Manager, Government Compliance & Authorization

B Capital

United States

On-site

USD 126,180 - 154,220

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

401K match
Competitive healthcare (medical,Dental
Vision
Paid Parental Leave
Employee Stock Purchase Program
Telehealth access
Calm App
Tuition Assistance Program
Summer Fridays
Mental Health Days
Pet Insurance

Job summary

Amwell is seeking a Manager of Government Compliance & Authorization to lead FedRAMP High programs and align with CMMC and CMS MARS-E. You will architect internal systems, oversee the authorization process, and build a team.

This role partners with federal agencies and 3PAOs, requires hands-on security expertise, PM skills, and ability to drive cross-functional initiatives across cloud environments.

Qualifications

  • 7+ years of experience in information security, compliance, or risk management with at least 3 years specifically working with FedRAMP authorizations.
  • Demonstrated experience successfully achieving FedRAMP High authorization for a cloud service offering (CSO).
  • Deep knowledge of NIST SP 800-53 Rev 5 security controls, FISMA, FedRAMP baselines, and federal security authorization processes.
  • Experience managing continuous monitoring activities and maintaining active FedRAMP ATOs.
  • 3+ years of people management experience, including hiring, developing, and leading compliance or security teams.

Responsibilities

  • Lead the end-to-end authorization process for FedRAMP High, while concurrently driving alignment with CMMC Level 2/3 for DoD contracts and MARS-E 2.2 for CMS/Medicaid engagements.
  • Manage ongoing FedRAMP continuous monitoring requirements, including monthly deliverables, vulnerability management, and incident reporting to federal agencies.
  • Collaborate with engineering, security, and operations teams to develop a "comply once, satisfy many" strategy by mapping NIST SP 800-53 Rev 5 controls to CMMC (NIST SP 800-171) and MARS-E requirements to minimize redundant engineering efforts.
  • Own risk management of services provided to federal agencies, ensuring compliance with High-impact baseline.
  • Coordinate with 3PAOs to manage security assessment and authorization (SA&A) activities, including annual assessments and significant change requests.
  • Develop and maintain FedRAMP authorization packages, including System Security Plans (SSP), Plans of Action and Milestones (POA&M), and Continuous Monitoring deliverables.
  • Serve as primary point of contact for federal agency customers regarding FedRAMP compliance questions and authorization boundary matters.
  • Monitor and interpret FedRAMP policy updates and guidance from the FedRAMP PMO, implementing necessary changes to maintain compliance.
  • Build and lead a team of compliance analysts and security specialists focused on federal authorization requirements.
  • Create and deliver training programs to ensure organizational awareness of FedRAMP requirements and responsibilities.
  • Manage relationships with federal authorizing officials, cloud service providers, and other stakeholders in the authorization process.

Skills

FedRAMP High
NIST SP 800-53 Rev 5
DoD CMMC knowledge
Project management
Team leadership
Cloud security (AWS/Azure/GCP)

Education

Bachelor's degree in Information Security
Bachelor's degree in Computer Science
Master's degree preferred

Job description

Company Description

At Amwell, we’re transforming healthcare for all—powered by technology and inspired by people. Here, your ideas don’t just matter—they drive real change, improving lives on a global scale.

We marry technology and innovation with clinical excellence to provide trusted solutions that solve the healthcare industry’s biggest pain points and are on a mission to enable greater access to more convenient, affordable, and effective care.

We do this through our technology-enabled care platform that is designed to help our clients achieve their digital care ambitions – today and in the future. We offer programs spanning the full care continuum, including urgent, acute and specialty care, behavioral health, and services for the treatment of chronic conditions such as heart and cardiometabolic diseases. Programs are powered by Amwell as well as our growing partner network.

For almost two decades, Amwell has proudly served some of the largest and most sophisticated healthcare organizations in the U.S. and worldwide. Our team is passionate about technology’s role in transforming care delivery and making it more equitable, accessible, efficient, cost-effective and navigable for all.

Brief Overview

The Manager of Government Compliance & Authorization will lead the strategy, implementation, and maintenance of Amwell’s federal and state authorization programs. While a primary focus remains achieving and sustaining FedRAMP High authorization, this leader will also architect the internal systems necessary to align with CMMC (Level 2/3), CMS MARS-E, and StateRAMP requirements. The Manager will mature Amwell’s government compliance program, oversee the authorization process, lead efforts to define resources and hire staff to support the program, manage continuous monitoring activities, and serve as the primary liaison with federal stakeholders and third-party assessment organizations (3PAOs). The ideal candidate will have deep expertise in FedRAMP High requirements, strong project management skills, and the ability to work cross-functionally to implement and maintain complex compliance frameworks.

Core Responsibilities
  • Lead the end-to-end authorization process for FedRAMP High, while concurrently driving alignment with CMMC Level 2/3 for DoD contracts and MARS-E 2.2 for CMS/Medicaid engagements
  • Manage ongoing FedRAMP continuous monitoring requirements, including monthly deliverables, vulnerability management, and incident reporting to federal agencies
  • Collaborate with engineering, security, and operations teams to develop a "comply once, satisfy many" strategy by mapping NIST SP 800-53 Rev 5 controls to CMMC (NIST SP 800-171) and MARS-E requirements to minimize redundant engineering efforts
  • Own risk management of services provided to federal agencies, ensuring compliance with High-impact baseline
  • Coordinate with 3PAOs to manage security assessment and authorization (SA&A) activities, including annual assessments and significant change requests
  • Develop and maintain FedRAMP authorization packages, including System Security Plans (SSP), Plans of Action and Milestones (POA&M), and Continuous Monitoring deliverables
  • Serve as primary point of contact for federal agency customers regarding FedRAMP compliance questions and authorization boundary matters
  • Monitor and interpret FedRAMP policy updates and guidance from the FedRAMP PMO, implementing necessary changes to maintain compliance
  • Build and lead a team of compliance analysts and security specialists focused on federal authorization requirements
  • Create and deliver training programs to ensure organizational awareness of FedRAMP requirements and responsibilities
  • Manage relationships with federal authorizing officials, cloud service providers, and other stakeholders in the authorization process
Qualifications
  • 7+ years of experience in information security, compliance, or risk management with at least 3 years specifically working with FedRAMP authorizations
  • Demonstrated experience successfully achieving FedRAMP High authorization for a cloud service offering (CSO)
  • Deep knowledge of NIST SP 800-53 Rev 5 security controls, FISMA, FedRAMP baselines, and federal security authorization processes
  • Experience managing continuous monitoring activities and maintaining active FedRAMP ATOs
  • 3+ years of people management experience, including hiring, developing, and leading compliance or security teams
  • Strong understanding of cloud infrastructure security (AWS, Azure, or GCP) in FedRAMP environments
  • Familiarity with healthcare compliance frameworks (HIPAA, HITRUST) and their intersection with federal requirements
  • Proven project management skills with ability to coordinate complex, multi-stakeholder authorization efforts
  • Experience working with 3PAOs and understanding of security assessment methodologies
  • Excellent written and verbal communication skills with ability to translate technical security concepts for various audiences
  • Relevant certifications such as CISSP, CISM, CAP, or FedRAMP-specific certifications preferred
  • Bachelor's degree in Information Security, Computer Science, or related field required; Master's degree preferred
  • Ability to obtain and maintain security clearance if required
Do Well. Live Well. At Amwell.

Driven by our mission and values, we foster a workplace where Delivering Awesome, being Customer First and operating as One Team aren’t just aspirations – they are how we work, every day.

Our people are our greatest asset. We strive to empower their growth and development not only as Amwellians but as individuals, through generous total rewards packages, a virtual-first work environment, work-life flexibility, including Summer Fridays and designated Mental Health Days, as well as opportunities to stretch and learn – to name a few. It’s our people who truly differentiate us. Ask anyone and they’ll tell you – you’ll never work with more passionate, more driven and more caring team members.

We champion a culture of respect and inclusion, accountability and integrity, innovation and collaboration. At Amwell, you’ll do the most meaningful work of your career—improving healthcare for millions, growing alongside incredible teammates, and being valued for who you are.

Benefits
  • Flexible Personal Time Off (Vacation time)
  • 401K match
  • Competitive healthcare, dental and vision insurance plans
  • Paid Parental Leave (Maternity and Paternity leave)
  • Employee Stock Purchase Program
  • Free access to Amwell’s Telehealth Services, SilverCloud and The Clinic by Cleveland Clinic’s second opinion program
  • Free Subscription to the Calm App
  • Tuition Assistance Program
  • Pet Insurance
Salaried, Exempt Roles

The typical base salary range for this position is $126,180 - $154,220. The actual salary offer will ultimately depend on multiple factors including, but not limited to, knowledge, skills, relevant education, experience, complexity or specialization of talent, and other objective factors. In addition to base salary, this role may be eligible for an annual bonus based on a combination of company performance and employee performance. Long-term incentive and short-term variable compensation may be offered as part of the compensation package dependent on the role. Some roles may be commission based, in which case the total compensation will be based on a commission, and the above range may not be an accurate representation of total compensation.

Further, the above range is subject to change based on market demands and operational needs and does not constitute a promise of a particular wage or a guarantee of employment. Your recruiter can share more during the hiring process about the specific salary range based on the above factors listed.

https://business.amwell.com/company/privacy-notice-applicants

Privacy Notice

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Government Compliance & Authorization
Manager, Government Compliance & Authorization

Amwell • United States

On-site
USD 126,000 - 155,000
401K match
Health insurance
Paid parental leave
Sr. Counsel, Government & Commercial
Sr. Counsel, Government & Commercial

B Capital • United States

On-site
USD 170,000 - 209,000
Flexible Personal Time Off
401K match
Competitive healthcare, dental and vis
+3
Sr. Counsel, Government & Commercial
Sr. Counsel, Government & Commercial

amwell inc • United States

On-site
USD 170,190 - 208,010
Flexible PTO
401K match
Health, dental, vision
+6
Sr. Counsel, Government & Commercial
Sr. Counsel, Government & Commercial

Amwell • United States

On-site
USD 170,000 - 209,000
401K match
Healthcare, dental and vision plans
Paid parental leave
+3
Technical Advisor
Technical Advisor

B Capital • United States

On-site
USD 154,000 - 200,000
Flexible Personal Time Off
401K match
Competitive healthcare, dental and vision insurance
+5
Sr Product Marketing Manager
Sr Product Marketing Manager

amwell inc • United States

On-site
USD 136,000 - 166,000
Flexible Personal Time Off
401K match
Competitive healthcare, dental and ...
+6
Technical Advisor
Technical Advisor

Amwell • United States

Remote
USD 154,000 - 200,000
Flexible Personal Time Off
401(k) match
Healthcare, dental and vision insurance
+6
Sr Product Marketing Manager
Sr Product Marketing Manager

SilverCloud • United States

On-site
USD 136,000 - 166,000
Flexible Personal Time Off
401K match
Healthcare, dental and vision
+6
Technical Advisor
Technical Advisor

Amwell • United States

On-site
USD 154,000 - 200,000
Flexible Personal Time Off
401K match
Competitive healthcare, dental and vision insurance plans
+4
Lead FP&A Analyst
Lead FP&A Analyst

Amwell • United States

On-site
USD 117,000 - 144,000
401K match
Competitive healthcare, dental and vis
Paid parental leave
+1