Senior Security Analyst (Governance and Trust)
Redpoint Ventures PortfolioUnited States - Remote · Remote · Senior
$110,000 – $130,000
Listed on Redpoint Ventures Portfolio’s own careers site. You apply with them directly — we never stand between you and the employer.
What this role is
This role builds and operates security compliance and continuous monitoring systems for government customers, translating federal requirements like CMMC and FedRAMP into practical controls and automated evidence collection. It suits someone with hands-on experience in federal or defense environments who can bridge technical systems with compliance frameworks and is willing to challenge compliance theater with risk-based judgment.
Our summary, not Redpoint Ventures Portfolio’s wording. The full posting is on their site.
Skills this role names
Log in to see which of these are already on your profile.
What they ask for
Required
- Real technical depth in cloud-native architecture and SaaS product design
- Firsthand experience operating in a federal, defense, or intelligence environment in a technical or operational role
- Working knowledge of CMMC Level 2 and at least one of FedRAMP, RMF, or NIST 800-53 applied practically
- Risk-based judgment to distinguish between technically satisfied controls and those that reduce actual risk
- Ability to build structure in ambiguity and drive cross-functional work
- Clear written and verbal communication across technical and non-technical audiences
Nice to have
- Exposure to federal personnel or facility clearance (FCL) processes
- Familiarity with FedRAMP 20x or automated continuous compliance approaches
- Experience with policy-as-code, GitOps, continuous control monitoring, or automated evidence collection
- Exposure to non-US public-sector security regimes like IRAP or Germany's C5
- Knowledge of software supply chain security concepts
- Experience in a high-growth startup or security-first technology company