Talent.com

Program analyst Jobs in San Mateo, CA

Create a job alert for this search

Program analyst • san mateo ca

Last updated: 4 days ago

Director, FedRAMP Program

FreshworksSan Mateo, CA, United States
Full-time

We are seeking an experienced Director, FedRAMP Program, to lead our federal compliance and authorization program for our SaaS cloud service offerings.This role reports directly to the Chief Inform... Show more

Program Manager

LanceSoftSan Mateo, CA, United States
Full-time

Serve as the primary FleetOps point of contact with program management team, coordinating across both organizations to close open actions, finalize joint SOPs, and hit integration milestones.SOP De... Show more

Senior Program Controller

ZooxSan Mateo, CA, United States
$183,000.00 yearly
Full-time

The Senior Program Controller is responsible for the financial management, planning, monitoring and reporting of programs and projects within Vehicle Development.This role ensures effective cost co... Show more

Clinical Program Manager

Kite PharmaSan Mateo, CA, United States
$182,070.00 yearly
Full-time

At Gilead our pursuit of a healthier world for all people has yielded a cure for hepatitis C, revolutionary improvements in HIV treatment and prevention as well as advancements in therapies for vir... Show more

Technical Program Manager

Bear RoboticsRedwood City, California, United States
$196,000.00 yearly
Full-time

Bear Robotics is at the forefront of automated hospitality solutions, pioneering AI-driven autonomous robots.As the Technical Program Manager to the CTO, you'll play a crucial role in assisting the... Show more

Program Manager

Kitchell CorporationSan Mateo, CA, United States
$190,000.00 yearly
Full-time

Construction Owner's Representative.San Mateo, CA, 94403, United States.PM/CM Services Owner's Representative.Construction, Owner's Representative. Show more

Program Manager

Vertex Sigma SoftwareFoster City, CA, US
Full-time
Quick Apply

Onsite in Foster City, CA | at least 3 days in office.We are seeking a highly skilled Contract Program Manager to support our technical teams by owning and optimizing the tools and processes that d... Show more

Licensing Program Analyst (LPA)

California State JobsSan Bruno, CA, United States
Full-time

Licensing Program Analyst (LPA).The California Department of Social Services (CDSS) serves, aids and protects disadvantaged and vulnerable children and adults in ways that strengthen and preserve f... Show more

Program Manager

Propel Recruitment LLCSan Mateo, CA, United States
$130,000.00 yearly
Full-time

A highly engaged philanthropic organization is seeking a Portfolio & Program Manager to join its collaborative and mission-driven team.This is a unique opportunity to work alongside experienced phi... Show more

GSOC Program Manager

PINKERTON | Comprehensive Risk ManagementRedwood City, CA, United States
$140,000.00 yearly
Full-time

At Pinkerton, the mission is to protect our clients.To do this, we provide enterprise risk management services and programs specifically designed for each client.Pinkerton employees are one of our ... Show more

Program Manager

LancesoftFoster City, CA, US
Full-time
Quick Apply

Serve as the primary FleetOps point of contact with program management team, coordinating across both organizations to close open actions, finalize joint SOPs, and hit integration milestones.SOP De... Show more

Program Manager

Denken Solutions, Inc.Foster City, CA, California, USA
Full-time

Arial,Helvetica,sans-serif;"><strong>Hybrid role - 4 days Onsite and 1 day Remote</strong></span></span></p> <p><span style="font-size:12px;&quot... Show more

Network Program Consultant (Program Manager)

California Creative Solutions Inc.San Francisco Intnl Airport, CA, United States
Full-time
Quick Apply

Project Scope:</b></p> <ol> <li><b>Task 1: Program Management and Project Planning</b></li> </ol> <ul> <li>Develop comprehensive, end-to-... Show more

Program Manager

Software Technology, Inc.San Bruno, CA, United States
Full-time

Coordinates projects and ensures company resources are utilized appropriately.Compiles project status reports, coordinates project schedules, manages project meetings, and identifies and resolves t... Show more

Tennis Program Instructor

CALEX SPORTS INCSan Mateo, CA, US
$50.00 hourly
Part-time

Monday–Friday 1:00–5:00 PM (some weekend options available).At least High School or equivalent.We are looking for enthusiastic and reliable individuals to join our team as After School Tennis Coach... Show more

Campus Elite Program

Student MedicoverBurlingame, CA, United States
Full-time

The Campus Elite Program aims to recruit students from universities across the United States and help our teams to promote brand awareness on campus.We help young students understand the knowledge ... Show more

Program Manager

Redolent, IncSan Bruno, CA, United States
Full-time

Coordinates projects and ensures company resources are utilized appropriately.Compiles project status reports, coordinates project schedules, manages project meetings, and identifies and resolves t... Show more

Program Manager

MasTec IncSouth San Francisco, California, United States
Full-time

The Program Manager will be responsible for leadership, development, implementation and management of specific core applications in the company.The position offers the option to work remotely.MasTe... Show more

Program Manager

OhaloSouth San Francisco, CA, United States
$140,000.00 yearly
Full-time

Ohalo is hiring a Program Manager (PM) to lead strategic programs across the organization.You will manage and oversee cross-functional programs that span R&D, engineering, and operations, driving c... Show more

Program Manager

Syntricate TechnologiesSan Mateo, CA, United States
Permanent

Program/Project management experience using a formal methodology including Agile, scrum, Waterfall.Total IT 13+ years At least 7 Years of as a Project/program Manager and 2-3 Years of ScM Master ex... Show more

People also ask
Director, FedRAMP Program

Director, FedRAMP Program

FreshworksSan Mateo, CA, United States
23 days ago
Job type
  • Full-time
Job description

Director, FedRAMP Program

We are seeking an experienced Director, FedRAMP Program, to lead our federal compliance and authorization program for our SaaS cloud service offerings. This role reports directly to the Chief Information Security Officer and owns the end-to-end FedRAMP journey, from readiness and authorization planning through 3PAO assessment, agency sponsor coordination, Authorization to Operate (ATO), and post-authorization continuous monitoring.

The ideal candidate has personally led or played a senior leadership role in bringing a SaaS company through FedRAMP Moderate authorization, with FedRAMP High experience strongly preferred. This is a cross-functional leadership role requiring deep knowledge of FedRAMP, NIST SP 800-53, cloud security, SaaS engineering operations, SSDLC, DevSecOps, audit readiness, executive communication, risk management, and federal customer expectations.

This role will serve as the primary program leader connecting Security, Engineering, Product, IT, Legal, GRC, Sales, Customer Success, external advisors, 3PAOs, and federal agency stakeholders. Success requires more than managing checklists. This person must be able to drive real control implementation, unblock engineering dependencies, manage risk tradeoffs, and keep executives aligned on timeline, scope, cost, and residual risk.

Key Responsibilities:

  • Own and lead the company's FedRAMP program from readiness (FW has completed RADD for Moderate) through ATO and continuous monitoring.
  • Develop the overall FedRAMP ATO strategy, roadmap, execution plan, work breakdown structure, milestone plan, and executive reporting model.
  • Lead the company through FedRAMP Moderate authorization, with a path to FedRAMP High for future ATO.
  • Define and manage the FedRAMP authorization boundary for the cloud service offering.
  • Partner with Security, Engineering, Product, IT, Legal, Privacy, Compliance, and GTM teams to align FedRAMP requirements with business and customer needs.
  • Translate FedRAMP requirements into clear workstreams, owners, deliverables, deadlines, and measurable outcomes.
  • Maintain executive-level visibility into program status, risks, decisions, blockers, and funding needs.

Authorization Package Ownership:

  • Own the development, maintenance, and quality of the FedRAMP authorization package, including the SSP, SAP, SAR, POA&M, control implementation narratives, policies, standards, procedures, control inheritance documentation, architecture diagrams, data flow diagrams, boundary documentation, and supporting operational evidence.
  • Ensure documentation accurately reflects the real operating environment, not aspirational controls.
  • Build a durable evidence repository and repeatable evidence collection process.
  • Establish documentation quality standards to reduce rework during 3PAO and agency review.

3PAO, Advisor, and Agency Coordination:

  • Serve as the primary internal program owner for external FedRAMP partners, including advisors, consultants, 3PAOs, and agency stakeholders.
  • Coordinate readiness assessments, gap assessments, formal assessments, evidence requests, control interviews, penetration testing, and remediation validation.
  • Manage 3PAO engagement timelines, dependencies, artifacts, and issue resolution.
  • Support agency sponsor conversations and help prepare materials needed for agency authorization review.
  • Ensure the SAR findings are translated into clear remediation plans and risk decisions.

POA&M and Risk Management:

  • Own the POA&M process for FedRAMP-related findings, vulnerabilities, control gaps, and residual risks.
  • Drive timely remediation of POA&M items across Engineering, Cloud Infrastructure, Cybersecurity, IT, and Product teams.
  • Establish clear ownership, due dates, severity, risk rationale, evidence requirements, and closure criteria for each POA&M item.
  • Escalate overdue or high-risk items to appropriate leadership forums.
  • Partner with business and technical owners to determine when remediation, mitigation, compensating controls, or formal risk acceptance is appropriate.
  • Maintain a clear view of residual risk for executives and authorizing stakeholders.

Control Implementation and Engineering Alignment:

  • Partner with Engineering, Cloud Infrastructure, and Cybersecurity teams to implement FedRAMP-required security controls in a SaaS cloud environment.
  • Drive control maturity across identity and access management, privileged access management, vulnerability management, secure configuration management, logging, monitoring, alerting, incident response, encryption, key management, change management, backup and recovery, contingency planning, asset inventory, boundary protection, software supply chain security, and secure SDLC.
  • Help engineering teams understand not just what is required, but why it matters and how to implement it sustainably.
  • Identify control implementation gaps early and drive resolution before they become audit blockers.

Continuous Monitoring and Post-ATO Operations:

  • Assist in building and operating the FedRAMP continuous monitoring program after authorization.
  • Own recurring ConMon deliverables, evidence collection, vulnerability reporting, POA&M updates, significant change analysis, incident reporting coordination, and ongoing agency reporting.
  • Partner with Security Operations, Cybersecurity, Engineering, and Compliance to maintain authorization posture.
  • Establish operational processes to prevent control drift after ATO.
  • Track changes to FedRAMP guidance, NIST requirements, agency expectations, and federal cybersecurity directives.
  • Prepare the organization for annual assessments and ongoing authorization maintenance.
  • Keep abreast of FedRAMP program changes, like 20XX, and how they might impact our FedRAMP program.

Executive and Cross-Functional Communication:

  • Provide clear, concise program updates to executives, steering committees, and board-level stakeholders.
  • Communicate program health, milestone status, material risks, funding needs, staffing constraints, and decision points.
  • Create executive-ready reporting that connects FedRAMP work to customer trust, federal revenue opportunities, risk reduction, and operational maturity.
  • Facilitate cross-functional decision-making when security requirements conflict with product timelines, engineering capacity, or customer commitments.
  • Serve as the internal FedRAMP translator: able to explain complex requirements in business, technical, and executive terms.

Federal GTM and Customer Support:

  • Partner with Sales, Legal, Customer Success, and Cybersecurity GTM teams to support federal customer conversations.
  • Help develop accurate FedRAMP-related customer messaging, RFP responses, trust center content, and security collateral.
  • Ensure external claims about FedRAMP status, roadmap, and control maturity are accurate and legally defensible.
  • Support customer security reviews and federal procurement diligence related to FedRAMP.

Qualifications

  • 10+ years of experience in cybersecurity, compliance, GRC, cloud security, audit, risk management, or security program leadership.
  • Direct experience leading or materially contributing to a FedRAMP Moderate ATO for a SaaS or cloud service provider.
  • Strong working knowledge of the FedRAMP authorization lifecycle, NIST SP 800-53, FedRAMP Rev. 5 requirements, SSP, SAP, SAR, POA&M, continuous monitoring, the 3PAO assessment process, and agency authorization processes.
  • Demonstrated ability to manage complex, cross-functional security programs involving Engineering, Product, Cloud Infrastructure, Cybersecurity, Legal, GRC, and executive stakeholders.
  • Experience building and maintaining audit evidence repositories and compliance operating models.
  • Strong knowledge of SaaS/cloud architecture, preferably AWS, Azure, or multi-cloud environments.
  • Strong understanding of technical security domains, including IAM, vulnerability management, logging/monitoring, encryption, incident response, secure SDLC, change management, and cloud infrastructure security.
  • Proven ability to drive remediation across teams that do not directly report to you.
  • Excellent written and verbal communication skills.
  • Ability to communicate clearly with both technical teams and executive stakeholders.
  • Strong project/program management discipline, including milestone planning, dependency tracking, risk management, and executive reporting.

Preferred Qualifications:

  • Experience leading or supporting FedRAMP High authorization.
  • Experience with both agency authorization and legacy JAB-style authorization expectations.
  • Experience working directly with FedRAMP