CyberSheath · 2 weeks ago
Compliance Engineer
CyberSheath Services International LLC is a rapidly growing Managed Services Provider focused on CMMC Compliance and Cybersecurity services for the Defense Industrial Base. The CMMC Compliance Engineer will design, implement, and maintain data protection controls across Microsoft 365 and Azure, ensuring compliance with CMMC Level 2 and NIST 800-171 requirements.
Information Technology
Responsibilities
Design, deploy, and manage Microsoft Purview Data Loss Prevention (DLP) policies across Exchange Online, SharePoint Online, OneDrive, Teams, and endpoint workloads
Implement and maintain Microsoft Purview sensitivity labels, including label taxonomy, protection settings, encryption, and user experience alignment
Configure and enforce auto-labeling and trainable classifiers to identify and protect CUI, export-controlled data, and other regulated data types
Integrate DLP and labeling controls with Conditional Access, endpoint controls, and Defender workloads to support defense-in-depth
Tune DLP policies to balance compliance enforcement with business usability, minimizing false positives while maintaining audit integrity
Support audit readiness and evidence collection, including documentation of DLP configurations, labeling schemas, policy enforcement, and control mappings to NIST 800-171 and CMMC practices
Collaborate with compliance, security operations, and engineering teams to remediate data handling gaps identified through assessments, audits, or incident response activities
Qualification
Required
Hands-on experience implementing Microsoft Purview DLP in regulated or compliance-driven environments
Practical experience with sensitivity labels, encryption, content marking, and access restrictions
Experience protecting CUI or similarly regulated data within Microsoft 365
Strong understanding of how DLP and information protection map to CMMC Level 2 / NIST 800-171 requirements
Experience supporting compliance audits or assessments with technical evidence and configuration artifacts
Preferred
Experience in GCC or GCC High Microsoft environments
Familiarity with Endpoint DLP, Insider Risk Management, or Information Governance features
Experience integrating DLP with Defender for Endpoint, Microsoft Sentinel, or SOAR workflows
Background working with DoD contractors or highly regulated industries
Company
CyberSheath
CyberSheath is one of the industry’s few one-stop cybersecurity compliance service providers, going beyond assessment and software licensing to solve the whole problem.
Funding
Current Stage
Growth StageTotal Funding
unknownKey Investors
Lightview Capital
2024-05-22Acquired
2021-12-14Private Equity
Recent News
2025-09-17
2025-08-21
Company data provided by crunchbase