Lead the technical roadmap for FedRAMP Continuous Monitoring, moving from manual reporting to automated, real-time telemetry.
Architect compliance outcomes by translating NIST 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering solutions.
Engineer evidence generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.
Wiz provides an AI-powered platform to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a global team and a culture that values world-class talent.
Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
Represent the compliance program in customer-facing discussions and security due diligence reviews.
Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.
Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
Oversee preparation and execution of external compliance audits, including facilitating security assessments.
Support mapping of compliance requirements to security control implementation using agile development processes.
Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.
Partner with application development teams to integrate security requirements into design, development, and deployment workflows.
Support ATO efforts including development of System Security Plans (SSPs), POA&Ms, and control documentation.
Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and VA security standards.
Oddball builds quality software for the federal space, focusing on improving the daily lives of millions of people. They are a small company that values learning, growth, and making a big impact.
Execute NIST SP 800-53 control mappings and implement security baselines.
Develop and maintain SSPs, POA&Ms, and authorization documentation.
Support continuous monitoring and gap assessments for ATO and FedRAMP.
This company provides cybersecurity and compliance consulting services, supporting defense contractors and federal organizations with NIST and FedRAMP requirements. It is an early-stage, remote-first company with a collaborative culture focused on federal cybersecurity.
Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.
Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.
Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.
Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.
Build and own federal compliance frameworks for FedRAMP, NIST, and CMMC.
Interpret controls at the mechanics level and author precise technical guidance.
Lead Vanta's machine-readable future with OSCAL and FedRAMP 20x.
Vanta helps businesses earn and prove trust by automating security monitoring and compliance. Founded in 2018, the company has a kind and talented team and is used by thousands of companies.
Lead compliance engineering for FedRAMP High-aligned environments, translating obligations into practical infrastructure changes.
Design and operate secure cloud infrastructure using AWS, Terraform, and Kubernetes across commercial and GovCloud environments.
Improve platform reliability, release operations, and incident response while mentoring engineers on secure operations.
Arch Systems empowers discrete manufacturing facilities with data insights for optimal efficiency and proactive decision-making. It is a rapidly scaling, remote-first company that values collaboration, innovation, and continuous learning.
Own IRAP and ISMAP program strategy and execution across Australia and Japan.
Coordinate with regional assessors and government agencies to maintain compliance.
Design and maintain compliance documentation and manage continuous monitoring.
For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. They are now uniting human teams with AI agents to automate tasks and uncover insights.
Build, deploy, and maintain cloud-based IAM systems using DevSecOps practices and cloud-native architecture.
Ensure rapid and reliable delivery of code changes through CI/CD, automated testing, and deployment into production.
Lead evergreening activities, environment support, and compliance with federal requirements.
PingWind delivers services to the federal government in cybersecurity, development, IT infrastructure, and supply chain management. They are an SBA certified Service-Disabled Veteran-Owned Small Business with offices in Northern Virginia and Huntsville AL.
Own the security program day-to-day, pursuing ISO 27001 certification and FedRAMP readiness.
Manage GRC tool (Vanta), maintain SOC 2 Type II, and run vendor security reviews.
Answer customer security questionnaires and ensure compliance documents are accurate.
Massed Compute is building a modern GPU cloud platform for AI and high-performance compute workloads. We are a lean, ambitious team operating in one of the most important technology markets in the world.
Design and maintain automated workflows for Risk Management Framework and compliance operations.
Build integrations between GRC platforms, security tools, and reporting solutions.
Develop scripts, APIs, and dashboards to improve cybersecurity visibility and efficiency.
This is a partner company role managed by Jobgether, focusing on cybersecurity governance through automation. The company uses AI-powered matching to connect candidates with roles and emphasizes data privacy and fair hiring processes.
Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.
Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.
Lead end-to-end architecture design for federal core financial systems and additional operating capabilities.
Ensure FedRAMP Moderate and NIST 800-53 compliance through security control validation and 3PAO support.
Serve as senior technical advisor to Project Manager and government stakeholders on cloud solution integration.
i360technologies is a technology solutions company supporting federal financial modernization initiatives. They are a focused team of engineers and security specialists dedicated to secure cloud architectures and compliance.
Support security and compliance initiatives across cloud-based environments.
Conduct web application penetration testing and vulnerability assessments.
Implement and maintain security controls aligned with compliance frameworks.
Epsilon ASI is a technology company focused on providing secure and compliant environments for its clients. The company is looking for early-career security professionals to join its highly technical team in a remote setting.
You will serve as a trusted technical advisor guiding federal customers through Wiz deployment, configuration, and operationalization using cloud-security best practices.
You will act as the primary technical liaison for complex architectural and operational challenges in federal cloud environments.
You will help customers develop success plans with measurable goals aligned to their organizational security, compliance, and mission objectives.
Wiz is a cloud security platform that redefines security for the AI era, enabling teams to secure cloud and AI applications. They are one of the fastest-growing startups, trusted by over 65% of the Fortune 100, scanning over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.
Design and operate a continuous monitoring and authorization capability portable across frameworks.
Translate CMMC 2.0 and FedRAMP requirements into practical controls and evidence pipelines.
Partner with engineering and product security to connect federal requirements to cloud-native systems.
Chainguard delivers hardened, secure builds of open source software to help organizations build faster and stay compliant. They are venture-backed by leading investors and serve Fortune 500 enterprises including OpenAI, Snap Inc., and Snowflake.
Spearhead FedRAMP authorization and international sovereign cloud strategy.
Bridge federal security controls with scalable engineering execution.
Transform customer requirements into technical solutions meeting regulatory mandates.
Vultr makes high-performance cloud infrastructure easy, affordable, and locally accessible for enterprises and AI innovators. As the world's largest privately-held cloud infrastructure company with a $3.5 billion valuation, it serves hundreds of thousands of customers across 185 countries.
Own compliance operations for FedRAMP, DoD Impact Levels, and CMMC programs.
Manage federal obligation registers, POA&Ms, and continuous monitoring.
Produce artifacts including NIST 800-171 self-assessments and certification packages.
Kaizen builds modern, AI-native software for government services to restore public trust. Founded in 2022 and based in NYC, the company has raised $35 million from top venture firms and reaches 55 million Americans across 50+ agencies.