Source Job

$145,000–$160,000/yr
US

  • Perform detailed architecture and technical design reviews on the full stack for vendor solutions
  • Complete comprehensive review and comment documents of CSPs FedRAMP documentation
  • Work alongside the agency FedRAMP Lead and provide security engineering services

NIST FISMA RMF Security FedRAMP

11 jobs similar to FedRAMP Engineer

Jobs ranked by similarity.

Global

  • Design, implement, and maintain security controls and compliance measures to protect cloud-based data.
  • Perform security assessments and audits to ensure compliance with federal standards such as NIST 800-53 and FedRAMP.
  • Collaborate with IT and engineering teams to integrate security features into the development lifecycle.

Jobgether uses an AI-powered matching process. Their system identifies the top-fitting candidates.

$175,000–$210,000/yr
US

  • Design and implement authorized Google Cloud solutions that support the full spectrum of Dark Wolf capabilities.
  • Architect scalable mission solutions and platforms that enable Agile software teams to deploy code rapidly while maintaining rigorous compliance standards.
  • Lead the design of born-authorized cloud environments that inherently meet federal compliance standards without sacrificing usability.

Dark Wolf's Google Cloud Solutions Architects define the technical vision and architecture for complex, authorized cloud implementations in the U.S. Public Sector. Dark Wolf is an EEO/AA employer.

$110,000–$140,000/yr
US Unlimited PTO

  • Serve as a security point of contact for external customers deploying into regulated cloud environments.
  • Implement and operate security controls required for FedRAMP Moderate/High, aligned to NIST SP 800-53.
  • Implement security and compliance gates in CI/CD pipelines to prevent non-compliant infrastructure or code from reaching production.

Knox runs the largest Federal managed cloud, building and operating secure cloud and AI environments that support the U.S. government’s most critical missions. Their work is high-impact and purpose-driven, expecting speed, rigor, and trust.

Global

  • Perform internal audits and vulnerability testing, ensuring security controls are monitored.
  • Lead security architecture governance for internal IT and projects, using Unified Architecture Framework.
  • Maintain compliance with security requirements and develop roadmaps to address evolving threats.

Jobgether is a platform connecting job seekers with companies. It uses AI-powered matching to ensure applications are reviewed quickly and fairly, identifying top candidates for employers.

US

  • Lead the end-to-end Certification & Authorization (C&A) process for information systems.
  • Maintain and update System Security Plans (SSPs), POA&Ms, and other FedRAMP/GovRAMP/NIST documentation artifacts.
  • Oversee control gap analysis and drive remediation efforts across technical and administrative domains.

EBSCO Information Services (EBSCO) delivers a fully optimized research experience, seamlessly integrated with a powerful discovery platform to support the information needs of our end-users. Headquartered in Ipswich, MA, EBSCO employs more than 2,700 people worldwide, with most embracing hybrid or remote work models.

US Unlimited PTO

  • Serve as our Clients’ primary technical point of contact throughout the sales cycle
  • Experience designing, implementing, and operationalizing security controls across a wide range of IT and enterprise business systems
  • Understand and articulate complex technical information to both technical and non-technical audiences

GuidePoint Security provides trusted cybersecurity expertise, solutions, and services to help organizations make better decisions and minimize risk. They have over 1000 employees and have established strategic partnerships with leading security vendors, serving as a trusted advisor to more than 4,200 customers.

$140,000–$175,000/yr
US 3w PTO

  • Drive and enable proactive identification, analysis, and remediation of security vulnerabilities.
  • Respond to manage pen testing and bug bounty programs.
  • Work in partnership with Software Architecture, Risk/Compliance, the SRE team, and other partners, to integrate security capabilities into the SDLC.

Subsplash builds The Ultimate Engagement Platform™ for churches, Christian ministries, non-profits, and businesses around the world. They are a family-owned and operated company of 290+ mission-driven people.

$110,000–$120,000/yr
US

  • Support the ISSO with information system security activities.
  • Perform Assessment and Authorization efforts under the Risk Management Framework.
  • Develop and maintain RMF documentation and coordinate vulnerability remediation.

GovCIO transforms government IT with innovative services and solutions. They foster a collaborative, team-oriented culture where employees' talents drive success.

US

  • Identify and prioritize critical business functions in collaboration with organizational stakeholders.
  • Perform security reviews, identify gaps in security architecture, and develop a security risk management plan.
  • Evaluate security architectures and designs to determine the adequacy of security design and architecture proposed or provided in response to requirements documents.

Derex Technologies Inc specializes in providing IT consulting, staffing solutions and software services. Globally headquartered in Harrison New Jersey since 1996 Derex delivers the highest quality technology professionals and an array of customized IT talent solutions designed to improve productivity and drive results to global clients throughout North America.

$123,250–$207,000/yr
US

  • Own and lead the FedRAMP High authorization program.
  • Serve as the primary point of accountability for government compliance programs.
  • Manage compliance roadmaps, milestones, dependencies, risks, and remediation efforts.

Commvault is the gold standard in cyber resilience. The company empowers customers to uncover, take action, and rapidly recover from cyberattacks – keeping data safe and businesses resilient. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks, improve governance, and do more with data.

US

  • Develops and refines performance methodologies that support the cybersecurity requirements.
  • Oversee independent assessments and review Security Impact Analyses (SIA).
  • Incorporate compliance data into the Governance, Risk, and Compliance Tool (GRCT).

SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider. It is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development.