Unknown Company

Cybersecurity Compliance Manager

goleta, ca • Posted 4 days ago
Onsite Contract General

Cybersecurity Compliance ManagerU.S. Citizenship Required. Ability to qualify for a US Department of Defense TOP SECRET security clearance required.This position is in-person.Toyon is looking for a highly skilled and motivated Cybersecurity Compliance Manager to join our Security team. The ideal candidate will have experience in managing cybersecurity programs in the defense industry and possess strong knowledge of the regulatory requirements of the NIST SP 800-171.

The role requires hands-on technical expertise, strong analytical skills, and the ability to work well collaboratively with a team. Applicant will be responsible for security assessment readiness and ongoing compliance with NIST SP 800-171 CMMC requirements across the enterprise. The Cybersecurity Compliance Manager will work with Security and IT teams to ensure that recurring tasks, evidence collection, and reporting obligations in the System Security Plan (SSP) are completed on schedule. This work will involve hands-on configuration of systems, development of security compliance guidelines, and collaboration on system design.Responsibilities:Develop, implement, and maintain the organization's cybersecurity compliance programProvide guidance and direction to the IT Team in relation to cybersecurity topics, encouraging efficient practicesImplement and validate technical security controls across systems including endpoint protection, firewalls, and audit logging mechanismsConduct regular audits of the organization's information systems to ensure all information systems meet relevant cybersecurity regulatory requirementsConduct host-based and network-based security assessments, including manual and automated vulnerability scanningConfigure and maintain secure baselines for Linux and Windows systems using tools like Group Policy, Ansible, or similar configuration management platformsParticipation in the Configuration Management BoardPerform select technical tasks in Active Directory and Microsoft 365 to support compliance (e.g., account reviews, group policy audits, password/lockout policy checks)Write and maintain automation scripts to support compliance monitoring, log aggregation, and remediation workflowsPerform log correlation and security event analysis using tools like Splunk, Elastic Stack, or similar SIEM solutionsAssist in the creation of allowable and disallowable lists for enterprise softwareDevelop detailed incident response plans in the event of a cybersecurity breach or attackLead technical root cause analysis and remediation of gaps or compliance audit findingSupport staff awareness and training initiatives to reinforce compliance responsibilities across departmentsTrack subcontractor Cybersecurity compliance, and advise management on applicable subcontractor CMMC compliance flow downPrepare and maintain detailed documentation, including Security Plans (SSPs), Policies and Procedures, Plans of Action and Milestones (POA&Ms), and other required artifactsRequirements:5+ years of experience and a bachelor's or advanced degree in Cybersecurity, Computer Science, Computer Engineering, or a related field. Additional experience will be considered in lieu of a degree.Leadership experience and capacity to act as an agent of changeProblem-solving and analytical skillsExcellent written and verbal communication skills, with the ability to clearly articulate technical information to both technical and non-technical audiencesStrong understanding of NIST SP 800-171, CMMC, and DoD contractor cybersecurity best practicesExperience with compliance tracking tools, ticketing systems, and evidence management platformsHands-on technical experience with Active Directory, Microsoft 365, and endpoint/server security configurationProficiency in both Linux and Windows operating systemsExperience with the configuration, security hardening, and/or troubleshooting of network hardwareProficiency with log management/aggregation platforms such as SplunkWe Offer an Exceptional Employee Benefits Package!Competitive Industry Pay100% Employer-Paid Medical Insurance PremiumHSA with Employer ContributionsDental and Vision Coverage OptionsPaid HolidaysPaid Vacation and Sick leaveCompany Funded 401(k) and Profit Sharing PlansEmployee Stock Ownership Plan (ESOP)Life and Disability InsurancePaid Parental LeaveDiscretionary Bonus EligibilityThe annual pay range for the Cybersecurity Compliance Manager position is $135,000 to $185,000.Equal Opportunity Employer including Disability and VeteransApplicant Privacy NoticeLearn more about our company in our latest video, We are Toyon.The application window for this posting will remain open until the position is filled.Ref #2662-I

Back to Job Search