Senior GRC Advisor

Posted 2 days ago
$165k–195k / year
Remote
Full-Time
cloud-security
grc

Senior GRC Advisor

Fortreum is a trusted leader in cloud and cybersecurity services, ranked in the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). We provide independent, third-party and vendor-agnostic regulatory assessment and advisory services, coupled with advanced cybersecurity offensive and compliance technical services to our clients. Our comprehensive service portfolio includes regulatory compliance (FedRAMP, FISMA, SOC, ISO, HIPAA, CMMC, PCI) and technical security services (Penetration Testing, Red Teaming, Social Engineering, Attack Surface Analysis and others).

About Us

Working with Fortune 500 companies and leading cloud service providers, we've built our reputation on our service-delivery excellence and unwavering commitment to client success. Our rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry with a focus on our core values:

  • Quality matters most
  • Customer-driven mindset
  • Autonomy to do your job
  • Personal accountability/stewardship

The Opportunity

On our team, you will have the opportunity to work with the best and brightest in the field. Fortreum team members have supported the biggest cloud providers in the world, and you will have the opportunity to learn from the best. We are growing rapidly and are looking for candidates with a background in providing technical consulting for organizations seeking regulatory compliance such as FedRAMP, CMMC, SOC2, ISO, or PCI.

Key Responsibilities

This role will specialize in advising and assessing organizations that are progressing through various compliance and regulatory efforts. Specifically, you would:

  • Serve as a lead consultant for cloud service providers preparing for audit
  • Work closely with all members of the team supporting one or all of the following work activities
  • Interview client stakeholders to ascertain implementation of technical security controls
  • Draft detailed reports including deficiency findings
  • Visualize system architectures through authorization boundary and data flow diagrams
  • Advise clients on compliance requirements including potential solutions via leveraged IaaS, PaaS, external SaaS solutions, as well as internal tooling and system configurations
  • Develop technical content for website updates, whitepapers, and blog posts that can be used both internally and by our clients to assist them in evaluating/building out their security programs
  • Collaborate with delivery team members to drive customer satisfaction and meet project deliverables
Fortreum
Remote
View company profile
Share this job