Senior Security Program Manager, Commercial & Federal Compliance

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 2006H1B SponsorCompany SiteLinkedIn

Location

Georgia

Posted

10 days ago

Salary

0

Seniority

Senior

Bachelor Degree6 yrs expExperience acceptedEnglishServiceNow

Job Description

Senior Security Program Manager, Commercial & Federal Compliance

Anaplan

• Own end-to-end program management for compliance initiatives across commercial and federal contracts, from planning through execution and audit readiness. • Lead FedRAMP authorization and continuous monitoring efforts (Moderate/High baselines), coordinating with 3PAOs, agency sponsors, and internal engineering/security teams through the full ATO lifecycle. • Partner with Legal, Security, IT, and Business Development to interpret federal compliance requirements (FedRAMP, CMMC, NIST 800-171/800-53) and translate them into program plans. • Lead international and commercial certification programs including ISO 27001, ISO 27701, SOC 2 Type I/II, HITRUST CSF, and other regional market-access certifications (e.g., TISAX, ENS, Cyber Essentials), tailoring approach to each market's requirements. • Develop and maintain program roadmaps, schedules, and program risk registers; proactively identify and mitigate project risks and schedule slippage across concurrent certification tracks. • Serve as the primary point of coordination for internal and external audits, assessments, and certifications, ensuring evidence collection, stakeholder readiness, and timely remediation of findings (POA&Ms, corrective action plans). • Support the establishment and refinement of governance processes, policies, and standard operating procedures to support sustainable, scalable compliance across federal, commercial, and international lines of business. • Build and manage relationships with external auditors, 3PAOs, certification bodies, regulators, and government program offices as needed. • Track and report program status, risks, and KPIs to executive leadership and agency stakeholders. • Manage a portfolio of compliance-related projects simultaneously, balancing competing priorities and deadlines across multiple certification frameworks and stakeholder groups. • Stay current on evolving federal and commercial regulations, FedRAMP program updates, and international regulatory/certification standards, assessing impact on ongoing programs.

Job Requirements

  • Bachelor's degree in Business, Information Security, Public Administration, or related field (equivalent experience considered).
  • 6+ years of program or project management experience, including at least 3–5 years directly leading compliance, security, or risk programs.
  • Hands-on experience with FedRAMP (authorization process, continuous monitoring, working with 3PAOs and agency sponsors) is required.
  • Demonstrated experience managing ISO 27001, SOC 2, and HITRUST CSF certification/audit cycles, plus exposure to other international market-access certifications (e.g., ISO 27701, TISAX, or regional data protection frameworks).
  • Working knowledge of federal contracting requirements (CMMC, NIST 800-171/800-53).
  • Strong track record managing complex, cross-functional programs with multiple stakeholders and competing deadlines.
  • Excellent written and verbal communication skills, including experience presenting to senior executives, auditors, and government stakeholders.
  • Strong analytical and risk-assessment skills, with the ability to translate regulatory language into practical operational requirements.
  • Proficiency with program/project management tools (e.g., Wrike, SharePoint, Confluence, Jira) and GRC platforms (e.g., Archer, Vanta, ServiceNow GRC, or similar).
  • Must be a U.S. Citizen or U.S. Person residing in the U.S. (FedRAMP Moderate/High requirement).

Benefits

  • Health insurance
  • Flexible working hours
  • Professional development opportunities

Related Categories

Related Job Pages

More Security Engineer Jobs

Binary Defense logo

Account Executive – Cybersecurity Products & Services

Binary Defense

Real people detecting real threats in real time.

Full TimeRemoteTeam 51-200Since 2014H1B No Sponsor

• Managed Security Services and Product/Platform Sales • Position and sell Binary Defense's AI-powered security platform and software offerings alongside managed security services as part of a comprehensive security strategy • Conduct discovery to identify opportunities where Binary Defense's Agentic AI capabilities can improve SOC efficiency, analyst productivity, security visibility, and customer outcomes • Deliver compelling demonstrations and business presentations highlighting the value of Binary Defense's technology platform, AI capabilities, and managed services • Collaborate with Product Management, Security Engineering, Customer Success, and Marketing to develop solution strategies that address customer business and technical objectives • Drive adoption of software subscriptions, platform expansions, and cross-sell opportunities within new and existing customer accounts • Develop business cases that articulate both operational and financial value, including efficiency gains, risk reduction, and measurable security outcomes • Maintain a thorough understanding of Binary Defense's product roadmap, AI capabilities, competitive landscape, and emerging cybersecurity trends • Identify, qualify, and set business opportunities via a variety of sources including phone/email/social media • Utilize strategic partnerships and clients as sources for recommendations and referrals • Research the needs of potential prospect companies and learning who makes purchasing decisions • Attend conferences, meetings, and industry/networking events • Build long term, trusted relationships with current and potential clients. • Consult with prospects and clients to understand their needs for our products and services • Present Binary Defense offerings to potential clients as aligned to their needs • Send detailed Follow-up emails recapping meeting, overview of solution, and actionable next steps • Understand process to close the deal within each organization including access to key decision makers • Develop negotiating strategies and positions • Communicate via follow-up email to document next steps through closing the deal including anticipated signature and kickoff dates

Ohio
Full TimeRemoteTeam 201-500Since 2015H1B Sponsor

• Lead adoption and implementation plans for platinum-level customers, ensuring value realization from the Armis platform. • Understand customer use cases and provide recommendations to improve security posture and platform utilization. • Build and maintain trusted relationships with technical stakeholders and decision-makers. • Act as the customer advocate within Armis, coordinating across teams to meet customer objectives. • Ensure deployment and configuration align with key business use cases and are delivered on schedule. • Stay current on third-party integrations and how they interact with Armis within customer environments. • Serve as a subject matter expert in your area of technical proficiency. • Partner with Product, Engineering, Support, and Sales teams to drive account success.

Colorado + 2 moreAll locations: Colorado | District Of Columbia | Texas
$120K - $159K / year
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Lead day-to-day project execution across cybersecurity strategy and advisory engagements, keeping work on track and clients well informed. • Serve as the primary client contact throughout engagements, managing expectations, communicating progress, and building trust with stakeholder teams. • Facilitate workshops, discovery sessions, and working meetings with client teams including senior technical and business leadership. • Deliver high-quality work product including assessment reports, risk analyses, program roadmaps, and executive presentations. • Support security maturity assessments, gap analyses, vCISO advisory engagements, and bespoke security program projects. • Contribute to scoping discussions and proposal development under the guidance of practice leadership. • Collaborate with Riveron's GRC and Security Engineering teams to support engagements that require a broader set of capabilities. • Lead client status updates and reporting to keep stakeholders aligned between engagements. • Support business development by identifying expansion opportunities within existing client relationships. • Review and provide feedback on the work of Senior Associates and Associates, supporting their professional development. • Contribute to internal practice development such as methodology, templates, and delivery frameworks. • Stay current on the evolving threat landscape, emerging frameworks, and security tooling relevant to our clients. • Participate in recruiting, internal training, and thought leadership initiatives that contribute to the growth of the practice.

United States
$117.5K - $166.3K / year
Lavendo logo

Account Executive, Data Security

Lavendo

Sales Recruiting for Startups

Full TimeRemoteTeam 1-10H1B No Sponsor

• Develop and execute strategic sales plans to win new customers. • Manage the full sales cycle from prospecting through negotiation and close. • Consistently meet or exceed quotas, targets, and KPIs. • Conduct product demos and clearly communicate value to senior decision-makers, especially CIOs and CISOs. • Partner with BDRs to qualify opportunities and build a robust pipeline. • Maintain accurate CRM records and provide regular pipeline updates and forecasts.

United States
$120K - $160K / year