  • Career Development: Clear path with mentorship and training opportunities
  • Technical Training: Comprehensive onboarding on security and compliance frameworks
  • Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
  • Growth Opportunity: Early-stage company with significant room for career advancement.
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.
Work Environment Requirements
  • Reliable high-speed internet connection.
  • Quiet, professional home office setup.
  • Must be amenable to work US Eastern Time zone hours.
  • Fluency in written and verbal English communication skills.
Workstreet Is An Equal Opportunity Employer

As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

Top Skills

3Pao
Aws Govcloud
Azure Government
C3Pao
Cmmc 2.0
Dfars
Fedramp
Gcc High
Nist Sp 800-171
Nist Sp 800-53
Poa&M
SAP
Sar
Sprs
Ssp

Workstreet Austin, Texas, USA Office

Austin, TX, United States

Similar Jobs

8 Hours Ago
Remote or Hybrid
New York, NY, USA
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves supporting product sales as a technical expert, leading customer workshops, providing product demonstrations, and collaborating with sales and product teams. The consultant will also engage in competitive analysis and support marketing events to enhance client engagement and satisfaction.
Top Skills: AICloud Software SolutionsServicenow
11 Hours Ago
Remote or Hybrid
United States
80K-160K Annually
Junior
80K-160K Annually
Junior
Insurance • Logistics • Software • Transportation • Business Intelligence
The Account Executive will engage prospects to qualify them for sales, manage accounts, and achieve sales targets while utilizing Salesforce for tracking.
Top Skills: Salesforce
11 Hours Ago
Remote or Hybrid
5 Locations
37K-66K Hourly
Senior level
37K-66K Hourly
Senior level
Fintech • Financial Services
Serve affluent consumer and small business customers by acquiring and deepening relationships, advising on banking, credit, mortgage, retirement and investment solutions, and partnering with specialists. Manage moderately complex client issues, adhere to compliance and risk controls, complete required licensing/SAFE registration, and provide guidance to branch colleagues while meeting sales and service objectives.

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account