Government Compliance Technical Specialist
Posted 1ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Government compliance specialist advancing FedRAMP, TX-RAMP, and IRAP programs for BeyondTrust’s identity security SaaS. Automating evidence collection and managing cloud compliance documentation and remediation.
Responsibilities:
- Lead technical compliance build activities for FedRAMP 20x readiness, including interpreting KSIs, defining evidence strategies, and coordinating machine-readable compliance outputs
- Own day-to-day management and execution of FedRAMP Moderate/Class C continuous monitoring, including deliverables, POA&M tracking, and deviation requests
- Author and maintain System Security Plans (SSPs), Security Decision Records (SDRs), and other compliance documentation in human- and machine-readable formats
- Manage findings and remediation tracking across government compliance programs
- Coordinate with engineering, security, and cloud operations teams to gather evidence, validate control implementation, and close compliance gaps
- Support GovRAMP, TX-RAMP, IRAP, and other government or public-sector compliance programs
- Manage relationships with Third Party Assessment Organizations (3PAOs) and agency stakeholders
- Track and report government program health
- Monitor FedRAMP policy changes and translate framework evolution into a compliance roadmap
- Automate evidence collection pipelines and indicator health tracking
- Support program management of government compliance workstreams alongside product, security, and engineering teams
Requirements:
- Minimum 3 years in FedRAMP program management and technical compliance
- 4–7 years of experience in information security, compliance, or GRC
- Demonstrated ability to run a FedRAMP Moderate program, including SSP authorship, ConMon execution, POA&M management, and assessor coordination
- Deep working knowledge of NIST SP 800-53 controls and practical implementation in cloud environments
- Strong familiarity with FedRAMP 20x concepts, including Key Security Indicators (KSIs), machine-readable evidence frameworks, and continuous assessment models
- Ability to interpret and define KSIs in the context of BeyondTrust's compliance posture
- Ability to coordinate across engineering, infrastructure, legal, and operations teams to gather evidence and drive remediation to closure
- Experience building or supporting automated compliance evidence pipelines
- Experience with GRC tooling for findings management, evidence collection, and program tracking
- Ability to track and manage multiple concurrent workstreams, surface blockers, and maintain delivery cadences
- Strong written and verbal communication skills to translate technical compliance information to varying audiences
Benefits:
- Flexibility, trust, and continual learning culture
- Employee support and inclusive workplace culture
- Diversity and inclusion initiatives




















