Government Compliance Technical Specialist

Posted 1ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Government compliance specialist advancing FedRAMP, TX-RAMP, and IRAP programs for BeyondTrust’s identity security SaaS. Automating evidence collection and managing cloud compliance documentation and remediation.

Responsibilities:

  • Lead technical compliance build activities for FedRAMP 20x readiness, including interpreting KSIs, defining evidence strategies, and coordinating machine-readable compliance outputs
  • Own day-to-day management and execution of FedRAMP Moderate/Class C continuous monitoring, including deliverables, POA&M tracking, and deviation requests
  • Author and maintain System Security Plans (SSPs), Security Decision Records (SDRs), and other compliance documentation in human- and machine-readable formats
  • Manage findings and remediation tracking across government compliance programs
  • Coordinate with engineering, security, and cloud operations teams to gather evidence, validate control implementation, and close compliance gaps
  • Support GovRAMP, TX-RAMP, IRAP, and other government or public-sector compliance programs
  • Manage relationships with Third Party Assessment Organizations (3PAOs) and agency stakeholders
  • Track and report government program health
  • Monitor FedRAMP policy changes and translate framework evolution into a compliance roadmap
  • Automate evidence collection pipelines and indicator health tracking
  • Support program management of government compliance workstreams alongside product, security, and engineering teams

Requirements:

  • Minimum 3 years in FedRAMP program management and technical compliance
  • 4–7 years of experience in information security, compliance, or GRC
  • Demonstrated ability to run a FedRAMP Moderate program, including SSP authorship, ConMon execution, POA&M management, and assessor coordination
  • Deep working knowledge of NIST SP 800-53 controls and practical implementation in cloud environments
  • Strong familiarity with FedRAMP 20x concepts, including Key Security Indicators (KSIs), machine-readable evidence frameworks, and continuous assessment models
  • Ability to interpret and define KSIs in the context of BeyondTrust's compliance posture
  • Ability to coordinate across engineering, infrastructure, legal, and operations teams to gather evidence and drive remediation to closure
  • Experience building or supporting automated compliance evidence pipelines
  • Experience with GRC tooling for findings management, evidence collection, and program tracking
  • Ability to track and manage multiple concurrent workstreams, surface blockers, and maintain delivery cadences
  • Strong written and verbal communication skills to translate technical compliance information to varying audiences

Benefits:

  • Flexibility, trust, and continual learning culture
  • Employee support and inclusive workplace culture
  • Diversity and inclusion initiatives