Remote job
FedRAMP Compliance Program Manager
Job details
About this role
Role overview Drive the certification and compliance posture for a portfolio of cloud and SaaS products serving federal customers. The role partners with product, security, cloud, and engineering groups to plan, execute, and maintain FedRAMP authorization and ongoing continuous monitoring, using modern AI tooling to accelerate documentation and reporting. It's a senior, cross-functional program leadership position with direct exposure to executive stakeholders and federal regulatory frameworks.
Responsibilities - Build, execute, and maintain certification and compliance plans across cloud and SaaS offerings, from initial authorization through continuous monitoring. - Coordinate cross-functional workstreams covering scoping, critical path, resourcing, estimation, risk tracking, and solution quality. - Apply AI tools to streamline documentation review, reconcile controls against requirements, and produce compliance reporting with traceable action items. - Track project deliverables and milestones against business goals, providing clear status updates to leadership. - Offer technical guidance to engineering teams on solutions that satisfy federal security standards and regulatory obligations. - Run project meetings, capture detailed notes and action items, and drive follow-through to completion.
Requirements - Bachelor's or Master's degree in Computer Science, Computer Security, Information Systems, or related field; equivalent experience accepted. - At least 5 years of program management experience focused on cloud and SaaS certification, compliance, and security. - Hands-on knowledge of FedRAMP, NIST Cybersecurity Framework, SP 800-53, SP 800-171, CMMC, and DFARS. - One or more program management certifications such as PMP, ACP, PgMP, CSM, CSP, or equivalent. - Demonstrated success leading a FedRAMP authorization end-to-end in a large environment. - Strong written and verbal communication skills, with the ability to present to executive leadership, and comfort working independently or as part of a team.
Nice to have - Familiarity with software vulnerability management and CVE handling. - Cloud platform certifications in AWS, Azure, or GCP. - Experience with enterprise software development lifecycles and security, encryption, and privacy technologies.
Benefits and work setup - 100% remote position available anywhere in the US. - Role involves applying AI-assisted tooling across compliance workflows, with attention to responsible use in regulated environments.