Consultant, FedRAMP Assessment

6 hours, 16 minutes ago
Full-time
Junior
Operations
Coalfire

Coalfire

Coalfire is a cybersecurity advisor that helps organizations avert threats, reduce risk, and turn security into a competitive advantage, fueling their success.

Internet Software & Services
251-1K
Founded 2001
$9M raised

Description

  • Work collaboratively with assessment teams as a federal compliance specialist supporting FedRAMP, NIST 800-171, FISMA, and related engagements.
  • Plan and execute client assessments, including interviews, inquiry walkthroughs, testing, and evidence inspection.
  • Draft audit observations, assessment reports, and recommendations that address regulatory requirements and the client environment.
  • Review security vulnerabilities, control implementations, information system security plans, and compliance documentation against applicable frameworks.
  • Lead interview and testing sessions, corroborate findings with clients, and maintain detailed assessment notes and work papers.
  • Review and quality-check drafted planning and reporting materials as a first-level reviewer.
  • Communicate compliance findings to clients, educate stakeholders, and advise on issues affecting scope and security posture.
  • Collaborate with project managers, quality management, and delivery teams to meet deadlines, quality standards, and project deliverables.
  • Identify upsell and cross-sell opportunities and escalate them to leadership when appropriate.
  • Maintain certifications, deepen technical knowledge, and support continuous professional development.

Requirements

  • 2-3 years of experience in the IT industry.
  • Strong familiarity with NIST SP 800-37 Rev. 2, NIST SP 800-53 Rev. 5, and NIST SP 800-53A Rev. 5.
  • Technical understanding of NIST 800-53 Rev. 5 control families including AT, CA, CM, CP, IR, MA, MP, PE, PL, PS, RA, SA, and SI.
  • Ability to lead testing sessions for assigned controls and independently develop logical testing approaches.
  • Ability to read and interpret control families, firewall rulesets, and network/boundary/data flow diagrams.
  • Strong written and verbal communication skills, including explaining technical topics to non-technical audiences.
  • Strong consulting, facilitation, initiative, and time-management skills with high attention to detail.
  • Bachelor’s degree in IT, business, or equivalent education and work experience.
  • Possession of one relevant certification such as CCNA Security, CySA+, GCIH, GSNA, GCIA, CISA, CISSP, CSSLP, CISSO, CFR, CASP+, Cloud+, GICSP, SCYBER, or BCR Cyber Technical Proficiency Testing Activity.
  • Preferred experience with security frameworks and regulatory requirements such as SOC 2, ISO, NIST, COBIT, HIPAA/HITECH, HITRUST, or PCI.
  • Preferred experience working with cloud environments such as AWS, Microsoft Azure, or Google Cloud Platform.
  • Preferred experience reviewing Nessus output and understanding networking components and operating systems in cloud environments, including UNIX and Microsoft.
  • Preferred additional certifications such as A2LA R311, GCED, GSLC, CISM, CCSP, CISSP-ISSAP, CISSP-ISSEP, CISSP-ISSMP, or CCISO.

Benefits

  • Salary range of $71,000 to $122,689 per year.
  • Eligibility for annual incentive, commission, and/or recognition programs.
  • Flexible work model with the ability to work from home or an office.
  • Paid parental leave.
  • Flexible time off.
  • Certification and training reimbursement.
  • Digital mental health and wellbeing support membership.
  • Comprehensive insurance options.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Board Certified Disability Peer Physician Reviewer - Rheumatology

Dane Street 251-1K Insurance

Dane Street is seeking a Board Certified Rheumatologist to join its telework disability peer review panel as an independent contractor reviewing disability claims from home.

1 hour, 44 minutes ago

Traveling Sr. Ergonomist

Apex Companies 251-1K Construction & Engineering

Apex Companies is seeking a part-time Senior Ergonomist to provide industrial ergonomics support for key clients nationwide, leading on-site assessments, solution design, and implementation to reduce injury risk and improve workforce health and safety.

5 hours, 1 minute ago

Corporate Development Director

Outreach 1K-5K Internet Software & Services

Outreach is hiring a Remote Corporate Development Director to lead strategic investments, partnerships, and acquisitions that support long-term growth and market leadership.

6 hours, 1 minute ago

ServiceNow Business Process Consultant

AHEAD 1K-5K IT Services

AHEAD is hiring a ServiceNow Business Process Consultant in Gurugram to support enterprise software asset management, licensing compliance, and process improvement for clients using the ServiceNow platform.

Oracle
6 hours, 26 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers