Sr. Information Security Compliance Engineer / Security / Hybrid / Atlanta, GA
We are seeking an experienced Senior Information Security Compliance Engineer to support a large enterprise organization's Information Security Governance, Risk & Compliance (GRC) team in Atlanta, GA.
This position will play a key role in supporting government cybersecurity compliance programs, ensuring adherence to domestic and international regulatory requirements, and maintaining alignment with established security frameworks, including NIST SP 800-171, NIST SP 800-53, ISO 27001, and other industry standards.
The ideal candidate brings a strong background in IT auditing, security controls, regulatory compliance, and risk assessments, along with the ability to interpret complex requirements, communicate findings to leadership, and independently drive compliance initiatives.
Contract Duration: 12 Months
Required Skills & Experience
- Demonstrated experience in IT auditing, Information Security Compliance, Governance, Risk & Compliance (GRC), or a closely related discipline.
- Strong knowledge of NIST SP 800-171 or comparable frameworks, such as NIST SP 800-53, NIST CSF, ISO 27001/27002, FedRAMP, PCI DSS, or CIS Critical Security Controls.
- Experience evaluating security controls, collecting and validating audit evidence, and supporting regulatory or industry compliance assessments.
- Ability to research, interpret, and apply cybersecurity regulations and translate findings into clear recommendations for leadership.
- Experience developing, interpreting, and maintaining information security policies, procedures, and compliance documentation.
- Working knowledge of information security principles, network architecture, cloud computing, risk management, and security control implementation.
- Strong written and verbal communication skills, with the ability to collaborate across technical teams, business stakeholders, and senior leadership.
- Self-motivated professional capable of independently managing priorities, driving initiatives, and delivering actionable results.
Desired Skills & Experience
- Previous experience supporting U.S. Government IT compliance requirements or government-regulated environments.
- Experience developing and maintaining System Security Plans (SSPs) and related compliance documentation.
- Project management experience coordinating cross-functional compliance and remediation initiatives.
- Familiarity with emerging AI technologies, including opportunities for automation and associated cybersecurity, governance, and compliance risks.
- Previous experience within the aviation industry.
What You Will Be Doing
Daily Responsibilities
- Support government cybersecurity compliance programs, ensuring alignment with applicable regulatory requirements and established security frameworks.
- Conduct IT compliance assessments, evaluate security controls, collect and validate audit evidence, and identify compliance gaps and remediation opportunities.
- Research and interpret evolving domestic and international cybersecurity regulations, providing actionable recommendations and summaries to senior leadership.
- Develop, maintain, and improve security policies, procedures, System Security Plans (SSPs), and compliance documentation to support audit readiness.
- Coordinate third-party risk assessments, respond to security questionnaires, and collaborate with internal stakeholders to address compliance requirements.
- Partner with Information Security, IT, and business teams to implement security controls, conduct risk assessments, and support remediation and continuous improvement initiatives.
- Support special compliance projects, evaluate emerging technologies and AI-related security risks, and identify opportunities to improve compliance processes through automation.