GRC Engineer (NIST)
JobgetherNorth AmericaFull TimeEngineering
Remotely
fedrampssprmfnist sp 800 53poa&matogovcloud3pao
Job Description
📋 Description
- Execute NIST SP 800-53 control mappings and apply applicable security baselines to client
- Create, update, and maintain SSPs, POA&Ms, security narratives, and other authorization docs.
- Conduct technical gap assessments, readiness reviews, and compliance analyses for ATO and FedRAMP.
- Support continuous monitoring activities, including vulnerability tracking, POA&M maintenance
- Coordinate A&A with clients, 3PAOs, and independent assessors.
- Partner with technical teams to identify and remediate control deficiencies across baselines.
🎯 Requirements
- 2+ years of direct experience delivering GRC activities involving NIST SP 800-53, FedRAMP, RMF, or
- Hands-on experience developing, reviewing, and maintaining SSPs, POA&Ms, and related artifacts.
- Foundational knowledge of NIST SP 800-53 controls and FedRAMP baselines.
- Experience supporting ATO processes, 3PAO assessments, or federal authorization activities is
- Familiarity with government cloud environments such as AWS GovCloud or Azure Government.
- Understanding of continuous monitoring processes, vulnerability management, and compliance
🎁 Benefits
- Competitive base salary with regular performance reviews and merit-based compensation opportunities.
- Bonus opportunities tied to performance.
- Remote-first culture with flexibility to work from anywhere in the United States.
- Career development opportunities with mentorship and growth pathways.
- Reimbursement for approved role-related training and certifications.
- Opportunity to grow with an early-stage company and take on increasing responsibility.