This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Workday’s National Security Group (NSG) is responsible for all aspects of cybersecurity and compliance for Workday’s US Department of Defense and Intelligence Community customer regions. The NSG Governance, Risk, Compliance (GRC) Team enables business agility while maintaining a strong security posture via intelligent risk-taking, optimized controls management, and iterative security governance. The NSG GRC team’s mission is to enable and maintain Workday’s National Security offerings through certification, continuous monitoring, consultation and deep stakeholder alignment. We act as a trusted advisor across Workday to help maintain and enhance our customer's trust. This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native). The Cybersecurity GRC - Public Sector role is a critical part of Workday’s GRC function and will work as a key team member leading the design, implementation and assessment of Workday's US National Security offerings. You will play a vital role in ensuring continued compliance across public sector frameworks, assist in prioritizing future system changes and manage the audit lifecycle for the various DoD and IC programs. You will lead security and compliance related interactions with Workday's National Security customers and advise internal business partners on risk and compliance requirements related to the product development lifecycle and other strategic organizational initiatives.
Job Responsibility:
Leading the design, implementation and assessment of Workday's US National Security offerings
Ensuring continued compliance across public sector frameworks
Assisting in prioritizing future system changes
Managing the audit lifecycle for the various DoD and IC programs
Leading security and compliance related interactions with Workday's National Security customers
Advising internal business partners on risk and compliance requirements related to the product development lifecycle and other strategic organizational initiatives
Requirements:
5+ years of experience in an equivalent governance, risk & compliance and/or related engineering role
3+ years direct experience with the FedRAMP and RMF assessment and authorization processes
This position requires a TS/SCI with CI POLY security clearance. Applicants must already possess a valid and active TS/SCI with CI POLY security clearance.
A solid understanding of the FedRAMP Framework and DoD Impact levels IL4, IL5 and IL6
Bachelor's degree or equivalent experience
Experience prioritizing technical changes to a FedRAMP system and apply controls to ensure audit readiness and acceptability
Experience leading system design with engineering to provide technical guidance documentation
Experience designing federal SaaS cloud computing systems including source control management, logging & monitoring systems, FIPS encryption methods, access controls and vulnerability management
Strong communications skills (written and verbal) and attention to detail