Senior FedRamp ISSO
Core
Single-threaded leader for the FedRAMP Moderate cloud authorization, owning security posture, compliance operations, and continuous monitoring.
Role type
Senior FedRAMP ISSO (Information Systems Security Officer)
Builds
FedRAMP Moderate authorized cloud environment for federal agency customers
Domain
Federal Cloud Security & Compliance (FedRAMP)
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
FedRAMP Moderate program ownership, NIST SP 800-53 Rev 5 expertise, System Security Plan (SSP) authoring, POA&M lifecycle management, continuous monitoring (ConMon), 3PAO assessment coordination, automation/scripting for compliance, cloud security (AWS GovCloud preferred), federal stakeholder management
Preferred skills
FedRAMP High/IL4/IL5 experience, OSCAL familiarity, compliance-as-code, DevSecOps integration, NIST AI RMF knowledge, GRC platforms, DISA STIGs
Technologies
AWS GovCloud, Azure Government, GCP, OSCAL, NIST AI RMF
Responsibilities
Own the FedRAMP program end-to-end including SSP and POA&M; maintain and defend the System Security Plan; drive POA&M management from finding to closure; lead continuous monitoring and ConMon reporting; run annual 3PAO assessments; assess security impact of system changes; serve as primary federal point of contact; collaborate with engineering on control implementation; coordinate security incident response; monitor evolving federal guidance
Seniority
Senior, hands-on IC