Lead Security Compliance Advisor (GRC)

Frey Consulting Group

Columbus (OH)

Remote

USD 100,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Frey Consulting Group seeks a Senior Compliance Advisor to guide federal security engagements and act as a trusted advisor to cloud-focused clients.

You will translate complex NIST requirements into pragmatic roadmaps, lead high-stakes engagements, and mentor a growing delivery team to elevate the practice in cloud security and risk management.

Qualifications

  • 5+ years of client-facing cybersecurity consulting and assessment experience.
  • 2+ years leading projects or engagements.
  • Deep familiarity with U.S. federal compliance frameworks and the NIST SPs listed.
  • Experience building a cybersecurity compliance practice and SOPs.

Responsibilities

  • Lead end-to-end compliance and risk engagements for federal frameworks (FISMA, FedRAMP, GovRAMP, DoD RMF).
  • Translate NIST guidelines (800-30, 800-37, 800-53, 800-171) into actionable roadmaps.
  • Own QA for technical deliverables and ensure high-quality reports and assessments.
  • Direct technical cybersecurity discussions with executives and clients.
  • Mentor junior consultants and contribute to practice growth.

Skills

Cybersecurity consulting
Project leadership
FedRAMP
GovRAMP
CMMC
NIST SP 800-53
NIST SP 800-171
NIST SP 800-37
NIST SP 800-30
Cybersecurity compliance practice
Cloud experience
AWS/Azure/GCP certs
CISSP
CISA
CISM
CCSP
CIPP
FISMA
DoD RMF
Bachelor's degree

Education

Bachelor's degree

Job description

Job Title: Lead Security Compliance Advisor (GRC)

Location: Remote within PST/MST/CST/EST time zones

Work Arrangement: Remote

Travel: 0% - 5%

Compensation: $100,000 - $150,000 base salary (DOE)

Required Skills:

  • 5+ years of cybersecurity consulting/assessment experience
  • 2+ years leading projects or engagements
  • U.S. Federal Framework Mastery (FedRAMP, GovRAMP)
  • CMMC and NIST Special Publications (800-53, 800-171, 800-37, 800-30)
  • 2+ years of experience building out a cybersecurity compliance practice and implementing standard operating procedures (Creating training materials and supporting documentation)
  • 2+ years of relevant cloud experience or one of the following certifications: AWS Cloud Practitioner, Microsoft Azure Fundamentals (AZ-900), or GCP Cloud Digital Leader

Preferred Skills:

  • Industry Certifications (CISSP, CISA, CISM, CCSP, or CIPP)
  • U.S. Federal Framework Mastery (FISMA, DoD RMF)
Employer Value Proposition:

A delivery-first, high-influence role built for a true practitioner. Skip the corporate red tape and checklist auditing; here, you own the client roadmap, mentor a growing team, and act as the definitive expert in the room for fast-growing cloud tech companies.

Job Description

As a Senior Compliance Advisor, you will serve as the primary technical compass guiding modern technology companies through complex federal security waters. You are a senior voice, a trusted advisor, and a hands-on strategist who thrives on the true substance of risk management. You will spend your days collaborating with client leadership to turn dense regulatory burdens into clear, achievable security roadmaps, while stepping up to mentor our delivery team and elevate the quality of everything we build. It is a brilliant opportunity to own your expertise, lead high-stakes engagements, and make an undeniable impact on the safety of cloud-regulated environments.

Why This Opportunity is Different
  • Be the Expert in the Room: This is a delivery-first playground for true compliance practitioners. Your technical voice matters, and you will directly shape how our clients scale safely.
  • Influence & Mentorship: You won’t just manage tasks; you will actively champion the growth of junior consultants, passing down your framework mastery to scale our team's capabilities.
  • Escape the Checklist Mentality: We don't do mindless box-checking. You will solve real architectural puzzles, bridging the gap between heavy federal standards and modern cloud environments.
  • Direct Growth Ownership: Your market insights will directly influence our internal product, success, and leadership teams as we continuously evolve our advisory practice.
Your Mission & Impact
  • Architect Federal Roadmaps: Lead the end-to-end delivery of complex compliance and risk engagements. You’ll conduct sharp control assessments, gap analyses, and remediation planning across FISMA, FedRAMP, GovRAMP, and DoD RMF environments.
  • Translate the Complex: Turn dense NIST guidelines (800-30, 800-37, 800-53, 800-171) into intuitive, execution-ready roadmaps that clients can seamlessly implement.
  • Guard Engagement Quality: Take ultimate pride in the work. You’ll lead the QA process for critical deliverables, ensuring our technical reports and assessments are flawless before they reach the customer.
  • Drive the Conversation: Direct technical cybersecurity and risk strategy discussions with executive stakeholders, prospects, and internal product teams.
  • Amplify Technical Thought Leadership: Help position the company as an industry authority by translating emerging regulatory shifts into clear guidance via technical articles, webinars, or client briefings.
What You Bring to the Team
  • Consulting DNA: 5+ years of client-facing cybersecurity consulting and assessment experience, with at least 2 years spent successfully steering project timelines and managing delivery milestones.
  • Federal Blueprint Mastery: Deep, practical familiarity with U.S. federal compliance frameworks and the underlying NIST Special Publications (800-30, 800-37, 800-53, 800-171).
  • Clear Articulation: Exceptional communication skills with a proven ability to distill complex architectural risks into clear, compelling narratives for both developers and executive boards.
  • Growth Mindset: An active interest in commercial frameworks (SOC 2, ISO 27001) and cloud ecosystems, backed by a desire to move fast, test new ideas, and continuously elevate your craft.
  • Valued Credentials: A Bachelor's degree or equivalent technical experience. Holding a CISSP, CISA, CISM, or foundational cloud certification is highly preferred.

Due to federal contract requirements, this position requires US Citizenship or Lawful Permanent Residency.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security GRC Analyst
Principal Security GRC Analyst

Jobgether • United States

On-site
USD 150,000 - 210,000
High autonomy
Multi-framework exposure
Cloud environment experience
Senior Governance, Risk, & Compliance Analyst
Senior Governance, Risk, & Compliance Analyst

Jobgether • United States

On-site
USD 58,000 - 222,000
Medical, dental, vision insurance
Flexible work environment
Paid time off
+1
Cybersecurity GRC Professional
Cybersecurity GRC Professional

duvari group • United States

On-site
USD 120,000 - 190,000
Senior Federal Security & Compliance Advisor - Remote
Senior Federal Security & Compliance Advisor - Remote

Midwest Startups • Columbus (OH)

On-site
USD 100,000 - 150,000
Practice Lead, GRC Advisory for Shellproof Security
Practice Lead, GRC Advisory for Shellproof Security

The ProActive Technology Group • New York (NY)

On-site
USD 100,000 - 150,000
Competitive salary
Health, vision, and dental benefits
Performance-based incentives
+3
GRC Officer
GRC Officer

penlink • Lincoln (NE)

Hybrid
USD 110,000 - 150,000
Compliance Analyst (GRC/RMF Focused)
Compliance Analyst (GRC/RMF Focused)

CL 1e6d8f31 073f 48cd b324 b581c00084bf • Washington

Hybrid
USD 80,000 - 110,000
Principal Compliance Engineer
Principal Compliance Engineer

Trueanomalyinc • Denver (CO)

On-site
USD 195,000 - 270,000
Health and dental benefits
401K
Parental Leave
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • Charlotte (NC)

Hybrid
USD 54,000 - 90,000
Hybrid work model
Relocation assistance
Certifications support
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

LexisNexis • Raleigh (NC)

On-site
USD 118,000 - 220,000