Senior Federal IT Auditor

Tanium

Reston (VA)

Hybrid

USD 100,000 - 155,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity awards
Medical, dental and vision coverage
401(k) retirement plan with company-mÃ
Flexible spending accounts

Job summary

Tanium is seeking a qualified GRC professional to support FedRAMP compliance and cloud authorization activities. This hybrid role involves collaboration with engineering, security, and product teams to ensure that Tanium’s cloud offerings meet federal requirements across civilian and defense environments.

The ideal candidate brings hands-on FedRAMP experience, familiarity with DoD IL4/IL5, and strong documentation skills for SSPs, POA&Ms, and SAPs.

Qualifications

  • Experience with FedRAMP compliance processes and federal risk management frameworks.
  • Experience contributing to authorization package development (SSPs, POA&Ms, SAPs) and continuous monitoring.
  • Familiarity with DoD SRG guidance and NIST SP 800-53 controls in cloud environments.
  • Ability to coordinate with 3PAOs, federal agencies, and internal engineering/security teams.

Responsibilities

  • Contribute to authorization package documentation (SSPs, POA&Ms, SAPs) aligned with FedRAMP High requirements.
  • Coordinate with 3PAOs and federal agency sponsors on scheduling, evidence collection, and artifact prep for assessments.
  • Implement and document NIST SP 800-53 controls and validate effectiveness across FedRAMP and DoD boundaries.
  • Perform continuous monitoring tasks including monthly vulnerability reviews and POA&M tracking.
  • Assess system architectures with cloud/infrastructure teams to identify compliance gaps and readiness before 3PAO assessments.
  • Develop and improve FedRAMP policies and internal documentation standards.

Skills

FedRAMP compliance
NIST SP 800-53
DoD IL4/IL5
3PAO coordination
Cloud security
Security governance

Education

Bachelor's degree in Cybersecurity or Information Security

Job description

The Basics

The ideal candidate has solid, hands‑on experience with FedRAMP compliance processes and federal risk management frameworks, including exposure to FedRAMP High and DoD Impact Level (IL4/IL5) environments. This role supports the organization’s cloud authorization activities by contributing to authorization package development, continuous monitoring, and control implementation efforts. Working under the direction of Senior GRC members, it partners closely with engineering, security, and product teams to ensure Tanium’s cloud offerings meet and maintain federal compliance requirements across civilian and defense environments.

The ideal candidate has solid, hands‑on experience with FedRAMP compliance processes and federal risk management frameworks, including exposure to FedRAMP High and DoD Impact Level (IL4/IL5) environments. This role supports the organization’s cloud authorization activities by contributing to authorization package development, continuous monitoring, and control implementation efforts. Working under the direction of Senior GRC members, it partners closely with engineering, security, and product teams to ensure Tanium’s cloud offerings meet and maintain federal compliance requirements across civilian and defense environments.

This is a hybrid position, which will require in person attendance several days each week in one of the following locations: Addison, TX; Bellevue, WA; Durham, NC; Emeryville, CA; or Reston, VA.
What You'll Do
  • Contribute to authorization package documentation (SSPs, POA&Ms, SAPs), with attention to FedRAMP High baseline requirements
  • Coordinate with 3PAOs and federal agency sponsors on scheduling, evidence collection, and artifact prep for FedRAMP and DoD IL4/IL5 assessments; respond to assessor inquiries
  • Implement and document NIST SP 800‑53 controls, validating effectiveness and gathering evidence across FedRAMP Moderate, High, and DoD IL4/IL5 boundaries
  • Execute continuous monitoring: monthly vulnerability scanning reviews, POA&M tracking, and deliverables for sponsoring agencies and DoD stakeholders, including annual assessment support
  • Assess system architectures with cloud/infrastructure teams to identify compliance gaps, and conduct gap analyses/readiness assessments ahead of 3PAO assessments
  • Develop and improve FedRAMP policies, procedures, control implementation descriptions, and internal documentation standards, aligned with PMO and DoD SRG guidance
  • Review and respond to federal customer security questionnaires and due diligence requests
  • Prepare compliance status summaries, POA&M updates, and control assessment findings for senior leadership
  • Monitor FedRAMP PMO, NIST, and DoD SRG updates and federal cybersecurity directives, flagging relevant changes to the GRC team
  • Participate in cross-functional projects integrating FedRAMP High and DoD IL4/IL5 requirements into product development
  • Working knowledge of NIST SP 800‑53 (Rev 4/5) High baseline controls and their practical application in cloud environments
You Should Be Knowledgeable In
  • Familiarity with the DoD Cloud Computing SRG and IL2/IL4/IL5 requirements and how they relate to FedRAMP
  • Experience contributing to authorization artifacts (SSP, SAP, SAR, POA&M, ConMon deliverables)
  • Familiarity with adjacent frameworks: FedRAMP, FISMA, NIST SP 800‑53, NIST SP 800‑37 (RMF), NIST SP 800‑171, GovRAMP, CMMC, NIST CSF
  • Experience with cloud/SaaS environments, particularly AWS GovCloud, Azure Government, or other IL-accredited platforms
We’re Looking for Someone With
Experience
  • 5+ years in information security, compliance, or risk management, with federal program exposure
  • 5+ years of hands‑on FedRAMP experience (CSP compliance, 3PAO assessment support, or federal agency ISSO activities); FedRAMP and DoD IL2 (IL4/IL5 preferred)
  • Strong written and verbal communication skills across technical and non‑technical audiences; experience producing audit findings, policies, and compliance reports
  • Certifications preferred: CISSP, CISA, CAP, Security+, or equivalent
About Tanium

Tanium is the Autonomous IT company. Driven by AI and real‑time endpoint intelligence, Tanium Autonomous IT empowers IT and security teams to make their organizations unstoppable.

Many of the world’s leading organizations trust Tanium’s single, unified platform for endpoint management and security toinnovate faster, stay resilient and move business forward with confidence, at scale. To learn how Tanium delivers Autonomous IT for unstoppable business – visitwww.tanium.comand follow us onLinkedInandX.

On a mission. Together.

At Tanium, we are stewards of a culture that emphasizes the importance of collaboration, respect, and diversity. In our pursuit of revolutionizing the way some of the largest enterprises and governments in the world solve their most difficult IT challenges, we are strengthened by our unique perspectives and by our collective actions.

As a global organization with stakeholders around the world, it’s imperative that the diversity of our customers and communities is reflected internally in our team members. We strive to create a diverse and inclusive environment where everyone feels they have opportunities to succeed and grow because we know that only together can we do great things.

Our commitment to excellence and innovation has earned us a place on the Forbes Cloud 100 list for ten consecutive years, and we continue to be recognized worldwide as a great place to work.

Each of our team members has 5 days set aside as volunteer time off (VTO) to contribute to the communities they live in and give back to the causes they care about most.

What You’ll Get

The annual base salary range for this full‑time position is $100,000 to $155,000. This range is an estimate for what Tanium will pay a new hire. The actual annual base salary offered may be adjusted based on a variety of factors, including but not limited to, location, education, skills, training, and experience.

In addition to an annual base salary, team members will receive equity awards and a generous benefits package consisting of medical, dental and vision plan, family planning benefits, health savings account, flexible spending account, transportation savings account, 401(k) retirement savings plan with company match, life, accident and disability coverage, business travel accident insurance, employee assistance programs, disability insurance, and other well‑being benefits.

Tanium is an Equal Opportunity and Aff…? All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, gender identity, sexual orientation, disability, protected Veteran status, or other legally protected categories. If you require a reasonable accommodation in searching for a job opening, completing an application, interviewing, or completing any pre‑employment testing or requirements, please contact accommodations@tanium.com. For more information refer to the “Know Your Rights” poster which is available here - https://www.eeoc.gov/poster.

Please be aware of job offers coming from people claiming to be Tanium employees. Tanium employees will only use @tanium.com email addresses to communicate with you, will have video interviews with you, and will never ask you for money.

This link leads to the machine readable files that are made available in response to the federal Transparency in Coverage Rule and includes negotiated service rates and out‑of‑network allowed amounts between health plans and healthcare providers. The machine‑readable files are formatted to allow researchers, regulators, and application developers to more easily access and analyze data.

For more information on how Tanium processes your personal data, please see our Privacy Policy.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • Bellevue (WA)

Hybrid
USD 100,000 - 155,000
Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • Emeryville (CA)

Hybrid
USD 100,000 - 155,000
Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • North Carolina

Hybrid
USD 100,000 - 155,000
Equity awards
Medical, dental and vision
Family planning benefits
+6
Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • Addison (TX)

Hybrid
USD 100,000 - 155,000
Equity awards
Medical, dental and vision plans
401(k) with company match
Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • Durham (NC)

Hybrid
USD 100,000 - 155,000
Senior Federal IT Auditor
Senior Federal IT Auditor

Tanium • United States

Hybrid
USD 100,000 - 155,000
Equity awards
Medical, dental & vision
401(k) with company match
+2
IT Audit Manager
IT Audit Manager

Tanium • Bellevue (WA)

Hybrid
USD 101,000 - 155,000
IT Audit Manager
IT Audit Manager

Tanium • Reston (VA)

Hybrid
USD 101,000 - 155,000
Medical insurance
Dental insurance
Vision plan
+2
IT Audit Manager
IT Audit Manager

Tanium • Durham (NC)

Hybrid
USD 101,000 - 155,000
Medical plan
Dental plan
Vision plan
+2
IT Audit Manager
IT Audit Manager

Tanium • Addison (TX)

Hybrid
USD 101,000 - 155,000
Equity awards
Volunteer time off