Similar Jobs

See all

About The Role:

  • You’ll own and lead the implementation of security controls, compliance automation, and secure architecture patterns required to achieve and maintain FedRAMP authorization.
  • Working cross-functionally with infrastructure, engineering, and security, you’ll translate NIST 800-53 Rev. 5 requirements into scalable, auditable technical controls across our platform.

What You'll Do:

  • Build and maintain compliance automation tooling to continuously validate control adherence across the environment, reducing manual audit burden.
  • Develop and manage secure CI/CD pipelines with integrated security gates, secrets management, and deployment controls appropriate for FedRAMP environments.
  • Author and maintain System Security Plans (SSPs), control implementation statements, and audit evidence packages; work directly with auditors and 3PAOs through assessment cycles.

Who You Are:

  • You have direct, hands-on FedRAMP ATO experience — you’ve been through the process, not just observed it.
  • You have strong working knowledge of NIST 800-53 Rev. 5 controls and how to implement them technically, not just document them.
  • You have deep hands-on experience securing AWS environments.

Craft

Craft is the leader in supplier risk intelligence, enabling enterprises to discover, evaluate, and continuously monitor their suppliers at scale. They are a post-Series B high-growth technology company backed by top-tier investors in Silicon Valley and Europe, headquartered in San Francisco with hubs in Seattle and Warsaw.

Apply for This Position