GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsPrincipal Security Compliance Analyst - Public Sector - InfoSec

Principal Security Compliance Analyst - Public Sector - InfoSec

Elastic
ComplianceClearance requiredOn-siteFull-timeUnited States$159,800

Elastic is hiring for the job of Principal Security Compliance Analyst - Public Sector - InfoSec, United States (On-site). This is a Compliance job in the governance, risk, and compliance field, with a posted range of $159,800. Review the full details below and apply directly with Elastic.

Organization: ElasticLocation: United StatesWorkplace: On-siteFocus: ComplianceSalary: $159,800Posted: Sep 12, 2026

Elastic the Search AI Company enables everyone to find the answers they need in real time using all their data at scale unleashing the potential of businesses and people. The Elastic Search AI Platform used by more than 50% of the Fortune 500 brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data securing and protecting private information more effectively Elastic’s complete cloud-based solutions for search security and observability help organizations deliver on the promise of AI.

What Is The Role

justify Join our team as a / Principal Security Compliance Analyst / where you ll take the lead in managing our FedRAMP Moderate program. You ll be part of a fantastic team that values a strong security culture allowing you to contribute meaningfully to our mission while collaborating with like-minded professionals. Your expertise will help us maintain and enhance our compliance efforts in a supportive and engaging environment. /

What You Will Be Doing

public-DraftStyleDefault-reset public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR public-DraftStyleDefault-ltr justify Manage the FedRAMP Moderate authorization and continuous monitoring program. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Maintain the System Security Plan policies procedures evidence inventories diagrams and other required documentation. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Coordinate assessments and reviews with our 3PAO federal agency partners consultants and internal teams. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Track security findings and POA;M items through remediation. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Work with Security Engineering IT Product and Legal teams to implement and maintain required controls. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Monitor program deadlines risks and compliance metrics and report progress to leadership. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Review system and product changes for potential FedRAMP impact. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR public-DraftStyleDefault-ltr justify Help control owners understand their responsibilities and prepare appropriate evidence. /

What You Bring

public-DraftStyleDefault-reset public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR public-DraftStyleDefault-ltr justify 5+ years of experience managing or supporting a FedRAMP Moderate program. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Strong understanding of FedRAMP NIST SP 800-53 and continuous monitoring requirements. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Experience with SSPs POA;Ms control evidence vulnerability management and security assessments. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR justify public-DraftStyleDefault-ltr Strong project-management and organizational skills. /

public-DraftStyleDefault-depth0 public-DraftStyleDefault-listLTR public-DraftStyleDefault-ltr justify Ability to communicate effectively with technical teams auditors government stakeholders and company leadership. /

Eligible to work in Department of Defense (DoD) Impact Level 4 or above cloud service environments. /

400
Compensation for this role is in the form of base salary. This role does not have a variable compensation component.

400 The typical starting salary range for new hires in this role is listed below. In select locations (including Seattle WA Los Angeles CA the San Francisco Bay Area CA and the New York City Metro Area) an alternate range may apply as specified below.

400 These ranges represent 400 the lowest to highest salary we reasonably and in good faith believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the posted range and the ranges may be modified in the future.

400 An employee s position within the salary range will be based on several factors including but not limited to relevant education qualifications certifications experience skills geographic location performance and business or organizational needs.

400 Elastic believes that employees should have the opportunity to share in the value that we create together for our shareholders. Therefore in addition to cash compensation this role is currently eligible to participate in Elastic s stock program. Our total rewards package also includes a company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings along with a range of other benefits offered with a holistic emphasis on employee well-being.

The typical starting salary range for this role is $159,800 $252,800 USD

The typical starting salary range for this role in the select locations listed above is $191,900 $303,500 USD

Additional Information - We Take Care of Our People

As a distributed company diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are we need you for what you can do.

We strive to have parity of benefits across regions and while regulations differ from place to place we believe taking care of our people is the right thing to do.

Competitive pay based on the work you do here and not your previous salary Health coverage for you and your family in many locations Ability to craft your calendar with flexible locations and schedules for many roles Generous number of vacation days each year Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service Up to 40 hours each year to use toward volunteer projects you love Embracing parenthood with minimum of 16 weeks of parental leave

Different people approach problems differently. We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives experiences and backgrounds. Qualified applicants will receive consideration for employment without regard to race ethnicity color religion sex pregnancy sexual orientation gender perception or identity national origin age marital status protected veteran status disability status or any other basis protected by federal state or local law ordinance or regulation.

We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or the recruiting process please email a candidate_accessibility@elastic.co.;We will reply to your request within 24 business hours of submission.

Applicants have rights under Federal Employment Laws view posters linked below a Family and Medical Leave Act (FMLA) Poster a Pay Transparency Nondiscrimination Provision Poster a Employee Polygraph Protection Act (EPPA) Poster and a Know Your Rights (Poster)

Elasticsearch develops and distributes technology and information that is subject to U.S. and other countries’ export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions Belarus Cuba Iran North Korea Syria or Russia including the Ukrainian territories annexed by Russia (The Crimea region of Ukraine The Donetsk People s Republic (DNR) The Luhansk People s Republic (LNR) Kherson or Zaporizhzhia). If you are located in or are a national of one of the listed countries or regions an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with Elastic.

Please see a;source=gmail;ust=;usg= here;for our Privacy Statement.

Location and market context

Location and work arrangement for this compliance job are set by Elastic; confirm remote, hybrid, or on-site expectations and any travel directly on the application page.

About compliance jobs

Compliance programs turn law, regulation, and policy into controls the business can actually run. Demand is strongest where regulatory change, enforcement risk, and new technology intersect. Jobs like this one are typically evaluated against frameworks such as relevant regulatory frameworks, control libraries, and audit and monitoring practices.

How to position yourself for this compliance job

Strong candidates emphasize building and monitoring controls, regulatory mapping, policy and training, and partnering with the business to make compliance practical. In your resume and outreach, tie your experience to how Elastic would apply relevant regulatory frameworks, control libraries, and audit and monitoring practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

Hiring for Compliance?

Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.

Post a job  Pricing from $99 · About GRC Careers · Hiring toolkit

Want to be next in a job like this?

Jobs like Principal Security Compliance Analyst - Public Sector - InfoSec in United States open regularly. Be first to know, privately. No current employer ever sees you looking.

New Compliance jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.