Compliance Security Specialist for Aerospace Industry

3 days ago


Washington, United States ZipRecruiter Full time

Spire Global is at the forefront of cutting-edge technology, where innovation meets security. The company seeks a skilled Compliance Security Specialist to join its dynamic team, shaping the future of security and compliance in ambitious projects.

About the Role:

The ideal candidate will have in-depth knowledge of Export Administration Regulations (EAR), International Trafficking in Arms Regulations (ITAR), ISO 27001, and NIST 800-171. As a Compliance Security Specialist, you will play a crucial role in ensuring Spire's compliance with these regulations and standards, supporting the company's commitment to operating securely and responsibly in the global market.

Key Responsibilities:

  • Conduct thorough assessments and audits to ensure continued compliance with EAR/ITAR, ISO 27001, NIST 800-171, and any additional future security frameworks or contractual security requirements.
  • Operate Spire's Information Security Management System by outlining projects, executing workflows, and coordinating tasks with other teams as needed.
  • Design, implement, and manage GRC tools and technologies to streamline processes for risk assessment, compliance monitoring, and incident management, including development of automation tools and automating auditing tasks.
  • Develop and implement GRC and cybersecurity strategies and policies in line with regulatory and certification requirements.
  • Provide guidance and training to staff on compliance matters related to export controls and security standards.
  • Collaborate with cross-functional teams to address compliance issues and develop corrective action plans.
  • Work with Spire's Legal department to incorporate new legislative requirements into existing policies and procedures.
  • Monitor applicable cybersecurity regulations for changes and incorporate new requirements into existing policies and procedures.
  • Generate new documentation and maintain existing documentation such as stakeholder analyses, scope statements, risk assessment and treatment procedures, performance monitoring and measurement plans, etc.
  • Conduct risk assessments and develop risk mitigation strategies.
  • Prepare and submit compliance reports to regulatory agencies and internal stakeholders, including NIST SSPs and POAMs.
  • Participate in external and internal audits including gathering audit evidence both directly and indirectly through coordination with other teams.

Requirements:

  • Bachelor's degree in Information Security, Cyber Security, Computer Science, Computer Engineering, Software Development, or a related field, or equivalent experience in a relevant area.
  • Minimum of 3-5 years of hands-on technical experience in an IT, engineering, GRC, or security role, preferably in the aerospace, satellite, or Government industries.
  • In-depth knowledge of EAR, ITAR, ISO 27001, NIST 800-171, and NIST 800-53.
  • Professional certifications such as CISSP, CISA, CRISC, or similar are highly desirable.
  • Ability to automate security control, compliance, and configuration audits utilizing scripting such as bash, Python, Go, or similar.
  • Experience implementing and managing GRC tools and technologies, such as GRC platforms, SIEM solutions, and vulnerability management systems.
  • Experience reviewing risk analyses, drafting corrective action plans, and driving the risk treatment process.
  • Relevant experience working and communicating with internal and external systems and process auditors.
  • In-depth knowledge of security framework controls as they apply to public cloud (AWS preferred), hybrid, self-hosted, and SaaS environments.
  • Ability to transform and communicate organizational compliance requirements into internal engineering requirements for various teams including engineering and security.
  • Ability to partner with colleagues, independently manage and run complex projects, and prioritize efforts for risk reduction.
  • Excellent analytical and problem-solving skills.
  • Develop clear and concise written content.
  • Excellent project and task management skills, preferably using Jira.
  • Strong communication and interpersonal abilities.
  • Ability to work independently and as part of a team.

What We Offer:

  • A competitive salary range of $130,000–$170,000 USD per year, depending on location, skills, experience, and qualifications.
  • An annual equity awards program and employee benefits package.
  • A generous time off policy and education assistance program.
  • Access to US export-controlled software and/or technology may be required for this role.
  • A flexible work environment with a minimum of three days per week in office.

About Spire Global:

Spire Global is a space-to-cloud analytics company that owns and operates the largest multi-purpose constellation of satellites. Its proprietary data and algorithms provide the most advanced maritime, aviation, and weather tracking in the world.

We are proud to be an equal opportunity employer and committed to equal employment opportunity regardless of race, color, ancestry, national origin, gender, sexual orientation, marital status, disability, or veteran status.



  • Washington, United States TEPHRA Full time

    Job Title: ITAR/DFARS Compliance SpecialistAbout TEPHRA: As a leader in the Aerospace and Defense industry, TEPHRA is committed to delivering expert solutions that meet the unique needs of our clients. Our team of specialists is dedicated to building long-lasting relationships with our customers and partners.Salary: $160,000 - $200,000 per yearAbout the...


  • Washington, Washington, D.C., United States CARFAX Full time

    Job Summary:We are seeking an experienced Information Security Compliance Specialist to join our team at CARFAX. This role involves ensuring that our information systems and practices comply with applicable regulatory requirements, industry standards, and internal policies.Responsibilities:Conduct regular security assessments and audits to ensure compliance...


  • Washington, Washington, D.C., United States AEVEX Aerospace Full time

    Job Title: Advanced Operations SpecialistAt AEVEX Aerospace, we are seeking an experienced Advanced Operations Specialist to join our team. This is a challenging role that requires a unique blend of analytical and operational skills. The successful candidate will be responsible for supporting complex global operations against high-priority threats to U.S....


  • Washington, Washington, D.C., United States CARFAX Full time

    Job SummaryThe IT Security Compliance Analyst plays a crucial role in ensuring that CARFAX's information systems and practices comply with regulatory requirements, industry standards, and internal policies.This position involves assessing security controls, evaluating risk, conducting audits, and providing recommendations for improving the security posture...


  • Washington, Washington, D.C., United States U.S. Air Force Full time

    At the U.S. Air Force, we are seeking highly skilled Aerospace Medicine Specialists to join our team of dedicated professionals.About UsThe U.S. Air Force is a leading organization in aerospace medicine, providing cutting-edge education, training, and consultations to support the health and effectiveness of aircrew members and those who directly support...


  • Washington, Washington, D.C., United States AEVEX Aerospace Full time

    About the RoleAEVEX Aerospace is seeking a highly skilled Intelligence Operations Specialist to join our team in Northern Virginia. This role requires an active TS/SCI security clearance and Polygraph.Job SummaryWe are looking for a detail-oriented individual with experience managing or supporting Human Intelligence (HUMINT) operations or conducting...


  • Washington, Washington, D.C., United States AEVEX Aerospace Full time

    Company OverviewAEVEX Aerospace is a leading provider of full-spectrum aviation, remote sensing, and analysis solutions to support national security missions and partner nation needs worldwide.About the JobWe are seeking an experienced Intelligence Operations Specialist to join our team in Northern Virginia. This is a challenging role that requires strong...


  • Washington, United States TEPHRA Full time

    Description: Job Description: Client Partner is responsible for owning the P&L of the account assigned, Revenue Targets, Business growth across all the stakeholders, Positing Our Client services to the customer and enabling digital transformation lead growth. Client partner will be also responsible to drive CXOs relationship, will be business and digital...


  • Washington, Washington, D.C., United States Spire Full time

    Job OverviewWe are seeking a highly skilled Governance, Risk, and Compliance (GRC) Engineer to join our team at Spire. As a key member of our organization, you will play a crucial role in ensuring compliance with export regulations and security standards.About the RoleThe ideal candidate will have in-depth knowledge of EAR, ITAR, ISO 27001, and NIST 800-171,...


  • Washington, United States ZipRecruiter Full time

    Position SummaryVersar, Inc., is seeking a Senior Security Engineer (Compliance) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity countermeasures to strengthen DHS enterprise...


  • Washington, United States Versar Full time

    Position Summary Versar, Inc., is seeking a Senior Security Engineer (Compliance) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity countermeasures to strengthen DHS enterprise...


  • Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryVersar, Inc., is seeking a Senior Security Engineer (Compliance) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity countermeasures...


  • Washington, Washington, D.C., United States Hamdan Resources Full time

    Company OverviewHamdan Resources, LLC is a leading provider of industrial security services to the US Department of Defense (DoD). Our team of experts provides guidance and support on industrial security best practices, risk assessments, and mitigation strategies.Job DescriptionWe are seeking an experienced Industrial Security Policy Specialist to join our...


  • Washington, United States VERSAR, INC. Full time

    Position SummaryVersar, Inc., is seeking a Senior Security Engineer (Compliance) to support the Department of Homeland Security's Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity countermeasures to strengthen DHS enterprise and...


  • Washington, Washington, D.C., United States P-11 Security Inc Full time

    P-11 Security Inc is a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field. As a Senior Security Operations Specialist, you will specialize in Security in Depth (SiD) services, delivering an integrated suite of 360 Security Services, Cyber Security, and Information Technology...

  • Scanning Technician

    3 months ago


    Washington, United States AEVEX Aerospace Full time

    **If an acceptance offer is given, proof of vaccination is required. Must have an active TS/SCI clearance with Full Scope Poly and be crossover eligible.Intelligence Technical Specialist to provide document scanning support to the declassification program in the Warrenton, VA area. This position's primary responsibility is to support the digitization effort...


  • Washington, United States Norton Rose Fulbright Full time

    About the RoleWe are seeking a highly skilled Regulations, Investigations, Securities and Compliance Specialist to join our dynamic team. This is an excellent opportunity for a motivated professional to work with a prestigious global law firm and contribute significantly in their field.Job SummaryThis role offers a vibrant and impactful career within Norton...


  • Washington, United States ZipRecruiter Full time

    Improve Life on Earth with Data from SpaceWe are at the forefront of cutting-edge technology, where innovation meets security.As a GRC Compliance Specialist at Spire Global, you will play a crucial role in ensuring our compliance with export controls and security standards. You will be responsible for conducting thorough assessments and audits to ensure...

  • Targeting Analyst

    3 months ago


    Washington, United States AEVEX Aerospace Full time

    Matrix International, Inc. is seeking mission oriented, experienced candidates for the position of Targeting Analyst in Northern Virginia. The position requires an active TS/SCI security clearance and Polygraph. The position requires an extensive knowledge of the Intelligence Community (IC) and its objectives, and preference will be given to candidates with...


  • Washington, United States Vets Hired Full time

    Responsibilities:Conduct Security Assessment and Authorization (A&A) support for IT systemsConduct Security A&A documentation reviewUpdate IT Security Compliance SOPsMonitor and report on FISMA Compliance activitiesConduct Plan of Action and Milestone (POA&M) management and quality control activities and ensure accuracy of the organization's Security A&A...