Lead design and implementation of secure, scalable cloud architectures for a large federal civilian agency.
Direct all aspects of program performance including scope, schedule, cost, quality, and risk management.
Oversee compliance with federal cybersecurity frameworks such as FISMA, FedRAMP, NIST SP 800 53, and Zero Trust.
Peraton is a next-generation national security company that drives missions of consequence and serves as the world's leading mission capability integrator and transformative IT provider. It delivers trusted solutions to protect the nation and allies, supporting essential government agencies and all branches of the U.S. armed forces.
Own FedRAMP and GovRAMP certifications and roadmaps, including package management and compliance timelines.
Manage 3PAO relationships and assessments, coordinating scoping, evidence, and results validation.
Lead continuous monitoring, POA&M processes, and drive compliance automation and efficiency.
Smartsheet empowers teams to manage work seamlessly and scale solutions smarter, now uniting human teams with AI agents. It is an equal opportunity employer committed to fostering an inclusive environment with the best employees.
Lead ISSO activities to ensure confidentiality, integrity, availability, and compliance of enterprise applications and information systems.
Manage RMF processes including ATO packages, continuous monitoring, risk assessments, and accreditation documentation within eMASS.
Implement and maintain compliance with DISA STIGs, NIST 800-53 controls, and federal cybersecurity requirements.
Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. The company facilitates the hiring process by sharing top-fitting candidate shortlists with partner companies, focusing on efficiency and objectivity.
Own Filevine's FedRAMP 20x strategy and execution, including evidence automation, continuous monitoring, and certification readiness.
Drive the security compliance and trust program across FedRAMP, SOC 2, ISO, HIPAA, and PCI-DSS, converting obligations into engineering work.
Lead cross-functional alignment and executive reporting to ensure compliance, privacy, and security priorities are shipped on time.
Filevine is a Legal AI company delivering Legal Operating Intelligence for the future of legal work. Fueled by a team of exceptional collaborators and innovators, Filevine’s rapid growth has earned AI awards and recognition from Deloitte and Inc. as one of the most innovative and fastest-growing technology companies in the country.
Lead delivery of FedRAMP, CMMC, HITRUST, and NIST compliance engagements where federal authorization is on the line.
Build reusable IP like control-mapping libraries, SSP templates, and evidence-collection playbooks for complex frameworks.
Own pricing, margin, and utilization for specialized federal engagements, plus leverage AI to standardize deliverables.
Sprinto is an Autonomous Trust Platform that centralizes trust requirements across security frameworks, vendors, and customers. Backed by top-tier investors like Accel, Elevation, and Blume Ventures, we've raised $31.8M and are trusted by over 3,000 organizations across 75 countries, with a remote culture built on ownership and progress over perfection.
Lead RMF authorization activities, including SSP, SAP, SAR, and POA&M development.
Conduct vulnerability assessments and enforce secure configurations using CIS Benchmarks and DISA STIGs.
Support cloud security initiatives in AWS GovCloud and advise on AI-enabled system security.
This company provides cybersecurity solutions for federal government systems. They are a mid-sized organization with a collaborative culture focused on security and compliance.
Develop and execute cybersecurity strategy, roadmap, and governance to protect Voyager's information systems and mission-critical environments.
Lead security operations, incident response, vulnerability management, and compliance with government regulations like CMMC and NIST.
Oversee security architecture, risk management, and team leadership to enable secure innovation in aerospace and defense.
Voyager is an innovative space, defense, and national security technology company delivering transformative, mission-critical solutions. It fosters a culture where innovation thrives, curiosity is rewarded, and impact is real, with a team of doers, thinkers, and builders united by purpose.
Lead the MyFitnessPal Federal business unit, establishing governance and internal controls for a federal-facing entity.
Own the P&L, operating budget, and KPIs, partnering with corporate functions to maintain alignment.
Manage federal security and compliance frameworks, ensuring proper handling of sensitive data and audit readiness.
MyFitnessPal provides tools and resources to help users reach their health goals. The company's culture emphasizes kindness, data-driven decisions, and continuous improvement.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Conduct IT and cybersecurity risk assessments across systems, applications, and business processes.
Lead audit readiness activities for frameworks like SOC 2, HIPAA, and NYDFS.
Manage security policies, third-party vendor assessments, and develop risk dashboards.
Jobgether uses an AI-powered matching process to connect candidates with hiring companies. They focus on efficient, objective application review and are a remote-first organization.
Serves as a cybersecurity SME for Assessment and Authorization (A&A) of information systems, applying NIST 800-53 security controls and the Risk Management Framework (RMF) process.
Possesses five years of relevant RMF, NIST, and A&A experience, including assessing security controls for large, complex organizations like DLA.
Briefs senior management on authorization progress and understands cybersecurity in emerging technology areas such as Cloud and Industrial Control Systems.
Horizon Industries Limited is a dynamic IT and Management Consulting firm based in the Washington, DC area, providing full-cycle IT consulting and management support to both private and public sectors. Founded in 1996, the company prides itself on a diverse, employee- and family-centric culture with a focus on professional growth.
Lead end-to-end vulnerability management and cloud security posture management lifecycle.
Administer and optimize security tooling, including configuration, automation, and reporting.
Monitor AWS cloud infrastructure to detect misconfigurations and compliance drift.
US Security & IT is a partner company focused on security and IT services. The company fosters an inclusive and collaborative work environment centered on security innovation and impact.
Maintain Risk Management Framework artifacts for DevSecOps pipeline inheritance of NIST SP 800-53 controls.
Complete and validate STIG/SRG checklists quarterly and provide monthly application STIG status reports.
Evaluate program risks, document mitigation strategies, and recommend courses of action to ensure continuous ATO compliance.
DecisionPoint is a company providing cloud services and DevSecOps solutions, supporting ARTRANS AWS environments. It is a regular full-time employer fostering a culture of security and compliance, with an active Secret clearance required for this role.
Lead the security strategy, governance, and operational execution for enterprise platforms supporting mission-critical capabilities across the Department of Defense and USSOCOM.
Develop enterprise security strategies aligned to Zero Trust principles and oversee implementation of security controls across cloud, hybrid, and containerized environments.
Provide technical leadership for identity and access management, cloud security posture management, and security automation initiatives while ensuring compliance with DoD RMF.
LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed, delivering commercial-grade platforms and mission-ready AI to federal agencies. Headquartered in Tysons, Virginia, LMI serves the defense, space, healthcare, and energy sectors, focusing on agility and collaboration to help agencies navigate complexity.
Take ownership of building and scaling comprehensive security, privacy, and compliance programs that protect customer data.
Lead compliance initiatives such as SOC 2 Type 2 audits and evaluate additional frameworks like ISO 27001 and HIPAA.
Build scalable automated security processes by replacing manual tasks with scripts, APIs, and AI-powered solutions.
Our partner is a technology company focused on building secure, scalable systems. They operate with a remote, collaborative culture emphasizing ownership, transparency, and continuous improvement, with around 50–300 employees.
Defines program goals, governance frameworks, and measurable objectives for cyber risk and compliance programs.
Manages user attestations, third-party risk, cyber contract negotiation, and coordination of IT audits/assessments.
Implements GRC tooling and monitors program effectiveness through KPIs, QA reviews, and control testing.
Velera is a credit union service organization providing fintech solutions to over 4,000 financial institutions. The company fosters a remote-first, inclusive culture with a focus on employee wellbeing and belonging.
Lead the design of secure, scalable, multi-tenant architectures for federal cloud and enterprise programs.
Align system architecture with federal security frameworks and translate policy into implementable design.
Serve as a technical authority on security architecture, guiding engineering teams and government stakeholders.
Aquia is a Veteran-founded digital services firm that helps the government modernize and secure its systems and processes. It is a certified Great Place to Work and a small business recognized as HHS Service-Disabled Veteran-Owned Small Business of the Year in 2024.
Lead product installations for customers and serve as the technical team lead, resolving issues and improving collaboration.
Define system, technical, and application architectures to ensure cost-effectiveness and competitiveness.
Provide hands-on support for agile development, code reviews, and technical estimates to meet tight deadlines.
NetImpact Strategies is a trusted advisor driving digital transformation for the Federal Government for over a decade. The company has been ranked as a Top Workplace multiple years and offers a dynamic, collaborative culture.