FedRAMP Information Systems Security Manager - PagerDuty Washington, District of Columbia, United States Bookmark Share Print 285 0 1

Listing Description

PagerDuty is seeking a FedRAMP Information Systems Security Manager to join our diverse, customer-focused team! As a FedRAMP Information Systems Security Manager, you will use your technical and program management skills to plan, track, collaborate, deliver and report on FedRAMP program deliverables, including scheduling and leading meetings, assigning and tracking action items, and developing status reports. You will handle the complex inter-team dependencies and bridge the gaps in technical management. You will need to work with many teams in different domains and will work effectively with security leaders, engineers, engineering managers, product managers, customer service teams and external stakeholders with a focus on FedRAMP deliverables. This is an exciting opportunity to organize a new program and assemble all structural components needed to kick off and mobilize teams. The ideal candidate is someone with a strong technical background, excellent problem solving ability and is passionate about managing large scale programs and projects, with a proven background managing FedRAMP programs. 


KEY RESPONSIBILITIES  



  • Lead PagerDuty’s ongoing FedRAMP authorization activities including relationship manager with PagerDuty’s Agency sponsors.

  • Partner with Security, Engineering and Product Leaders, 3PAO and Agency Sponsors to implement and maintain PagerDuty’s ongoing Continuous Monitoring discipline and activities including timely remediation of findings.

  • Own and manage the logistical processes surrounding FedRAMP authorization.

  • Responsible for monthly FedRAMP deliverables including Plans of Action and Milestones (POA&M).

  • Responsible for Significant Change Request discipline including out-of-band audit and approval and  on-going ATO renewal.

  • Plan, lead, deliver on uplift to NIST 800-53 rev 5 on ATO renewal.

  • Provide gap analysis and business plan for uplift to FedRAMP Moderate ATO.

  • Ensure the creation and delivery of evidence, including POA&M, for monthly communication with Agency Sponsors.

  • Document and track key deliverables required for FedRAMP ATO and ongoing compliance, partner with stakeholders across PagerDuty including engineering, infrastructure, and workplace/IT to ensure timely completion of deliverables.

  • Monitor and oversee projects to ensure timely delivery of objectives.

  • Organize daily/weekly/monthly activities based on the goals of the organization.

  • Define sustainable goals and KPIs for the organization.

  • Evaluate and assess the programs' strengths and weaknesses.

  • Lead planning efforts for potential third-party collaboration for FedRAMP High/IL4/IL5 authorization.

  • Anticipate bottlenecks, providing escalation management and making tradeoffs.

  • Provide technical contribution working with cross functional teams to surface dependencies, risks, mitigation plans, and estimation refinement.

  • Drive implementation and adoption of new/modified processes in service to streamlining compliance with FedRAMP controls.

  • Advise planning efforts (quarterly and annual) for defined areas of program leadership.

  • Drive program alignment on present and future outcomes that support the company's strategy.

  • Creation and distribution of impactful automated reporting.


BASIC QUALIFICATIONS



  • 3+ of experience project managing technical teams including within matrixed software development organizations.

  • 3+ years experience with FedRAMP compliance management including ConMon and SCR disciplines.

  • Strong technical abilities - understanding of Cloud architectures, security controls, vulnerability scanning and management and all aspects of Continuous Monitoring discipline.

  • Understanding of threats, vulnerabilities and overall risk management. 

  • Have a deep understanding of agile principles and how to apply them effectively.

  • Experience with common software development methodologies and standards.


PREFERRED QUALIFICATIONS



  • Bachelor’s degree in Computer Science, related technical field, or equivalent practical experience.

  • Superior interpersonal skills, ability to collaborate and influence across teams and business units using strong collaboration and organizational skills.

  • Proven track record of developing successful internal and external relationships.

  • Ability to provide technical recommendations in solving software engineering challenges involving bug triage, pull requests, source control, continuous integration, etc.

  • Experience in DevOps and digital/cloud operations.


The base salary range for this position is 192,000 - 303,000 USD. This role may also be eligible for bonus, commission, equity, and/or benefits.


Our base salary ranges are determined by role, level, and location. The range, which is subject to change based on primary work location, reflects the minimum and maximum base salary we expect to pay newly hired employees for the position. Within the range, we determine pay for an individual based on a number of factors including market location, job-related knowledge, skills/competencies and experience.


Your recruiter can share more about the specific offerings for this role, as well as the salary range for your primary work location during the hiring process.


Listing Details

  • Citizenship: Not Provided
  • Incentives: Not Provided

 

  • Education: Not Provided
  • Travel: Not Provided
  • Telework: Not Provided



About Us

NinjaJobs is a community-run job platform developed by information security professionals. Our unique approach of focusing strictly on cybersecurity positions allows us to personalize the user experience.

Our Contacts

1765 Greensboro Station Pl.
Suite 900
Tysons Corner Va 22102

(703) 594-7765