Workstreet Logo

Workstreet

Senior GRC Engineer (CMMC/FedRAMP)

Sorry, this job was removed at 08:07 p.m. (PST) on Monday, Mar 09, 2026
Remote
Hiring Remotely in United States
Remote
Hiring Remotely in United States

Similar Jobs

49 Minutes Ago
Remote
New Jersey, USA
200K-200K Annually
Senior level
200K-200K Annually
Senior level
Artificial Intelligence • Cloud • Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Sell group insurance products (Life, Accident, Disability, Absence Management, Supplemental Health) to mid-market clients. Build and maintain broker relationships, drive new business and retention, manage proposals/RFPs, participate in renewals, mentor new hires, and travel up to 40%. Meet sales targets and ensure excellent client and broker experience.
Top Skills: MS Office
49 Minutes Ago
In-Office or Remote
85K-115K Annually
Senior level
85K-115K Annually
Senior level
Artificial Intelligence • Cloud • Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Drive operational readiness and change management across initiatives impacting client implementation and servicing. Develop readiness plans, map and improve workflows, identify risks and mitigation strategies, coordinate with PMs, Experience Owners, and technology teams, support testing and go-live activities, and ensure successful transition to business-as-usual operations with minimal disruption.
57 Minutes Ago
Easy Apply
Remote or Hybrid
Easy Apply
110K-125K Annually
Senior level
110K-125K Annually
Senior level
Automotive • Greentech • HR Tech • Sales • Software
The Senior Cloud & Systems Engineer leads infrastructure modernization, manages cloud workloads, oversees identity governance, administers Microsoft 365, and builds automation tools while ensuring security and compliance.
Top Skills: Active DirectoryAWSAzureCisco MerakiExchange OnlineIntuneMicrosoft 365PowershellSharepointTeams

About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in frameworks such as CMMC, NIST 800-171, NIST 800-53, FedRAMP, enabling companies to meet regulatory requirements and strengthen their cybersecurity posture from day one.

The Opportunity

We are seeking a Sr. GRC Engineer (CMMC) who leads with a client-first mindset, brings deep expertise in CMMC and related Department of Defense cybersecurity compliance frameworks, and hits the ground running from day one. The ideal candidate is a skilled client relationship manager who takes pride in delivering an exceptional, high-touch experience to defense contractor clients — and is ready to own a portfolio of accounts within their first 15 days.

This role is fundamentally about guiding defense contractors through complex compliance journeys with professionalism, clarity, and care. You will serve as the primary point of contact for your clients end-to-end — leading engagements, managing escalations with composure and urgency, and ensuring every interaction reflects the highest standard of service. You will also lead and mentor a small team of compliance professionals, driving consistent, high-quality outcomes across all engagements.

What You'll Do

Client Relationship Management (Primary Focus)

  • Own the Client Experience: Serve as the primary point of contact for a portfolio of defense contractor clients, building trusted relationships and ensuring every client feels informed, supported, and well-prepared throughout their CMMC compliance journey.
  • Guide Clients Through CMMC Certification: Lead clients through the full certification process — from gap assessment to C3PAO coordination — with proactive communication, clear milestone guidance, and hands-on support.
  • Collaborate Closely with Defense Contractors: Partner directly with clients to understand their environment, close cybersecurity gaps, and drive progress toward CMMC Level 1 and Level 2 compliance with a practical, client-tailored approach.
  • Handle Escalations Professionally: Address complex client concerns with urgency and composure, providing solution-oriented responses that reinforce trust and confidence.
  • Be a Trusted Compliance Advisor: Deliver expert guidance on CMMC 2.0 developments and DoD cybersecurity requirements in a way that is accessible, actionable, and aligned with each client's unique operational context.

Team Leadership

  • Lead and Mentor a Compliance Team: Provide direction, feedback, and professional development support to a small team of compliance professionals, maintaining quality standards and accountability across all client engagements.
  • Drive Consistent Delivery: Oversee multiple client engagements simultaneously, ensuring milestones and deliverables are met ahead of contract deadlines.

CMMC & Compliance Execution

  • Interpret and Apply CMMC Requirements: Analyze CMMC and NIST SP 800-171 controls to ensure client compliance with Department of Defense cybersecurity standards.
  • Develop and Maintain Compliance Documentation: Create and manage System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), and other required CMMC documentation.
  • Conduct Gap Assessments: Perform readiness reviews to identify and address control deficiencies for organizations pursuing CMMC certification.
  • Support C3PAO Coordination: Coordinate assessment activities with Certified Third-Party Assessment Organizations on behalf of clients.
  • Monitor Regulatory Updates: Stay current on CMMC 2.0 developments and DoD cybersecurity policies to ensure client programs remain compliant and ahead of evolving requirements.
Who You Are

Required

  • Demonstrated experience managing client relationships directly — you are comfortable owning accounts, communicating complex technical requirements in plain language, and being a trusted face of the engagement
  • Exceptional professionalism in all client-facing communication, with outstanding written and verbal English skills
  • 5+ years of experience in defense contractor compliance, CMMC, NIST 800-171, NIST 800-53, or FedRAMP implementation
  • 3+ years of leadership experience managing or guiding a small team
  • Deep understanding of CUI handling requirements and DFARS clauses (252.204-7012, 252.204-7019, 252.204-7020, 252.204-7021)
  • Experience with NIST SP 800-171 control implementation and assessment
  • Familiarity with DoD supply chain requirements and defense contractor workflows
  • Experience working with small to mid-sized defense contractors
  • Knowledge of GCC High, Azure Government, or AWS GovCloud environments
  • Thrives in a fast-paced startup environment
Nice to Have
  • Experience at a Big 4 firm (e.g., Deloitte, PwC, EY, KPMG) in an advisory or assurance capacity
  • CMMC Registered Practitioner (RP), CMMC Certified Professional (CCP), or CMMC Certified Assessor (CCA) certification
  • Security+ or CISSP certification
  • Experience with SPRS reporting and maintaining scores of 110
  • Familiarity with ITAR compliance requirements
  • Ability to obtain U.S. public trust security clearance
  • Previous experience working directly with C3PAOs or as part of assessment teams
What We Offer
  • Career Development: Clear growth path with mentorship and training opportunities
  • Technical Training: Comprehensive onboarding on security and compliance frameworks
  • Competitive Compensation: Competitive base salary with regular performance reviews, merit-based appraisals, and bonus opportunities
  • Growth Opportunity: Early-stage company with significant room for career advancement
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team
Work Environment Requirements
  • Reliable high-speed internet connection
  • Quiet, professional home office setup
  • Must be amenable to working US Eastern Time zone hours
  • Fluency in written and verbal English communication skills


Workstreet Is An Equal Opportunity Employer

As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.


HQ

Workstreet San Francisco, California, USA Office

San Francisco, CA, United States, 94118

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account