Director, I.T. Compliance
Coreforcetech · Atlanta, GA · 2 wk ago
Full-time
Coreforce is an innovative technology company providing public safety organizations a comprehensive technology suite from dispatch to the courtroom. Coreforce delivers integrated technology designed to support public safety entities, regardless of organizational size. Our products—body cameras, in-car videos, mobile routers, and digital evidence systems—help public safety officers and first responders save lives, strengthen community trust, and enhance accountability.
Responsibilities
- Cross-Functional Program Leadership
- Act as the primary program manager for compliance across Coreforce, coordinating across IT, Security, Legal, Product, Finance, and Operations to plan and execute compliance programs on schedule.
- Serve as the connective tissue between departments that own compliance-relevant work, ensuring accountability, clear ownership, and consistent progress across initiatives.
- Build and maintain a master calendar of compliance obligations, audits, and certification renewals across the business.
- Driving New Compliance Initiatives
- Immediately begin and execute a program to obtain GovRAMP compliance, serving as the first major initiative in the role, with FedRAMP and other compliance initiatives to follow as the program matures.
- Identify gaps and emerging requirements across relevant frameworks (e.g., CJIS, FedRAMP, StateRAMP, GDPR, HIPAA, PCI DSS) and translate them into structured, actionable compliance initiatives.
- Build compliance projects from the ground up: define scope, milestones, resource needs, and success criteria for each initiative.
- Produce compliance project plans and business cases for review and approval by the executive leadership team, clearly articulating risk, cost, and timeline.
- Use, and drive the adoption of, AI tools and methods to accelerate certification efforts and reduce the manual burden of compliance and evidence collection for required audits.
- Upholding Existing Compliance Requirements
- Own the ongoing maintenance of existing compliance certifications and authorizations, ensuring continuous adherence and audit-readiness.
- Monitor control environments and compliance status across business units, escalating gaps or risks before they become findings.
- Maintain compliance documentation, policies, and evidence libraries required to support audits and assessments.
- Third-Party and Vendor Management
- Identify, evaluate, and engage third-party partners where needed—including auditors, assessors (e.g., FedRAMP 3PAOs), and specialized consultants—to execute compliance work.
- Manage third-party relationships and deliverables, ensuring external partners meet Coreforce's quality, timeline, and cost expectations.
- Own cost control, containment, and management across compliance initiatives and vendor engagements, ensuring programs are delivered within approved budgets.
- Partner with Legal and Procurement to ensure vendor agreements reflect appropriate compliance requirements and protections.
- Risk Management
- Support the identification, assessment, and mitigation of compliance-related risks across the business.
- Develop and track key risk and compliance metrics, bringing visibility to trends and emerging issues.
- Reporting and Executive Communication
- Prepare clear, executive-ready compliance project plans, status updates, and risk reports for the executive leadership team.
- Present compliance program performance, milestones, and open risks in a way that supports informed, timely decision-making at the leadership level.
Requirements
- Bachelor’s degree in a related field (e.g., Business, Information Technology, Legal Studies, or Risk Management); relevant advanced degree a plus.
- 7+ years of experience in compliance, risk, audit, or related program/project management roles, including experience driving cross-functional initiatives.
- Demonstrated experience managing compliance programs against frameworks such as CJIS, FedRAMP, StateRAMP, GDPR, HIPAA, or PCI DSS.
- A proven history of building compliance plans, successfully executing those plans to completion, and obtaining government-based security credentials and authorizations (e.g., FedRAMP ATO, StateRAMP authorization, CJIS compliance).
- Proven cost control, containment, and management skills, with experience keeping compliance programs and vendor engagements within budget.
- A proven history of executing compliance initiatives and obtaining authorizations within tight timelines, without sacrificing quality or completeness.
- Proven track record as a program or project manager, building project plans, managing timelines, and delivering cross-departmental initiatives on schedule.
- Experience sourcing, evaluating, and managing third-party auditors, assessors, or compliance consultants.
- Experience with multi-division, multi-product businesses is a plus.
Skills
- Project or program management certification (e.g., PMP) strongly preferred.
- Compliance or risk certifications (e.g., CCEP, CRISC, CISA) preferred.
- CJIS Security Awareness Certification, or FedRAMP/StateRAMP-related certifications, a strong plus.
- Additional certifications (e.g., CISSP, CISM, ITIL) are a plus but not required, given the program management focus of this role.
Benefits
- Flexible hybrid schedule.
- Free chef-inspired lunch Monday-Thursday.
- 15 PTO days + floating holiday.
- Competitive benefits: medical, dental, vision, 401(k).
- 401(k) matching per the terms of the 401(k) plan.
- Annual bonus and tuition reimbursement.
- Career growth in a fast-growing, mission-driven company.
- Collaborative, purpose-driven culture.