Be your best when it really matters. At the #MomentOfService
FedRAMP Information System Security Officer / GRC Manager
Location
United States
Posted
4 days ago
Salary
$160K - $190K / year
Job Description
Role Description
IFS is expanding secure cloud capabilities to support U.S. Federal Civilian agencies, DoD, and the Defense Industrial Base.
- Support ongoing FedRAMP authorization including SSP, POA&M, evidence, and 3PAO coordination.
- Manage and oversee NIST SP 800-53 compliance.
- Oversee continuous monitoring, vulnerabilities, incidents.
- Collaborate cross-functionally across various IFS teams.
- Lead future FedRAMP system readiness.
- Serve as a primary liaison with 3PAO during annual assessments.
- Track and remediate findings within FedRAMP SLAs (30/90/180 days).
- Develop and maintain security policies and procedures.
- Support customer security questionnaires and audits.
Qualifications
- 6+ years in ISSO, GRC, cybersecurity.
- Expertise with FedRAMP, NIST SP 800-53, CMMC.
- Experience with SSPs and security documentation.
- Familiarity with AWS and Azure Gov Cloud.
- U.S. Citizenship.
- Strong documentation and technical writing skills.
- Ability to obtain and maintain security clearance.
Requirements
- DoD IL4/IL5 or DIB experience.
- Certifications (CISSP, CISM, CISA, CAP, CCSP).
- Experience with vulnerability scanning tools (Nessus, Qualys, ZAP, etc.).
- Background in SaaS or cloud service provider environments.
Benefits
- Salary Range: $160,000 to $190,000 plus bonus potential.
- Flexible paid time off, including sick and holiday.
- Medical, dental, & vision insurance.
- 401K with Company contribution.
- Flexible spending accounts.
- Life insurance and disability benefits.
- Tuition assistance.
- Community involvement and volunteering events.
Job Requirements
- 6+ years in ISSO, GRC, cybersecurity.
- Expertise with FedRAMP, NIST SP 800-53, CMMC.
- Experience with SSPs and security documentation.
- Familiarity with AWS and Azure Gov Cloud.
- U.S. Citizenship.
- Strong documentation and technical writing skills.
- Ability to obtain and maintain security clearance.
- DoD IL4/IL5 or DIB experience.
- Certifications (CISSP, CISM, CISA, CAP, CCSP).
- Experience with vulnerability scanning tools (Nessus, Qualys, ZAP, etc.).
- Background in SaaS or cloud service provider environments.
Benefits
- Salary Range: $160,000 to $190,000 plus bonus potential.
- Flexible paid time off, including sick and holiday.
- Medical, dental, & vision insurance.
- 401K with Company contribution.
- Flexible spending accounts.
- Life insurance and disability benefits.
- Tuition assistance.
- Community involvement and volunteering events.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Staff IAM Engineer, Sailpoint
ToastWe empower the restaurant community to delight guests, do what they love, and thrive.
The Staff IAM Engineer will design, develop, and deploy SailPoint Identity Security Cloud, focusing on building complex workflows, configuring policies, and acting as a subject matter expert. Key duties include driving automation for provisioning/de-provisioning, architecting robust access controls based on least privilege, and developing comprehensive documentation for all IAM processes.
Cybersecurity Assessment and Authorization Subject Matter Expert
TekSynapTekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.
We are seeking a Cybersecurity Assessment and Authorization Subject Matter Expert (SME) to join our Defense Logistics Agency team. Serve as a Cybersecurity Subject Matter Expert (SME) for Assessment and Authorization (A&A) activities supporting Department of Defense (DoD) informa...
We are seeking a motivated and technically curious IT Engineer to help design, build, support, and continuously improve technology solutions that enable our business. This role contributes across the full lifecycle of systems and applications, collaborating with cross-functional ...
We are seeking a talented, motivated Threat Detection Engineer to join our global team. This individual will be a self-starter excited to take on ownership of complex projects with a wide degree of autonomy. This role is unique in its schedule, providing critical weekend coverage...