Associate, Compliance Advisor
Quzara LLC
full-remotemidpermanentsecurityother United States 10 days ago via LinkedIn
See how well this job matches your profile
Sign up to get an AI match score and generate a tailored application in seconds.
Get your match scoreTags
FedRAMPNIST RMFNIST SP 800-53FISMADoD IL4/IL5Security Assessment & Authorization (SA&A)Authorization to Operate (ATO)Continuous Monitoring (ConMon)POA&MCompliance Documentation
About the role
Role Overview
The Associate, Compliance Advisor supports Quzara’s cybersecurity advisory practice by assisting federal and commercial clients with implementing, maintaining, and assessing security and compliance programs. The role focuses on Security Assessment & Authorization (SA&A), Continuous Monitoring (ConMon), and governance initiatives across frameworks including FedRAMP, NIST RMF, FISMA, and DoD IL4/5.
Responsibilities
- Coordinate and track Authorization to Operate (ATO) documentation and authorization packages
- Perform compliance gap assessments and identify risks across customer cloud and hybrid environments
- Validate implementation of technical, operational, and management security controls with engineering teams
- Conduct vulnerability and compliance assessments, analyze scan results, and recommend remediation
- Audit security controls to ensure compliance with FedRAMP, NIST RMF, FISMA, and DoD IL4/5 (and other governance requirements)
- Manage and track POA&M (Plans of Action & Milestones), including remediation status and risk reduction reporting
- Support Continuous Monitoring by reviewing evidence such as security documentation, scan results, and logs
- Develop and maintain security/compliance documentation, including:
- System Security Plans (SSPs)
- Standard Operating Procedures (SOPs)
- Security policies, procedures, and technical implementation documentation
- Interview subject matter experts to gather information for compliance artifacts
- Coordinate onsite/remote security assessments with internal stakeholders, customers, and external auditors
- Develop compliance metrics, dashboards, and program status reporting
- Support proposal development and technical responses aligned to regulatory requirements
- Produce compliance deliverables with accurate representation of legal, administrative, physical, and technical security controls within the risk management framework
- Create technical diagrams/illustrations using Microsoft Visio or similar tools
Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field
- 1–3 years experience supporting cybersecurity compliance, governance, risk management, or security assessment in federal or regulated environments
- Working knowledge of:
- FedRAMP
- NIST SP 800-53 / NIST RMF (Risk Management Framework)
- FISMA
- DoD IL4/IL5 (preferred)
- Preferred experience with SA&A and ATO activities
- Experience developing/maintaining security documentation (SSPs, SOPs, policies, procedures)
- Proficiency with vulnerability/compliance scanning tools (text truncated)
Work Details
- Full-time, salaried exempt
- Remote; standard business hours Mon–Fri 8:30 AM–5:30 PM with possible additional time as needed
Scraped 7/16/2026