Talent.com
Distinguished Security Engineer - FedRAMP High - Director Level

Distinguished Security Engineer - FedRAMP High - Director Level

SaviyntWashington, DC, US
13 days ago
Job type
  • Full-time
Job description

Job Description

Job Description

This is not a passive oversight role—this is your chance to take the helm of Saviynt's FedRAMP security mission and drive it from the front lines.

As the Distinguished Security Engineer (Director-Level Individual Contributor) , you will own the technical and GRC execution that keeps our platform trusted, compliant, and ahead of evolving federal requirements. You'll be both strategist and engineer , blending hands-on security expertise with the leadership needed to guide our FedRAMP journey end-to-end.

We need someone who thrives on building, breaking, and improving —someone who can lead audits, run vulnerability scans, recommend and deploy controls, and directly shape our security architecture. This is your opportunity to immediately influence Saviynt’s security posture, partner with cross-functional teams, and make FedRAMP compliance a competitive advantage.

If you’re ready to own FedRAMP from the trenches to the boardroom —and make an immediate impact on the security backbone of one of the industry’s leading identity platforms—this is where you make it happen.

Your Mission : What You’ll Own and Drive

  • 1. FedRAMP Leadership & Governance : Drive Certification and Trust
  • Lead Saviynt's entire FedRAMP program through certification, re-certification, and continuous monitoring cycles.
  • Develop and Maintain : Create and sustain the System Security Plan (SSP) and all FedRAMP-required documentation.
  • Direct ConMon : Lead monthly Continuous Monitoring (ConMon) meetings, ensuring technical issues are surfaced, resolved, and documented immediately.
  • Validate Artifacts : Personally review and validate all FedRAMP artifacts—audit reports, gap analysis, POA&Ms, and compliance forms.
  • Serve as POC : Be the primary Governance POC for internal teams, customers, and Federal auditors.
  • 2. Hands-On Security Engineering : Build, Scan, and Secure
  • Execute technical security controls within our mission-critical Federal environments.
  • Architect and Integrate : Design and integrate secure solutions for AWS, Azure, containers, Kubernetes , and modern applications relevant to the FedRAMP platform.
  • Hunt & Mitigate : Independently run vulnerability scans , analyze results, determine exploitability, and rapidly deploy mitigations across the environment.
  • Enhance Detection : Recommend and implement monitoring enhancements; actively analyze detection alerts to identify and respond to threats.
  • Automate Compliance : Automate GRC workflows to drastically improve the speed, accuracy, and scalability of compliance processes.
  • 3. Cross-Functional Security Enablement : Embed Security Everywhere
  • Partner with core business and technology teams to embed security and compliance from inception to deployment.
  • Embed Early : Proactively partner with product, engineering, and operations to embed security and compliance requirements early in the development lifecycle.
  • Translate Requirements : Convert complex technical audit requirements into clear, actionable engineering deliverables.
  • Support Engagement : Support sales and customer success by addressing client compliance and security queries , acting as a trusted security expert.
  • Manage Risk : Conduct risk assessments, track remediation efforts , and maintain a comprehensive risk register.
  • Contract Review : Review vendor and customer contracts for security clauses, driving favorable compliance outcomes.
  • 4. Compliance Expansion : Scale the GRC Foundation
  • Grow and formalize our overarching compliance framework.
  • Expand Reach : Contribute to and execute on other compliance programs including ISO 27001, PCI-DSS, SOC 1, and SOC 2.
  • Document Strategy : Develop and update core security documentation : policies, standards, incident response plans, and contingency plans.
  • Measure Posture : Establish and maintain metrics that clearly measure the GRC posture and inform leadership decisions.
  • Lead Training : Drive security awareness and training initiatives across the organization.

What You Bring : Your Qualifications for Command

  • U.S. Citizenship is required.
  • 15+ years of hands-on security architecture / engineering experience with cloud, containers, and modern app environments.
  • FedRAMP Authority : Proven leadership in FedRAMP environments with absolute mastery of NIST RMF and SP 800-53 Rev 5 controls.
  • Technical Expertise : Strong technical knowledge of secure solutions for AWS, Azure, Kubernetes , and modern application security practices.
  • Dual Leadership : Demonstrated ability to both lead compliance strategy (policy, documentation, risk) and execute technical controls directly (scanning, mitigation, architecture).
  • Agile & Executive Ready : Experience managing Agile projects and delivering polished, effective technical governance updates to executive audiences.
  • Vulnerability Expertise : Deep experience with vulnerability management, continuous monitoring, and the POA&M processes.
  • Influence : Strong stakeholder influence and cross-team collaboration skills essential for driving organizational change.
  • The candidate must :

  • Meet US persons on US soil requirements.
  • Undergo full background investigation / screening.
  • Undergo IAL3 requirements (Identity proofing to include I-9 document verification, biometric collection, and mailing address confirmation).
  • If required for this role, you will :

  • Complete security & privacy literacy and awareness training during onboarding and annually thereafter
  • Review (initially and annually thereafter), understand, and adhere to Information Security / Privacy Policies and Procedures such as (but not limited to) :
  • Data Classification, Retention & Handling Policy

    Incident Response Policy / Procedures

    Business Continuity / Disaster Recovery Policy / Procedures

    Mobile Device Policy

    Account Management Policy

    Access Control Policy

    Personnel Security Policy

    Privacy Policy

    Saviynt is an amazing place to work. We are a high-growth, Platform as a Service company focused on Identity Authority to power and protect the world at work. You will experience tremendous growth and learning opportunities through challenging yet rewarding work which directly impacts our customers, all within a welcoming and positive work environment. If you're resilient and enjoy working in a dynamic environment you belong with us!

    Saviynt is an equal opportunity employer and we welcome everyone to our team.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

    Create a job alert for this search

    Director Security • Washington, DC, US

    Related jobs
    • Promoted
    Security Engineer : Detection and Response

    Security Engineer : Detection and Response

    AnthropicWashington, DC, United States
    Full-time
    Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    AnaVationWashington, DC, US
    Full-time
    Be Challenged and Make a Difference.In a world of technology, people make the difference.We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched va...Show moreLast updated: 13 days ago
    • Promoted
    Senior Security Engineer Subject Matter Expert (SME)

    Senior Security Engineer Subject Matter Expert (SME)

    4A CONSULTING LLCEllicott City, MD, US
    Full-time
    Senior Security Engineer Subject Matter Expert (SME).This position is on-site when required, otherwise remote.Based in Maryland, you will report directly to the Department of Human Services’ ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    AnaVationQuantico, VA, US
    Full-time
    Be Challenged and Make a Difference.In a world of technology, people make the difference.We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched va...Show moreLast updated: 13 days ago
    • Promoted
    Security Engineer

    Security Engineer

    LeidosBethesda, MD, United States
    Full-time
    Leidos is seeking a Security Engineer to support the National Media Exploitation Center (NMEC).This role will be responsible for analyzing and assessing computer / network architecture security requi...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer / Architect (Hybrid) - 23437

    Security Engineer / Architect (Hybrid) - 23437

    EnlightenFort Belvoir, Virginia, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Infrastructure & Security Engineer

    Senior Infrastructure & Security Engineer

    Creative Financial StaffingSterling, Virginia, US
    Full-time
    All candidates should make sure to read the following job description and information carefully before applying.Senior Infrastructure & Security Engineer (On-Site Role - Northern Virginia).Dull...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, Mandiant & Proofpoint

    Senior Security Engineer, Mandiant & Proofpoint

    MediumWashington, DC, United States
    Full-time
    UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners w...Show moreLast updated: 19 days ago
    • Promoted
    Security Infrastructure Support Senior Security Engineer

    Security Infrastructure Support Senior Security Engineer

    Cybervance, Inc.Bethesda, MD, United States
    Full-time
    Security Infrastructure Support Senior Security Engineer.Bethesda, MD | Hybrid- Not Remote.Cybervance is a rapidly growing information security and information technology company based in Washingto...Show moreLast updated: 3 days ago
    Senior Security Engineer

    Senior Security Engineer

    DirectViz Solutions, LLCWashington, DC, USA
    Full-time
    Quick Apply
    DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information techno...Show moreLast updated: 8 days ago
    • Promoted
    CYBER SECURITY ENGINEER

    CYBER SECURITY ENGINEER

    NXTKEY CORPORATIONRockville, MD, US
    Full-time
    NXTKey Corporation has been delivering Information Technology, Information management, Information Assurance (IA) and cybersecurity solutions to US Federal Government since 2005.NXTKey Corporation ...Show moreLast updated: 6 days ago
    • Promoted
    Security Engineer

    Security Engineer

    SecuriportReston, VA, US
    Full-time
    Job Summary : The Security Engineer is responsible for identifying, analyzing, and mitigating security threats while ensuring the organization's cyber defenses remain strong.This role focuses on...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer (Compliance)

    Senior Security Engineer (Compliance)

    Versar, Inc.Washington, DC, US
    Full-time
    Senior Security Engineer (Compliance) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO).This can...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    1 Accord Consulting LLCAnnapolis Junction, MD, US
    Full-time
    Accord Consulting, LLC is a growing information and technology business founded on the basic principle of delivering customer mission success, while providing flexibility to maintain a work life ba...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer / Architect (Hybrid) - 23437

    Security Engineer / Architect (Hybrid) - 23437

    WyetechFort Belvoir, VA, US
    Full-time
    At Wyetech, you’ll be at the center of an award-winning corporate culture, breaking technological barriers and solving real-world problems for our federal government customers.We are committe...Show moreLast updated: 13 days ago
    Senior Security Engineer

    Senior Security Engineer

    Network Designs Inc.Washington DC, DC, USA
    Full-time
    Quick Apply
    NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firmly de...Show moreLast updated: 17 days ago
    • Promoted
    Distinguished Security Engineer – FedRAMP High - Director Level

    Distinguished Security Engineer – FedRAMP High - Director Level

    MediumWashington, DC, United States
    Full-time
    This is not a passive oversight role—this is your chance to.Saviynt's FedRAMP security mission and drive it from the front lines. Distinguished Security Engineer (Director‑Level Individual Contribut...Show moreLast updated: 12 days ago
    • Promoted
    Security Engineer

    Security Engineer

    1 Accord Consulting LLCAnnapolis Junction, MD, US
    Full-time
    Accord Consulting, LLC is a growing information and technology business founded on the basic principle of delivering customer mission success, while providing flexibility to maintain a work life ba...Show moreLast updated: 30+ days ago