Security Compliance Lead
Listed on 2026-09-12
-
IT/Tech
Information Security & Data Protection, Cybersecurity
The role
Vulcan sells legal intelligence to state agencies and is moving into federal work. FedRAMP is the federal government's security standard for cloud services; we run an environment that already implements most of the required controls and are working toward full federal agency authorization to operate.
You own: the System Security Plan, 3
PAO engagement, the POA&M, and continuous monitoring. You also own Security questionnaires, audits, and the security sections of RFIs and RFPs.
- Understanding of cloud security and compliance
- Engineering experience and ability
- Competence with agentic coding
- Experience taking a package through a 3
PAO audit - Experience going through an agency authorization
- Experience running continuous monitoring (Con Mon)
- Understanding of FedRAMP
We work 996: 9am to 9pm, six days a week, in the Austin office. There is no remote option and no hybrid schedule.
We are a small company attempting a federal certification on a timeline most companies take three years to reach, while continuing to ship product and onboard state customers.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).