Compliance Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

CyberSheath · 1 week ago

Compliance Engineer

CyberSheath Services International LLC is a rapidly growing Managed Services Provider focused on CMMC Compliance and Cybersecurity services for the Defense Industrial Base. The CMMC Compliance Engineer will design, implement, and maintain data protection controls across Microsoft 365 and Azure, ensuring compliance with CMMC Level 2 and NIST 800-171 requirements.

Information Technology

Responsibilities

Design, deploy, and manage Microsoft Purview Data Loss Prevention (DLP) policies across Exchange Online, SharePoint Online, OneDrive, Teams, and endpoint workloads
Implement and maintain Microsoft Purview sensitivity labels, including label taxonomy, protection settings, encryption, and user experience alignment
Configure and enforce auto-labeling and trainable classifiers to identify and protect CUI, export-controlled data, and other regulated data types
Integrate DLP and labeling controls with Conditional Access, endpoint controls, and Defender workloads to support defense-in-depth
Tune DLP policies to balance compliance enforcement with business usability, minimizing false positives while maintaining audit integrity
Support audit readiness and evidence collection, including documentation of DLP configurations, labeling schemas, policy enforcement, and control mappings to NIST 800-171 and CMMC practices
Collaborate with compliance, security operations, and engineering teams to remediate data handling gaps identified through assessments, audits, or incident response activities

Qualification

Microsoft Purview DLPCMMC Level 2NIST 800-171Sensitivity labelsData protection controlsCompliance auditsCollaborationProblem-solvingSelf-motivated

Required

Hands-on experience implementing Microsoft Purview DLP in regulated or compliance-driven environments
Practical experience with sensitivity labels, encryption, content marking, and access restrictions
Experience protecting CUI or similarly regulated data within Microsoft 365
Strong understanding of how DLP and information protection map to CMMC Level 2 / NIST 800-171 requirements
Experience supporting compliance audits or assessments with technical evidence and configuration artifacts

Preferred

Experience in GCC or GCC High Microsoft environments
Familiarity with Endpoint DLP, Insider Risk Management, or Information Governance features
Experience integrating DLP with Defender for Endpoint, Microsoft Sentinel, or SOAR workflows
Background working with DoD contractors or highly regulated industries

Company

CyberSheath

twittertwittertwitter
company-logo
CyberSheath is one of the industry’s few one-stop cybersecurity compliance service providers, going beyond assessment and software licensing to solve the whole problem.

Funding

Current Stage
Growth Stage
Total Funding
unknown
Key Investors
Lightview Capital
2024-05-22Acquired
2021-12-14Private Equity

Leadership Team

leader-logo
Emile Sayegh
Chief Executive Officer
linkedin
Company data provided by crunchbase