Remote Cyber security Jobs · FedRAMP

Job listings

  • Review system documentation and technical evidence against NIST, FISMA, RMF, FedRAMP, and Zero Trust requirements.
  • Perform control-gap analyses, maturity assessments, and compliance reviews; identify risks and recommend corrective actions.
  • Support authorization activities by preparing security plans, control implementation statements, and remediation documentation.

9th Way Insignia is a service-disabled, veteran-owned small business providing transformative technology solutions including cybersecurity, cloud modernization, software development, and data analytics to government customers. As a small business, it empowers its people to fearlessly drive change and offers a comprehensive benefits package.

US Unlimited PTO

  • Develop, implement, and manage GRC strategies to support compliance with frameworks like FedRAMP, IRAP, and SOC 2.
  • Lead security assessments, audits, and certification processes, ensuring timely and successful completion.
  • Collaborate with cross-functional teams to integrate GRC requirements into operations and technology.

GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security and compliance risk. More than 50 million registered users and over 50% of the Fortune 100 trust GitLab, driven by a high-performance culture of continuous knowledge exchange.

$170,000–$190,000/yr

  • Lead end-to-end service delivery for cybersecurity professional services, ensuring quality, timelines, and compliance for a portfolio of customers.
  • Drive operational strategy, governance frameworks, and KPIs for predictable delivery across FedRAMP advisory, implementation, and continuous monitoring programs.
  • Mentor and grow high-performing technical teams including project managers, cloud architects, security engineers, and analysts.

Quantum Sky engineers cybersecurity and cloud solutions for U.S. Federal agencies, focusing on FedRAMP, RMF, and post-quantum mission needs. The company fosters a collaborative, innovative, mission-driven culture with a high-performing team of technical professionals.

$115,000–$186,000/yr

  • Lead compliance assessments and build-out of IL4/IL5 authorizations for DoD Cloud Computing Security Requirements Guide.
  • Maintain and evolve compliance posture for FedRAMP High, NIST SP 800-53, and other federal frameworks.
  • Serve as GRC liaison to engineering teams, translating complex federal compliance requirements into technical specifications for AWS environments.

Horizon3 is a fast-growing, remote cybersecurity company that provides autonomous pentesting through its NodeZero platform. The company is a fusion of former Special Operations cyber operators and engineers, fostering a culture of respect, collaboration, ownership, and results.

$168,000–$238,000/yr
United States Unlimited PTO

  • Set technical direction and architectural patterns for infrastructure security in GitLab's FedRAMP environment, owning the security posture as the senior technical voice.
  • Lead infrastructure security initiatives from problem framing through delivery, scoping multi-quarter work into executable streams with clear success criteria.
  • Mentor engineers, conduct threat modeling, and translate FedRAMP compliance tradeoffs into clear decisions for stakeholders.

GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security risk. With over 50 million registered users and more than 50% of the Fortune 100 as customers, GitLab fosters a high-performance culture driven by values and continuous knowledge exchange.

$93,800–$120,000/yr
US Unlimited PTO

  • Operate and monitor cybersecurity controls for a FedRAMP- and CJIS-regulated SaaS product in AWS.
  • Triage security events, investigate threats, and support incident response with root-cause analysis.
  • Maintain security platforms, vulnerability management, and data protection operations across the environment.

Granicus provides cloud-based technology for government agencies to improve digital services and connect with communities. Over 25 years, they serve 5,500 agencies and 300 million subscribers, with a remote-first, inclusive culture.

  • Support day-to-day information security operations and maintain strong operational security posture across the platform.
  • Develop and maintain the System Security Plan and other cybersecurity documentation for security authorization and compliance.
  • Support FedRAMP High and DoD IL5 compliance activities including continuous monitoring, audits, assessments, and remediation.

The partner company operates a secure, mission-focused technology platform supporting government and commercial teams. It is an equal opportunity workplace committed to considering qualified candidates from all backgrounds.

  • Lead technical roadmap for FedRAMP Continuous Monitoring, transitioning manual reporting to automated telemetry and validation.
  • Design compliance-as-code frameworks and automated evidence generation to reduce manual effort during assessments and audits.
  • Partner with cross-functional teams to define compliance verification requirements and mentor on FedRAMP practices.

Our partner is a technology company specializing in security and compliance for public sector cloud environments. They foster a collaborative, fast-moving culture with significant autonomy and cross-functional exposure.

$174,000–$238,000/yr

  • Lead the technical roadmap for FedRAMP Continuous Monitoring, moving from manual reporting to automated, real-time telemetry.
  • Architect compliance outcomes by translating NIST 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering solutions.
  • Engineer evidence generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.

Wiz provides an AI-powered platform to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a global team and a culture that values world-class talent.

US Unlimited PTO 18w maternity 12w paternity

  • Design and operate a continuous monitoring and authorization capability portable across frameworks.
  • Translate CMMC 2.0 and FedRAMP requirements into practical controls and evidence pipelines.
  • Partner with engineering and product security to connect federal requirements to cloud-native systems.

Chainguard delivers hardened, secure builds of open source software to help organizations build faster and stay compliant. They are venture-backed by leading investors and serve Fortune 500 enterprises including OpenAI, Snap Inc., and Snowflake.