Назад
16 дней назад

Federal Compliance Manager (FedRAMP)

153 000 - 245 000$
Формат работы
remote (только USA)/onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Federal Compliance Manager (FedRAMP): Documenting and implementing security control requirements for Figma's FedRAMP cloud environment with an accent on compliance audits, control validation, and risk remediation. Focus on leading FedRAMP ATO activities, maintaining System Security Plans, analyzing penetration testing and vulnerability results, and automating evidence collection.

Location: Remote in the United States or onsite at Figma hubs in San Francisco, CA or New York, NY.

Annual base salary: $153,000–$245,000 USD.

Company

Figma provides a collaborative design platform that helps teams brainstorm, prototype, translate designs into code, and iterate with AI in real time.

What you will do

  • Document and implement FedRAMP cloud security control requirements with internal stakeholders and product engineering teams.
  • Analyze and support remediation of security control reviews, penetration testing, and vulnerability scan findings.
  • Contribute to Plans of Action and Milestones reporting for authorizing agencies.
  • Coordinate with legal, sales, product, enterprise, 3PAO, sponsoring agency, and FedRAMP PMO stakeholders.
  • Identify, escalate, and track technical and program risks through resolution.
  • Develop automated capabilities for evidence collection, control validation, and process execution while maintaining technical security documentation.

Requirements

  • 5+ years of hands-on experience in IT auditing and/or compliance.
  • Recent hands-on experience with the FedRAMP Framework.
  • Experience leading a Cloud Service Provider through a FedRAMP ATO process.
  • Experience with SaaS-based audit and compliance.
  • Experience with technologies hosted in cloud computing environments, such as AWS.
  • Ability to work with security controls, audits, technical architecture, operational processes, and security protocols.

Nice to have

  • Understanding of application security, infrastructure and cloud security, incident response, and security certifications.
  • Hands-on experience with cloud computing technologies.
  • Established connections in the FedRAMP industry and with government agencies.
  • Familiarity with international regulatory compliance.

Culture & Benefits

  • Health, dental, and vision coverage.
  • Retirement benefits with company contributions.
  • Parental leave, reproductive and family planning support, and mental health and wellness benefits.
  • Paid time off, paid sick leave, holidays, and flexible PTO for eligible exempt employees.
  • Equity, annual bonus eligibility, company recharge days, and possible cell phone, home internet, and lifestyle spending reimbursements.

Hiring process

  • Video interviews require candidates to keep their cameras on.
  • In-person onboarding is required after hiring.
  • Reasonable accommodations are available throughout the application and interview process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →