This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Senior Certification Manager on the certifications team at Palo Alto Networks, you will play a critical role in driving the attainment and ongoing maintenance of certifications across our product portfolio. Certifications are essential to enabling our products to be sold into key global markets. In this role, you will own the technical execution of product certifications end-to-end, partnering closely with cross-functional teams while personally contributing core certification artifacts and content required for successful outcomes.
Job Responsibility:
Own and execute certification strategies in close partnership with product management, sales, and engineering, ensuring outcomes align with company priorities, product direction, and compliance changes
Drive FedRAMP Moderate, High, and IL5 assessment activities in partnership with engineering, security, and external assessors
Apply NIST 800-53, FedRAMP, and DoD SRG requirements to define clear, actionable expectations and deliverables for internal teams
Lead audit and Continuous Monitoring (ConMon) execution, including evidence coordination, remediation planning, and POAM lifecycle management
Author and maintain the System Security Plan (SSP) and supporting artifacts as systems and processes change
Apply a deep understanding of complex security and cloud architecture to evaluate control implementation, identify gaps, and drive remediation with engineering teams
Build deep technical fluency across the product portfolio to lead discussions with assessors, agencies, and PMO certification bodies
Manage certification execution with a program management mindset by owning project plans, timelines, dependencies, and risks, and by providing clear status to stakeholders and leadership
Requirements:
5+ years of experience supporting or leading technology-focused FedRAMP risk assessments, Continuous Monitoring, and remediation efforts
Demonstrated ability to make risk-based decisions and interpret security controls in complex, real-world environments
Working knowledge of public cloud platforms (GCP, AWS, and/or Azure), including how cloud-native architectures and services implement and enforce security controls
Experience working effectively in distributed environments with multiple teams operating across different priorities and time zones
Proactive, curious, and transparent approach
assertive yet collaborative, comfortable taking ownership and driving work to completion with minimal supervision
Proven ownership of complex, cross-functional initiatives, including planning, execution, and stakeholder communication
Hands-on authorship and long-term maintenance of SSPs and supporting certification documentation
BS degree, equivalent technical degree, or equivalent military experience
CISA, CRISC, CISSP or other similar security certifications desired