Skip to main content

Principal Security Compliance Analyst

Elastic
Remote - United StatesUpdated 10d ago
Base salary
$160k–$253k
Published base salary range
Location
Remote - United States
Remote eligibility
Employment
Full-time
Staff / Principal
Role family
Security
B2B SaaS
Role skills
Apply on jobs.elastic.co
Job actionsApply now
Job actionsApply now

About the job

About Elastic

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI. Elastic's complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.

Role Overview

Join our team as a Principal Security Compliance Analyst, where you'll take the lead in managing our FedRAMP Moderate program. You'll be part of a fantastic team that values a strong security culture, allowing you to contribute meaningfully to our mission while collaborating with like-minded professionals.

Responsibilities

  • Manage the FedRAMP Moderate authorization and continuous monitoring program.
  • Maintain the System Security Plan, policies, procedures, evidence, inventories, diagrams, and other required documentation.
  • Coordinate assessments and reviews with our 3PAO, federal agency partners, consultants, and internal teams.
  • Track security findings and POA&M items through remediation.
  • Work with Security, Engineering, IT, Product, and Legal teams to implement and maintain required controls.
  • Monitor program deadlines, risks, and compliance metrics and report progress to leadership.
  • Review system and product changes for potential FedRAMP impact.
  • Help control owners understand their responsibilities and prepare appropriate evidence.

Qualifications

  • 5+ years of experience managing or supporting a FedRAMP Moderate program.
  • Strong understanding of FedRAMP, NIST SP 800-53, and continuous monitoring requirements.
  • Experience with SSPs, POA&Ms, control evidence, vulnerability management, and security assessments.
  • Strong project-management and organizational skills.
  • Ability to communicate effectively with technical teams, auditors, government stakeholders, and company leadership.
  • Eligible to work in Department of Defense (DoD) Impact Level 4 or above cloud service environments.

Compensation & Benefits

Compensation for this role is in the form of base salary. This role does not have a variable compensation component. The typical starting salary range for new hires in this role is $159,800—$252,800 USD. In select locations (including Seattle WA, Los Angeles CA, the San Francisco Bay Area CA, and the New York City Metro Area), an alternate range may apply: $191,900—$303,500 USD.

In addition to cash compensation, this role is currently eligible to participate in Elastic's stock program. Our total rewards package also includes a company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings, along with a range of other benefits offered with a holistic emphasis on employee well-being.

Elastic offers competitive pay, health coverage for you and your family in many locations, flexible locations and schedules for many roles, generous vacation days, up to $2000 match for financial donations and service, up to 40 hours each year for volunteer projects, and a minimum of 16 weeks of parental leave.

Additional Information

Elastic is an equal opportunity employer and is committed to creating an inclusive culture. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, or other protected status. To request an accommodation, email candidate_accessibility@elastic.co.

Skills & tags

What you can verify before applying

Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.