This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Sr Application Security Architect - FedRAMP in the United States.
This role provides a unique opportunity to shape the security posture of critical applications within a FedRAMP-authorized environment. You will lead the design and implementation of application and cloud security controls, partnering closely with engineering, product, and compliance teams to translate regulatory requirements into actionable technical solutions. Your work will directly impact the safety and reliability of platforms that handle sensitive and life-impacting data. This is a highly collaborative role, involving daily engagement with leadership and technical teams, as well as external stakeholders. You will contribute to threat modeling, secure architecture design, and risk mitigation while driving compliance initiatives in a fast-paced, highly regulated setting. The position allows for autonomy, influence, and the ability to set best practices for security across complex systems.
Accountabilities:
- Define and maintain FedRAMP system boundaries, ensuring compliance and alignment with security standards.
- Drive control implementation, validation, and documentation for System Security Plans (SSP), Assessment Plans (SAP), Assessment Reports (SAR), Plan of Action & Milestones (POA&M), and Continuous Monitoring (ConMon).
- Conduct security and threat model reviews, providing guidance on secure application architecture and cloud deployments.
- Collaborate with engineering, product, and GRC teams to translate compliance requirements into practical, low-friction technical implementations.
- Review application projects and perform secure code evaluations to ensure risk-informed design decisions.
- Represent the organization to government agencies and 3PAOs, explaining design decisions, audit artifacts, and security posture.
- Prioritize and manage security-related initiatives, including vulnerability remediation, architectural feedback, and compliance control implementation.
- Lead projects that advance the organization’s security capabilities and mentor team members on best practices.
Requirements
- 6+ years of experience in security architecture, threat modeling, and compliance standards application.
- Deep expertise in FedRAMP High and Moderate environments, with experience interfacing with government agencies.
- Strong knowledge of application and cloud security, including AWS and/or Azure platforms.
- Practical understanding of security controls, audit standards, and risk-based application in development environments.
- Proven ability to balance ideal security practices with operational constraints in legacy and modern systems.
- Excellent collaboration skills, with the ability to influence cross-functional teams and mentor engineers.
- Hands-on experience with secure code reviews and technical guidance for development teams.
- Strong communication skills to articulate security priorities, trade-offs, and solutions effectively.
- Humble, pragmatic, and delivery-focused mindset, with the ability to thrive in a fast-paced environment.
Nice to Have:
- Experience in healthcare or other highly regulated industries (HIPAA, HITRUST, SOC 2, PCI).
- Recognized as a technical subject matter expert within previous organizations.
Benefits
- Competitive total compensation range: $184,000 – $230,000 USD.
- Flexible remote work environment with opportunities for in-person collaboration where applicable.
- Health, wellness, and retirement benefits with comprehensive coverage.
- Career growth and development opportunities in a high-performing, values-driven team.
- Exposure to complex, impactful projects in a highly regulated, innovative environment.
- Inclusive and diverse workplace culture fostering collaboration and continuous improvement.
Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching.
When you apply, your profile goes through our AI-powered screening process, designed to identify top talent efficiently and fairly.
🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience, and achievements.
📊 It compares your profile to the job’s core requirements and past success factors to determine your match score.
🎯 Based on this analysis, we automatically shortlist the three candidates who best match the role.
🧠 When necessary, our human team may conduct an additional manual review to ensure no strong profile is overlooked.
The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role. Once the shortlist is complete, we share it directly with the company that owns the job opening. The final decision and next steps (such as interviews or assessments) are made by their internal hiring team.
