Senior FedRamp Program Manager

Jobgether SRL

United States

On-site

USD 180,000 - 240,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Floating holidays
Wellness day
Employee Resource Groups
Inclusive workplace

Job summary

Jobgether SRL in the United States seeks a Senior FedRAMP Program Manager to own the company-side FedRAMP program within a partner-managed environment. You will translate FedRAMP and NIST SP 800-53 requirements into clear actions, owners, deadlines, and evidence expectations, coordinating with engineering, cloud, security, IT, legal, product, and operations.

This role requires independent judgment, strong organization, and the ability to drive commitments without direct management authority to

Qualifications

  • 7+ years of relevant professional experience in security, compliance, technical program management, risk management, cloud security, or related disciplines.
  • Demonstrated ownership of a substantial portion of a FedRAMP authorization lifecycle, including readiness or gap assessments, control implementation and evidence readiness, assessment support, POA&M remediation, authorization activities.
  • Experience operating a FedRAMP program after authorization, including continuous monitoring and evidence collection.
  • Strong working knowledge of NIST SP 800-53 and the FedRAMP Moderate baseline.
  • Excellent written and verbal communication skills for engineers, business stakeholders, assessors, and leadership.

Responsibilities

  • Own day-to-day execution of the FedRAMP program, managing milestones, risks, deadlines, and follow-through.
  • Translate requirements, findings, and service-level commitments into actionable plans with owners and due dates.
  • Maintain an authoritative view of program status and proactively identify risks affecting assessments or deadlines.
  • Coordinate evidence collection, remediation activities, and control narratives for partner-managed records.
  • Act as the quality gate for evidence and remediation responses, ensuring submissions are complete and accurate.
  • Provide concise reporting on program status, findings, remediation progress, and material risks.

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior FedRamp Program Manager based in United States.

This role serves as the day-to-day owner of the company-side FedRAMP program within a partner-managed compliance environment.

You will translate FedRAMP and NIST SP 800-53 requirements into clear actions, owners, deadlines, and evidence expectations.

The position combines program execution, compliance expertise, evidence quality, remediation coordination, and cross-functional leadership.

You will work closely with engineering, cloud, security, IT, legal, product, operations, and external compliance partners.

As an individual contributor and subject-matter expert, you will independently assess program readiness and identify risks before they become compliance blockers.

The role requires strong judgment, organization, communication, and the ability to drive commitments without direct management authority.

Success means maintaining an organized, assessment-ready, sustainable FedRAMP program with reliable evidence and timely remediation.

Accountabilities
  • Own day-to-day execution of the company-side FedRAMP program, managing milestones, dependencies, risks, deadlines, and internal follow-through.
  • Translate FedRAMP requirements, findings, partner requests, and service-level commitments into actionable plans with defined owners, due dates, evidence expectations, and acceptance criteria.
  • Maintain an authoritative view of program status and proactively identify risks that could affect assessments, remediation, continuous monitoring, or authorization deadlines.
  • Assess overall program readiness and identify systemic gaps in controls, evidence, ownership, processes, and dependencies.
  • Independently determine priorities and next actions, resolve routine program issues, and elevate material risks, disputed requirements, missed commitments, and matters requiring specialized intervention.
  • Coordinate organizational and procedural controls, evidence collection, remediation activities, control narratives, and other company inputs required for partner‑managed FedRAMP records.
  • Review evidence for completeness, accuracy, relevance, currency, traceability, and consistency with applicable requirements before external submission.
  • Act as the company-side quality gate for evidence and remediation responses, requiring corrections when submissions are incomplete or inadequate.
  • Track findings from assessments, continuous monitoring, and authorized testing through assignment, remediation, evidence submission, and closure.
  • Establish internal remediation deadlines based on external commitments, risk, dependencies, and program requirements.
  • Serve as the primary operational interface with external FedRAMP infrastructure and compliance partners and coordinate actions arising from continuous‑monitoring activities.
  • Partner with Software Engineering and Cloud Engineering to communicate technical compliance requirements, remediation expectations, deadlines, and evidence needs without performing technical remediation directly.
  • Coordinate with Security, IT, Support, Operations, Product, Legal, and leadership on organizational controls, process changes, contractual considerations, and FedRAMP obligations.
  • Drive commitments across teams without direct reporting authority through clear requirements, accountability, follow-through, and escalation.
  • Maintain visibility into FedRAMP scope, systems, workflows, integrations, control inheritance, and shared‑responsibility boundaries.
  • Coordinate reviews of product, infrastructure, operational, and process changes that may affect FedRAMP scope or control responsibilities.
  • Continuously improve compliance processes, documentation, evidence practices, ownership models, and operating routines.
  • Provide concise reporting to security and compliance leadership on program status, deadlines, findings, remediation progress, evidence quality, dependencies, and material risks.
  • Escalate threatened deadlines, disputed requirements, repeated quality issues, unresolved ownership gaps, and external dependencies requiring management or executive intervention.
  • Use approved AI‑enabled tools and automation to improve program efficiency while independently validating outputs against authoritative requirements and program context.
Requirements
  • 7+ years of relevant professional experience in security, compliance, technical program management, risk management, cloud security, or related disciplines, including at least 3 years of direct FedRAMP program execution or ownership experience.
  • Demonstrated ownership of a substantial portion of a FedRAMP authorization lifecycle, including readiness or gap assessments, control implementation and evidence readiness, assessment support, POA&M remediation, authorization activities, and transition to continuous monitoring.
  • Experience operating a FedRAMP program after authorization, including continuous monitoring, recurring evidence collection, remediation deadlines, scope considerations, significant changes, and assessment preparation.
  • Strong working knowledge of NIST SP 800-53 and the FedRAMP Moderate baseline, including control interpretation, implementation statements, control inheritance, shared responsibility, assessment findings, and evidence requirements.
  • Experience with cloud or compliance shared‑responsibility models and the ability to identify control ownership, inherited responsibilities, evidence dependencies, and gaps between provider and customer obligations.
  • Proven ability to translate regulatory requirements into clear expectations, owners, deadlines, evidence requirements, and acceptance criteria for technical and non‑technical teams.
  • Experience evaluating whether evidence and remediation responses adequately address control requirements or findings, with the judgment to reject inadequate submissions before external review.
  • Demonstrated ability to drive remediation and compliance commitments across Software Engineering, Cloud or Platform Engineering, IT, Security, Support, Product, and other teams without direct management authority.
  • Working technical knowledge of SaaS and cloud environments, including identity and access management, CI/CD, vulnerability management, logging and monitoring, system boundaries, encryption, change management, software dependencies, and cloud infrastructure.
  • Ability to recognize when specialized technical validation is required and engage the appropriate subject‑matter experts rather than serving as the hands‑on implementer.
  • Strong ability to independently establish program structure, resolve ambiguous ownership, set priorities and deadlines, and elevate matters requiring management, risk‑owner, partner, or technical‑specialist decisions.
  • Experience leveraging AI‑enabled tools, automation, or advanced systems to improve productivity, analysis, and program execution, with sound judgment in validating outputs.
  • Excellent written and verbal communication skills, with the ability to communicate requirements, deficiencies, risks, program status, and decisions clearly to engineers, business stakeholders, external partners, assessors, and leadership.
  • Must be a U.S. Person and reside in the United States.
Preferred Qualifications
  • 5+ years of direct FedRAMP program execution experience and/or experience owning multiple authorization lifecycles.
  • Experience independently leading company‑side execution through a FedRAMP authorization lifecycle, from program structure and organizational readiness through assessment coordination and continuous monitoring.
  • Experience operating in a fully self‑managed FedRAMP environment, particularly within a SaaS or cloud software provider.
  • Experience in a partner‑managed FedRAMP implementation with responsibility for company‑side execution, evidence quality, remediation tracking, control ownership, and shared‑responsibility coordination.
  • Experience working directly with FedRAMP assessors, 3PAOs, agency or authorization stakeholders, managed hosting providers, or other external authorization and compliance partners.
  • Experience supporting FedRAMP scope, authorization‑boundary, significant‑change, change‑management, or continuous‑monitoring decisions in a SaaS or cloud environment.
Benefits
  • Supportive work environment focused on employee experience and healthy work/life balance.
  • Floating holidays.
  • Quarterly no‑questions‑asked wellness day.
  • Opportunities to participate in Employee Resource Groups and contribute to an inclusive workplace.
  • Opportunity to work across security, compliance, engineering, product, legal, operations, and external compliance stakeholders.
Data Privacy Notice:

By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior FedRamp Program Manager
Senior FedRamp Program Manager

Agiloft • United States

Remote
USD 120,000 - 190,000
Account Manager, Embedded Security & Intelligence Programs
Account Manager, Embedded Security & Intelligence Programs

Jobgether SRL • United States

Remote
USD 120,000 - 130,000
Remote-first work environment
Employer-provided health plans
401(k) with employer matching
+1
Delivery Analyst
Delivery Analyst

Jobgether SRL • United States

On-site
USD 112,000 - 168,000
Remote work opportunity
Health benefits
401(k) savings plan
+1
Senior DevOps/Compliance Engineer (FedRAMP Continuous Compliance)
Senior DevOps/Compliance Engineer (FedRAMP Continuous Compliance)

UberEther • United States

Hybrid
USD 150,000 - 190,000
Medical Insurance
Dental Insurance
Vision Insurance
+6
Senior DevOps/Compliance Engineer (FedRAMP Continuous Compliance)
Senior DevOps/Compliance Engineer (FedRAMP Continuous Compliance)

UberEther • Sterling (VA)

On-site
USD 150,000 - 190,000
Medical, Dental & Vision
401K with company match
Paid time off
+3
Senior GRC Engineer - GOV (FedRAMP 20x)
Senior GRC Engineer - GOV (FedRAMP 20x)

Workstreet • Northern (KY)

On-site
USD 150,000 - 210,000
Career development
Training reimbursement
Competitive compensation
+2
Lead Software Engineer
Lead Software Engineer

Jobgether SRL • United States

Remote
USD 160,000 - 190,000
Fully remote within the United States
Competitive salary $160k–$190k
Comprehensive benefits
Software Engineer, Data Systems (Python)
Software Engineer, Data Systems (Python)

re-zoo-me • Northern (KY)

Hybrid
USD 140,000 - 155,000
Equity
Medical, dental, vision benefits
401(k) retirement plan
+6
Senior Implementation Manager
Senior Implementation Manager

Jobgether SRL • United States

On-site
USD 95,000 - 110,000
Competitive base salary
Medical, dental, and vision insurance
HSA and FSA
+5
FedRamp Compliance Analyst
FedRamp Compliance Analyst

Abnormal AI • United States

On-site
USD 115,000 - 173,000