
Compliance & Security Analyst
Logicalis GmbH
full-time
Posted on:
Location Type: Remote
Location: United States
Visit company websiteExplore more
Salary
💰 $90,321 - $121,934 per year
About the role
- Architects and authors System Security Plans (SSPs).
- Develops and manages the Plan of Action and Milestones (POAM).
- Drafts all formal security policies.
- Designs and facilitates annual Incident Response (IR) and Disaster Recovery (DR) tabletop drills.
- Leads the Evidence Collection phase, verifying compliance with C3PAO auditor standards.
- Maintains a working knowledge of laws and regulations to ensure adherence.
Requirements
- Bachelor's degree in a related field.
- Compliance Enclaves: Advising on how to segment CUI to limit audit scope and cost.
- FIPS 140-2/3 Validation: Verifying encryption modules (VPNs, Wi-Fi, Storage) meet federal standards.
- Network Architecture: Interpreting network diagrams and identifying gaps in boundary protection and data flow.
- Previous Network Engineer or Administrator experience is valued.
- Log Logic: Knowing exactly what a 'passing' audit log looks like for MFA, access control, and system monitoring.
- Framework Expert: Mastery of CMMC 2.0 (Level 2) and NIST SP 800-171.
- Technical Writing: Superior ability to write clear, audit-proof documentation (SSPs, SOPs, and Policies).
- Knowledge of SOC2, ISO 27001, HIPAA, or GDPR.
- Certifications: CCP (CMMC Certified Professional), CISA Security +.
Benefits
- Logicalis is an Equal Opportunity Employer.
- Inclusion and belonging at our company.
- We do not discriminate on the basis of race, color, religion, national origin, sexual orientation, gender identity and gender expression, marital status, age, height, weight, disability, veteran status, or any other reason prohibited by applicable federal or state laws.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
System Security Plans (SSPs)Plan of Action and Milestones (POAM)Incident Response (IR)Disaster Recovery (DR)C3PAO auditor standardsFIPS 140-2/3 ValidationNetwork ArchitectureLog LogicCMMC 2.0NIST SP 800-171
Soft Skills
Technical Writing
Certifications
CCP (CMMC Certified Professional)CISASecurity +