Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cybersecurity Compliance Specialist  image - Rise Careers
Job details

Cybersecurity Compliance Specialist

Overview

Onebrief makes military planning seamless and represents a shift in paradigm for future military decisions. It is an all-in-one tool that supports both the creative and process-oriented aspects of military planning. In Onebrief, planners use maps, boards, diagrams, timelines, slides and written products to create their plans—all while sharing a common database. Everything stays in sync, in real time. Our approach has been refined and validated through hundreds of user experiments.

Our product is currently in broad use at 8 of the largest military headquarters in the world. 3 of the 4 biggest operational plans in the US are currently built with Onebrief. Last year, we achieved 100% gross retention and 158% net retention—our revenue grew 4x and reached double-digit millions. We are backed by Y Combinator (S21) and top-tier VCs, including Caffeinated Capital (Affirm, Docker, Notion, and more) and Human Capital (Anduril, Brex, Snowflake, and more), and have raised a total of $53M in venture capital. Our elite team combines the best of tech and military talent, including education and experience at Google, Twitter, Adobe, MIT, Harvard, Special Operations, TOPGUN, and more.

What you will achieve

You will hit the ground running, applying your experience with Department of Defense ATOs to ensure that Onebrief compliance evidence is created, organized in our GRC platform, and regularly tested to ensure we can obtain and/or maintain our CTFs, ATOs, and FedRAMP High Authorization. You will work with our customers and provide documentation to DoD systems (i.e. eMASS) to support these efforts.

About You

This is an opportunity for candidates who are located in DC, Tampa, Hawaii, or San Diego, and have a TS clearance with SCI eligibility. You will primarily work remotely, but will, at times, be called upon to support our operations on-site.

The ideal candidate will have experience working in eMASS and commercial GRC platforms.

Qualifications

  • 7+ years in Cybersecurity Compliance and related roles

  • Certifications:

    • CISSP, CISM, CISSO, CPTE, CySA+, FITSP-A, GCSA, CISA, ISSEP, GSLC, or GSNA

  • Comprehensive knowledge of NIST 800-53 and NIST 800-171 controls, including acceptable documentation standards.

  • Familiarity with STIGs/SRGs and the OWASP Top 10.

  • Exceptional writing, reporting, and organizational skills.

    Must-Have Skills and Qualifications:

    • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field

    • Hands-on expertise with NIST 800-53 Compliance

    • TS Clearance with SCI Eligibility

About Us

Onebrief makes military planning seamless and represents a shift in paradigm for future military decisions. It is an all-in-one tool that supports both the creative and process-oriented aspects of military planning. In Onebrief, planners use maps, boards, diagrams, timelines, slides and written products to create their plans—all while sharing a common database. Everything stays in sync, in real time. Our approach has been refined and validated through hundreds of user experiments.

Our product is currently in broad use at 8 of the largest military headquarters in the world. 3 of the 4 biggest operational plans in the US are currently built with Onebrief. Last year, we achieved 100% gross retention and 158% net retention—our revenue grew 4x and reached double-digit millions. We are backed by Y Combinator (S21) and top-tier VCs, including Caffeinated Capital (Affirm, Docker, Notion, and more) and Human Capital (Anduril, Brex, Snowflake, and more), and have raised a total of $53M in venture capital. Our elite team combines the best of tech and military talent, including education and experience at Google, Twitter, Adobe, MIT, Harvard, Special Operations, TOPGUN, and more.

Onebrief Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Onebrief DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Onebrief
Onebrief CEO photo
Unknown name
Approve of CEO

Average salary estimate

$115000 / YEARLY (est.)
min
max
$100000K
$130000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cybersecurity Compliance Specialist , Onebrief

Join Onebrief in San Diego as a Cybersecurity Compliance Specialist and be part of a revolutionary shift in military planning. At Onebrief, we’re not just providing tools — we’re innovating how military strategies are developed and executed. You'll dive into your role immediately, leveraging your extensive knowledge of Department of Defense Authorizations to create organized compliance evidence in our Governance, Risk, and Compliance (GRC) platform. Your role will ensure that all documentation necessary for maintaining CTFs, ATOs, and FedRAMP High Authorization is met, working closely with eMASS and various DoD systems. Onebrief isn’t just any company; we’re a fast-growing startup backed by Y Combinator and prestigious VCs, committed to making military operations fluent in modern technology. You’ll collaborate with our elite team, comprised of both tech and military veterans, and contribute to a product that's already being utilized at major military HQs across the globe. Your expertise will not only support our operations but also challenge you to reach new heights in compliance and cybersecurity. If you’re ready to impact modern military planning and have the required credentials like a TS clearance and relevant certifications, your future at Onebrief awaits!

Frequently Asked Questions (FAQs) for Cybersecurity Compliance Specialist Role at Onebrief
What does a Cybersecurity Compliance Specialist at Onebrief do?

A Cybersecurity Compliance Specialist at Onebrief is responsible for ensuring compliance with cybersecurity regulations and standards, particularly for the Department of Defense. This involves creating and organizing compliance documentation in our GRC platform, maintaining CTFs, ATOs, and FedRAMP High Authorization. You will also interface with various DoD systems like eMASS to support compliance efforts.

Join Rise to see the full answer
What qualifications are needed for the Cybersecurity Compliance Specialist position at Onebrief?

To qualify for the Cybersecurity Compliance Specialist role at Onebrief, candidates should have at least 7 years of relevant cybersecurity experience, particularly in compliance and risk management. A Bachelor's degree in a related field is required, and certifications such as CISSP, CISM, or CISA are essential. Additionally, a TS clearance with SCI eligibility is mandatory.

Join Rise to see the full answer
How does Onebrief support military planning through the Cybersecurity Compliance Specialist role?

The Cybersecurity Compliance Specialist role at Onebrief plays a critical part in ensuring our tool is compliant with military standards, making planning more seamless. By maintaining compliance with appropriate controls like NIST 800-53, the specialist ensures the reliability and integrity of our planning systems, enabling military planners to operate more effectively.

Join Rise to see the full answer
What experience is beneficial for the Cybersecurity Compliance Specialist at Onebrief?

Experience in eMASS and commercial GRC platforms is particularly advantageous for a Cybersecurity Compliance Specialist at Onebrief. Furthermore, familiarity with NIST standards, STIGs/SRGs, and exceptional writing and reporting skills will significantly enhance your role in maintaining compliance and facilitating effective audits.

Join Rise to see the full answer
What are the benefits of working at Onebrief as a Cybersecurity Compliance Specialist?

Joining Onebrief means being part of an innovative team dedicated to transforming military planning. You’ll work alongside top-tier talent from prestigious companies, enjoy a supportive culture, and have the chance to significantly impact a fast-growing startup that’s backing by Y Combinator and recognized greatly across the industry.

Join Rise to see the full answer
Is remote work an option for the Cybersecurity Compliance Specialist at Onebrief?

Yes, the Cybersecurity Compliance Specialist position at Onebrief offers remote work opportunities. Although most tasks can be done remotely, there may be occasions to support on-site operations, particularly when collaboration with military clients requires your presence.

Join Rise to see the full answer
What are the career growth prospects for a Cybersecurity Compliance Specialist at Onebrief?

At Onebrief, the career growth prospects for a Cybersecurity Compliance Specialist are robust, with opportunities to expand your skill set, take on leadership roles, and engage in cutting-edge projects in compliance and cybersecurity. Our company’s rapid growth provides ample room for personal and professional development.

Join Rise to see the full answer
Common Interview Questions for Cybersecurity Compliance Specialist
Can you explain your experience with maintaining compliance for NIST 800-53?

In answering this question, highlight specific projects or roles where you successfully ensured compliance with NIST 800-53. Mention any tools or documentation processes you used, as well as the outcomes of your efforts, to demonstrate your ability to meet regulatory standards effectively.

Join Rise to see the full answer
What strategies do you use for documentation in GRC platforms?

Discuss your approach to documenting compliance evidence, focusing on organization, clarity, and accessibility. Mention the tools you’ve used, the importance of maintaining up-to-date records, and how you ensure compliance requirements are met efficiently and effectively.

Join Rise to see the full answer
How do you manage communication with DoD clients regarding compliance?

Emphasize the importance of clear communication and setting expectations with DoD clients. Share specific examples of how you’ve successfully navigated these interactions, maintained professionalism, and ensured all compliance needs are effectively communicated and met.

Join Rise to see the full answer
What are some challenges you’ve faced in cybersecurity compliance, and how did you overcome them?

This is an opportunity to demonstrate problem-solving skills. Detail a specific challenge related to compliance you faced, such as meeting tight deadlines or addressing regulatory updates, and explain the steps you took to navigate these challenges and ensure compliance.

Join Rise to see the full answer
Describe your familiarity with eMASS and its role in DoD compliance.

Provide a detailed explanation of your experience with eMASS, focusing on how you utilized it to support compliance efforts within the DoD. Share specific scenarios where you’ve managed documentation or led compliance initiatives using eMASS successfully.

Join Rise to see the full answer
Can you walk us through a typical process for handling an ATO?

In your response, outline the steps you take to secure an Authorization to Operate (ATO), including identifying necessary documentation, working with stakeholders for approvals, and any specific challenges you anticipate in the process. Provide a timeline and organizational strategies you would apply.

Join Rise to see the full answer
How do you keep up-to-date with the latest cybersecurity regulations and best practices?

Discuss your strategies for staying informed about cybersecurity trends and regulations, such as attending workshops, being part of professional organizations, or utilizing online platforms to follow updates. Mention how this knowledge has impacted your work in compliance.

Join Rise to see the full answer
What role does risk management play in your compliance strategy?

Risk management is crucial in compliance. Explain how you integrate risk assessment into your compliance efforts, the methods you use to identify potential risks, and how those assessments inform your compliance strategies for maintaining security standards.

Join Rise to see the full answer
What tools or software are you proficient in that aid in compliance?

List the tools you are familiar with that enhance your compliance efforts. You could mention GRC platforms, auditing software, or specific cybersecurity tools, and explain how these tools contribute to effective compliance management and reporting.

Join Rise to see the full answer
How do you ensure the documentation you provide meets acceptable standards?

Emphasize the importance of thoroughness and attention to detail in compliance documentation. Describe your methodology for verifying that all documentation aligns with regulatory requirements, including collaborative reviews and compliance checklists, ensuring a gold standard in compliance writing.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Onebrief Remote No location specified
Posted 15 hours ago
Photo of the Rise User
Posted 11 hours ago
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 8 days ago
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
ServiceNow Remote Salarpuria Sattva Knowledge City Knowledge City, Unit II, 17 to 10 Floor Survey No. 83/1, Serilingampally Mandal, Hyderabad, India
Posted 3 hours ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
Photo of the Rise User
Accenture Hybrid Chesapeake Beach, MD
Posted 8 days ago
Photo of the Rise User
Mindlance Hybrid Zebulon, NC
Posted 7 days ago
Photo of the Rise User
Posted 13 days ago
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Transparent & Candid
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
November 26, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!