or apply directly on Abnormal's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 15 days Abnormal's roles stay open a median of 44 days
- Reposted
- No
- Salary listed
- No 1% of Abnormal's roles list one
- Ghost-job risk at Abnormal
- high 33 stale, 6 reposted of 69 open
- Hiring momentum
- 117 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Abnormal's own greenhouse board since 2026-08-03. Full hiring picture for Abnormal.
About this role
The Federal Security and Compliance Analyst at Abnormal AI will focus on enhancing the company's FedRAMP High/Class D security and compliance program. Daily responsibilities include managing security compliance workstreams, driving continuous monitoring processes, supporting vulnerability detection and response, and collaborating with technical teams on compliance impacts. The role emphasizes ownership and process improvement within a fast-paced cybersecurity environment.
- benefits
- 1/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 5/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Abnormal as an employer.
What you need
- 2+ years of experience in security, compliance, GRC, risk, audit, security operations, or a related discipline, preferably in a cloud, SaaS, government, or highly regulated environment.
- Working knowledge of NIST SP 800-53 and an understanding of how security controls translate into technical implementation, operational processes, and audit evidence.
- Experience with one or more core compliance operations such as evidence collection, control documentation, vulnerability remediation, risk tracking, audit support, or continuous monitoring.
- Technical curiosity and the ability to read architecture diagrams, security documentation, vulnerability findings, Jira tickets, logs, or engineering materials and turn them into clear compliance actions.
- Ability to work effectively with Security, Engineering, Infrastructure/Operations, IT, and other technical teams without needing every problem or requirement to be fully defined in advance.
- Strong written communication skills and the ability to produce documentation that is precise enough for assessors and technical teams while remaining understandable to non-technical stakeholders.
Nice to have
- Experience with FedRAMP High, FedRAMP Moderate, FISMA, CMMC, GovRAMP, or other U.S. government security frameworks.
- Exposure to compliance-as-code, OSCAL, JSON/YAML schemas, Git-based workflows, automated validation, Markdown/PDF generation, or machine-readable authorization artifacts.
- Familiarity with tools or environments such as AWS GovCloud, Wiz, Splunk, Okta, Jira, GitLab, Nessus, Burp, or cloud-native vulnerability-management platforms.
- Experience supporting Security Impact Assessments, Significant Change Requests, POA&M/ConMon workflows, 3PAO assessments, or federal authorization packages.
- Basic scripting or automation experience—such as Python, APIs, CI/CD workflows, or data transformation —or a strong interest in developing those skills.
What you get
- Base salary range: $114,800 — $173,250 USD
- This role may be eligible for bonus or incentive compensation, equity, and a comprehensive benefits package.
Worth weighing
- No specific details on the company's tech stack or tools used beyond those mentioned in the nice to have section.
- The role involves navigating ambiguity, which may require a high level of adaptability and problem-solving skills.
- The position is remote, which may impact team dynamics and communication.
Summarised from Abnormal's posting. Read the full original.
Listed by Abnormal on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Abnormal
- Critical Situation ManagerRemote - USA
- Mid-Market Account Executive - CincinnatiRemote - USA
- MidMarket Sales Engineer - Ohio ValleyRemote - USA
- R&D Finance ManagerRemote - USA
- Senior Director, Customer SuccessRemote - USA
- Regional Sales Director (Northwest)Remote - USA
- National Channel Account Manager- SHIRemote - USA
- Director, RenewalsRemote - USA