BeyondTrust Logo

BeyondTrust

Government Compliance Technical Specialist

Posted 18 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Canada
Senior level
Remote
Hiring Remotely in Canada
Senior level
Owns technical execution of government compliance programs, including FedRAMP Moderate, FedRAMP 20x, TX-RAMP, IRAP, and GovRAMP. Responsibilities include continuous monitoring, SSP and SDR documentation, POA&M and remediation tracking, KSI interpretation, evidence automation, assessor coordination, compliance roadmap development, and cross-functional collaboration with engineering, security, cloud operations, legal, and agency stakeholders.
The summary above was generated by AI

BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio.

Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.

The Role

The Government Compliance Technical Specialist is a full-time individual contributor on BeyondTrust’s Trust & Assurance team, reporting to the Director of Trust & Assurance. This role owns day-to-day technical execution of BeyondTrust's government compliance programs, including FedRAMP Moderate, TX-RAMP, IRAP, and other emerging public-sector frameworks. Responsibilities include continuous monitoring, writing and maintaining compliance documentation, POA&M management, and building automation to support compliance modernization, including FedRAMP 20x. The ability to interpret, define, and design automation for Key Security Indicators (KSIs) is required.

The ideal candidate has run a FedRAMP program end-to-end and can operate with a high degree of autonomy in a fast-paced cybersecurity product environment. They bring technical depth in NIST 800-53 controls, understand cloud compliance boundaries, and can demonstrate technical automation. This role will also support the program management of government compliance workstreams alongside product, security, and engineering teams.

What You’ll Do

  • Lead technical compliance build activities for FedRAMP 20x readiness, including interpreting Key Security Indicators (KSIs), defining evidence strategies, and coordinating machine-readable compliance outputs.
  • Own day-to-day management and execution of FedRAMP Moderate/Class C continuous monitoring, including deliverables, POA&M tracking, and deviation requests.
  • Author and maintain System Security Plans (SSPs), Security Decision Records (SDRs), and other compliance documentation in human and machine readable formats.
  • Manage findings and remediation tracking across all government compliance programs.
  • Coordinate directly with engineering, security, and cloud operations teams to gather evidence, validate control implementation, and close compliance gaps.
  • Support GovRAMP, TX-RAMP, IRAP, and other government or public-sector compliance programs.
  • Manage day-to-day relationships with Third Party Assessment Organizations (3PAOs) and agency stakeholders.
  • Track and report government program health.
  • Monitor FedRAMP policy changes, framework evolution, and translate changes into compliance roadmap.
  • Automate evidence collection pipelines and indicator health tracking.

What You’ll Bring

  • 3 years minimum in FedRAMP program management and technical compliance.
  • 4–7 years of experience in information security, compliance, or GRC.
  • Demonstrated ability to run a FedRAMP Moderate program, including SSP authorship, ConMon execution, POA&M management, and assessor coordination.
  • Deep working knowledge of NIST SP 800-53 controls and their practical implementation in cloud environments.
  • Strong familiarity with FedRAMP 20x concepts, especially Key Security Indicators (KSIs), machine-readable evidence frameworks, and continuous assessment models.
  • The ability to interpret and define KSIs in the context of BeyondTrust's compliance posture.
  • Demonstrated ability to coordinate across engineering, infrastructure, legal, and operations teams to gather evidence and drive remediation to closure.
  • Experience building or supporting automated compliance evidence pipelines.
  • Experience with GRC tooling for findings management, evidence collection, and program tracking.
  • Ability to track and manage multiple concurrent workstreams, surface blockers, and maintain delivery cadences.
  • Strong written and verbal communication skills to translate technical compliance information to varying audiences.

Nice To Have

  • Strong familiarity with AI security
  • Experience using AI to develop and deploy applications
  • Experience with GovRAMP, TX-RAMP, IRAP, or other public-sector compliance frameworks.
  • Familiarity with FedRAMP High or DoD IL4/IL5 authorization environments.
  • CISSP or CISA certification.
  • Background in cybersecurity product companies or multi-product SaaS environments.
  • Bachelor's degree in information security, computer science, or a related field.

Better Together

Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.

We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.

About Us

BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.

BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.

Learn more at www.beyondtrust.com. 

#LI-BS1

Similar Jobs

34 Minutes Ago
Easy Apply
Remote or Hybrid
Ontario, ON, CAN
Easy Apply
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Senior Sales Engineer responsible for delivering technical product presentations, gathering customer requirements, leading product evaluations, configuring solutions, and designing evaluation test plans. The role focuses on network security technologies, cloud security, Zero Trust, and value-based customer engagement. Candidates need 5+ years of sales engineering or solutions consulting experience, technical expertise in network security, AI tool fluency, and strong problem-solving skills. French fluency and industry certifications are preferred.
Top Skills: Coding AssistantsDlpEnd-User MonitoringFirewallsGenerative AiIpsecLlmsProxiesRouting ProtocolsSaseSd-WanSecure Web Gateway (Swg)SslVpnZscaler Zero Trust Exchange
2 Hours Ago
Remote or Hybrid
ON, CAN
Junior
Junior
Information Technology
Supports Lenovo partner and vendor business management by coordinating engagements, reporting, funding, contracts, marketing activities, portal programs, and product information. Collaborates with Lenovo, Finance, Partner Business Managers, and Senior Partner Business Managers to execute programs, track invoices and funding, approve content, manage deal registration, and maintain accurate product communications. Requires strong organization, analytical ability, problem-solving, prioritization, and deadline management.
Top Skills: Lenovo Partner Portals
2 Hours Ago
Remote or Hybrid
Internship
Internship
AdTech • Consumer Web • Digital Media • eCommerce • Marketing Tech
Supports cloud platform engineers by developing automation, infrastructure inventory, configuration validation, compliance reports, health checks, and AI-assisted workflows across AWS, GCP, and Kubernetes. Builds Infrastructure as Code and Configuration as Code solutions, integrates cloud and Kubernetes APIs with CI/CD and observability tools, tests infrastructure utilities, identifies operational and security issues, documents workflows, and participates in code reviews and platform planning.
Top Skills: Ai AgentsAnsibleArgo CdArgo WorkflowsAWSBashCi/CdCloud SdksConfiguration As CodeDockerGitGithub ActionsGoGoogle Cloud PlatformHelmIamInfrastructure As CodeJavaScriptJenkinsKubernetesKubernetes ApisKustomizeLinuxModel Context ProtocolPythonRest ApisSecrets ManagementTerraformTypescriptWorkload IdentityYaml

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account