Posts Tagged ‘ cybersecurity ’

FedRamp Security Compliance Manager – East Coast preferred.

Great opportunity to join the global leader in fighting financial cyber crime with cutting edge technology. This position will be remote and an East coast location is preferred. This role would be responsible for the FedRamp offerings here in the USA. 

As the Security Compliance Manager, you will lead the efforts to ensure the security and compliance of our FedRAMP cloud environment. You will be responsible for overseeing the implementation and maintenance of policies, procedures, and controls, conducting regular audits, and collaborating with cross-functional teams to address any compliance issues. The ideal candidate will have a strong background in cloud security, compliance frameworks, and a thorough understanding of the FedRAMP program.

Your Day to Day: 

  • Ensure Compliance: Oversee the implementation and maintenance of FedRAMP compliance standards and controls, and other core applicable standards and regulations (PCI DSS, ISO/IEC 27001, SOC 2, CIS, GDPR).
  • Audit and Monitoring: Conduct regular audits and assessments to ensure continuous compliance. Implement monitoring tools for real-time compliance tracking.
  • Act as the primary point of contact for FedRAMP assessments, audits, and reviews, coordinating with third-party assessment organizations (3PAOs) and other stakeholders.
  • Risk Analysis: Perform risk analysis and provide prioritized remediation recommendations.
  • Policy Development: Assist in the development, maintenance, and revision of policies and standards.
  • Reporting: Provide regular reports and updates to senior management on the status of compliance initiatives.

You Have & You Know-how: 

  • Experience: 5+ years of relevant professional experience.
  • NIST Expertise: Expert knowledge of NIST Privacy and Cybersecurity Frameworks, particularly NIST SP 800-53.
  • Compliance Knowledge: Deep knowledge of other compliance and regulatory frameworks (PCI DSS, ISO/IEC 27001, SOC 2, CIS, GDPR, etc.).
  • Audit Leadership: Experience leading compliance audits.
  • Cloud Security Mastery: Strong understanding of cloud security concepts (e.g., Amazon Web Services IAM, Kubernetes, security principles, etc.) and integrating security controls through DevOps and Infrastructure as a Service (IaaS) techniques.
  • Resource Management: Allocate resources effectively to ensure the timely completion of compliance-related tasks and projects.
  • Communication Skills: Excellent communication and technical documentation skills.
  • Organizational Skills: Strong organizational skills; ability to work with minimal supervision.
  • Project Management: Track record of managing projects with quality, detail, and consistency.
  • Candidates must be authorized to work in the United States.

#LI-Remote

Please contact me directly for a confidential discussion. jason@roznosinc.com