RAMP Program Manager
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
RAMP Program Manager (Compliance): Lead execution and delivery of GovRAMP, StateRAMP, and FedRAMP compliance programs with an accent on planning, cross-functional coordination, and continuous monitoring operations. Focus on driving authorization workflows, managing evidence artifacts, POA&Ms, and auditor engagements to ensure on-time, high-quality delivery.
Location: Remote - US. Partner with US-based leadership during assessments and status reporting. Stakeholder management across time zones.
Company
builds a trusted data foundation for health plans, enabling better decisions, GenAI use cases, and improved outcomes in healthcare.
What you will do
- Own end-to-end program plans for GovRAMP, StateRAMP, and FedRAMP, including schedules, milestones, dependencies, and risks.
- Coordinate readiness assessments, gap remediation, 3PAO engagements, authorization reviews, and continuous monitoring.
- Manage production, review, and lifecycle of artifacts like SSP, control narratives, diagrams, and inventories.
- Serve as coordination point for assessors, scheduling walkthroughs, evidence reviews, and interviews.
- Own POA&M tracking, remediation milestones, progress validation, and risk escalation.
- Operationalize monthly/quarterly continuous monitoring for vulnerabilities, patching, access reviews, and attestations.
Requirements
- 5+ years in program management, ideally in compliance, security, or regulatory initiatives.
- Experience with GovRAMP, StateRAMP, FedRAMP (Moderate preferred), or related frameworks.
- Strong understanding of NIST SP 800-53 (implementation knowledge required).
- Demonstrated ability to manage cross-functional global teams and coordinate audits/assessments.
- Excellent written/verbal communication for US stakeholders.
- Program planning rigor, stakeholder management across time zones, escalation, and documentation discipline.
Nice to have
- Experience with HIPAA, HITRUST, SOC2.
- Prior work with US auditors/3PAOs.
- SaaS/cloud/data-platform experience.
- Familiarity with AWS/Azure (Gov/commercial).
- Jira, Confluence, GRC platforms (Hyperproof, Archer).
- US public-sector customer support.
Culture & Benefits
- Unlimited paid time off.
- Work from anywhere with flexibility.
- Comprehensive health coverage with multiple plans.
- Equity for every employee.
- Growth-focused environment with development support.
- Home office setup and monthly cell phone allowances.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →