Cyber Security Manager – FedRAMP

Job not on LinkedIn

🔥 1 hour ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Riveron

Riveron

1001 - 5000 employees

🤝 B2B

💸 Finance

B2B • Finance

Riveron is a national business advisory firm that partners with CFOs, private equity firms, lenders, and corporate leaders to improve accounting, finance, technology, and operational performance. The firm provides hands-on consulting across accounting advisory, transaction services (M&A, buy/sell-side diligence), tax advisory, restructuring and turnaround, interim management, governance/risk/compliance, capital markets advisory, ESG consulting, and technology enablement (ERP, automated reporting and AI-enabled finance solutions). Riveron focuses on implementing practical solutions from strategy through execution to increase transparency, drive transformation, and support complex transactions and capital events.

📋 Description

• Lead FedRAMP Moderate and CMMC readiness assessments, including system boundary validation and control gap analysis • Design and implement cloud security architectures aligned to NIST 800-53 and NIST 800-171 requirements • Develop and own System Security Plans (SSPs), control narratives, and compliance documentation • Partner closely with client engineering, security, and compliance teams to remediate gaps and implement controls • Drive implementation of technical security measures such as encryption, IAM, logging, continuous monitoring, vulnerability management, and incident response • Advise clients on federal and DoD security mandates, including cryptographic requirements and vulnerability remediation timelines • Update and align security policies and procedures to support FedRAMP and CMMC compliance • Conduct preliminary control testing to validate effectiveness prior to formal assessments • Coordinate with Third-Party Assessment Organizations (3PAOs) and C3PAOs during independent assessments • Support assessment execution, evidence collection, remediation cycles, and authorization package submission • Mentor and review work from other consultants, raising the bar on technical quality and delivery • Conduct interviews with prospective team members, assessing candidate suitability while serving as a brand ambassador for the CSA practice and Riveron • Stay current on emerging risks and evolving control practices • Build and maintain strong industry relationships to support long-term business development

🎯 Requirements

• Bachelor's and/or Master’s degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field • 5+ years of deep, demonstrable experience in FedRAMP and/or CMMC compliance efforts in real-world environments • Deep understanding of NIST 800-53 and NIST 800-171 control frameworks • Demonstrated knowledge of other compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS • Relevant certification preferred, such as CISA, CISM, CISSP or AWS Cloud Practitioner • Familiarity with GRC solutions, tools, and technologies.

🏖️ Benefits

• Full range of benefits including medical, dental, and vision insurance • 401(k) with company match • PTO

Apply Now

Similar Jobs

🔥 1 hour ago

KBR, Inc.

10,000+ employees

🏛️ Government

Information System Security Officer providing critical support for DoD cybersecurity compliance and systems administration. Develops and maintains security policies while collaborating within distributed teams.

Cyber Security

Linux

TypeScript

VMware

🔥 4 hours ago

Tenet Healthcare

10,000+ employees

🧬 Biotechnology

🧘 Wellness

Managing security governance programs while ensuring compliance with security policies and regulatory requirements. Acting as the point of contact for security governance across Conifer and its stakeholders.

Cyber Security

🔥 5 hours ago

Lime

501 - 1000

🚗 Transport

🛍️ eCommerce

☁️ SaaS

Senior Security Engineer at Lime improving security for software, APIs, and connected vehicles. Collaborating across teams and contributing to security engineering practices.

Android

AWS

Cloud

Cyber Security

DAC

Google Cloud Platform

iOS

IoT

SDLC

🔥 9 hours ago

Connected Logistics

51 - 200

🔒 Cybersecurity

🏛️ Government

Cybersecurity Assessment & Authorization SME assisting DLA in managing cybersecurity implementation and monitoring. Requires five years of C&A experience and U.S. Citizenship.

Cyber Security

🔥 9 hours ago

GitLab

1001 - 5000

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

Senior Software Security Engineer at GitLab improving abuse detection and prevention systems. Building features for Ruby on Rails platform and collaborating on security enhancements.

AWS

Cloud

Google Cloud Platform

Ruby

Ruby on Rails