Lead FedRAMP Security Engineer
Commvault · United States
About this role
**Lead FedRAMP Security Engineer** **The Opportunity** Commvault is seeking a Lead FedRAMP Security Engineer to join our cloud security organization and lead enterprise-wide implementation of FedRAMP security controls across authorized and authorization-boundary cloud environments. This senior individual contributor role reports to the Director, Cloud Security Operations & Security Architecture and is responsible for translating FedRAMP and NIST 800-53 requirements into implemented, monitored, and evidence-ready technical controls. **What You'll Do** • Lead enterprise-wide implementation and ongoing operation of FedRAMP security controls across cloud infrastructure, security tooling, logging, vulnerability management, and incident response • Own technical health and control coverage of FedRAMP security technologies (EDR, vulnerability scanning, CSPM, container scanning, SIEM) • Design, maintain, and validate centralized log ingestion from cloud platforms, operating systems, applications, containers, and security tools • Drive vulnerability triage, remediation tracking, risk reduction reporting, and POA&M inputs • Develop and maintain technical runbooks, SOPs, control implementation evidence, and operational procedures • Support FedRAMP Continuous Monitoring deliverables including vulnerability scans, POA&M updates, and control evidence • Partner with product and infrastructure teams to understand architecture, deployment patterns, and shared responsibility assumptions • Serve as senior technical point of contact for FedRAMP audits, 3PAO assessments, and government stakeholder discussions **Who You Are** • 8+ years in cloud security, security engineering, infrastructure security, or related technical security roles • 4+ years hands-on experience supporting FedRAMP-authorized or authorization-boundary cloud environments (Moderate or High) • Strong knowledge of FedRAMP, NIST SP 800-53, Continuous Monitoring, and POA&M management • Hands-on experience with AWS GovCloud and commercial AWS; Kubernetes, containers, EKS, Lambda preferred • Experience operating EDR, SIEM, vulnerability scanning, CSPM, and security monitoring technologies • Experience managing CrowdStrike in commercial or GovCloud instances • Ability to translate FedRAMP requirements into technical designs and operational procedures • Strong communication skills for technical and non-technical audiences • Relevant certifications (CISSP, CCSP, AWS Security Specialty, CISM, CISA, Security+) preferred **Why You'll Love Working Here** • Continuous professional development and product training • Clear career growth and advancement opportunities • Inclusive company culture • Comprehensive global benefits package **Compensation** Salary Range: $93,500 – $182,850 USD *Commvault is an equal opportunity employer committed to building an inclusive workplace.*
Listing freshness
CronJobs last confirmed this listing 5d ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.