Fortreum is a trusted leader in cloud and cybersecurity services, ranked in the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). We provide independent, third-party and vendor-agnostic regulatory assessment and advisory services, coupled with advanced cybersecurity offensive and compliance technical services to our clients. Our comprehensive service portfolio includes regulatory compliance (FedRAMP, FISMA, SOC, ISO, HIPAA, CMMC, PCI) and technical security services (Penetration Testing, Red Teaming, Social Engineering, Attack Surface Analysis and others).
Working with Fortune 500 companies and leading cloud service providers, we've built our reputation on our service-delivery excellence and unwavering commitment to client success. Our rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry with a focus on our core values:
Quality matters most
Customer-driven mindset
Autonomy to do your job
Personal accountability/stewardship
About Fortreum
Fortreum is a trusted leader in cloud and cybersecurity services, ranked in the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). We provide independent, third-party and vendor-agnostic regulatory assessment and advisory services, coupled with advanced cybersecurity offensive and compliance technical services to our clients. Our comprehensive service portfolio includes regulatory compliance (FedRAMP, FISMA, SOC, ISO, HIPAA, CMMC, PCI) and technical security services (Penetration Testing, Red Teaming, Social Engineering, Attack Surface Analysis and others).
Working with Fortune 500 companies and leading cloud service providers, we've built our reputation on our service-delivery excellence and unwavering commitment to client success. Our rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry with a focus on our core values:
Quality matters most
Customer-driven mindset
Autonomy to do your job
Personal accountability/stewardship
On our team, you will have the opportunity to work with the best and brightest in the field. Fortreum team members have supported the biggest cloud providers in the world, and you will have the opportunity to work with the best. We are growing rapidly and are looking for candidates with a background in performing security assessments in support of FedRAMP and NIST-based frameworks to support our growing customer base.
This role will specialize in CMMC and NIST 800-171, both in advisory capacity and assessment activities.
Key Responsibilities
Conducting interviews of key stakeholders and technical personnel.
Performing technical tests alongside security engineers.
Recording meeting minutes and maintain work papers.
Maintain a consistent writing style and approach to documenting the results of the security assessment.
Develop documentation packages to include policies, plans, and more.
Assist customers in determining data flows and developing the boundary diagram.
Collaborate with delivery team members to drive customer satisfaction and meet project deliverables.
Ensure quality products and services are delivered on time and within allotted hours.
Establish and maintain positive collaborative relationships with clients and stakeholders.
Continuous professional development in pursuing industry specific certifications.
Consistently work to improve assessment interviewing techniques to establish efficiencies in gathering required information.
Prepare deliverables and conduct peer-review of team member’s deliverables.
Perform project out-briefs with clients to notify them of the outcome of their compliance activities.
Manage priorities, tasks, and assigned hours on projects to achieve delivery utilization targets.
This is a customer facing role. Travel is expected to be limited in nature; however, you may be required to travel to client locations and deliver professional services.
Basic Qualifications
Bachelor’s Degree or equivalent job experience
4+ years of professional services experience
3 years of assessment experience leveraging NIST SP 800-171
Proficient in Microsoft 365 product suite
One of the following certifications:
-- Certified Penetration Testing Engineer (CPTE)
-- Certified Information Security Manager (CISM)
-- Certified Chief Information Security Officer (CCISO)
-- Certified Information Systems Security Professional
-- Information Systems Security Engineering Professional (CISSP-ISSEP)
-- Federal IT Security Professional-Auditor (FITSP-A)
-- GIAC Cloud Security Automation (GCSA)
-- GIAC Security Leadership Certification (GSLC)
-- Cybersecurity Analyst (CySA+)
-- GIAC Systems and Network Auditor (GSNA)
-- Certified Information Systems Auditor (CISA)
-- Certified Information System Security Professional (CISSP)
-- Certified Information Systems Security Officer (CISSO)
Preferred Skills
Ability to quickly take on new technologies and concepts
Ability to manage multiple priorities simultaneously
Proven analytical and problem-solving skills
Ability to develop and maintain strong relationships with team members and clients
Comfortable supporting fast-paced team environments
Advanced technical certifications, such as: AWS solutions architect, Google cloud engineer, Microsoft solutions architect
CMMC CCA, or the ability to obtain
What Fortreum Offers
We offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. You will be a part of something special as we continue to grow. The founders have a proven track record of successful company acquisitions/exit of both small and mid-market cybersecurity organizations. Our benefits package includes medical insurance, dental insurance, vision insurance, 401(k) with 5% employer match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.
An Affirmative Action and Equal Opportunity Employer
Fortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you’d like to view a copy of the company’s affirmative action plan or policy statement, please email [email protected]. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail [email protected] or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
What Fortreum Offers
We offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. You will be a part of something special as we continue to grow. The founders have a proven track record of successful company acquisitions/exit of both small and mid-market cybersecurity organizations. Our benefits package includes medical insurance, dental insurance, vision insurance, 401(k) with 5% employer match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.
An Affirmative Action and Equal Opportunity Employer
Fortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you’d like to view a copy of the company’s affirmative action plan or policy statement, please email [email protected]. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail [email protected] or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Experienced Epic Cadence/Referrals Advisor sought to deliver Cadence and Referrals implementations, process improvements, and client-facing advisory services for a leading healthcare IT consultancy.
Lead national account risk-control strategy and service delivery at Travelers, providing technical assessments, loss analysis and client-facing guidance to reduce organizational risk.
Lead and scale a technical consulting organization to guide enterprise customers through AI transformation and complex Outreach platform implementations, driving adoption and measurable outcomes.
Sercante seeks an Engagement Manager to lead Pardot and Sales Cloud engagements, combining strategic advisory, hands-on marketing automation work, and client-facing project leadership.
Serco is seeking experienced horticulturists to perform FEMA Public Assistance site inspections, environmental compliance reviews, cost estimating, and technical advisory duties across Zone 2 deployments.
As a Microsoft 365 Senior Consultant at Valorem Reply, you will lead enterprise M365 engagements—designing modern collaboration solutions, running workshops, and partnering closely with clients to deliver measurable business outcomes.
Lead technical engagement with systems integrators to accelerate adoption of Generative AI, build prototypes, and scale OpenAI-powered solutions for enterprise customers.
Experienced leader needed to own and scale Toptal’s Apps & Integrations practice—driving strategy, P&L, GTM, sales, and delivery for enterprise app and integration services.
Serve as a deployed FEMA Public Assistance technical specialist with Serco, supporting disaster recovery operations across Zone 2 in a range of disciplines from engineering and environmental sciences to accounting and historic preservation.
Prominence Advisors is hiring an Epic Tapestry Analyst to lead Tapestry-focused advisory and implementation work, managing projects and delivering process improvements for healthcare clients.
RSM is hiring a Cyber Security Director to lead and grow its Public Sector CYBER practice in Tallahassee, delivering security, privacy, and compliance services to federal, state, and local government clients.
AECOM seeks a Planning Intern in Philadelphia to support planning projects with research, mapping, outreach, and design support while gaining professional experience at a global infrastructure firm.
Visa Consulting and Analytics is hiring a Client Consulting Analyst in San Francisco to support data-driven strategic engagements for financial institutions and merchants.
We aim to simplify cybersecurity in the marketplace to accelerate business outcomes. We have deep cloud & cybersecurity roots, proven track records and are ready to disrupt the consulting space.
5 jobs