Sierra Nevada Corporation

Compliance Engineer II

Sierra Nevada Corporation

full-time

Posted on:

Origin:  • 🇺🇸 United States • Colorado

Visit company website
AI Apply
Manual Apply

Job Level

JuniorMid-Level

Tech Stack

AzureCloudCyber SecurityServiceNow

About the role

  • Collaborates with the Control Owner(s) for the collection of evidence in support of compliance requirements
  • Assists or implements remediations when gaps or non-compliant controls are identified
  • Partners with Control Owner(s) and Cybersecurity Analysts to update control documentation
  • Establish test standards, conduct tests, and analyze results
  • Identify areas to improve audit gaps, productivity, and compliance, including automation opportunities
  • Support IT operations teams to assess and fix security vulnerabilities, gaps, and weaknesses across IT infrastructure
  • Assist and participate with internal and external compliance audits
  • Focus on ensuring IT assets, systems, and services meet legal and regulatory requirements (NIST800-171 and CMMC)
  • Perform digital data gathering and analysis across computers, networks, endpoints, operating systems, and mobile devices

Requirements

  • Bachelor's Degree in a related field with at least 2 or more years of relevant experience
  • Higher education may substitute for relevant experience
  • Relevant experience may be considered in lieu of required education
  • Experience participating in audits and assessments
  • Understanding cybersecurity principles and best practices as is relates to industry compliance standards
  • Knowledge of security protocols, encryption, and data protection
  • Familiarity with identity management to include Microsoft Active Directory and Azure Entra
  • Experience with compliance reporting tools and methodologies
  • Experience with Endpoint Engineering
  • Proficiency with computers, networks, end-point devices, various operating systems, and mobile devices
  • Understanding of security controls that protect systems and networks, with a focus on NIST compliance
  • Knowledge of general governance, compliance, and audit concepts
  • Skilled in applying risk management principles, assessments, and metrics
  • Ability to obtain and maintain a Secret U.S. Security Clearance (U.S. Citizenship required)