Senior Security Engineer I – GRC FedRAMP (Remote Eligible)
Core
Lead Smartsheet's FedRAMP and GovRAMP certification programs, managing federal authorizations, 3PAO assessments, and continuous monitoring to serve government and regulated customers.
Role type
Senior GRC Security Engineer (FedRAMP/GovRAMP)
Builds
Federal compliance authorizations and audit readiness for cloud SaaS platforms
Domain
US Federal Government Compliance / Cloud Security
Deliverable
client delivery
Required skills
FedRAMP/GovRAMP program management, 3PAO assessment coordination, POA&M remediation, NIST 800-53 controls, cloud security architecture understanding, federal procurement knowledge
Preferred skills
CISSP/CISM/CISA/CRISC certifications, multi-impact level (IL2/IL4/IL6) experience, DoD CMMC background, SaaS FedRAMP (JAB/Agency) pathways
Technologies
AWS/GCP/Azure, System Security Plans (SSP), Security Assessment Plans (SAP)
Responsibilities
Own FedRAMP/GovRAMP strategy and roadmaps; manage 3PAO relationships and assessments; lead continuous monitoring execution; manage POA&M processes; coordinate significant change requests; engage with authorizing officials and federal agencies; prepare comprehensive assessment packages; drive compliance automation
Seniority
Senior, hands-on IC