This job post is closed and the position is probably filled. Please do not apply.
🤖 Automatically closed by a robot after apply link
was detected as broken.
Description:
The Security Compliance Engineer will lead the FedRAMP compliance efforts at GitLab, ensuring that all cloud services meet or exceed FedRAMP requirements.
Responsibilities include coordinating and managing the entire FedRAMP lifecycle, integrating FedRAMP requirements into operations and technology stack, and developing comprehensive documentation to support compliance initiatives.
The role involves automating and maintaining continuous monitoring requirements, conducting security assessments and audits, monitoring changes in FedRAMP guidelines, providing training to internal teams, and acting as the primary contact for FedRAMP-related inquiries.
The Security Compliance Engineer will prepare and present compliance reports to senior management and stakeholders, highlighting the status of FedRAMP initiatives.
Requirements:
Proof of U.S. citizenship and residency is required.
A Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field, or equivalent experience is necessary.
Minimum of 3 years of experience in security compliance or governance, risk, and compliance (GRC), preferably supporting U.S. public sector security authorizations.
Knowledge of FedRAMP, CMMC, NIST 800-53, NIST RMF, FISMA, or similar standards is essential.
Familiarity with cloud hyperscalers services like AWS, GCP, etc., is required.
Strong analytical, problem-solving, and project management skills are necessary.
Excellent communication and interpersonal skills are needed to collaborate effectively with internal teams, auditors, customers, and regulatory bodies.
Relevant certifications such as CISSP, CISM, CISA, or similar are highly desirable.
Ability to work independently, manage multiple projects simultaneously, and thrive in a fast-paced environment is crucial.
Benefits:
GitLab offers benefits to support health, finances, and well-being.
The position provides an all-remote and asynchronous work environment.
Flexible Paid Time Off is available.
Team Member Resource Groups are accessible for support and inclusion.
Equity Compensation & Employee Stock Purchase Plan are part of the benefits package.