Skip to main content
SailPoint

Staff Technical Program Manager, Regulated Environments

RemoteUnited States only
Published
Role
Project Management
Experience
Staff
Employment
Full-time
$122.2k–$206k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Staff Technical Program Manager needed for regulated environments, focusing on FedRAMP High authorization. Requires 5+ years TPM experience in SaaS/cloud, 3+ years in FedRAMP, strong cloud (AWS/Azure) and SDLC knowledge, and expertise in NIST 800-53 controls. Must be a US citizen.

Core skills

NIST 800-53FedRAMPTechnical Program Management

Required skills

AWSAzureJiraSharePointConfluence

Optional skills

GCPSOCISOAgile/Scrum certification

Required languages

English

What you'll do

  • Lead delivery of new regulated environments on our multi-tenant SaaS platform.
  • Lead delivery of our FedRAMP High authorization and standing up the model to sustain it after go-live.
  • Serve as the primary interface between Engineering, Product, and our Compliance team for all matters related to regulated environments.
  • Own and manage engineering evidence gathering, define sample sets, and support technical decisions in preparation for FedRAMP and future regulated-environment audits.
  • Translate compliance requirements into engineering execution plans, control implementation milestones, and audit-ready evidence pipelines.
  • Partner daily with Engineering Managers/Directors and our Compliance Director.
  • Establish a repeatable delivery engine so each new regulated environment is stood up faster than the last.
  • Conduct 1:1s with key stakeholders across Engineering, Cybersecurity, Product Ops, and our Compliance organization to map the landscape.
  • Review and ratify a gap analysis of our FedRAMP Moderate posture, focusing on SDLC and FIPS compliance gaps that pose immediate risk.
  • Audit current Jira boards, the POA&M, and in-flight initiatives to gauge engineering velocity and capacity.
  • Work closely with our Product leadership to inventory all in-scope future regulated environments and catalog their data-residency and sovereignty requirements at a high level.
  • Get current on evolving FedRAMP PMO guidance and what it means for our authorization path.
  • Finalize the approach, ownership, and sequencing for the highest-impact items with our internal leads.
  • Design the control and evidence framework and governance to be reusable across regimes from day one (a control crosswalk), so FedRAMP work compounds toward regulated environments rather than being one-off.
  • Work with our Compliance team to stand up Significant Change / release-management governance to prevent compliance drift.
  • Deliver leadership a realistic, data-backed timeline and resource plan, including where regulated-environment work will force roadmap trade-offs.
  • Partner with Compliance to frame engineering-scoped SSP documentation and readiness milestones.
  • Establish a monthly attestation and progress report for engineering executive leadership.
  • Track high-priority technical controls and serve as the primary engineering escalation point for blockers.
  • Ensure engineering scoped SSP and all attachments (policies, procedures, contingency plans) are fully drafted and aligned with the implemented environment.
  • Coordinate engineering teams' readiness/mock assessment with our third-party assessment organization (3PAO) to surface lingering high-risk gaps before the formal audit.
  • Validate that all product and feature flags are accurately mapped in production to prevent compliance drift.
  • Work with our Product Leadership to deliver a requirements assessment and delivery roadmap for EU sovereign cloud and UAE data-residency obligations, including architecture and data-residency gaps and proposed sequencing.
  • Achieve FedRAMP High authorization, establish an engineering org scoped Continuous Monitoring (ConMon) model, and transition operational ownership to the sustainment team.
  • Begin delivery of the next regulated environment on the roadmap using the established control framework, evidence pipeline, and governance model.

What they require

  • Be extremely organized, as you will be responsible for coordinating the outputs of multiple Engineering teams.
  • Have a deep understanding of technical program management in a fast-moving technology business, with demonstrable experience specifically within a FedRAMP context.
  • Possess a strong technical understanding of cloud computing (AWS, Azure), hardware architecture, and the end-to-end Software Development Lifecycle (SDLC) from a compliance perspective.
  • Have practical experience implementing NIST 800-53 Rev. 5 controls in cloud-native SaaS architectures, including SSP and POA&M lifecycle support.
  • Build strong cross-functional relationships. This is a people-facing role where the ideal candidate owns requests and outputs, interfacing with multiple cross-functional teams to deliver what Compliance needs.
  • Have deep experience with JIRA, SharePoint, and Confluence, as these are the cornerstone tools for this role.
  • Have excellent verbal and written communication skills, with the ability to clearly and concisely present information to executive leadership.
  • 5+ years of experience in Technical Program Management in a SaaS or cloud-native company.
  • 3+ years of direct, hands-on experience leading FedRAMP authorization programs (FedRAMP Moderate required; proven implementation and operationalization of FedRAMP High controls in a SaaS environment strongly preferred).
  • Direct experience with cloud computing (AWS, Azure) and the end-to-end SDLC from a compliance perspective.
  • Proven experience with compliance evidence collection, documentation, and audit support.
  • Experience working with agile development methodologies.
  • Strong written and verbal communication skills and the ability to work collaboratively with stakeholders and development teams.
  • Expert knowledge of JIRA, SharePoint, and Confluence.
  • Bachelor's degree in Business, MIS, Computer Science, or a related field, or equivalent professional experience.
  • Experience leading a program to a successful FedRAMP High "Ready" or "In-Process" designation.
  • Led at least one SaaS product through FedRAMP High authorization (Ready, In Process, or ATO).
  • Familiarity with data-residency and sovereignty architectures, and exposure to international regulated-environment regimes such as EU sovereignty schemes / GDPR and data-protection regimes such as PDPL.
  • Good understanding of cloud providers (AWS, Azure, Google) and related technologies, monitoring, and enablement practices.
  • Experience with other compliance certifications such as SOC and ISO.
  • Agile/Scrum training or certification.

Benefits

  • Health and wellness coverage: Medical, dental, and vision insurance
  • Disability coverage: Short-term and long-term disability
  • Life protection: Life insurance and Accidental Death & Dismemberment (AD&D)
  • Additional life coverage options: Supplemental life insurance for employees, spouses, and children
  • Flexible spending accounts for health care, and dependent care; limited purpose flexible spending account
  • Financial security: 401(k) Savings and Investment Plan with company matching
  • Time off benefits: Flexible vacation policy
  • Holidays: 8 paid holidays annually
  • Sick leave
  • Parental support: Paid parental leave
  • Employee Assistance Program (EAP) and Care Counselors
  • Voluntary benefits: Legal Assistance, Critical Illness, Accident, Hospital Indemnity and Pet Insurance options
  • Health Savings Account (HSA) with employer contribution
  • This role may be eligible for the SailPoint Corporate Bonus Plan or a role-specific commission, along with potential eligibility for equity participation.

SailPoint is the leader in Identity Security. SailPoint customers represent half of the Fortune 500 and half of the ASX 50.

🇺🇸 United StatesEnterprise SoftwareEnterprisesailpoint.com/

What people say about this company

4.2/ 5

  • Positive work culture and supportive colleagues.
  • Opportunities for professional development and career advancement.
  • Employees value work-life balance.

Details

Visa sponsorshipNo
$122.2k–$206k/yr