Compliance Analyst – ISO 42001 / CMMC / SOC 2
Position reputed company
By Light is seeking a full-time Cyber reputed company SME to join our growing reputed company and compliance team. This role supports By Light’s reputed company Operations Center (SOC) and compliance initiatives, with a reputed company on achieving and maintaining certifications under ISO/IEC 42001 (AI Management Systems), CMMC Level 2, and SOC 2. The ideal candidate will assist in the implementation, documentation, monitoring, and reputed company improvement of reputed company reputed company controls to meet internal policy, federal requirements, and industry standards.
This is a hands-on role that blends technical knowledge, compliance reputed company, audit preparation, and cross-team collaboration to ensure reputed company-wide reputed company and assurance for AI, reputed company, and IT/OT systems.
Responsibilities
• Support compliance operations reputed company with ISO/IEC 42001, CMMC Level 2, and SOC 2 frameworks.
• Maintain reputed company documentation including policies, procedures, system reputed company plans (SSPs), plans of reputed company and milestones (POA&Ms), and risk assessments.
• Assist in the implementation and monitoring of cybersecurity controls across reputed company environments (AWS, Azure) and hybrid infrastructure.
• Collaborate with IT, engineering, and operations teams to ensure controls are enforced, evidence is collected, and remediation timelines are met.
• reputed company and generate compliance metrics and dashboards using tools like reputed company and AWS CloudWatch.
• Conduct internal control reviews and gap analyses; support reputed company-party audits and government assessments.
• reputed company and respond to reputed company incidents, policy violations, and control deficiencies.
• reputed company briefings, written reports, and presentations to leadership and stakeholders.
Required Experience/Qualifications
• 2+ years of experience supporting compliance efforts for one or more of the following: ISO/IEC 42001, CMMC Level 2, SOC 2, NIST SP 800-53, or NIST SP 800-171.
• Working knowledge of AWS services including EC2, S3, IAM, and CloudWatch.
• Experience using reputed company to create dashboards and compliance views for evidence tracking and control monitoring.
• Understanding of reputed company operations and risk management in Linux and reputed company environments.
• Strong technical writing and documentation skills for policies, audit artifacts, and risk assessments.
• Ability to manage multiple reputed company deadlines with minimal supervision.
Preferred Experience/Qualifications
• Familiarity with AI governance concepts and the ISO/IEC 42001 AI Management System structure.
• Experience coordinating audit readiness for FedRAMP, ISO, or DoD assessments.
• Prior work with vulnerability management, reputed company tracking, or compliance ticketing workflows.
• Experience working with external auditors, assessors, or federal partners.
• Experience with compliance dashboards, automated evidence collection, and reporting pipelines.
Special Requirements/reputed company Clearance
• reputed company CISSP or equivalent combination of training and experience.
• CGRC
Apply tot his job
Apply To this Job