FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in managing FedRAMP compliance, conducting security assessments, and implementing NIST 800-53 controls. Proficient in coordinating security communications and integrating compliance into development processes.
Highest-signal resume keywords
FedRAMP Compliance ManagementNIST 800-53 ImplementationSecurity Risk AssessmentCloud Security (AWS, Azure, Google Cloud)CISSP or Equivalent Certification
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information SecurityCybersecurityCompliance ExperienceVulnerability ManagementIncident ResponseSecurity OperationsContinuous MonitoringSecurity AssessmentsPOA&M ManagementZero Trust Architecture
Soft Skills
CommunicationLeadershipCollaborationMatrix Management
Tools & Technologies
SIEM PlatformsVulnerability ScannersEDRIAMCloud-Native Security ServicesAutomated Compliance PlatformsGRC Tools
Certifications & Qualifications
CISSPCISMGSLCCAP
Industry Keywords
FedRAMPFISMANIST SP 800-37 RMFNIST 800-171Federal Compliance ProgramsSecurity ReviewsCloud MigrationTechnology Transformation
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecuritySDLC
About the role
Key responsibilities & impact- Serve as the designated ISSO for FedRAMP-authorized systems
- Maintain the organization's Authority to Operate and ongoing compliance
- Lead monthly, quarterly, and annual FedRAMP continuous monitoring reporting
- Coordinate annual assessments, independent audits, penetration testing, and security reviews with 3PAOs
- Manage security communications with federal agencies, sponsoring organizations, and stakeholders
- Conduct security risk assessments and vulnerability analyses
- Review and monitor POA&M items through remediation
- Evaluate security impacts of system changes and support Significant Change Request submissions
- Ensure implementation and effectiveness of NIST 800-53 controls
- Facilitate security reviews for architecture changes, technologies, and cloud deployments
- Maintain FedRAMP security documentation and audit-ready compliance artifacts
- Monitor security events, incidents, and compliance metrics
- Validate remediation efforts and track compliance KPIs
- Participate in security incident investigations and response
- Partner with Engineering and DevOps to integrate compliance into development and deployment
- Provide security guidance throughout the SDLC
- Support cloud migration, modernization, and technology transformation initiatives
- Ensure security awareness training meets FedRAMP requirements
- Matrix manage resources participating in the FedRAMP Program
Requirements
What you’ll need- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or related field; equivalent work experience may be considered in lieu of degree requirements
- 5+ years of information security, cybersecurity, or compliance experience
- 3+ years supporting FedRAMP, FISMA, or federal compliance programs
- Experience maintaining FedRAMP Moderate or High authorized environments
- Experience supporting security assessments, audits, and continuous monitoring activities
- Experience with AWS, Azure, or Google Cloud
- Strong understanding of FedRAMP requirements, NIST SP 800-53, NIST 800-37 RMF, FISMA, NIST 800-171, Zero Trust Architecture, vulnerability management, security operations, and incident response
- Familiarity with SIEM platforms, vulnerability scanners, EDR, IAM, and cloud-native security services
- Preferred: CISSP, CISM, GSLC, CAP, or equivalent cybersecurity certification
- Preferred: experience acting as ISSO, Security Compliance Manager, or FedRAMP Program Manager
- Preferred: experience supporting federal agencies or government contractors
- Preferred: knowledge of automated compliance platforms and GRC tools
- Preferred: experience leveraging AI and automation for compliance reporting, evidence collection, and POA&M management
- Preferred: experience with AWS GovCloud or Azure Government environments
Benefits
Comp & perks- Annual incentive bonus
- Country-specific benefits
- Accommodation or adjustment support during the hiring process
