Source Job

$115,000–$186,000/yr
US

  • Lead compliance assessments and build-out of IL4/IL5 authorizations for DoD Cloud Computing Security Requirements Guide.
  • Maintain and evolve compliance posture for FedRAMP High, NIST SP 800-53, and other federal frameworks.
  • Serve as GRC liaison to engineering teams, translating complex federal compliance requirements into technical specifications for AWS environments.

GRC FedRAMP NIST SP 800-53 AWS Cybersecurity

20 jobs similar to Senior Federal Compliance Analyst

Jobs ranked by similarity.

$230,000–$270,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
  • Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
  • Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.

Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.

$174,000–$238,000/yr
US

  • Lead the technical roadmap for FedRAMP Continuous Monitoring, moving from manual reporting to automated, real-time telemetry.
  • Architect compliance outcomes by translating NIST 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering solutions.
  • Engineer evidence generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.

Wiz provides an AI-powered platform to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a global team and a culture that values world-class talent.

US

  • Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
  • Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
  • Work with sponsors to automate manual processes and implement technical solutions for cyber defense.

Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.

Global

  • Spearhead FedRAMP authorization and international sovereign cloud strategy.
  • Bridge federal security controls with scalable engineering execution.
  • Transform customer requirements into technical solutions meeting regulatory mandates.

Vultr makes high-performance cloud infrastructure easy, affordable, and locally accessible for enterprises and AI innovators. As the world's largest privately-held cloud infrastructure company with a $3.5 billion valuation, it serves hundreds of thousands of customers across 185 countries.

$150,000–$200,000/yr
US

  • Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
  • Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
  • Represent the compliance program in customer-facing discussions and security due diligence reviews.

Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.

$120,000–$160,000/yr
US 3w PTO

  • Lead end-to-end architecture design for federal core financial systems and additional operating capabilities.
  • Ensure FedRAMP Moderate and NIST 800-53 compliance through security control validation and 3PAO support.
  • Serve as senior technical advisor to Project Manager and government stakeholders on cloud solution integration.

i360technologies is a technology solutions company supporting federal financial modernization initiatives. They are a focused team of engineers and security specialists dedicated to secure cloud architectures and compliance.

US

  • Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
  • Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
  • Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.

Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.

US Unlimited PTO 16w maternity 16w paternity

  • Build and own federal compliance frameworks for FedRAMP, NIST, and CMMC.
  • Interpret controls at the mechanics level and author precise technical guidance.
  • Lead Vanta's machine-readable future with OSCAL and FedRAMP 20x.

Vanta helps businesses earn and prove trust by automating security monitoring and compliance. Founded in 2018, the company has a kind and talented team and is used by thousands of companies.

US

  • Lead technical roadmap for FedRAMP Continuous Monitoring, transitioning manual reporting to automated telemetry and validation.
  • Design compliance-as-code frameworks and automated evidence generation to reduce manual effort during assessments and audits.
  • Partner with cross-functional teams to define compliance verification requirements and mentor on FedRAMP practices.

Our partner is a technology company specializing in security and compliance for public sector cloud environments. They foster a collaborative, fast-moving culture with significant autonomy and cross-functional exposure.

$129,813–$172,500/yr
US 3w PTO 3w maternity 3w paternity

  • Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
  • Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
  • Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.

The company is a partner organization focused on cybersecurity and federal technology modernization. It offers a fully remote, mission-driven culture with opportunities for growth in a technology-focused environment.

US 3w PTO

  • Serve as the assigned security officer (vCISO) for a portfolio of client engagements, leading recurring meetings and providing strategic security guidance.
  • Lead CMMC Level 1 and 2 readiness engagements, including NIST SP 800-171 assessments, SSP development, and POA&M management.
  • Deliver compliance engagements across frameworks such as HIPAA, SOC 2, PCI DSS, ISO 27001, and more, while conducting risk assessments and coordinating remediation.

Intelligent Technical Solutions is a managed IT and cybersecurity services provider delivering compliance and security practice management to client organizations. The company employs a team of security professionals and fosters a culture of continuous improvement and knowledge sharing.

$230,000–$260,000/yr
US

  • Own and evolve Orca’s FedRAMP environment across AWS GovCloud, Azure Government, and GCP, including infrastructure code, production health, and incident response.
  • Design automation to make compliance a byproduct of system operation, covering continuous validation, drift detection, and evidence collection.
  • Serve as the technical interface to federal customers, agency security teams, and assessors, leading authorization efforts and security reviews.

Orca Security is a cloud security innovation leader that invented agentless technology for comprehensive cloud security. The company is a unicorn with a $1.8 billion valuation, backed by top investors, and fosters a respectful and transparent culture.

US

  • Support day-to-day information security operations and maintain strong operational security posture across the platform.
  • Develop and maintain the System Security Plan and other cybersecurity documentation for security authorization and compliance.
  • Support FedRAMP High and DoD IL5 compliance activities including continuous monitoring, audits, assessments, and remediation.

The partner company operates a secure, mission-focused technology platform supporting government and commercial teams. It is an equal opportunity workplace committed to considering qualified candidates from all backgrounds.

US

  • Execute NIST SP 800-53 control mappings and implement security baselines.
  • Develop and maintain SSPs, POA&Ms, and authorization documentation.
  • Support continuous monitoring and gap assessments for ATO and FedRAMP.

This company provides cybersecurity and compliance consulting services, supporting defense contractors and federal organizations with NIST and FedRAMP requirements. It is an early-stage, remote-first company with a collaborative culture focused on federal cybersecurity.

India

  • Lead GRC activities including risk management framework, security assessments, and continuous monitoring for assigned systems.
  • Collaborate with engineering and security teams to integrate GRC principles into system lifecycles and DevSecOps practices.
  • Develop and maintain security documentation, support ATO processes, and provide risk briefings to leadership.

The partner company helps organizations strengthen cybersecurity programs through modern GRC practices and engineering expertise. It is a fully remote organization with a collaborative culture focused on technical excellence and professional growth.

$114,000–$139,000/yr
US

  • Monitor and enforce compliance with security frameworks like NIST CSF, ISO 27001, SOC 2, and regulations such as GLBA, CCPA, and GDPR.
  • Conduct comprehensive risk assessments, develop security policies, and lead internal and external security audits with cross-functional teams.
  • Evaluate third-party vendor security posture, maintain compliance records, and define metrics to assess the success of the security program.

Clear Capital is a national real estate analytics, data solutions and valuation technology company with a simple purpose: to build confidence in real estate decisions to strengthen communities and improve lives. The company values integrity, kindness, and grit, and has been committed to excellence since 2001.

$63,000–$83,000/yr
US

  • Coordinate cybersecurity awareness campaigns and training programs.
  • Maintain documentation for data classification, retention, and security controls.
  • Support compliance with frameworks like ISO and NIST.

Our partner is a mission-driven organization focused on strengthening information security and compliance. They foster a collaborative, remote-first culture with emphasis on professional growth and continuous learning.

$114,800–$173,250/yr
US

  • Own assigned federal security and compliance workstreams from requirement interpretation through implementation, evidence collection, and remediation.
  • Drive recurring continuous monitoring and evidence workflows across multiple teams.
  • Support vulnerability detection and response, including reconciling findings from tools like Wiz, Nessus, and Burp.

Abnormal protects the humans behind the world's most critical organizations from AI-powered cybercrime. 4,500+ enterprises trust their behavioral AI platform.

US

  • Maintain traceability between federal Zero Trust guidance and organizational objectives.
  • Support governance forums and documentation for architecture decisions.
  • Coordinate with technical and program stakeholders to ensure alignment.

The company supports federal Zero Trust cybersecurity initiatives. It is a collaborative, people-focused environment emphasizing professional development and innovation.

US 4w maternity 4w paternity

  • You will lead the development and management of client Governance, Risk, and Compliance programs.
  • You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
  • You will provide advisory services and manage client expectations to ensure successful engagements.

This company provides cybersecurity compliance consulting services to organizations in the U.S. Defense Industrial Base. They foster a collaborative, security-first culture with a focus on advocacy and resilience.