About the job
Menlo Security is dedicated to empowering secure connections, communications, and collaborations worldwide. Our mission has become even more critical in light of the ongoing challenges posed by COVID-19. We serve a diverse clientele, including Fortune 500 companies, nine out of the ten largest global banks, and the Department of Defense.
As we evolve from a team of 400 towards our next growth phase, we are searching for passionate individuals who embody empathy and adaptability. The ideal candidate is ethical, exceptionally organized, committed to completing tasks, service-oriented, and both receptive to feedback and confident in providing it.
With robust financial backing from premier investors such as Vista Equity Partners, General Catalyst, JPMC, American Express, HSBC, and Ericsson Ventures, Menlo Security is well-positioned for continued growth.
Position Overview
We are looking for a meticulous FedRAMP Compliance Manager to ensure our organization's compliance with the Federal Risk and Authorization Management Program (FedRAMP) requirements. This pivotal role is essential for maintaining our cloud services' adherence to federal security standards, facilitating continuous monitoring, authorization processes, and audits. The candidate should possess experience with NIST SP 800-53, FedRAMP documentation, and engaging with cloud service providers within a regulatory framework.
Key Responsibilities
Design and manage a comprehensive compliance roadmap to uphold CMMC certification, proactively addressing risks across internal and external systems.
Lead strategic initiatives for critical federal projects, ensuring systems and processes comply with the stringent DoD Impact Level 6 (IL6) authorization requirements.
Act as the Subject Matter Expert (SME) for FedRAMP High standards.
Serve as a key liaison to the Federal Sales Team, providing expertise to guarantee all business development activities align with federal regulatory standards and security compliance frameworks.
Assist with the FedRAMP Moderate authorization and reauthorization processes, encompassing the development, review, and maintenance of system security documentation (SSP, POA&M, SAP, SAR, etc.).

