Federal Compliance Manager

Figma
San Francisco +1 more
HybridCareer-pivot friendly

Who this role is best for

Geared toward candidates comfortable with security control implementation and cross-departmental collaboration, with a focus on FedRAMP compliance and cloud-based systems.

Best fit for

  • Candidates with 5+ years in IT auditing and FedRAMP experience, who thrive in cross-functional collaboration.
    — “Engage with cross-functional collaborators across legal, sales, product/enterprise teams
  • Individuals skilled in managing security risks and guiding teams through compliance processes.
    — “Identify and escalate technical and program risks to relevant stakeholders
  • Professionals with a background in SaaS audit and compliance, particularly in cloud environments like AWS.
    — “SaaS-based audit and compliance experience

Things to consider

  • The role requires a strong grasp of security domains and technical compliance processes.
    — “Understanding of security domains, including application security, infrastructure and cloud security
  • Candidates must be prepared to work in a US-based environment, either in-office or remotely.
    — “This is a full time role that can be held from one of our US hubs or remotely in the United States

How to stand out

  • Highlight experience in leading a Cloud Service Provider through FedRAMP ATO processes.
    — “Previous experience leading a Cloud Service Provider through a FedRAMP ATO process
  • Demonstrate your ability to manage complex issues and risks through documented audit and remediation work.
    — “Analyze information from disparate teams to tackle complex issues, manage risks, and resolve problems
  • Showcase your expertise in maintaining and updating technical compliance documentation.
    — “Maintain technical documentation (e.g., System Security Plan or SSP)
  • Emphasize your experience in cloud computing technologies, especially AWS.
    — “Experience working with technologies hosted via cloud computing environments (e.g., AWS)
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · Team

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • FedRAMP cloud security standards adherence
  • security control validation
  • technical documentation maintenance
Typical background
5+ years of experience in IT auditing and compliancerecent hands-on concentration with FedRAMP Framework

Skills & requirements

Required

IT AuditingComplianceSecurity Control ImplementationPenetration TestingVulnerability ScanningAutomated Capabilities For Evidence Collection

Preferred

Cloud Computing TechnologiesInternational Regulatory Compliance

Stack & domain

Cloud SecurityFedrampIT AuditingCollaborationRisk ManagementCloud ComputingSecurity Compliance

About the role

Original posting from Figma via Greenhouse

Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!

As the Federal Compliance Manager, you will collaborate with internal stakeholders and product engineering teams to document and implement control requirements, ensuring adherence to Figma's FedRAMP cloud security standards. Responsibilities include supporting the analysis and remediation of security control implementation review, penetration testing, and vulnerability scan results as well as contributing to Plans of Action and Milestones (POAM) reporting for authorizing agencies.

Additionally, you will actively engage with security professionals on cross-department initiatives, participating in projects aimed at fortifying the company's overall security posture.

This is a full time role that can be held from one of our US hubs or remotely in the United States.

What you'll do at Figma:

Engage with cross-functional collaborators across legal, sales, product/enterprise teams, 3PAO, sponsoring agency, and FedRAMP PMO

Analyze information from disparate teams to tackle complex issues, manage risks, and resolve problems

Assist in analyzing and preparing for both internal and external audits

Identify and escalate technical and program risks to relevant stakeholders, tracking resolution through to closure

Collaborate on developing automated capabilities for evidence collection, control validation, and process execution

Maintain technical documentation (e.g., System Security Plan or SSP) with expertise in security controls, audits, technical architecture, operational processes, and security protocols

Guide internal teams on FedRAMP and security framework implementation, flagging downstream impacts to product roadmaps and organizational processes

Identify and communicate specific security and configuration requirements to cloud, application, and enterprise teams

We'd love to hear from you if you have:

5+ years of hands-on experience in IT auditing and/or compliance

Recent hands-on concentration of work with FedRAMP Framework

Previous experience leading a Cloud Service Provider through a FedRAMP ATO process

SaaS-based audit and compliance experience

Experience working with technologies hosted via cloud computing environments (e.g., AWS)

While it's not required, it's an added plus if you also have:

Understanding of security domains, including application security, infrastructure and cloud security, incident response, and security compliance and certifications

Hands-on experience with cloud computing technologies

Established connections in the FedRAMP industry and with various government agencies

Familiarity with other international regulatory compliance

At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

Pay Transparency Disclosure

Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. 

Figma offers equity to employees, as well as a competitive package of additional benefits, including health, dental, and vision coverage; retirement benefits with company contributions; parental leave and reproductive or family planning support; mental health and wellness benefits; and paid time off. Figma provides paid sick leave, holidays, and other leave benefits in compliance with applicable federal, state, and local laws, including the requirements of the Washington Minimum Wage Act and related regulations. Exempt employees are eligible for employer‑provided paid flexible PTO in addition to flexible paid sick leave. PTO is subject to manager approval. Additional benefits may include company recharge days, cell phone and home internet reimbursements, and a number of lifestyle spending accounts. Figma also offers sales incentive compensation for most sales roles and an annual bonus plan for eligible non-sales roles. All compensation and benefits are subject to applicable plan terms and may be modified by Figma at any time, consistent with applicable law.

Annual Base Salary Range:$153,000—$245,000 USDAt Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.

We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities. 

Examples of accommodations include but are not limited to: 

Holding interviews in an accessible location

Enabling closed captioning on video conferencing

Ensuring all written communication be compatible with screen readers

Changing the mode or format of interviews 

To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.

By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figma's Candidate Privacy Notice.

Source: Figma careers (Greenhouse)

Similar roles