Back to jobsalign
Senior IT Auditor – FISMA/FedRAMP
Tampa, US on-site full time senior 6d ago
About this role
About the Role
The FISMA/FedRAMP Senior Consultant works independently and collaboratively to support and lead client engagements within A-LIGN’s FISMA and FedRAMP practices. In this role, the Senior Consultant is responsible for managing standard project execution, overseeing client service activities, assigning work, reviewing team contributions, and ensuring quality reports are delivered. The Senior Consultant provides leadership to Staff Consultants through engagement management and ongoing mentorship.
Additionally, the Senior Consultant supports continued organizational growth by contributing to methodology development, technical assessment strategy, and engagement planning as a technical subject matter expert. Using strong experience with FISMA, FedRAMP, and familiarity with the NIST Risk Management Framework (RMF), this role supports and leads teams performing assessments for cloud computing technologies in support of federal compliance requirements.
Reports to
FISMA/FedRAMP Manager
Pay Classification
Full-Time, Exempt
Responsibilities
Lead assessments from initiation to project closure including:
Planning/Closing Meeting
Process Walkthroughs
Leading Findings Discussion
Regular status updates internally and externally
Coach other team members and assessors as part of team
Drive working sessions with clients to ensure expectations and direction are aligned and timelines are being met
Execute security assessments in accordance with NIST SP 800-53, 800-37, 800-171, and other authoritative IT security guidance
Develop Security Authorization Packages and ensure completeness and compliance with FedRAMP requirements and other authoritative IT security guidance
Minimum Qualifications
EDUCATION
Bachelor’s degree in management information systems, information security, computer science, or relevant discipline; or combination of relevant education and work experience
Master’s degree is a plus
EXPERIENCE
At least 3 years of experience in information security, with strong NIST experience (in order of preference): NIST SP 800-53, FedRAMP, RMF, FISMA, NIST SP 800-171
Demonstrated knowledge of NIST publications, such as: NIST SP 800-30 rev 1, 800-37 rev 1 or 2, 800-53 rev 4, 800-53A rev 4, 800-60 Vol 1 & 2 rev 1, and 800-171 rev 1
Experience with government compliance, including FISMA, FedRAMP, RMF, and CSF
Experience with commercial cloud environments; architectures, technologies, and services
Lead at least five FedRAMP or FISMA engagements from kick-off to report delivery
CERTIFICATIONS
At least one advanced cybersecurity certification such as: CISSP, CISM, CISA, CCSP, CRISC, CAP, CASP, or other relevant security certifications, multiple are preferred
At least one vendor-specific cloud-related technology certifications such as: AWS, MS Azure, Google Cloud, Cisco Cloud, VMWare, etc. is preferred
PMP is a plus
SKILLS
Ability to meet deadlines with a high degree of motivation working in a fast-paced environment
Ability to lead multiple assessment engagements and train junior staff
Excellent communication skills to include the ability to explain technical matters to a non-technical audience
Broad IT background with technical understanding of networks, protocols, security configurations, cryptography, identity and access management, and the systems development life cycle
Benefits
Healthcare, Dental, and Vision Benefits Employer Paid Life Insurance and Disability Insurance EAP - Employee Assistance Program Pet Insurance 401(k) Plan with Employer Matching Competitive Bonus Structure Home Office Reimbursement Certification Reimbursement Personalized Career Coaching Generous Paid Time Off Paid Office Closure December 25-January 1 Vacation Bonus Summer Hours
About A-LIGN
A-LIGN is the leading provider of high-quality, efficient cybersecurity compliance programs. Combining experienced auditors and audit management technology, A-LIGN provides the widest breadth and depth of services including SOC 2, ISO 27001, HITRUST, FedRAMP, and PCI. A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn more, visit a-lign.com
Come Work for A-LIGN!
Apply online today at A-LIGN.com and learn about life at A-LIGN by following us on https://www.linkedin.com/company/a-lign/.
A-LIGN is an Equal Opportunity Employer. Minorities, women, disabled, and veterans encouraged to apply! Offices: (United States);