Назад
Company hidden
11 часов назад

Lead FedRAMP Security Engineer (FedRAMP)

93 500 - 182 850$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead FedRAMP Security Engineer (FedRAMP): Leading enterprise-wide implementation and operation of FedRAMP security controls across authorized cloud environments with an accent on AWS GovCloud, NIST 800-53, centralized logging, vulnerability management, and security monitoring. Focus on translating compliance requirements into evidence-ready technical controls, supporting continuous monitoring, and coordinating audits, incident response, and remediation across engineering, compliance, auditors, and government stakeholders.

Location: Remote, United States

Salary: $93,500–$182,850 USD per year

Company

hirify.global provides an AI-powered cyber resilience platform for data protection, security, intelligence, and recovery across workloads and cloud environments.

What you will do

  • Lead the implementation and ongoing operation of FedRAMP security controls across cloud infrastructure, security tooling, logging, vulnerability management, and incident response.
  • Own the technical health and coverage of EDR, vulnerability scanning, CSPM, container scanning, SIEM ingestion, alerting, and evidence-producing workflows.
  • Design, maintain, and validate centralized log ingestion from cloud platforms, operating systems, applications, containers, and security tools into the SIEM.
  • Drive vulnerability triage, remediation tracking, risk reduction reporting, and POA&M inputs with engineering, infrastructure, compliance, and vulnerability management teams.
  • Develop technical runbooks, SOPs, control evidence, and operational procedures for FedRAMP security operations.
  • Support continuous monitoring deliverables and serve as a senior technical contact for FedRAMP audits, 3PAO assessments, agency reviews, and government stakeholders.

Requirements

  • 8+ years of experience in cloud security, security engineering, infrastructure security, security operations, or a related technical security role.
  • 4+ years of hands-on experience supporting or operating FedRAMP-authorized or authorization-boundary cloud environments, preferably at Moderate or High impact levels.
  • Strong knowledge of FedRAMP, NIST SP 800-53, continuous monitoring, POA&M management, control implementation, and audit evidence expectations.
  • Hands-on experience with AWS GovCloud and commercial AWS environments; Kubernetes, containers, EKS, Lambda, and cloud-native security controls are strongly preferred.
  • Experience operating or integrating EDR, SIEM, vulnerability scanning, container scanning, CSPM, logging, alerting, and security monitoring technologies, including CrowdStrike EDR, Cloud Security, and NG-SIEM.
  • Ability to translate FedRAMP requirements into technical designs, operational procedures, evidence-ready artifacts, and validated controls while coordinating remediation, incident response, and audits.

Nice to have

  • CISSP, CCSP, AWS Security Specialty, CISM, CISA, Security+, or a similar certification.
  • Experience with Moderate or High impact FedRAMP environments.

Culture & Benefits

  • Continuous professional development and product training.
  • Career growth and advancement opportunities.
  • Inclusive company culture.
  • Comprehensive global benefits package.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →