Sr. Security Program Manager, Commercial & Federal Compliance

16 minutes ago
Full-time
Senior
Cybersecurity
Anaplan

Anaplan

Anaplan provides a connected planning platform for finance, supply chain, and sales strategies, enabling large organizations to make informed plans, drive effective decision-making, and transform planning processes.

Internet Software & Services
1K-5K
Founded 2006

Description

  • Own end-to-end program management for compliance initiatives across commercial and federal contracts.
  • Lead FedRAMP authorization and continuous monitoring efforts through the full ATO lifecycle.
  • Partner with Legal, Security, IT, and Business Development to translate compliance requirements into program plans.
  • Lead international and commercial certification programs including ISO 27001, SOC 2, HITRUST CSF, and related standards.
  • Develop and maintain program roadmaps, schedules, and risk registers.
  • Coordinate internal and external audits, assessments, certifications, and remediation of findings.
  • Establish and refine governance processes, policies, and standard operating procedures for scalable compliance.
  • Build and manage relationships with auditors, 3PAOs, certification bodies, regulators, and government offices.
  • Track and report program status, risks, and KPIs to leadership and stakeholders.
  • Manage multiple compliance-related projects with competing priorities and deadlines.

Requirements

  • Bachelor's degree in Business, Information Security, Public Administration, or a related field, or equivalent experience.
  • 6+ years of program or project management experience.
  • 3–5 years directly leading compliance, security, or risk programs.
  • Hands-on FedRAMP experience is required, including authorization, continuous monitoring, 3PAOs, and agency sponsors.
  • Experience managing ISO 27001, SOC 2, and HITRUST CSF certification or audit cycles.
  • Working knowledge of CMMC and NIST 800-171/800-53.
  • Experience with cross-functional programs involving multiple stakeholders and deadlines.
  • Strong written and verbal communication skills, including presenting to executives, auditors, and government stakeholders.
  • Strong analytical and risk-assessment skills with the ability to translate regulatory language into operational requirements.
  • Proficiency with tools such as Wrike, SharePoint, Confluence, Jira, Archer, Vanta, or ServiceNow GRC.
  • Must be a U.S. Citizen or U.S. Person residing in the U.S.
  • PMP, PgMP, ISO 27001 Lead Auditor/Lead Implementer, HITRUST CCSFP, CISSP, CISA, or CISM are preferred.
  • Experience supporting a FedRAMP JAB or Agency authorization from initiation through ATO is preferred.
  • Experience with OSCAL and continuous monitoring deliverables is preferred.
  • Experience operating in multiple international markets is preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Founding Strategic Project Lead

Talentpluto, Inc. 1-10 Recruiting

Founding Strategic Project Lead at an early-stage AI data startup delivering specialized datasets for frontier AI labs, owning fast-moving project delivery from contributor sourcing to customer coordination.

CRM
1 minute ago

Deployment Strategist

Istari 11-50 Aerospace & Defense

Istari Digital is hiring a Deployment Strategist to own customer program outcomes for defense acquisition deployments that connect engineering models, simulations, and digital threads across government and industry stakeholders.

16 minutes ago

Principal Architect, Infrastructure

Zencore Group 11-50 Internet Software & Services

Zencore is hiring a Principal Architect to lead Google Cloud professional services engagements focused on data and application modernization for customers moving to Google Cloud.

CI/CD DevSecOps GCP Kubernetes Serverless
16 minutes ago

Sr. InfoSec Program Manager

Mitek Systems 251-1K Communications Equipment

Mitek is hiring an Information Security Program Manager to coordinate its security program execution, reporting, audits, and cross-functional compliance operations in a virtual-first environment.

Git
16 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers