Skip to content

Open nowPosted 5 days ago

Senior Public Sector Compliance Manager

Menlo Security Inc.28 open roles

Where
US - Distributed
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Public Sector Compliance ManagerMenlo Security Inc. · US - Distributed
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Menlo Security Inc.'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Menlo Security Inc. postings stay open a median of 28 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 5 days ago

Menlo Security Inc. median: 28 days open

The posting

Menlo Security is the leader in Browser Security for human and agentic workforces. Our mission is to enable humans and agents to connect, communicate, and collaborate securely, without compromise. The Menlo Browser Security Platform protects organizations from cyberattacks by stopping threats across the web, documents, and email before they reach the user. With Menlo Agent Runtime Security (MARS), that protection now extends to the AI agents working alongside every employee. Menlo Security is trusted by major global businesses, including Fortune 500 companies and government agencies, to protect their most valuable asset, their data, and is backed by top-tier investors.

ABOUT THE ROLE

We are seeking a detail-oriented FedRAMP Compliance Manager to support our organization's adherence to the Federal Risk and Authorization Management Program (FedRAMP) requirements. This role is critical to ensuring our cloud services maintain compliance with federal security standards and support continuous monitoring, authorization processes, and audits. The ideal candidate will have experience with NIST SP 800-53, FedRAMP documentation, and working with cloud service providers in a regulatory context.

ABOUT MENLO SECURITY

Menlo Security, a leader in cloud security, has raised $100 million in Series E funding, valuing the company at $800 million. The round was led by Vista Equity Partners (“Vista”), a leading global investment firm focused on enterprise software, data and technology-enabled businesses, with additional participation from Neuberger Berman funds, General Catalyst, JP Morgan, and other existing investors. This new capital will further fuel market expansion and empower the company to scale go-to-market capabilities, as well as provide increased investment in engineering to accelerate product delivery and category expansion.

As businesses of all sizes embrace remote working and migrate to software as a service (SaaS), security is being completely re-architected to combat modern day threats such as phishing and ransomware. Traditional “detect and respond” approaches fail to provide the safety that users and businesses need. Menlo Security’s mission is to make internet use safe, seamless, and effective. The Menlo Security Cloud SWG is an extensible security platform – built on a unique isolation core – that delivers on the promise of cloud security by:

- Providing the most effective zero trust approach to preventing malicious attacks;

- Offering a seamless experience for end users that allows for safe, uninterrupted work while accessing the internet, SaaS or private applications; and

- Removing the significant operational burden for security operations teams.

Exciting things are happening at Menlo! We’re looking to grow in the next phase of our journey, and we need talented people to help us get there. Our five core values are: Customer Empathy, Thinking Creatively, Stay Aligned, Get It Done, Help Each Other Out. If you want to make a real impact, solve new challenges and take ownership of your career, we encourage you to apply and join our team!

The company is headquartered in Mountain View, California. For more company information, visit http://www.menlosecurity.com or @menlosecurity. To learn more about the product: https://try.menlosecurity.com.

RESPONSIBILITIES

- Develop and govern a comprehensive compliance roadmap to maintain CMMC certification, mitigating risks across all internal and external systems.

- Drive strategic initiatives for high-priority federal projects, ensuring all systems and processes meet the rigorous requirements for DoD Impact Level 6 (IL6) authorization.

- Serve as the Subject Matter Expert (SME) for FedRAMP High standards.

- Act as a key liaison to the Federal Sales Team, serving as a subject matter expert (SME) to ensure all business development activities align with federal regulatory standards and security compliance frameworks.

- Support the FedRAMP Moderate authorization and reauthorization processes, including development, review, and maintenance of system security documentation (SSP, POA&M, SAP, SAR, etc.).

- Map and analyze security controls against FedRAMP Moderate/High baselines and NIST SP 800-53 controls.

- Assist in implementing and monitoring security controls for FedRAMP-authorized systems.

- Coordinate with internal teams (engineering, operations, DevSecOps) to ensure security requirements are integrated into system design and operation.

- Maintain continuous monitoring documentation and support periodic assessments (e.g., annual assessments, penetration tests, vulnerability scans).

- Interface with Third Party Assessment Organizations (3PAOs), government customers, and internal stakeholders to support audits and assessments.

- Track and manage Plan of Action and Milestones (POA&M) items to closure.

- Manage the Administration, Training and Development of the FedRAMP platform and all associated monthly, quarterly, annual requirements as per the FedRAMP authorization process.

- Provide compliance reporting, metrics, and risk analysis to management.

- Stay up to date with changes in FedRAMP requirements, NIST guidance, and related compliance frameworks (e.g., FISMA, CMMC).

REQUIREMENTS

REQUIRED QUALIFICATIONS

- U.S. Citizenship (required for working in GovCloud environments).

- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).

- 5+ years of experience in information security compliance or risk management, preferably in a FedRAMP or FISMA-regulated environment.

- Strong knowledge of NIST SP 800-53, FedRAMP Moderate/High baselines, and the FedRAMP authorization process.

- Experience with security documentation (SSP, POA&M, SAR, SAP, etc.) and governance tools.

- Familiarity with vulnerability scanning tools (e.g., Nessus, Qualys) and interpreting security findings.

- Eligibility to obtain security clearance is required.

PREFERRED QUALIFICATIONS

- Experience working with or in a 3PAO or federal agency.

- FedRAMP or NIST security control implementation experience in AWS, Azure, or Google Cloud environments.

Security certifications such as:

- Certified Information Systems Security Professional (CISSP)

- Certified Information Systems Auditor (CISA)

- Certified in Governance, Risk and Compliance (CGRC)

- CompTIA Security+ or equivalent

SOFT SKILLS

- Strong analytical and problem-solving skills.

- Ability to work independently and manage multiple priorities in a fast-paced environment.

- Effective written and verbal communication abilities.

- Ability to collaborate across teams and explain technical issues to non-technical stakeholders.

- Self-motivated with the ability to manage multiple priorities.

Follow us on LinkedIn https://www.linkedin.com/company/menlo-security/!

Why Menlo?

At Menlo, we don't settle for the status quo — in our technology or our culture. How we think and act is just as important as what we build. Our culture is defined by five core mindsets: Proactive Leadership, Straight Talk, United Impact, Elevated Talent, and Customer-Compelled. We take ownership and drive outcomes without waiting to be told. We communicate directly and seek hard truths. We break down silos and win together. We hold a high bar for ourselves and the people around us. And we treat every customer interaction as mission-critical. If you're someone who sees it, owns it, solves it, and does it — you'll thrive here.

All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.

TO ALL AGENCIES: Please, no phone calls or emails to any employee of Menlo Security outside of the Talent organization. Menlo Security’s policy is to only accept resumes from agencies via Ashby (ATS). Agencies must have a valid services agreement executed and must have been assigned by the Talent team to a specific requisition. Any resume submitted outside of this process will be deemed the sole property of Menlo Security. In the event a candidate submitted outside of this policy is hired, no fee or payment will be paid.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Menlo Security Inc.'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Menlo Security Inc.'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Menlo Security Inc.'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.