Manager, Government Compliance – Authorization

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Amwell

Amwell

501 - 1000 employees

Amwell (previously known as American Well) is a leading telehealth platform in the United States and globally, connecting and enabling providers, insurers, patients, and innovators to deliver greater access to more affordable, higher quality care. Amwell believes that digital care delivery will transform healthcare. The Company offers a single, comprehensive platform to support all telehealth needs from urgent to acute and post-acute care, behavioral health, as well as chronic care management and healthy living. With over a decade of experience, Amwell powers telehealth solutions for over 240 health systems comprised of 2,000 hospitals and 55 health plan partners with over 36,000 employers, reaching over 80 million lives.

📋 Description

• Lead the end-to-end authorization process for FedRAMP High, while concurrently driving alignment with CMMC Level 2/3 for DoD contracts and MARS-E 2.2 for CMS/Medicaid engagements • Manage ongoing FedRAMP continuous monitoring requirements, including monthly deliverables, vulnerability management, and incident reporting to federal agencies • Collaborate with engineering, security, and operations teams to develop a "comply once, satisfy many" strategy by mapping NIST SP 800-53 Rev 5 controls to CMMC (NIST SP 800-171) and MARS-E requirements to minimize redundant engineering efforts • Own risk management of services provided to federal agencies, ensuring compliance with High-impact baseline • Coordinate with 3PAOs to manage security assessment and authorization (SA&A) activities, including annual assessments and significant change requests • Develop and maintain FedRAMP authorization packages, including System Security Plans (SSP), Plans of Action and Milestones (POA&M), and Continuous Monitoring deliverables • Serve as primary point of contact for federal agency customers regarding FedRAMP compliance questions and authorization boundary matters • Monitor and interpret FedRAMP policy updates and guidance from the FedRAMP PMO, implementing necessary changes to maintain compliance • Build and lead a team of compliance analysts and security specialists focused on federal authorization requirements • Create and deliver training programs to ensure organizational awareness of FedRAMP requirements and responsibilities • Manage relationships with federal authorizing officials, cloud service providers, and other stakeholders in the authorization process

🎯 Requirements

• 7+ years of experience in information security, compliance, or risk management with at least 3 years specifically working with FedRAMP authorizations • Demonstrated experience successfully achieving FedRAMP High authorization for a cloud service offering (CSO) • Deep knowledge of NIST SP 800-53 Rev 5 security controls, FISMA, FedRAMP baselines, and federal security authorization processes • Experience managing continuous monitoring activities and maintaining active FedRAMP ATOs • 3+ years of people management experience, including hiring, developing, and leading compliance or security teams • Strong understanding of cloud infrastructure security (AWS, Azure, or GCP) in FedRAMP environments • Familiarity with healthcare compliance frameworks (HIPAA, HITRUST) and their intersection with federal requirements • Proven project management skills with ability to coordinate complex, multi-stakeholder authorization efforts • Experience working with 3PAOs and understanding of security assessment methodologies • Excellent written and verbal communication skills with ability to translate technical security concepts for various audiences • Relevant certifications such as CISSP, CISM, CAP, or FedRAMP-specific certifications preferred • Bachelor's degree in Information Security, Computer Science, or related field required; Master's degree preferred • Ability to obtain and maintain security clearance if required.

🏖️ Benefits

• Flexible Personal Time Off (Vacation time) • 401K match • Competitive healthcare, dental and vision insurance plans • Paid Parental Leave (Maternity and Paternity leave) • Employee Stock Purchase Program • Free access to Amwell’s Telehealth Services, SilverCloud and The Clinic by Cleveland Clinic’s second opinion program • Free Subscription to the Calm App • Tuition Assistance Program • Pet Insurance

Apply Now

Similar Jobs

🔥 7 hours ago

Avenu Insights & Analytics

501 - 1000

🏛️ Government

📋 Compliance

☁️ SaaS

Compliance Specialist supporting Neumo's compliance program with a focus on vendor oversight and compliance reporting. Conducting reviews, maintaining records, and coordinating audits in a compliant manner.

🔥 13 hours ago

CTI Clinical Trial and Consulting Services

1001 - 5000

🧬 Biotechnology

💊 Pharmaceuticals

Senior Specialist managing essential regulatory documentation for global clinical studies. Collaborating with study teams and regulatory bodies to ensure compliance and timely submissions.

🔥 15 hours ago

N3XT SPORTS

11 - 50

⚽ Sports

🤝 B2B

Compliance Lead overseeing adherence to banking regulations and managing compliance programs at N3XT, a financial services startup bridging traditional markets and blockchain.

🔥 16 hours ago

XYPN

51 - 200

Director of Policy and Regulatory Affairs advocating for fiduciary financial planning and policy influence at XYPN. Leading efforts in regulatory developments and stakeholder engagement for independent advisory firms.

🔥 17 hours ago

Raymond James

10,000+ employees

💸 Finance

Senior Advisor conducting branch examinations for compliance at Raymond James. Ensuring adherence to policies, procedures, and regulations in licensed financial environments.