Senior Public Sector GRC Engineer – FedRAMP/SOC2

Triwill Group

Northern (KY)

Hybrid

USD 139,000 - 196,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

GitLab seeks a Senior Security Compliance Engineer to advance the Public Sector Compliance program, supporting government SaaS and self-managed offerings. You will drive GRC strategy, lead audits, and implement compliance-as-code across multiple regulatory frameworks.

The role emphasizes collaboration with IT, Product, Engineering, Security, and Legal, monitoring regulatory changes, and maturing the company’s compliance posture. A United States citizen based in the US is required.

Qualifications

  • Bachelor's degree required or equivalent experience in a related field.
  • Minimum 5 years in GRC, cybersecurity, or related field, with focus on highly regulated industries.
  • Experience achieving and maintaining security certifications such as FedRAMP, CMMC, SOC2, IRAP, ISO 27001, and others.
  • Strong understanding of regulatory and compliance requirements for public sector and regulated verticals.
  • Familiarity with compliance-as-code or policy-as-code and automating control testing.

Responsibilities

  • Develop, implement, and manage GRC strategies across FedRAMP, IRAP, and other frameworks.
  • Collaborate with regulated customers to understand requirements and provide tailored solutions.
  • Lead security assessments, audits, and certification processes.
  • Support FedRAMP continuous monitoring commitments for government offerings.
  • Work with IT, Product, Engineering, Security, and Legal to integrate GRC requirements.
  • Create and maintain documentation supporting compliance initiatives.
  • Automate GRC processes using scripting/coding and policy-as-code solutions.
  • Monitor regulatory changes and industry trends for continuous improvement.
  • Provide training and guidance on GRC topics to internal teams and customers.
  • Serve as SME on GRC issues for senior management.

Skills

FedRAMP
CMMC
SOC2
IRAP
ISO 27001
GRC
Compliance-as-code
Policy-as-code
Cloud platforms
CISSP/CISM/CISA
Project management
US citizenship
Communication

Education

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field

Job description

GitLab seeks a Senior Security Compliance Engineer to advance the Public Sector Compliance program, supporting government SaaS and self-managed offerings. You will drive GRC strategy, lead audits, and implement compliance-as-code across multiple regulatory frameworks.

The role emphasizes collaboration with IT, Product, Engineering, Security, and Legal, monitoring regulatory changes, and maturing the company’s compliance posture. A United States citizen based in the US is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Public Sector GRC & Security Compliance Lead
Public Sector GRC & Security Compliance Lead

GitLab • United States

On-site
USD 139,000 - 196,000
Benefits to support health and well‑be
Flexible Paid Time Off
Equity Compensation & Stock Purchase
+2
Remote Senior Security GRC Engineer: FedRAMP/ISO 27001
Remote Senior Security GRC Engineer: FedRAMP/ISO 27001

GitLab Inc. • Northern (KY)

Hybrid
USD 140,000 - 190,000
Senior Security Compliance Engineer, Public Sector New Remote, United States
Senior Security Compliance Engineer, Public Sector New Remote, United States

GitLab Inc. • Northern (KY)

Remote
USD 140,000 - 190,000
Public Sector GRC Analyst – FedRAMP & Compliance
Public Sector GRC Analyst – FedRAMP & Compliance

United States Digital Space LLC • United States

Remote
USD 90,000 - 130,000
Senior Security Compliance Engineer, Public Sector
Senior Security Compliance Engineer, Public Sector

Triwill Group • Northern (KY)

Hybrid
USD 139,000 - 196,000
Senior Federal DevSecOps Engineer (Remote)
Senior Federal DevSecOps Engineer (Remote)

GitLab Inc. • Washington, Northern (KY)

Hybrid
USD 150,000 - 210,000
Remote-friendly
Competitive salary
Clearance support
Public Sector GRC Analyst - FedRAMP and Compliance
Public Sector GRC Analyst - FedRAMP and Compliance

Apply • Washington, Northern (KY)

Hybrid
USD 110,000 - 140,000
Senior GRC Engineer: Federal Compliance Leader
Senior GRC Engineer: Federal Compliance Leader

Workstreet • Northern (KY)

Hybrid
USD 150,000 - 210,000
Career development
Training reimbursement
Competitive compensation
+2
Staff Infra Security Engineer - FedRAMP Leader (Remote)
Staff Infra Security Engineer - FedRAMP Leader (Remote)

GitLab Inc. • Northern (KY)

Hybrid
USD 150,000 - 210,000
GRC Program Manager: FedRAMP & US Government Compliance
GRC Program Manager: FedRAMP & US Government Compliance

OpenAI • Los Angeles (CA)

Hybrid
USD 162,000 - 310,000