Cybersecurity/Compliance
PARTNER COMPANY
HeiTech
ENGAGEMENT TYPE
Hybrid
LOCATION
DMV Area
Opportunity Description
Key Responsibilities:
Security Compliance & Policy Support
Assist with maintaining, organizing, reviewing, and updating security policies, procedures, SOPs, checklists, and related compliance documentation.
Support implementation and tracking of established security and compliance requirements.
Help ensure security procedures are documented, consistently followed, and updated as requirements or internal processes change.
Maintain organized records and supporting documentation for compliance activities, reviews, and
assessments.
Assist with identifying documentation gaps, process inconsistencies, and opportunities for improvement.
Support employee security awareness and compliance-related communications and training activities.
FSO & CMMC Program Support
Work with the FSO and IT leadership to support the continued development of the organization’s cybersecurity and security compliance program.
Assist with documenting and maintaining processes that support the company’s CMMC environment.
Help track security-related action items, documentation requirements, remediation activities, and program milestones.
Support preparation and organization of documentation needed for internal reviews, assessments, or audits.
Help develop repeatable, well-documented processes that strengthen the company’s overall security and compliance posture.
IT & Cybersecurity Support
Apply basic IT and cybersecurity knowledge to support security and compliance activities.
Assist with access-control documentation, account/access reviews, MFA and least-privilege practices, and other baseline security controls as assigned.
Support endpoint and asset documentation, security checklists, inventories, and related tracking.
Assist with basic security monitoring, documentation, and escalation of potential issues to appropriate IT or security personnel.
Work collaboratively with IT staff on security-related initiatives while continuing to build technical knowledge.
Process & Documentation
Create and maintain clear, accurate process documentation, trackers, reports, and status updates.
Follow established procedures carefully and take ownership of assigned tasks through completion.
Learn new security and compliance requirements and apply training to day-to-day responsibilities.
Manage multiple priorities while maintaining strong attention to detail, confidentiality, and accuracy.
Required Qualifications
Currently pursuing or recently completed an Associate’s or Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business/Compliance, or a related field.
Some experience, coursework, or demonstrated exposure to compliance, policies and procedures, audit support, security administration, or a related process-driven environment.
Basic understanding of IT and cybersecurity concepts.
Strong organizational skills with the ability to follow, document, and improve processes.
Excellent attention to detail and ability to handle sensitive or confidential information appropriately.
Strong written and verbal communication skills.
Self-motivated, dependable, trainable, and willing to take initiative while seeking guidance when needed.
CompTIA Security+
Preferred Qualifications
Exposure to cybersecurity frameworks, security controls, compliance programs, or CMMC concepts.
Familiarity with security policies, SOPs, audit/assessment documentation, or compliance tracking.
Basic knowledge of Microsoft 365, Windows environments, identity/access management, MFA, endpoint security, or related enterprise IT tools.
Coursework or certifications in cybersecurity or IT, such as Network+, CySA+, Microsoft SC-900 / SC-200, or AWS Certified Cloud are a plus but not required.
Experience working in a regulated, government contracting, or security-conscious environment is a plus.
Ideal Candidate
The strongest candidate will be process-oriented and comfortable working at the intersection of compliance, security, and basic IT. We are looking for someone who can learn quickly, take ownership of documentation and follow-through, and grow with the organization as we build a cybersecurity program around the FSO role and CMMC environment.
Work Conditions / Expectations
Part-time or full-time depending on business needs and availability.
Work arrangement may be on-site, hybrid, or remote depending on security and operational requirements.
Must be able to work collaboratively with IT, security, and corporate leadership and maintain confidentiality.
What You’ll Learn
Practical cybersecurity compliance and security program administration.
Policy, procedure, SOP, and security documentation management.
FSO-related security processes and the role of compliance within a government contracting environment.
CMMC program support, process development, documentation, and assessment readiness.
How IT operations, cybersecurity controls, and compliance requirements work together in an enterprise environment.
