SpecterOps

IT Compliance Manager

United States

$140,000 – $160,000Compensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
NoVisa
Information Technology, CybersecurityIndustries

Requirements

Candidates must have 5+ years of experience in IT compliance, information security, or risk management, with strong knowledge of regulatory and standards frameworks such as ISO, SOC 2, GDPR, DORA, and FedRAMP. The ability to interpret complex compliance requirements and translate them into actionable controls, along with experience leading audits and compliance assessments, is essential. Exceptional communication, organizational, and project management skills are required. A Bachelor's degree in information technology, Cybersecurity, Business, or a related field and industry certifications like CISA, CRISC, CISSP, or CISM are preferred. Experience with cloud security compliance and GRC tools is also desirable.

Responsibilities

The IT Compliance Manager will develop, implement, and manage IT solutions to ensure adherence with compliance frameworks, cybersecurity best practices, and industry regulations. This role involves leading internal and external IT audits, managing third-party risk assessments, and collaborating with IT, Legal, Risk, and Security teams. Responsibilities include monitoring and reporting on compliance posture, establishing and maintaining IT security policies, and conducting gap analyses and risk assessments. The manager will also prepare compliance documentation, educate stakeholders on security best practices, and ensure timely remediation of findings.

Skills

IT Compliance
Risk Assessments
Audits
Compliance Strategies
Information Security
Data Protection
ISO 27001
GDPR
SOC 2
Cybersecurity
Third-Party Risk Management
Vendor Compliance
IT Security Policies
Gap Analysis
Remediation Plans

SpecterOps

Cybersecurity services for threat defense

About SpecterOps

SpecterOps provides cybersecurity services that help organizations defend against advanced cyber threats. Their main services include adversary simulation, penetration testing, hunt operations, and breach assessments, which test and improve an organization's security measures. They also offer specialized tools like BloodHound and PowerForensics, along with training programs to educate clients on the latest tactics used by cyber adversaries. SpecterOps stands out by combining high-level services with proprietary tools and training, aiming to enhance the security posture of both commercial businesses and government agencies.

Alexandria, VirginiaHeadquarters
2017Year Founded
$74.4MTotal Funding
EARLY_VCCompany Stage
CybersecurityIndustries
51-200Employees

Benefits

Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Unlimited Paid Time Off
Flexible Work Hours
Paid Holidays
401(k) Retirement Plan
401(k) Company Match
Stock Options
Home Office Stipend
Phone/Internet Stipend
Professional Development Budget
Family Planning Benefits

Risks

Increased competition from companies like XM Cyber may challenge SpecterOps' market share.
Over-reliance on government contracts poses risks if government spending changes.
Rapid cyber threat evolution may outpace SpecterOps' tool and training development.

Differentiation

SpecterOps offers unique adversary simulation services mimicking real-world attacker tactics.
Their BloodHound tool identifies attack paths in Active Directory environments effectively.
SpecterOps provides advanced adversary TTPs training, enhancing client defense capabilities.

Upsides

SpecterOps received FedRAMP High Authorization, expanding access to federal government contracts.
Kevin Mandia's appointment as chair enhances SpecterOps' credibility and strategic direction.
The launch of a channel partner program broadens SpecterOps' market reach and service delivery.

Land your dream remote job 3x faster with AI