Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Federal Compliance Manager (FedRAMP): Documenting and implementing security control requirements for Figma's FedRAMP cloud environment with an accent on compliance audits, control validation, and risk remediation. Focus on leading FedRAMP ATO activities, maintaining System Security Plans, analyzing penetration testing and vulnerability results, and automating evidence collection.
Location: Remote in the United States or onsite at Figma hubs in San Francisco, CA or New York, NY.
Annual base salary: $153,000–$245,000 USD.
Company
Figma provides a collaborative design platform that helps teams brainstorm, prototype, translate designs into code, and iterate with AI in real time.
What you will do
- Document and implement FedRAMP cloud security control requirements with internal stakeholders and product engineering teams.
- Analyze and support remediation of security control reviews, penetration testing, and vulnerability scan findings.
- Contribute to Plans of Action and Milestones reporting for authorizing agencies.
- Coordinate with legal, sales, product, enterprise, 3PAO, sponsoring agency, and FedRAMP PMO stakeholders.
- Identify, escalate, and track technical and program risks through resolution.
- Develop automated capabilities for evidence collection, control validation, and process execution while maintaining technical security documentation.
Requirements
- 5+ years of hands-on experience in IT auditing and/or compliance.
- Recent hands-on experience with the FedRAMP Framework.
- Experience leading a Cloud Service Provider through a FedRAMP ATO process.
- Experience with SaaS-based audit and compliance.
- Experience with technologies hosted in cloud computing environments, such as AWS.
- Ability to work with security controls, audits, technical architecture, operational processes, and security protocols.
Nice to have
- Understanding of application security, infrastructure and cloud security, incident response, and security certifications.
- Hands-on experience with cloud computing technologies.
- Established connections in the FedRAMP industry and with government agencies.
- Familiarity with international regulatory compliance.
Culture & Benefits
- Health, dental, and vision coverage.
- Retirement benefits with company contributions.
- Parental leave, reproductive and family planning support, and mental health and wellness benefits.
- Paid time off, paid sick leave, holidays, and flexible PTO for eligible exempt employees.
- Equity, annual bonus eligibility, company recharge days, and possible cell phone, home internet, and lifestyle spending reimbursements.
Hiring process
- Video interviews require candidates to keep their cameras on.
- In-person onboarding is required after hiring.
- Reasonable accommodations are available throughout the application and interview process.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
11 дней назад
Vulnerability & Cloud Security Program Manager
180 000 - 220 000$
12 дней назад
Information Security Manager (Cybersecurity)
150 000 - 230 000$
9 дней назад
Head of Information Security/Compliance
175 000 - 220 000$
12 дней назад
Senior Security Operations Engineer (FedRAMP)
128 500 - 188 000$
11 дней назад
FedRAMP Senior Consultant (Cybersecurity)
85 910 - 162 890$
11 дней назад