UberEther is a leader in the hyper-secure infrastructure space for Identity and Access Management (IAM), #ZeroTrust and compliance acceleration. Our platform and expert services team enable government and commercial customers to have ultimate control over access to critical information. We are employee first, with outstanding benefits and a track record of upskilling and fostering growth. We're looking for employees who get excited about pioneering novel solutions to new, complex challenges.This role sits within UberEther's Compliance Business Unit, supporting a FedRAMP 20x advisory project built on Google Cloud Platform (GCP). As Senior Compliance Architect, you will serve as the technical bridge between FedRAMP 20x compliance requirements and platform engineering, translating Key Security Indicators (KSIs) into a concrete, defensible GCP-native platform architecture — ensuring the environment meets assessor expectations and holds up under continuous monitoring.ResponsibilitiesStrategic Technical LeadershipServe as the principal technical authority translating FedRAMP 20x KSI requirements into platform architecture decisions for the engagementDefine and maintain the technical roadmap for mapping all KSIs across the FedRAMP KSI families to concrete GCP services, configurations, and evidence sources for the Advantage compliance modelLead architecture reviews and design sessions with engineering leadership to ensure GCP deployments satisfy FedRAMP 20x assessment requirementsDrive technical decision-making on control inheritance, continuous monitoring strategy, and KSI verification approach for a GCP-hosted identity platformPartner with the Compliance BU leadership team to translate FedRAMP 20x milestones into technical initiatives and delivery rocksEstablish architectural standards and design patterns for KSI-mapped platform components that can be reused across future GCP engagementsGCP Platform Architecture & KSI MappingOwn the end-to-end technical architecture that maps all FedRAMP 20x KSIs onto concrete Advantage GCP service configurations, IAM policies, and network controlsLead the design of Infrastructure as Code templates (Terraform, Deployment Manager) that encode KSI requirements directly into GCP deploymentsDrive automation initiatives that generate continuous compliance evidence directly from GCP-native logging, monitoring, and security servicesProvide architectural guidance on GCP IAM, VPC Service Controls, Cloud KMS, and Security Command Center as they relate to KSI satisfactionCollaborate with the Engineering team to align GCP-specific automation with UberEther's existing GitLab and Terraform toolingChampion a KSI-first design approach so security and compliance controls are architected in from day one, not retrofittedCustomer Success & Technical AdvisoryServe as the escalation point for complex FedRAMP 20x KSI questions from the engineering and Customer Success teamsLead technical architecture workshops with stakeholders to walk through KSI-to-control mappings and remediation pathsProvide expert guidance on translating KSI evidence requirements into System Security Plan (SSP) and machine readable/OSCAL-based technical documentationSupport pre-sales and advisory activities by explaining FedRAMP 20x architecture decisions during customer briefingsTranslate platform requirements into technical designs that align with Advantage delivery modelDrive continuous improvement of the KSI mapping based on assessor feedback, CR26 verification results, and evolving FedRAMP 20x guidanceCompliance Architecture & Continuous MonitoringWork closely with the DevOps and Support functions to ensure GCP monitoring, dashboards, and alerting align with KSI evidence requirementsLead the technical design of automated KSI verification, including how each of the KSI families is evidenced on an ongoing basisProvide architectural guidance for remediation runbooks and system hardening standards specific to GCP-hosted workloadsSupport 3PAO assessments and FedRAMP 20x reviews by explaining the platform architecture and how it satisfies each KSIDrive adoption of Policy as Code and OSCAL-based evidence generation across the platformEnsure proper integration between GCP-native security tooling and UberEther's compliance automation approachCross-Team Collaboration & MentorshipFoster technical collaboration between UberEther's Compliance BU and engineering team through regular architecture syncsMentor engineers on GCP architecture, FedRAMP 20x KSI requirements, and secure design principlesLead retrospectives focused on improving the KSI-to-architecture mapping process for future GCP engagementsParticipate in Level 10 (L10) meetings, providing technical insight on progress and cross-team dependenciesDevelop training content to help engineers understand FedRAMP 20x KSI requirements and their architectural implicationsServe as a technical ambassador for UberEther's FedRAMP 20x advisory capabilities with future GCP customersPrimary QualificationsEducation & ExperienceBachelor's degree in Computer Science, Engineering, Cybersecurity, or related technical field; Master's degree preferred10+ years of experience in cloud architecture, security engineering, or compliance-focused technical roles5+ years of experience architecting solutions on Google Cloud Platform (GCP) in a security- or compliance-sensitive environmentProven track record of translating FedRAMP, DoD, or other federal compliance frameworks into technical architectureDeep experience with federal compliance frameworks, including NIST 800-53, FedRAMP 20x, Risk Management Framework (RMF), and continuous monitoring requirementsTechnical ExpertiseExpert-level knowledge of Google Cloud Platform (GCP) services, security controls, and compliance capabilities, with relevant certifications (Professional Cloud Architect or Professional Cloud Security Engineer preferred)Strong understanding of FedRAMP 20x Key Security Indicators (KSIs) and how they map to concrete platform controlsDeep expertise in Infrastructure as Code tools (Terraform, Deployment Manager) and GitOps workflowsStrong understanding of containerization technologies (Docker, Kubernetes/GKE) in secure, compliance-focused environmentsComprehensive knowledge of Identity and Access Management solutions and Zero Trust architecture principlesExperience with compliance automation and evidence-generation tooling, including OSCAL and Policy as Code frameworksCompliance & Security KnowledgeExpert understanding of FedRAMP 20x requirements, KSI families, and continuous compliance obligationsDeep knowledge of NIST 800-53 security controls and their technical implementation on Google Cloud PlatformStrong familiarity with FedRAMP authorization processes and Assessment & Authorization (A&A) activitiesExperience with FISMA, FIPS 140-2, and related federal security requirementsProven ability to translate compliance requirements directly into technical architectures and control implementationsLeadership & CommunicationExceptional communication skills with ability to explain complex KSI and compliance concepts to engineers, assessors, and executivesProven ability to lead without direct authority, influencing technical direction across UberEther and customer engineering teamsStrong customer-facing skills with experience presenting technical architectures to federal customers and compliance assessorsDemonstrated project management skills with ability to manage a KSI mapping effort across multiple workstreamsTrack record of building consensus and driving technical decisions in fast-paced, dynamic environmentsDifferentiatorsProfessional certifications: CISSP, CISA, CISM, Google Professional Cloud Architect/Security Engineer, or TOGAFPrior experience supporting a FedRAMP 20x pilot engagementBackground in software or platform architecture on Google Cloud Platform specificallyPublished thought leadership in cloud security, compliance automation, or FedRAMP 20xExperience with compliance automation frameworks such as OSCAL, InSpec, or similar Policy as Code toolsLocationThis role is offered as a hybrid or remote position based out of our Sterling, VA office. Please note: We are only able to consider candidates currently residing in DC, FL, IL, MD, MI, NC, NJ, OH, OR, PA, TX, VA, or WA at this time.SalaryThe base salary range for this position is between $170,000 - $210,000 depending on experience.BenefitsWe understand the value of such people, reward them accordingly, and provide best-in-class benefits to support them and their family's well-being. Full-time employees are eligible to receive top-notch Medical, Dental, Vision, 401K savings plan, Life Insurance, and Short and Long-term Disability benefits as well as generous paid flex-time, education and technology reimbursement.This includes:100% employer covered health care premiums for employee AND dependents100% match up to 6% 401kEducation and professional development budget25 PTO days per year, which increases with tenureAnnual technology budgetCore ValuesUberEther's Core Values are a set of guiding principles that define our expectations of employees. Please be prepared to discuss these in your interview process and provide examples of where you have demonstrated these core values.Grow With Purpose - Continuously develop your skills and knowledge while helping others growConfident, Not Cocky - Bring expertise with humility and openness to learningThe IT Factor - Demonstrate passion, initiative, and the ability to make things happenTeam Player - Collaborate effectively and put team success ahead of individual recognitionWhole Authentic Self - Bring your complete, genuine self to work every day