Senior FedRamp Program Manager
Jobgether
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
19 open fedramp roles across 13 companies are on ApplySarthi right now, most of them in Chennai (1).
- Senior Site Reliability Engineer (FedRAMP)Nozomi Networks
- Senior Software Engineer, Identity & Access Management (FedRamp)MongoDB
- Cybersecurity Engineer (FedRAMP) (US Remote)Motorolasolutions
- CMMC / FedRAMP Program ManagerJll
- DevOps Lead (FedRAMP)Orca Security
What fedramp roles keep asking for: AWS (58%), Azure (47%), GCP (47%), Kubernetes (37%), CI/CD (32%), Go (32%), Python (32%), Terraform (32%) — counted across their open postings here.
CI/CD jobs · IAM jobs · SaaS jobs
Jobgether has 3,838 open roles listed here.
- Analista de Gestão de Mudanças
- Analista de Governança e Transparência ESG III - Temporária
- Associate Product Manager, BMO Global Asset Management
- Bilingual Field technology Consultant
- Bilingual Vocational Rehabilitation Specialist
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for fedramp roles keep coming back to AWS, Azure, GCP, Kubernetes. Practise those questions before you sit with Jobgether.
Questions you are likely to be asked
- Why do you want to join Jobgether?
- What is your experience with SaaS? Tell me one thing you learned the hard way.
- Walk me through a feature you shipped. How did you know it worked?
- Tell me about a time engineering and business wanted different things.
- How would you improve a product you use every day?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Senior FedRamp Program Manager at Jobgether interview free →Accountabilities:: Own day-to-day execution of the company-side FedRAMP program, managing milestones, dependencies, risks, deadlines, and internal follow-through. Translate FedRAMP requirements, findings, partner requests, and service-level commitments into actionable plans with defined owners, due dates, evidence expectations, and acceptance criteria. Maintain an authoritative view of program status and proactively identify risks that could affect assessments, remediation, continuous monitoring, or authorization deadlines. Assess overall program readiness and identify systemic gaps in controls, evidence, ownership, processes, and dependencies. Independently determine priorities and next actions, resolve routine program issues, and escalate material risks, disputed requirements, missed commitments, and matters requiring specialized intervention. Coordinate organizational and procedural controls, evidence collection, remediation activities, control narratives, and other company inputs required for partner-managed FedRAMP records. Review evidence for completeness, accuracy, relevance, currency, traceability, and consistency with applicable requirements before external submission. Act as the company-side quality gate for evidence and remediation responses, requiring corrections when submissions are incomplete or inadequate. Track findings from assessments, continuous monitoring, and authorized testing through assignment, remediation, evidence submission, and closure. Establish internal remediation deadlines based on external commitments, risk, dependencies, and program requirements. Serve as the primary operational interface with external FedRAMP infrastructure and compliance partners and coordinate actions arising from continuous-monitoring activities. Partner with Software Engineering and Cloud Engineering to communicate technical compliance requirements, remediation expectations, deadlines, and evidence needs without performing technical remediation directly. Coordinate with Security, IT, Support, Operations, Product, Legal, and leadership on organizational controls, process changes, contractual considerations, and FedRAMP obligations. Drive commitments across teams without direct reporting authority through clear requirements, accountability, follow-through, and escalation. Maintain visibility into FedRAMP scope, systems, workflows, integrations, control inheritance, and shared-responsibility boundaries. Coordinate reviews of product, infrastructure, operational, and process changes that may affect FedRAMP scope or control responsibilities. Continuously improve compliance processes, documentation, evidence practices, ownership models, and operating routines. Provide concise reporting to security and compliance leadership on program status, deadlines, findings, remediation progress, evidence quality, dependencies, and material risks. Escalate threatened deadlines, disputed requirements, repeated quality issues, unresolved ownership gaps, and external dependencies requiring management or executive intervention. Use approved AI-enabled tools and automation to improve program efficiency while independently validating outputs against authoritative requirements and program context. Requirements: 7+ years of relevant professional experience in security, compliance, technical program management, risk management, cloud security, or related disciplines, including at least 3 years of direct FedRAMP program execution or ownership experience. Demonstrated ownership of a substantial portion of a FedRAMP authorization lifecycle, including readiness or gap assessments, control implementation and evidence readiness, assessment support, POA&M remediation, authorization activities, and transition to continuous monitoring. Experience operating a FedRAMP program after authorization, including continuous monitoring, recurring evidence collection, remediation deadlines, scope considerations, significant changes, and assessment preparation. Strong working knowledge of NIST SP 800-53 and the FedRAMP Moderate baseline, including control interpretation, implementation statements, control inheritance, shared responsibility, assessment findings, and evidence requirements. Experience with cloud or compliance shared-responsibility models and the ability to identify control ownership, inherited responsibilities, evidence dependencies, and gaps between provider and customer obligations. Proven ability to translate regulatory requirements into clear expectations, owners, deadlines, evidence requirements, and acceptance criteria for technical and non-technical teams. Experience evaluating whether evidence and remediation responses adequately address control requirements or findings, with the judgment to reject inadequate submissions before external review. Demonstrated ability to drive remediation and compliance commitments across Software Engineering, Cloud or Platform Engineering, IT, Security, Support, Product, and other teams without direct management authority. Working technical knowledge of SaaS and cloud environments, including identity and access management, CI/CD, vulnerability management, logging and monitoring, system boundaries, encryption, change management, software dependencies, and cloud infrastructure. Ability to recognize when specialized technical validation is required and engage the appropriate subject-matter experts rather than serving as the hands-on implementer. Strong ability to independently establish program structure, resolve ambiguous ownership, set priorities and deadlines, and escalate matters requiring management, risk-owner, partner, or technical-specialist decisions. Experience leveraging AI-enabled tools, automation, or advanced systems to improve productivity, analysis, and program execution, with sound judgment in validating outputs. Excellent written and verbal communication skills, with the ability to communicate requirements, deficiencies, risks, program status, and decisions clearly to engineers, business stakeholders, external partners, assessors, and leadership. Must be a U.S. Person and reside in the United States. Preferred Qualifications: 5+ years of direct FedRAMP program execution experience and/or experience owning multiple authorization lifecycles. Experience independently leading company-side execution through a FedRAMP authorization lifecycle, from program structure and organizational readiness through assessment coordination and continuous monitoring. Experience operating in a fully self-managed FedRAMP environment, particularly within a SaaS or cloud software provider. Experience in a partner-managed FedRAMP implementation with responsibility for company-side execution, evidence quality, remediation tracking, control ownership, and shared-responsibility coordination. Experience working directly with FedRAMP assessors, 3PAOs, agency or authorization stakeholders, managed hosting providers, or other external authorization and compliance partners. Experience supporting FedRAMP scope, authorization-boundary, significant-change, change-management, or continuous-monitoring decisions in a SaaS or cloud environment. Benefits: Supportive work environment focused on employee experience and healthy work/life balance. Floating holidays. Quarterly no-questions-asked wellness day. Opportunities to participate in Employee Resource Groups and contribute to an inclusive workplace. Opportunity to work across security, compliance, engineering, product, legal, operations, and external compliance stakeholders.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- .Net Software DeveloperJobgether
- Account DirectorJobgether
- Account Director, Renewals & GrowthJobgether
- Advisor, BMO SmartFolio WFHJobgether
- Agentic AI DeveloperJobgether
- AI Graphic Designer + Video EditorJobgether
- AI/ML Data ScientistJobgether
- Analista de Automação e IA com N8NJobgether
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on lever · posted 2026-09-23. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.