Information Systems Security Manager
Cotiviti - United States
Hiring: Information Systems Security Manager Company: Cotiviti Location: United States Job Posted Time: 2026-09-17 08:44:32 Target Skills & Keywords : AWS, Azure, Change Management, Configuration Management, FedRAMP, GCP, Penetration Testing, R, Risk Management, SAP, SaaS About the job Experience: •8+ years of information security, risk, or compliance experience, including interaction with senior leadership, auditors, and regulators. Required Skills: •Manage and oversee end-to-end FedRAMP authorization activities, including planning, execution, resourcing, and stakeholder coordination. •Own the development, maintenance, and quality of all FedRAMP-required security documentation, including the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Plan of Action & Milestones (POA&M), and Continuous Monitoring artifacts. •Oversee monthly POA&M management, including vulnerability prioritization, remediation tracking, and risk acceptance coordination. •Lead and coordinate independent security control assessments, vulnerability management, penetration testing, contingency plan testing, and other required security activities. •Direct FedRAMP Continuous Monitoring ( ConMon ) activities, ensuring timely and accurate submission of monthly, quarterly, and annual deliverables, including scan results, incident reports, and compliance attestations. •Serve as the primary point of contact for sponsoring agencies, 3PAOs, and internal stakeholders on all FedRAMP-related matters. •Oversee research and response efforts related to government security bulletins, vulnerability advisories, and federal data calls, ensuring timely and accurate responses. •Ensure accurate and up-to-date system , software, and hardware inventories for government-authorized environments. Qualifications: •Demonstrated experience leading or managing FISMA Moderate or High authorizations and ongoing ATO maintenance. •Strong working knowledge of FedRAMP framework, NIST SP 800-53, and NIST RMF •Applied hands-on capability in cloud service providers (AWS, Azure, GCP) and SaaS environments. •Proven ability to lead cross-functional initiatives across technical and non-technical team . •Excellent written and verbal communication skills, with the ability to translate complex regulatory requirements for varied audiences. •Strong organizational skills and ability to prioritize effectively in a highly regulated environment. •Security or compliance certifications (CISSP, CISM, Security+, AWS/Azure Security certifications). •Communicating with others to exchange information. •Making timely decisions in the context of a workflow. •Maintaining focus. Compensation: •$135,000 - $155,000 / year •Competitive benefits and rewards package •This role is eligible for discretionary bonus consideration Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!