GRC Analyst II - Maritime Defense jobs in United States
cer-icon
Apply on Employer Site
company-logo

Pole Star Defense · 21 hours ago

GRC Analyst II - Maritime Defense

Pole Star Defense is a leading provider of maritime domain awareness and security systems to the government sector. The GRC Analyst II is responsible for supporting the implementation and maintenance of Governance, Risk, and Compliance programs, ensuring adherence to various regulatory cybersecurity requirements.

AnalyticsInformation ServicesInformation TechnologyMilitary
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Support compliance activities and control implementation associated with CMMC Level 1 and Level 2, ISO 27001, ISO 9001, NIST SP 800-171, and NIST SP 800-53
Conduct internal audits, gap analyses, and readiness assessments across assigned compliance frameworks
Collect and maintain evidence demonstrating ongoing control effectiveness
Collaborate with IT and Security teams to remediate identified deficiencies and implement control improvements
Assist in developing, updating, and reviewing compliance documentation to ensure continued audit readiness
Identity & Access Management (IAM)
Support the IAM governance lifecycle, including user provisioning/deprovisioning, access reviews, entitlement certifications, and privileged access oversight
Ensure IAM processes meet CMMC, NIST SP 800-53 (AC, IA), and NIST SP 800-171 access control requirements
Work with IT and Security teams to improve IAM procedures, workflows, and documentation
Coordinate and manage corporate cybersecurity and compliance training programs in alignment with CMMC, NIST SP 800-53 (AT), and ISO training requirements
Administer annual and new-hire training, role-based training, and privileged user training
Support and track phishing awareness campaigns and other user-focused security initiatives
Maintain complete and accurate training records for internal and external audit purposes

Qualification

GovernanceRisk & ComplianceCMMC Level 1NIST SP 800-53ISO 27001IT auditIAM governanceRisk assessmentsAnalytical skillsCISACMMC RAOrganizational skillsWritten communication skills

Required

2–5 years of experience in Governance, Risk & Compliance, cybersecurity, IT audit, or IAM governance
Working knowledge of CMMC Level 1 and Level 2, NIST SP 800-53, NIST SP 800-171, ISO 27001, and ISO 9001
Experience conducting audits, risk assessments, control testing, and maintaining compliance documentation
Understanding of identity and access governance principles, including RBAC, least privilege, and access recertification processes
Strong analytical, organizational, and written communication skills
Bachelor's degree in cybersecurity, information technology, business administration, or a related field or equivalent experience

Preferred

CISA, CMMC RA
Ability to obtain DoD Security Clearance

Benefits

Medical insurance for employees and their dependents (Premiums are 100% covered by the Company)
Dental and Vision insurance for employees and their dependents (Premiums are 50% covered by the Company)
Life and Disability insurance, Company funded
20 days annual leave
5 days of Wellbeing leave
Up to a 5% 401k matching
Gym membership subsidy
PTO for Volunteer Day
Refer-a-friend recruitment bonus

Company

Pole Star Defense

twittertwittertwitter
company-logo
Pole Star Defense enhances maritime safety solutions by using geographical data.

Funding

Current Stage
Early Stage
Company data provided by crunchbase