CrawlJobs Logo

FedRAMP Cloud Security Project Manager

United States, North Wilkesboro · Job Posted December 09, 2025
Apply Position
Job Link Share

Job Description

Our FedRAMP Cloud Security Project Manager will be working on a highly functional FedRAMP team and will work across our customers' environments to manage, provide Subject Matter Expertise in leading, designing, building, and documenting FedRAMP security controls for our customers in AWS and Azure environments. Responsible for working with our customers to guide them to achieve and maintain a FedRAMP Authority to Operate (ATO).

Job Responsibility

  • Stay current on US policy related to IA, acquisition and computer network defense
  • Create and publish technical documentation associated with FedRAMP assessment packages
  • Work across our customers' environments to manage, provide Subject Matter Expertise in leading, designing, building, and documenting FedRAMP security controls for our customers in AWS and Azure environments
  • Work with our customers to guide them to achieve and maintain a FedRAMP Authority to Operate (ATO)

Requirements

  • At least 5 years’ experience managing the developing of FISMA/FedRAMP System Security Plans for low, moderate and high impact IaaS, PaaS and SaaS solutions
  • 3+ years managing projects and/or programs
  • Experience with obtaining and maintaining compliance certifications such as FedRAMP preferred
  • Experience with cloud infrastructure and software development lifecycle preferred
  • Excellent decision-making, analytical and problem-solving skills
  • Results-Driven and have the courage and confidence to challenge the status quo
  • Organized Researcher with strong organizational, presentation, and customer research skills
  • Solid understanding of Amazon Web Services (AWS), and Azure Cloud Security experience
  • Strong knowledge of technology and security topics including network and application security, infrastructure hardening, security baselines, web server, and database security
  • Outstanding interpersonal and communication skills, both verbal and written
  • BS/BA degree preferred
  • At least one of the following certifications preferred: PMP, CISSP, CISM, CEH, CISA, Security+, GSEC, CIPP, AWS, Azure certifications

What we offer

Competitive compensation and benefits package

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

FedRAMP Cloud Security Project Manager

8 matching positions

Cloud Security Assessor

The Cloud Information Assurance Analyst provides support to the agency. This pos...
Location
Location
United States , Ft. Meade
Salary
Salary:
131000.00 - 155000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Required DOD Top Secret Clearance with SCI eligibility
  • Must have DOD 8570 IAM III Certification - CISSP, CISM
  • Expert knowledge of proven business and operations practices and strategies
  • Proficient understanding of Restful APIs, JSON
  • Proven ability to facilitate progressive organizational change / development within a growing organization
  • Excellent organization and time management skills with ability to handle multiple priorities
  • Exceptional analytical and problem-solving skills with ability to assess business requirements
  • Exceptional leadership skills with ability to motivate, influence and lead others
  • High level of proficiency in briefing managers and communicating recommendations regarding status of project operations
  • Excellent verbal and written communications skills
Job Responsibility
Job Responsibility
  • Performs analysis, conduct independent validation of assessments and continuous monitoring for authorized Cloud Service Providers Cloud Service Offerings
  • Develop processes and procedures to document the execution of the analysis and validations
  • Reviews Cloud Service Provider documentation consisting of the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated POA&M
  • Prepares Cloud Security Assessment Package
  • Performs DoD and FedRAMP Cloud Authorization on-going support to include continuous monitoring, annual reviews, and significant change requests of Cloud Service Providers through reviews, recommendations, written reports, and briefings
  • Reviews and analyzes Deviation Requests, Monthly One Pagers, Annual Assessments, Playbooks, Significant Change Requests, review of scan data, POA&Ms, and other changes to evaluate a CSP’s ongoing risk posture change
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • Company Life Insurance
  • Short-Term and Long-Term Disability Insurance
  • 401(K) Immediate Vesting
  • Professional Development Assistance
  • Legal Aid Assistance Program
  • Family Planning / Fertility Assistance
  • Personal Time Off
  • Fulltime
Read More
Arrow Right

Senior Product Security Manager

As a Senior Product Security Manager, you will play a key role in driving and ma...
Location
Location
Australia
Salary
Salary:
Not provided
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years working in security or related role
  • 2+ years managing a team
  • Experience with application security, especially web application security
  • Experience in cloud security architecture and infrastructure
  • Experience in data protection and privacy
  • Experience coding in Java, Python, or Go, and at least one scripting language
  • Experience reasoning about security decisions
  • Experience leading projects from start to finish and mentoring other security practitioners
  • Experience collaborating with engineers
  • Bachelor's or Master’s degree in Information Security, Computer Science, or a related field
Job Responsibility
Job Responsibility
  • Product Security Leadership: Collaborate to execute and drive aspects of the Product Security Strategy, ensuring alignment with global objectives and smooth integration into the product development lifecycle
  • Team Management: Lead and mentor a team of technical professionals, fostering a culture of security and collaboration
  • Security Oversight: Implement and enforce security standards, policies, and procedures for product development, collaborating on risk assessments and mitigation strategies
  • Collaboration and Communication: Foster a security-focused culture within the product development process, communicating updates, risks, and strategies to executive leadership and stakeholders
  • Leadership Development: Mentor and develop security practitioners, contributing to large-scale security projects and ensuring successful implementation
What we offer
What we offer
  • Health and wellbeing resources
  • Paid volunteer days
Read More
Arrow Right

Cloud Security Assessor

The Cloud Information Assurance Analyst provides support to the agency. This pos...
Location
Location
United States , Ft. Meade
Salary
Salary:
131000.00 - 155000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Required DOD Top Secret Clearance with SCI eligibility
  • Must have DOD 8570 IAM III Certification - CISSP, CISM
  • Expert knowledge of proven business and operations practices and strategies
  • Proficient understanding of Restful APIs, JSON
  • Proven ability to facilitate progressive organizational change / development within a growing organization
  • Excellent organization and time management skills with ability to handle multiple priorities
  • Exceptional analytical and problem-solving skills with ability to assess business requirements
  • Exceptional leadership skills with ability to motivate, influence and lead others
  • High level of proficiency in briefing managers and communicating recommendations regarding status of project operations
  • Excellent verbal and written communications skills
Job Responsibility
Job Responsibility
  • Performs analysis, conduct independent validation of assessments and continuous monitoring for authorized Cloud Service Providers Cloud Service Offerings
  • Develop processes and procedures to document the execution of the analysis and validations
  • Reviews Cloud Service Provider documentation consisting of the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated POA&M
  • Prepares Cloud Security Assessment Package
  • Performs DoD and FedRAMP Cloud Authorization on-going support to include continuous monitoring, annual reviews, and significant change requests of Cloud Service Providers through reviews, recommendations, written reports, and briefings
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • Company Life Insurance
  • Short-Term and Long-Term Disability Insurance
  • 401(K) Immediate Vesting
  • Professional Development Assistance
  • Legal Aid Assistance Program
  • Family Planning / Fertility Assistance
  • Personal Time Off
  • Fulltime
Read More
Arrow Right

FedRAMP Program Manager

Second Front Systems (2F) is seeking a detail-oriented and systems-driven FedRAM...
Location
Location
United States
Salary
Salary:
140000.00 - 164000.00 USD / Year
secondfront.com Logo
Second Front Systems
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Program or project management in cloud, SaaS, cybersecurity, or compliance
  • Customer-facing work such as Customer Success, Account Management, or advisory/consulting roles
  • FedRAMP, NIST 800-53, or government compliance frameworks (preferred)
  • 5+ years of program or project management experience
  • Familiarity with FedRAMP, NIST 800-53, or agency ATO processes
  • PMP, CSM, or similar certification a plus
  • Security certifications (CISSP, CAP, etc.) are helpful but not required
  • Have a strong interest in matters of national security
  • U.S. citizenship
  • Must reside in one of the approved hiring hubs: DC/Maryland/Virginia
Job Responsibility
Job Responsibility
  • Partner with customers to understand their FedRAMP goals and provide program management support throughout their ATO process
  • Coordinate internal teams—engineering, customer success, security, and product—to align deliverables that support customer readiness
  • Ensure clarity on shared responsibility models by helping customers understand which controls they inherit and which they must own
  • Build and maintain program plans, trackers, timelines, and reporting to drive alignment across all stakeholders
  • Serve as the primary liaison between customers, third-party assessors, and external FedRAMP partners
  • Identify risks, blockers, and dependencies early and escalate as needed to protect timelines and outcomes
  • Support the creation of scalable enablement materials, such as documentation, playbooks, and repeatable processes
  • Educate internal teams on FedRAMP concepts, customer needs, and authorization workflows to drive prioritization and cross-functional clarity
What we offer
What we offer
  • Competitive Salary
  • 100% Healthcare, vision and dental coverage
  • 401(k) + 3% company contribution
  • Equity incentive plan
  • Tech + office supplies stipend
  • Annual professional development stipend
  • Flexible paid time off + federal holidays off
  • Parental leave
  • Work from anywhere
  • Referral Bonus
  • Fulltime
Read More
Arrow Right

Sr IT Security/Vulnerability Management Specialist

AAC is seeking Senior Security Analyst focusing on Vulnerability Management to j...
Location
Location
United States , Bethesda
Salary
Salary:
Not provided
aac.com Logo
AAC
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Requires bachelor’s degree in computer science, cyber security, engineering, or a related technical field. Additional experience and relevant certifications may be considered in leu of a degree.
  • 5-7 years of progressive and related experience in IT security with at least 3 years in vulnerability management.
  • Expert knowledge of IT security vulnerabilities and risk assessments with the ability to explain the risks associated with them to executives, program, and technology staff.
  • Expert knowledge of Tenable.sc (on-prem) and Tenable.io (cloud).
  • Strong knowledge of vulnerability management lifecycle, patch management, and risk scoring (e.g., CVSS2).
  • Familiarity with cloud platforms (AWS and GCP) and hybrid environments.
  • Understanding of Windows, Linux/Unix, and network devices security hardening.
  • Ability to work with program staff, executives, security application vendors and technology staff to achieve IT security goals and objectives.
  • Experience developing and maintaining Security Assessment and Authorization (SA&A) documentation for large IT systems for the Federal Government.
  • Excellent working experience in applying FISMA, and FedRAMP processes and policies to information systems.
Job Responsibility
Job Responsibility
  • Lead the agency’s vulnerability management lifecycle using Tenable.sc, Tenable.io, Nessus Manager, and Nessus scanners (on-prem and cloud).
  • Analyze, prioritize, and track remediation of vulnerabilities in coordination with IT operations and system owners.
  • Maintain scan schedules, asset groups, scan policies dashboards, and reports tailored to agency infrastructure and communicate risk posture and remediation progress to relevant infrastructure, application, and cloud teams to remediate vulnerabilities.
  • Define the scanner and security center architecture, refine data flows and synchronizations, tune scanning configurations to minimize false positives and ensure the best coverage.
  • Develop and maintain documentation for system setup, operation, vulnerability management processes, exceptions, and remediation tracking.
  • Support implementation of security projects that require compliance with relevant government policies or standards.
  • Act as SME for vulnerability management tools and processes.
  • Ensure systems and practices comply with FISMA and FedRAMP related Security Assessment and Authorization (SA&A) and compliance for the organization’s IT programs.
  • Assist in coordination, implementation, communication, and enforcement of the organization’s IT security policies.
  • Support incident response.
  • Fulltime
Read More
Arrow Right

Security Operations Engineer

We’re looking for a Security Operations Engineer who will own the day-to-day ope...
Location
Location
United States , Coppell
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 1–3 years of experience in security operations, IT security, or a related field (or equivalent hands-on experience through internships, labs, or personal projects)
  • Hands-on familiarity with vulnerability scanning tools such as Burp Suite, Nessus, Tenable, or similar (experience with at least one required)
  • Basic understanding of AWS cloud infrastructure and containerized environments (Kubernetes, Docker, Chainguard)
  • Exposure to structured compliance environments
  • familiarity with FedRAMP, NIST 800-53, or similar frameworks is a strong plus
  • Strong organizational skills with the ability to manage multiple open findings and parallel workstreams
  • A curious, self-driven mindset with a desire to expand beyond a defined lane over time
  • Scripting or automation skills (Python, Bash) are a plus
  • Clear and effective communication skills across Slack, Zoom, and email in a distributed team environment
  • US citizenship and ability to work within FedRAMP-regulated environments
Job Responsibility
Job Responsibility
  • Operate and maintain vulnerability scanning tools across web applications (Burp Suite), infrastructure/network (Nessus), and container/runtime environments (Sysdig)
  • Run scans on a regular cadence and on-demand for releases, audits, and special initiatives
  • Support FedRAMP continuous monitoring (ConMon) activities across US GovCloud environments
  • Assist with evidence collection and compliance tracking, including familiarity with NIST 800-53 controls and tools like eMASS
  • Triage scan results, identify and filter false positives, prioritize findings by risk, and open/track remediation tickets in Jira
  • Partner with engineering teams to ensure SLA adherence and timely remediation
  • Produce reports and compliance artifacts for internal stakeholders and external auditors
  • Contribute to and maintain the compliance evidence repository
  • Improve scanning workflows through automation, scheduling, alerting, and result normalization
  • Collaborate closely with the SecOps Lead and broader product security team, contributing to sprint planning and cross-functional initiatives
What we offer
What we offer
  • Comprehensive health, dental, and vision coverage
  • 401(k) with company match
  • Generous paid time off and company holidays
  • Professional development opportunities
  • Collaborative, high-performance culture
  • Modern office environment in Dallas, TX
  • Competitive compensation and meaningful equity
  • Fulltime
Read More
Arrow Right

Network and Cybersecurity Service Delivery Lead

We are currently seeking a Network and Cybersecurity Service Delivery Lead to jo...
Location
Location
United States , Rockville
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's degree, or One-and-one-half (1.5) years of additional experience can substitute for one (1) year of a typical degree program
  • Minimum 10 years of experience in enterprise network engineering and operations
  • Minimum 10 years of experience in cybersecurity engineering or security operations
  • Minimum 5 years of experience leading a team of engineers to design and implement enterprise network architectures for 3,000+ users and multi-site WANs
  • Minimum 5 years of experience with at least two enterprise networking technologies such as Cisco (Catalyst, Nexus, ACI, SD-Access), Juniper Junos, or equivalent platforms
  • Minimum 5 years of experience with Layer 2 - 3 networking and at least 3 years with layer 4 - 7 technologies, including routing protocols (BGP, OSPF, EIGRP), VLANs, spanning tree, QoS, and load balancing
  • Minimum 3 years of experience implementing and managing network security technologies, including firewalls, VPNs, NAC, IDS/IPS, and secure segmentation strategies
  • Minimum 5 years supporting cloud and hybrid cloud networking architectures in AWS or Azure
  • Minimum 3 years of experience working in regulated federal environments with document exposure to security frameworks such as NIST 800-53, RMF, FISMA, or FedRAMP
  • Must be a US citizen who has the ability to obtain a Public Trust Security Clearance
Job Responsibility
Job Responsibility
  • Lead the architecture, design, and engineering of enterprise network infrastructure, including routing, switching, inter-site connectivity, and secure external integrations
  • Develop and maintain network roadmaps aligned with evolving business, scientific, security, and regulatory requirements
  • Evaluate, test, and implement emerging networking technologies to maintain a modern, scalable, and resilient infrastructure
  • Provide expert-level technical guidance on network design supporting data centers, HPC environments, enterprise hosting platforms, and hybrid cloud integrations
  • Oversee day-to-day network operations, including configuration management, patching, upgrades, hardware lifecycle management, and incident troubleshooting
  • Ensure timely detection, escalation, and resolution of network incidents, including after-hours support when required
  • Monitor network performance and availability
  • perform root cause analysis and trend forecasting to improve reliability and service delivery
  • Ensure adherence to change management and configuration management standards, maintaining accurate and current technical documentation
  • Collaborate with cybersecurity teams to implement secure network configurations, segmentation, access control, and monitoring capabilities
  • Fulltime
Read More
Arrow Right

Video Retention System (VRS) Application SME

We are seeking an experienced Axon Architect / Engineer to support a Federal Gov...
Location
Location
United States , Arlington
Salary
Salary:
87120.00 - 181500.00 USD / Year
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 6 years of experience architecting and integrating Axon ecosystem technologies in a public safety environment
  • Bachelor's degree, One-and-one-half (1.5) years of additional experience can substitute for one (1) year of a typical degree program
  • Ability to obtain a Public Trust clearance
Job Responsibility
Job Responsibility
  • Design and implement end-to-end Axon ecosystem architectures including video ingestion, secure storage, retention enforcement, and digital evidence lifecycle management
  • Architect secure integrations between Axon Evidence and federal Records Management Systems (RMS), Computer Aided Dispatch (CAD), and investigative platforms
  • Develop retention schedules and legal hold processes aligned with federal records management statutes and client policies
  • Lead hybrid and secure cloud integration strategies within federal security frameworks (FedRAMP-aligned environments where applicable)
  • Oversee device lifecycle management including firmware updates, deployments, and system upgrades
  • Conduct operational workflow assessments within law enforcement divisions to optimize evidence intake, categorization, sharing, and disclosure processes
  • Analyze storage utilization trends, chain-of-custody metrics, and compliance reporting data
  • Develop executive dashboards and performance metrics to support leadership decision-making
  • Translate investigative and operational requirements into technical solution roadmaps and implementation plans
  • Support federal audits, OIG reviews, legal discovery, and FOIA requests with detailed analytical documentation
What we offer
What we offer
  • Medical, dental, and vision insurance with an employer contribution
  • Flexible spending or health savings account
  • Life and AD&D insurance
  • Short and long term disability coverage
  • Paid time off
  • Employee assistance
  • Participation in a 401k program with company match
  • Additional voluntary or legally-required benefits
  • Fulltime
Read More
Arrow Right