Senior Governance Compliance Security Engineer
AnthologyAbout the role
Senior Governance Compliance Security Engineer
Remote – United States
The Opportunity:
Anthology delivers education and technology solutions so that students can reach their full potential and learning institutions thrive. Our mission is to empower educators and institutions with meaningful innovation that’s simple and intelligent, inspiring student success and institutional growth.
The Power of Together is built on having a diverse and inclusive workforce. We are committed to making diversity, inclusion, and belonging a foundational part of our hiring practices and who we are as a company.
For more information about Anthology and our career opportunities, please visit www.anthology.com.
The role will work closely with members of our Governance, Risk, and Compliance team and internal stakeholders (Dev, DevOps, Corp IT, etc.) on all government compliance audit roles and provide the opportunity to learn and work on several other compliance and audit-related work efforts.
The primary function of this role will be to help maintain and expand Anthology's Federal Risk and Authorization Management Program (FedRAMP) and StateRAMP program. In addition to helping build Anthology's FedRAMP and StateRAMP portfolio, you will also be actively involved in the DISA compliance-related (e.g., RMF, CMMC, DISA IL-4, etc.) workstreams.
Primary responsibilities will include:
- Providing subject matter expertise for FedRAMP, StateRAMP, IL-4, CMMC and NIST 800-53 compliance standards and regulations
- Conducting FedRAMP, StateRAMP, and NIST 800-53 gap assessment, compliance readiness, and compliance monitoring activities
- Coordinating and leading delivery of audit milestones to ensure audit timelines stay on target by escalating and identifying roadblocks
- Performing continuous monitoring activities, as required by TX-, State-, and FedRAMP, DISA IL4 standards and ensuring reports are available for review by applicable agencies/clients
- Conducting vendor and supply chain risk assessments
- Assisting in the identification of business process improvements and partnering with technology and business stakeholders to identify pragmatic approaches to compliance readiness and testing
- Collaborating cross-functionally with technology and business stakeholders to drive, track, and resolve all aspects of compliance readiness and audit execution
- Conducting various IT Compliance controls validation and implementation activities
- Collaborating with technology and business stakeholders along with other Compliance team members to facilitate remediation and execution of corrective action plans
- Participating in continuous improvement initiatives
- Providing coaching and mentorship to more junior team members
The Candidate:
Required skills/qualifications:
- US Citizen
- Effective organizational, follow-up, and time management skills
- 5-8 years of hands-on experience in IT audit and/or compliance
- A strong background with NIST Risk Management Framework (SP 800-53) and a broad range of skills in the fields of NIST publications, StateRAMP, or FedRAMP requirements
- Experience with control assessments and coordination of audit activities
- Familiarity with Information Security principles, knowledge of IT processes (e.g., Change Man
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s