1

Fedramp Program Manager Jobs in Kentucky (NOW HIRING)

$200 - $250/hr

Be Orca's interface to the FedRAMP PMO, our agency sponsor, and our assessors. * Track where the program is heading and tell us what it means for us early. * Be the technical voice of our federal ...

$125 - $150/hr

Program Manager (Contingent upon Contract Award) - Department of Veterans Affairs Wilcore is ... FedRAMP and VA cybersecurity requirements * Proactively identify and mitigate program, technical ...

$125 - $150/hr

Program Manager, Analytics, AI Readiness, and Process Modernization Position title Program Manager ... Recommend tools from the DOI-approved / FedRAMP-authorized set: AI-assisted document generation ...

$200 - $250/hr

Manage the significant change process, including review and sign off on changes, and ensuring ... WHAT YOU'LL BRING * 8-10 years of hands‑on FedRAMP program experience, including named ownership ...

$150 - $200/hr

GRC Program Manager, US Government Compliance OpenAI About the Team Governance, Risk, and ... Proven experience in obtaining and maintaining a FedRAMP ATO and agency specific ATOs in highly ...

$150 - $200/hr

Program Manager - Federal Cybersecurity (VA) Triumph Enterprises is building the team for a ... including FedRAMP and the NIST Risk Management Framework. * - Expertise in Federal policies ...

$150 - $200/hr

Could that be you? Senior Technical Program Manager - US Public Sector You'll own UiPath's US ... S. public sector frameworks (e.g., FedRAMP HIGH, CMMC). * • A proven track record owning a Plan ...

$150 - $200/hr

... managing account retention. * FedRAMP pathway authority - deeply familiar with FedRAMP 20x Program Certifications (Class A/B/C) and Rev5 Agency Certifications (Class D/High) to advise clients on ...

$200 - $250/hr

As a Staff Technical Program Manager within the Security Assurance Team, you will help lead high ... Demonstrated success in leading high-stakes security compliance initiatives (e.g., FedRAMP, DoD IL5 ...

$125 - $150/hr

Create and deliver training programs to ensure organizational awareness of FedRAMP requirements and responsibilities * Manage relationships with federal authorizing officials, cloud service providers ...

$150 - $200/hr

With intelligent agreement management, Docusign unleashes business-critical data that is trapped ... Familiarity with regulatory and compliance frameworks (SOC 2, ISO 27001, GDPR FedRAMP, etc.

$200 - $250/hr

Own Eon's compliance posture across SOC 2, ISO 27001, NIST, and FedRAMP, including audit management and continuous readiness. * Build a formal enterprise risk management program, including third ...

$150 - $200/hr

... Figma's FedRAMP cloud security standards. Responsibilities include supporting the analysis and ... Identify and elevate technical and program risks to relevant stakeholders, tracking resolution ...

$150 - $200/hr

... FedRAMP controls * Conducts vulnerability management reviews and evaluates continuous monitoring capabilities for onboarding candidates * Collaborates with cloud architects, program managers, and ISV ...

$150 - $200/hr

... Figma's FedRAMP cloud security standards. Responsibilities include supporting the analysis and ... Identify and attract technical and program risks to relevant stakeholders, tracking resolution ...

$125 - $150/hr

Citizen Required (FedRAMP / Federal Customer) Type: Full Time NextgenID is hiring a QA Manager to ... Core ResponsibilitiesQA Strategy and Leadership Own the quality program and the team. * Own the QA ...

$150 - $200/hr

Cadence is LMI's emerging program-management product for federal agencies. It brings requirements ... Shape the federal deployment strategy, including FedRAMP, DoD Impact Levels, Platform One or ...

$125 - $150/hr

The Manager of Compliance and Audit will lead our Compliance program, ensuring the organization ... Meet FedRAMP access requirements * 7+ years of work experience in compliance or GRC, including at ...

$150 - $200/hr

Understand the FedRAMP authorization process and impact levels -- deeply enough to explain it ... Proven ability to independently own strategic programs from conception to completion, and to ...

$100 - $125/hr

A single, authoritative compliance calendar and program plan across FedRAMP, Kantara, UK DVS, SOC ... Risk Management -- own the risk register and the decisions that carry risk. * Maintain the ...

next page

Showing results 1-20

Fedramp Program Manager information

What is a FedRAMP Program Manager?

A FedRAMP Program Manager is a professional responsible for overseeing and coordinating the process of achieving and maintaining Federal Risk and Authorization Management Program (FedRAMP) compliance for cloud service providers or government agencies. They manage documentation, security assessments, and communication with stakeholders to ensure all requirements are met according to federal standards. Their role is crucial for enabling secure cloud adoption within U.S. government agencies, as they guide the project through the FedRAMP authorization process from start to finish.

What are the key skills and qualifications needed to thrive as a FedRAMP Program Manager?

To thrive as a FedRAMP Program Manager, you need expertise in cloud security, risk management, compliance frameworks, and a solid understanding of FedRAMP requirements, usually backed by a degree in IT, cybersecurity, or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, NIST SP 800-53 controls, and certifications such as CISSP or PMP is highly beneficial. Strong project management, stakeholder communication, and problem-solving skills set candidates apart in this role. These competencies are essential for guiding organizations through complex FedRAMP authorization processes and ensuring ongoing compliance with federal security standards.

What are the main challenges a FedRAMP Program Manager faces when coordinating compliance efforts across multiple teams?

A FedRAMP Program Manager often navigates complex challenges such as aligning cross-functional teams—including IT, security, legal, and operations—to meet rigorous federal cloud security requirements and tight deadlines. Coordinating documentation, ensuring continuous monitoring, and responding to security assessments demand strong project management and communication skills. Additionally, managing evolving compliance standards and liaising with external auditors or government representatives can add to the complexity. Success in this role depends on the ability to facilitate collaboration, maintain meticulous records, and quickly adapt to regulatory updates.

What is the difference between Fedramp Program Manager vs Cloud Security Manager?

AspectFedramp Program ManagerCloud Security Manager
CertificationsFedRAMP certifications, PMP, CISSPCISSP, CCSP, Cloud Security certifications
Work EnvironmentFederal agencies, cloud service providers, government projectsPrivate sector, cloud service providers, enterprise security teams
Industry UsageFederal government compliance, cloud authorizationCloud security strategy, risk management

The Fedramp Program Manager primarily focuses on managing FedRAMP compliance and federal cloud authorization processes, often working within government or contractor environments. In contrast, the Cloud Security Manager oversees overall cloud security strategies and risk mitigation in private or enterprise settings. While both roles require cloud security knowledge and certifications like CISSP, their scope and industry focus differ significantly.

What are popular job titles related to Fedramp Program Manager jobs in Kentucky?

For Fedramp Program Manager jobs in Kentucky, the most frequently searched job titles are:

Infographic showing various Fedramp Program Manager job openings in Kentucky as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 17% Part Time, 1% Temporary, and 4% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.

DevOps Lead (FedRAMP) New

On-site

Orca Security
Network Security • 201 - 500 employees

$200 - $250/hr

Other

Medical, Dental, Vision, PTO

Posted 6 days ago


Job description

At Orca, in the right environment and with the right team, talent has no boundaries. This team spirit, together with our drive to always aim high, has quickly earned us unicorn status and turned us into a global cloud security innovation leader. So if you’re ready to join an amazing team of people who inspire each other every day, now is the time to find your place in our pod.

We’re looking for driven and talented people like you to join our team and our mission to change the future of cloud security. Ready to dive in and swim with our pod?

Highlights:
  • High-growth: Over the past seven years, we’ve consistently achieved milestones that take other companies a decade or more. During this time, we’ve significantly grown our employee base, expanded our customer reach, and rapidly advanced our product capabilities.
  • Disruptive innovation: Our founders saw that traditional security didn’t work for the cloud, so they set out to carve a new path. We’re relentless pioneers who invented agentless technology and continue to be the most comprehensive and innovative cloud security company.
  • Well-capitalized: With a valuation of $1.8 billion, Orca is a cybersecurity unicorn dominating the cloud security space. We’re backed by an impressive team of investors such as Capital G, ICONIQ, GGV, and SVCI, a syndicate of CISOs who invest their own money after conducting their due diligence.
  • Respectful and transparent culture: Our executives pride themselves on being accessible to everyone and believe in sharing knowledge with the employees. Each employee has a place in shaping the future of our industry.
About the Role:

The DevOps Lead (FedRAMP) will own Orca’s FedRAMP environment. All of it. The infrastructure, the authorization, and the relationships with the agencies and assessors who depend on it.

This is a builder’s role with real authority. You will be the most senior Orca engineer in our federal environment and the person everyone comes to for anything that touches it, from a Terraform change to an agency security review. You will set the technical direction, and you will implement it yourself. Over time you will grow a small US based team around you while keeping your own hands on the system.

The timing is good. FedRAMP is moving to 20x, with machine readable OSCAL packages, Key Security Indicators, and continuous validation replacing point in time assessment. Most companies are treating that as a compliance problem. We want to treat it as an automation problem, and you will be the one who designs how Orca does it.

If you like being the definitive expert on a system that matters, and you want the ownership without giving up the engineering, this is a rare shape of role.

What You’ll Do:

Build and operate the federal environment

  • Own and evolve Orca’s FedRAMP environment in AWS GovCloud, AWS East/West, Azure Government, Azure Commercial, and GCP, including EKS, Terraform, Helm, CI/CD, FIPS validated endpoints, hardened images, secrets management, and centralized logging.
  • Write the infrastructure code yourself and set the standards for how it is written.
  • Design the automation that makes compliance a byproduct of how the system runs, covering continuous configuration validation, drift detection, evidence collection, and inventory accuracy.
  • Decide how new platform capabilities land in the federal environment, and bring them in cleanly.
  • Own production health, monitoring, and incident response for the environment.

Own the FedRAMP program

  • Run continuous monitoring end to end, including scanning, POA&M, inventory, and reporting.
  • Own the authorization artifacts, from the SSP and boundary diagrams through control implementation, and lead their move to OSCAL.
  • Assess and categorize changes to the boundary, and own the notification process that goes with them.
  • Lead annual assessment and 3PAO engagements, from scoping through evidence to closing findings.
  • Be Orca’s interface to the FedRAMP PMO, our agency sponsor, and our assessors.
  • Track where the program is heading and tell us what it means for us early.
  • Be the technical voice of our federal environment in front of agency security teams, prime contractors, and prospects, across security reviews, architecture deep dives, and audit responses.
  • Work directly with our federal sales, sales engineering, and customer success teams. You will be in the rooms where a credible technical answer wins the account.
  • Translate between an agency ISSO and an R&D team in Tel Aviv, in both directions, so requirements arrive as something buildable.
Who You Are:
  • You are hands on today and you want to stay that way. You are writing infrastructure code and operating production systems now, and you would be doing roughly two thirds of that in this role alongside the ownership and customer work.
  • Real experience inside a FedRAMP authorized system. You can talk about an authorization boundary, a significant change, or what a 3PAO will ask for, from having done it.
  • 5 or more years in DevOps, SRE, or cloud infrastructure, with genuine production ownership.
  • Deep AWS experience, including hands on AWS GovCloud and a clear understanding of how it differs from commercial.
  • Kubernetes in production. Operating it, debugging it, and upgrading it.
  • Terraform and infrastructure as code at scale, 3 or more years.
  • Automation in Python or an equivalent language, with an instinct to script what others do by hand.
  • Fluency in NIST SP 800-53 Rev 5. You can move between a control and its real technical implementation in either direction.
  • Vulnerability management experience in a regulated environment.
  • The presence to hold a technical conversation with a federal customer’s security team and be the reason they trust the answer. Excellent written and spoken English.
  • Based in the United States, with access to the authorized environment subject to our federal personnel screening requirements.
  • Comfortable working with an Israel based R&D organization, with meaningful overlap with Israel hours.

Bonus Points:

  • Experience with the FedRAMP 20x pathway, OSCAL tooling, or KSI based validation.
  • Exposure to DoD IL4 or IL5, StateRAMP, CMMC, or IRAP.
  • Experience growing a small infrastructure team.
  • Compliance automation tooling such as Xacta, Paramify, RegScale, or Vanta.
  • Background at a security product company or with a cloud native security platform.
  • Bachelor’s degree in Computer Science or Computer Engineering, or equivalent hands on experience.
What We Offer:
  • Competitive salary and equity package
  • Discounted medical, dental, and vision benefits with significant employer contribution
  • Benefits coverage starting on your first day of employment
  • Generous PTO with U.S. holidays observed and flexible hybrid & remote work environments
  • Your choice of Mac or Windows laptop
  • Work-from-home stipend to be used in your first month of employment
  • Monthly reimbursement for cell phone and for home internet
  • The chance to collaborate with a team of talented global colleagues all around the world

Annual Salary range: $230,000 – $260,000. This represents the typical salary range for this position based on experience, skills, and other factors.

This position is open until filled. Applications will be accepted on an ongoing basis.

Orca Security is an equal opportunity employer, and qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status.

#J-18808-Ljbffr