Principal, Public Sector SecOps, GRC

🕒 July 29

🇺🇸 United States – Remote

💵 $160k - $170k / year

⏰ Full Time

🔴 Lead

🛡️ Security Operations

👻 Ghost score 3%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Consensus Cloud Solutions

Consensus Cloud Solutions

501 - 1000 employees

🏥 Healthcare

☁️ SaaS

🤖 Artificial Intelligence

💰 $225M Post-IPO Debt - Consensus Cloud Solutions on 2025-07

Healthcare • SaaS • Artificial Intelligence

Consensus Cloud Solutions is a public company (NASDAQ: CCSI) that started as a digital cloud faxing organization over 20 years ago and spun off from J2 Global (Ziff Davis) in October 2021. It is described as the global leader of digital cloud fax technology and provides solutions that transform unstructured digital documents into secure, advanced healthcare standard HL7/FHIR structured data. The company leverages Natural Language Processing and AI to create analytics-ready data for clinicians, enabling secure handling of healthcare documents and integration with healthcare data standards. It focuses on the healthcare industry, emphasizing secure cloud fax and document-to-data transformation.

📋 Description

• Serve as the central security and compliance leader for all public sector engagements • Lead the design, implementation, and oversight of a unified security framework that aligns with NIST 800-53 Rev. 5 controls, FedRAMP High authorizations, GovRAMP, CMMC, and emerging SLED requirements • Ensure timely threat mitigation, streamlined audit processes, and secure delivery of cloud services to government agencies • Compile and submit Monthly Continuous Monitoring (ConMon) reports, including vulnerability scans, POA&M trackers, and asset inventories • Oversee threat hunting and vulnerability remediation to ensure compliance with strict federal timelines • Escalate unremediated vulnerabilities and initiate Plan of Action and Milestones (POA&M) creation within 7 days of issue identification • Coordinate and lead Annual 3PAO Security Assessments, including penetration testing and red team exercises • Manage and maintain a compliant, hosted secure repository for storing, retrieving, and provisioning access to security packages and artifacts • Manage third parties performing public sector security functions and direct project management support for these programs • Serve as System Steward for the VA-F package in eMASS • Submit and maintain accurate documentation for marketplace listings • Oversee actionable incident response testing every 6 months • Manage background checks and reinvestigations for personnel requiring system access • Maintain current SaaS platform architecture diagrams and submit Security Change Requests (SCRs) • Contribute to non-FedRAMP commercial compliance frameworks • Provide security and compliance guidance to IT, engineering, and development teams • Identify, evaluate, and implement GRC and SecOps tools • Assist with responses to customer security assessments • Mentor junior staff or cross-functional team members • Support business continuity planning, disaster recovery documentation, and live operational exercises.

🎯 Requirements

• Bachelor's degree in computer science, information technology, or cybersecurity. • Active Certified Information Systems Security Professional (CISSP) and Project Management Professional (PMP) certification. • Undergo a Public Trust Background Investigation with a favorable suitability determination. • 8+ years of experience in information security governance, risk, and compliance, with at least 5 years specifically supporting FedRAMP High, FISMA, NIST SP 800-53 rev 5, or RMF. • 5+ years in the ISSM or ISSO role managing the security package for federal government agencies high-impact systems. • 5+ years of experience managing or supporting security assessments with Third Party Assessment Organizations (3PAOs). • 3+ years of hands-on experience using GRC platforms (e.g., RSA Archer, ServiceNow GRC, OneTrust) and vulnerability management platforms (e.g., Tenable, Qualys, Rapid7). • 2+ years direct experience mapping controls and leading assessments for GovRAMP, CMMC (Level 2+), and StateRAMP/SLED requirements. • 2+ years of experience with identity and access management systems (e.g., Okta, Azure AD) for access control governance. • Demonstrated experience working within cloud environments such as AWS GovCloud or Azure Government, including cloud-native security controls. • Proficiency with AWS CLI, PowerShell and scripting automated compliance tasks in Windows and Linux systems tools, Nessus Pro, Burp Suite, Splunk, AWS IAM, Jira, FortiGate firewalls, eMASS, Box.com for Gov, and Okta for Gov Identity Provider. • Demonstrates strong analytical skills to assess complex security risks, interpret compliance requirements, and evaluate technical vulnerabilities. • Builds and refines repeatable, auditable processes for security governance, risk management, and compliance activities. • Communicates clearly and effectively with technical and non-technical stakeholders, including auditors, developers, and executive leadership. • Ability to implement continuous monitoring and assessment programs to identify and address security threats in real-time, maintaining a proactive SecOps stance.

🏖️ Benefits

• Annual performance bonus • ESPP • Enhanced time off packages

Apply Now

Similar Jobs

🕒 July 24

Echo Global Logistics

1001 - 5000

📦 Logistics

🚗 Transport

☁️ SaaS

Manager of Security Operations leading AI-powered threat detection and incident response at Echo Global Logistics. Overseeing SOC operations and mentoring analysts to improve security outcomes.

🇺🇸 United States – Remote

💵 $129.4k - $188.1k / year

⏰ Full Time

🟠 Senior

🔴 Lead

🛡️ Security Operations

🦅 H1B Visa Sponsor

infoinfo

🕒 July 16

AHEAD

1001 - 5000

💼 Consulting

🤖 Artificial Intelligence

🏢 Enterprise

ServiceNow Principal Technical Consultant leveraging ServiceNow expertise for digital transformation solutions. Architecting and developing enterprise solutions while leading collaborative teams.

🇺🇸 United States – Remote

💵 $183k - $205k / year

💰 $5.7M Venture Round - AHEAD on 2024-05

⏰ Full Time

🔴 Lead

🛡️ Security Operations

🕒 July 2

Optiv

1001 - 5000

Cyber Operations Advisor helping Optiv manage cyber risk and mature clients’ security operations. Leading technical engagements, threat intelligence, metrics, and strategic security initiatives.