Technical Assurance Lead
Core
Lead security compliance and authorization programs for public sector and commercial AI infrastructure products, ensuring adherence to rigorous government and industry standards.
Role type
Senior GRC/Security Compliance Lead (Individual Contributor)
Builds
Region-specific authorizations, certifications, and customer assurance outcomes for AI data and infrastructure products.
Domain
AI Infrastructure / Public Sector Security / GRC
Deliverable
client delivery
Required skills
US Top Secret security clearance, IAT Level 2 certification, FedRAMP HIGH, DoD SRG IL4/IL5/IL6, NIST 800-53/800-171, CMMC, RMF, cloud security risk assessment, STIG implementation, vulnerability management, control mapping, gap analysis, evidence collection, ATO package creation, external auditor coordination, cross-functional control implementation, project management, cloud architecture assessment (AWS/Azure/GCP), regulatory change advisory.
Preferred skills
CISSP, CISM, CISA, ISO 27001 Lead Auditor, ISO 42001 Internal Auditor, CCSP, experience at high-growth tech companies, experience with SOC 2, ISO 9001, ISO 42001.
Technologies
eMASS, Xacta, ACAS
Responsibilities
Lead public sector compliance programs (FedRAMP, DoD SRG, NIST, CMMC, RMF) including controls mapping, gap analysis, evidence collection, and ATO packages; oversee Security Risk Management A&A processes including cloud risk assessments, POAM development, and vulnerability management; drive cross-functional control implementation with product, engineering, and legal teams; manage external relationships with auditors and regulatory counterparts; maintain security documentation and GRC tooling; lead compliance reviews for new products and advise on emerging regulatory requirements.
Seniority
Senior, hands-on IC