Riveron

Cyber Security - Manager (FedRAMP)

Riveron$120K — $150K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's and/or Master's degree in IT, CIS, MIS, or related field
  • 5+ years of experience in FedRAMP and/or CMMC compliance
  • Deep understanding of NIST 800-53 and NIST 800-171 frameworks
  • Knowledge of compliance frameworks like SOC 2, ISO 27001, HIPAA, PCI-DSS
  • Preferred certifications: CISA, CISM, CISSP, AWS Cloud Practitioner
  • Familiarity with GRC solutions and technologies

Responsibilities

  • Lead FedRAMP Moderate and CMMC readiness assessments
  • Design and implement cloud security architectures
  • Develop and manage System Security Plans (SSPs) and compliance documentation
  • Collaborate with client teams to remediate compliance gaps
  • Drive implementation of technical security measures
  • Advise clients on federal security mandates and requirements
  • Conduct preliminary control testing prior to assessments
  • Mentor junior consultants and improve technical quality

Benefits

  • Medical, dental, and vision insurance
  • 401(k) with company match
  • Paid time off (PTO)
  • Access to a complete range of benefits described on Riveron's Benefits page
Full Job Description
The Manager level position for Riveron's CSA group will work collaboratively with senior team members and provide guidance, coaching, and direction. Managers are expected to conduct the majority of day-to-day project management activities on all of their engagements, including project plan development, reviewing staff work for quality, status updates to clients and mentoring Senior Associates and Associates.

In this role, you will own complex FedRAMP and CMMC initiatives end-to-end-guiding clients from readiness through authorization by designing, implementing, and validating secure cloud architectures across AWS, Azure, and GCP. You'll operate as a trusted technical advisor, translating federal and DoD security requirements into practical, scalable solutions. This is a hands-on consulting role for senior practitioners who want real ownership, deep technical work, and visible impact.

What You Have:
  • Bachelor's and/or Master's degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field
  • 5+ years of deep, demonstrable experience in FedRAMP and/or CMMC compliance efforts in real-world environments
  • Deep understanding of NIST 800-53 and NIST 800-171 control frameworks
  • Demonstrated knowledge of other compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS
  • Relevant certification preferred, such as CISA, CISM, CISSP or AWS Cloud Practitioner
  • Familiarity with GRC solutions, tools, and technologies

Who You Are:
  • You have a passion for developing and maintaining client relationships
  • You get the job done and have fun doing it
  • You communicate skillfully with a variety of audiences and can create compelling stories from data
  • You thrive in an ever-changing, dynamic work environment
  • You readily identify problems and instinctively look for solutions
  • You enjoy participating in internal and external company initiatives such as community service, training, recruiting, and firm events

What You'll Do:
  • Lead FedRAMP Moderate and CMMC readiness assessments, including system boundary validation and control gap analysis
  • Design and implement cloud security architectures aligned to NIST 800-53 and NIST 800-171 requirements
  • Develop and own System Security Plans (SSPs), control narratives, and compliance documentation
  • Partner closely with client engineering, security, and compliance teams to remediate gaps and implement controls
  • Drive implementation of technical security measures such as encryption, IAM, logging, continuous monitoring, vulnerability management, and incident response
  • Advise clients on federal and DoD security mandates, including cryptographic requirements and vulnerability remediation timelines
  • Update and align security policies and procedures to support FedRAMP and CMMC compliance
  • Conduct preliminary control testing to validate effectiveness prior to formal assessments
  • Coordinate with Third-Party Assessment Organizations (3PAOs) and C3PAOs during independent assessments
  • Support assessment execution, evidence collection, remediation cycles, and authorization package submission
  • Mentor and review work from other consultants, raising the bar on technical quality and delivery
  • Conduct interviews with prospective team members, assessing candidate suitability while serving as a brand ambassador for the CSA practice and Riveron
  • Stay current on emerging risks and evolving control practices
  • Build and maintain strong industry relationships to support long-term business development


Full time roles are eligible for a full range of benefits including medical, dental, and vision insurance, 401(k) with company match, and PTO. A complete description of all available benefits can be found at Riveron's Benefits page at https://riveron.com/riveron-life/. Contract roles are not eligible for benefits.

Fraud Alert

Please beware of fraudulent schemes or impersonations when going through the job application process. A Riveron employee will never recruit via text or extend unsolicited employment offers. Additionally, a Riveron employee will never ask you to exchange money or purchase anything as part of the recruiting process.

Artificial intelligence (AI) tools are used to support the hiring process in screening, assessing, and/or selecting applicants for this position. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

About Riveron

Riveron is a financial consulting firm that provides services in the areas of accounting, finance, and operations. The company was founded in 2006 and is headquartered in Dallas, Texas. Riveron has additional offices in Atlanta, Chicago, Denver, Houston, Minneapolis, and Washington D.C. The company serves clients in a variety of industries, including healthcare, technology, manufacturing, and retail.
Learn more about Riveron
Size
400 employees
Industry
Founded
2006
5 Year Trend
+20%
Revenue
$50 million

Similar Jobs

More Jobs at Riveron

More Information Technology Jobs

Find similar Cyber Security - Manager (FedRAMP) jobs: