Haystack
← Back to Jobs
Remote
Other
SR

Compliance Specialist

SECURE RPO LLCLexington, MA🇺🇸United StatesPosted Sep 24, 2026

Why This Role Stands Out

This Compliance Specialist role offers significant growth within a reputable company and the chance to develop expertise in critical areas like NIST and CMMC. You'll thrive here if you have a keen eye for detail and a passion for ensuring regulatory adherence. Apply to leverage your skills in a dynamic, full-time contract position.

Quick Overview

Seniority
Mid Senior
Work mode
Remote
Location
Lexington, MA, United States
Posted
22 hours ago
AuditingComplianceHIPAARisk ManagementSAP

Job Description

Job Title: Compliance Specialist
Project Duration: 36 Months
Location: Lexington, MA (Onsite ) 
Duration: Full-Time Contract

Job Description
Position Overview
The IT Security Risk Auditor performs audits of classified and unclassified Information Systems (IS) to ensure that they are maintained in a compliant manner and follow applicable laws and government regulations, including National Industrial Security Program Operating Manual (NISPOM) guidelines regarding the protection of classified information systems, National Institute of Standards and Technology (NIST) standards and special publications, Cybersecurity Maturity Model Certification (CMMC), DCSA Assessment and Authorization Process Manual (DAAPM), and Laboratory Information System Security Procedures.

The position is responsible for maintaining and auditing programs to validate compliance with various government regulations and Laboratory Information Security policies. The role conducts comprehensive assessments of the management, operation, monitoring, and technical security controls employed within or inherited by Information Systems to determine the overall effectiveness of the controls, including whether controls are implemented correctly, operating as intended, and producing the desired outcome, with respect to meeting the security requirements of the Authorization to Operate (ATO) or other government regulation or contractual requirement for the system.
The position also requires the ability to conduct open-source and internal research to identify current threat indicators, exploits, and vulnerabilities.
Required Qualifications
Nice to have
Responsibilities
Work Arrangement
Clearance
Interview Process

Similar jobs