Senior FedRamp ISSO

Cribl
United States
Workplace: RemoteFull timeUSD 128,000 - 200,000 annuallyFunction: Solutions Engineering & Sales EngineeringExperience: 5+ yearsSkills: ["Written communication","Stakeholder communication","Problem-solving","Process ownership","Cross-functional collaboration"]

Own Cribl’s FedRAMP Moderate authorization end-to-end as the single accountable leader for compliance posture and continuous monitoring. Maintain and defend the System Security Plan, manage the POA&M lifecycle, and run monthly ConMon reporting and annual 3PAO assessments. Drive automation and AI-assisted evidence collection to streamline reporting while partnering with engineering, DevOps, legal, and federal agency stakeholders to keep the authorization healthy.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Cribl
Cribl
3 months ago

Senior FedRamp ISSO

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 14 hours agoStatus: Live

Job Summary

Own Cribl’s FedRAMP Moderate authorization end-to-end as the single accountable leader for compliance posture and continuous monitoring. Maintain and defend the System Security Plan, manage the POA&M lifecycle, and run monthly ConMon reporting and annual 3PAO assessments. Drive automation and AI-assisted evidence collection to streamline reporting while partnering with engineering, DevOps, legal, and federal agency stakeholders to keep the authorization healthy.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Own the FedRAMP program end-to-end for FedRAMP Moderate authorization, including the SSP, continuous monitoring, POA&M lifecycle, and agency relationships.
  • •Maintain and defend the System Security Plan by ensuring it reflects system architecture, control implementations, and approved automation/AI use.
  • •Drive POA&M management from finding to closure, coordinating remediation with engineering and building scalable tracking and reporting workflows.
  • •Lead continuous monitoring activities including monthly and annual ConMon reporting, vulnerability scan triage, configuration management reviews, and incident reporting per FedRAMP requirements.
  • •Run annual 3PAO assessments end-to-end and serve as the primary federal point of contact with Authorizing Officials (AOs), the FedRAMP PMO, and agency customers.

Pay and Benefits

Salary: USD 128,000 - 200,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVision401kEquityPaid HolidaysPaid Leave

Key Requirements

  • •5+ years of information security experience, including at least 3 years as a dedicated FedRAMP ISSO or ISSE at a Cloud Service Provider (owning the program).
  • •Deep working knowledge of NIST SP 800-53 Rev 5 and the FedRAMP ecosystem baseline.
  • •Proven experience authoring and maintaining large-scale System Security Plans (SSP) and defending them with clarity.
  • •Hands-on POA&M management experience (opening, tracking, aging, escalating, and driving findings to documented closure).
  • •Active security certification: CISSP, Certified Authorization Professional (CAP/CGRC), or CISM.
Experience:5+ yearsFedRAMPCloud securityGRCContinuous monitoring3PAO assessments
Skills:Written communicationStakeholder communicationProblem-solvingProcess ownershipCross-functional collaboration
Certifications:CISSPCertified Authorization Professional (CAP/CGRC)CISM
Languages:English
Tech Stack:FedRAMPNIST SP 800-53 Rev 5System Security Plan (SSP)POA&MContinuous monitoring (ConMon)3PAOOSCALGRC platformsDISA STIGsNIST AI Risk Management FrameworkAWS GovCloudAzure GovernmentGCPIncident reportingAutomationScriptingLLMsEvidence collectionInfrastructure-as-codeDevSecOps

Eligibility

Security Clearance:Federal security clearance (active or eligibility to obtain)

Company Brief

Cribl
Builds observability and data routing software that enables organizations to collect, process, and route machine data (logs, metrics, traces) to analytics and storage destinations while reducing costs and improving operational visibility.
Industry: Data Infrastructure
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Funding: Series D
Headquarters: San Francisco, United States
Founded: 2017
WebsiteLinkedIn