Security Engineer (FedRAMP)

🏢 Valiant Solutions · all Valiant Solutions jobs
📍 United States
💰 USD 140,000 - 155,000 / annual
📅 Posted 2026-06-29 · via Himalayas
🏷 Infosec,Security-Engineering,FedRAMP-Compliance,Cybersecurity,Cloud-Security,FedRAMP-Security-Engineer,FedRAMP-Compliance-Engineer,FedRAMP-Security-Consultant,FedRAMP-Security,Security-Engineer,Senior-FedRAMP-Consultant
Apply on original site ↗

Position Description

Valiant Solutions is seeking a Security Engineer (FedRAMP) to join our rapidly growing and innovative cybersecurity team!

The candidate will provide technical expertise on Security control implementations and development of Information Security procedures for systems and applications. The selected candidate will play a key role in a fast-paced FedRAMP team to provide comprehensive program, analytical, technical, and advisory skills to the client and supported Cloud Service Providers (CSPs). Candidates will be required to perform pre-assessment activities including a detailed analysis of the technology stacks comprising the vendor solutions. This position requires an advanced understanding of how to engineer secure, compliant, and resilient architectures and solutions. You will be part of a team working to assess vendor systems for technical compliance with NIST, FedRAMP and agency standards.

Valiant Solutions is a company that cares about its employees- we've been named one of the Best Places to Work in the Washington DC area 12 years in a row ! If you are interested in learning more about Valiant and this opportunity, we invite you to apply now!

This position allows for 100% remote work. Remote work necessitates a high-level trust in our employees and we strictly adhere to the details found below in our Remote Work Policy.
Required Experience

- Five (5) years of experience in the IT Security field

- Bachelor’s degree in Computer Science, Information Systems, Mathematics, Engineering or a related field, OR an additional three years of IT experience required

- Direct experience as a Security Engineer or System Architect performing analysis on FedRAMP Cloud Service Providers (CSP) architectures and control implementations (ie. 3PAO, FedRAMP program at another federal agency, etc)

- Four (4) years of hands-on technical experience as a System Architect or Security Engineer

- Four (4) years of experience supporting FedRAMP as an Engineer or Architect

- Security+, CISSP, CISM, CISA, or equivalent Security certification

- Confidence and depth of understanding to lead meetings with potential Vendors

- Current experience in reviewing 3rd party security assessment reports

- Have detailed knowledge and experience with NIST Policies, Governance, Security Planning and Architecture, FISMA Compliance, RMF, Incident Analysis, and General Security Best Practices.

- Possess strong written and oral communication skills to support customers, internal stakeholders, peers, and public audiences.

- Ability to communicate, both written and oral, to both technical and non-technical stakeholders.

- Strong communication skills to interact with senior managers, junior staff, and business unit (non-technical) customers

Responsibilities

- Perform detailed architecture and technical design reviews on the full stack for vendor solutions

- Conduct architecture reviews of Cloud Service Providers (CSPs) authorization packages to validate secure design, alignment to FedRAMP and agency requirements, identify gaps, and advise the FedRAMP Government Lead overall risk posture and compliance

- Lead and conduct architecture interviews with CSPs to ensure all critical control areas throughout the architecture are designed to meet program requirements

- Develop architecture briefing documents to inform the Government FedRAMP program manager and CISO of CSP compliance with FedRAMP program requirements, technical capabilities, and any concerns noted from material review

- Complete comprehensive review and comment documents of CSPs FedRAMP documentation including but not limited to system security plans, policies and procedures, supplemental agency guidance documents, alternative implementation and risk acceptance documents, etc. Work with CSPs to reconcile and address any documentation and technology gaps discovered during the review

- Complete a comprehensive review of CSPs' assessments and package submissions afte

← All remote jobs