Cybersecurity Compliance Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

Gentex Corporation · 3 months ago

Cybersecurity Compliance Manager

Gentex Corporation is a global leader in personal protection and situational awareness solutions. The Cybersecurity Compliance Manager plays a critical role in ensuring adherence to regulatory, contractual, and DoD cybersecurity requirements while handling sensitive data and maintaining compliance with frameworks like CMMC 2.0.

AutomotiveElectronicsHardwareManufacturingSoftwareSustainability
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Ensure adherence to frameworks like CMMC, NIST
Create and enforce cybersecurity policies and procedures
Identify, assess, and mitigate cybersecurity risks
Prepare for and manage internal and external audits
Maintain SSPs, POA&Ms, IRPs, and other compliance-related documents
Collaborate on incident response and ensure regulatory reporting
Educate employees on compliance requirements and best practices
Work with internal and external stakeholders to address compliance concerns
Monitor compliance posture and update controls as needed
Provide strategic guidance and lead compliance initiatives

Qualification

CISSPCISMCMMC 2.0NIST SP 800-171ISO 27001GDPRHIPAASOXSIEMVulnerability ScannersEDR toolsPAM toolsConfiguration ManagementIT Infrastructure KnowledgeLeadershipCommunication SkillsCollaborationProblem-Solving

Required

Bachelor's degree required
Certifications CISSP, CISM, or CCP
Minimum 5–10 years of experience in cybersecurity, IT governance, risk management, or compliance
Minimum 3–5 years of direct experience in managing compliance programs or audits
Experience in industries with strict regulatory requirements, such as defense contracting, healthcare, finance, or government
Familiarity with handling Controlled Unclassified Information (CUI) or other sensitive data is often required for roles tied to CMMC 2.0 compliance
Understanding of cybersecurity principles, including access control and identity management, network security and segmentation, data encryption (at rest and in transit), vulnerability management and patching, incident response and disaster recovery
Experience with tools and technologies used in cybersecurity, such as SIEM (e.g., Splunk, Microsoft Sentinel) for monitoring and logging, Vulnerability Scanners (e.g., Tenable Nessus, Qualys), Endpoint Detection and Response (EDR) tools (e.g., CrowdStrike, Microsoft Defender for Endpoint), Privileged Access Management (PAM) tools (e.g., PAM360, CyberArk), Configuration Management tools (e.g. Ansible, Puppet, Chef)
Familiarity with IT systems, including operating systems (Windows, Linux, macOS), cloud platforms (AWS, Azure, Google Cloud), networking concepts (firewalls, VPNs, VLANs, IDS/IPS)
Experience implementing and managing compliance with CMMC 2.0 (Cybersecurity Maturity Model Certification), NIST SP 800-171 (Protecting Controlled Unclassified Information), ISO 27001 (Information Security Management Systems), GDPR (General Data Protection Regulation), HIPAA (Health Insurance Portability and Accountability Act), SOX (Sarbanes-Oxley Act)
Experience preparing for and managing internal and external audits, including conducting gap analyses to identify compliance deficiencies, developing and maintaining System Security Plans (SSPs) and Plan of Action and Milestones (POA&M), working with third-party assessors (e.g., C3PAOs for CMMC certification)
Experience leading cross-functional teams, including IT, security, legal, and HR
Ability to manage compliance projects, including timelines, budgets, and resources
Experience mentoring and training team members on compliance requirements
Ability to communicate complex cybersecurity and compliance concepts to non-technical stakeholders, including executives and board members
Experience preparing compliance reports and presentations for leadership
Strong writing skills for creating policies, procedures, and documentation
Experience working with external stakeholders, such as auditors, regulators, and clients
Ability to collaborate across departments to ensure compliance is integrated into all business processes
Strong analytical and problem-solving skills to address compliance gaps and security risks
Ability to adapt to changing regulatory requirements and business needs

Benefits

Medical/dental coverages
401k
Paid time off
Excellent work schedules including a 9/80 work week

Company

Gentex Corporation

company-logo
Gentex is a global, high technology electronics company that is managed by engineers and others who understand the freedom and discipline that's required to run an entrepreneurial company.

Funding

Current Stage
Public Company
Total Funding
unknown
1981-12-31IPO

Leadership Team

F
Fred T Bauer
CEO & Founder
S
Steve Downing
President and Chief Executive Officer
linkedin
Company data provided by crunchbase