Staff GRC Analyst FedRAMP - Technical Writing Emphasis
US-Washington DC-Remote, United States
Full Time Senior-level / Expert USD 150K - 188K
Cloudera
Cloudera delivers a hybrid data platform with secure data management and portable cloud-native data analytics.Business Area:
EngineeringSeniority Level:
Mid-Senior levelJob Description:
At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises.
As a Staff GRC Analyst with an emphasis on technical writing at Cloudera, you will be pivotal in enhancing our governance, risk, and compliance initiatives. Your expertise will be crucial in aligning our products and services with stringent industry standards and ensuring a secure/compliant experience for our public sector customers. This role requires you to work across all teams at Cloudera, with the responsibility/capability of recommending and driving their projects based on company goals and directives.
As a Staff GRC Analyst you will:
Policy / Procedure Creation & Technical Writing: Develop and update compliance policies, procedures, and guidelines to ensure alignment with regulatory requirements and organizational objectives. This includes experience leading or being a primary contributor to SSP for FedRAMP High (various ILs).
Federal Control Compliance: Have an in-depth understanding of various compliance controls with primary focus on FedRAMP (Rev.4 and Rev.5) & NIST 800-53 - Moderate / High (various ILs).
Internal and External Audit Support: Spearhead and support internal and external audit activities. Work closely with auditors and internal teams to ensure compliance and timely completion of audit objectives.
Continuous Monitoring: Deep understanding of FedRAMP controls and ability to designate / manage across all major stakeholders. Maintain accurate and up-to-date records of compliance activities, findings, and corrective actions. Prepare and present compliance reports to management and regulatory bodies as required. Project management of the Federal ConMon program will be required of this candidate.
Continuous Compliance: Work closely with internal teams, including Engineering, SRE, IT, Legal, and HR to ensure compliance considerations are integrated into business processes and systems.
Internal Assessments: Assist with internal risk, business continuity, and disaster recovery assessments across various business units, identifying potential threats and vulnerabilities. Ability to quickly gather data from major stakeholders and develop strategies and recommendations to mitigate identified risks.
We are excited if you have...
Bachelor's degree (or equivalent industry experience)
Minimum of 5 years experience - security or security documentation role within the public sector.
In-depth understanding of the listed regulatory compliance standards.
Strong communication skills and ability to work with cross-functional teams.
To comply with U.S. federal government requirements, U.S. citizenship is required for this position.
You may also have...
CISSP, CISA, AWS, CRISC, or similar certifications are a plus, but not a requirement.
Experience in working remotely and collaborating with global teams.
The expected base salary range for this role in
Washington is $150,000 - $188,000
The salary will vary depending on your job-related skills, experience and location
What you can expect from us:
Generous PTO Policy
Support work life balance with Unplugged Days
Flexible WFH Policy
Mental & Physical Wellness programs
Phone and Internet Reimbursement program
Access to Continued Career Development
Comprehensive Benefits and Competitive Packages
Employee Resource Groups
Cloudera is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
#LI-HYBRID
#LI-SZ1
Tags: AWS CISA CISSP Compliance CRISC FedRAMP Governance Monitoring NIST NIST 800-53 Open Source System Security Plan Vulnerabilities
Perks/benefits: Career development Competitive pay Flex hours Flex vacation Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.