
Senior Security Compliance Analyst - Public Sector - Information Security
Elastic · United States
- Hybrid
- Full-time
- $170,000 / year
- United States
Tailored resume — keyword-matched to this role.
Hiring manager — we find who's hiring.
Intro email — drafted to reach them directly.
Job highlights
- Lead DoD IL5 compliance and accreditation.
- Implement and audit security controls.
- Partner with engineering and leadership.
- Act as a trusted compliance advisor.
- Drive next-gen audit experience.
About the role
About Elastic
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.The Role
We are seeking an experienced Senior Information Security Compliance Analyst to lead our Department of Defense (DoD) Impact Level 5 (IL5) compliance and security accreditation initiatives. This role will serve as the primary security and compliance lead responsible for implementing, maintaining, and auditing security controls across cloud and hybrid environments supporting sensitive government workloads. The ideal candidate has deep experience with DoD cloud security requirements, RMF, NIST 800-53, FedRAMP High baselines, and continuous monitoring practices. This individual will partner closely with engineering, infrastructure, DevOps, legal, and executive leadership to ensure our systems meet all regulatory and contractual security obligations.What You Will Be Doing
- Leading US public sector audit and certification process (DoD IL 5) and owning continuous monitoring requirements to maintain compliance.
- Acting as a trusted advisor to internal teams, translating complex compliance requirements into clear, actionable guidance.
- Striving for a next-generation audit experience through intelligent data, automation, and continuous metrics.
What You Bring
- Experience leading public sector compliance audits and certification processes in a cloud native company, working with DoD IL5 and/or FedRAMP High.
- A high degree of autonomy, combining the ability to prioritize and coordinate with a strong attention to detail.
- Creative, relevant, and practical mindset driven by risk-based decision making.
- Bonus points if you have the experience with compliance-as-code or have done all the above at a growing SaaS company!
Additional Information - We Take Care of Our People
As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do. We strive to have parity of benefits across regions, and while regulations differ from place to place, we believe taking care of our people is the right thing to do.- Competitive pay based on the work you do here and not your previous salary
- Health coverage for you and your family in many locations
- Ability to craft your calendar with flexible locations and schedules for many roles
- Generous number of vacation days each year
- Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
- Up to 40 hours each year to use toward volunteer projects you love
- Embracing parenthood with a minimum of 16 weeks of parental leave
Security & Privacy Responsibilities
Take ownership of protecting the confidentiality, integrity, and availability of organizational data and systems by following applicable privacy and security policies, standards, and procedures. Ensure that all individual contributions follow Elastic’s Secure Software Development Framework (SSDF). Proactively participate in mandatory role-based training to ensure personal technical execution consistently aligns with the highest standards of data protection, data privacy, and system resilience.Equal Opportunity Employer
Different people approach problems differently. We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by federal, state or local law, ordinance or regulation. We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or the recruiting process, please email candidate_accessibility@elastic.co. We will reply to your request within 24 business hours of submission.Export Controls
Elasticsearch develops and distributes technology and information that is subject to U.S. and other countries’ export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions: Belarus, Cuba, Iran, North Korea, Syria, or Russia, including the Ukrainian territories annexed by Russia (The Crimea region of Ukraine, The Donetsk People's Republic (DNR), The Luhansk People's Republic (LNR), Kherson or Zaporizhzhia). If you are located in or are a national of one of the listed countries or regions, an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with Elastic. Please see here for our Privacy Statement.Compensation and Benefits
Compensation for this role is in the form of base salary. This role does not have a variable compensation component. The typical starting salary range for new hires in this role is listed below. In select locations (including Seattle WA, Los Angeles CA, the San Francisco Bay Area CA, and the New York City Metro Area), an alternate range may apply as specified below. These ranges represent the lowest to highest salary we reasonably and in good faith believe we would pay for this role at the time of posting. We may ultimately pay more or less than the posted range, and the ranges may be modified in the future. An employee's position within the salary range will be based on several factors including, but not limited to, relevant education, qualifications, certifications, experience, skills, geographic location, performance, and business or organizational needs. Elastic believes that employees should have the opportunity to share in the value that we create together for our shareholders. Therefore, in addition to cash compensation, this role is currently eligible to participate in Elastic's stock program. Our total rewards package also includes a company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings, along with a range of other benefits offered with a holistic emphasis on employee well-being. The typical starting salary range for this role is: $133,100—$210,600 USD. The typical starting salary range for this role in the select locations listed above is: $159,900—$252,900 USD.Key skills/competency
- Security Compliance
- DoD IL5
- RMF
- NIST 800-53
- FedRAMP High
- Cloud Security
- Continuous Monitoring
- Audit
- Risk Management
- SaaS
Skills & topics
- Senior Security Compliance Analyst
- Information Security
- Compliance
- DoD IL5
- RMF
- NIST 800-53
- FedRAMP High
- Cloud Security
- Cybersecurity
- Audit
- Public Sector
- SaaS
- Elastic
- Security Analyst
How to get hired
- Tailor your resume: Highlight experience with DoD IL5, RMF, FedRAMP High, and cloud security.
- Showcase your skills: Emphasize risk-based decision making and autonomous work ethic.
- Address compliance needs: Detail your experience in public sector audits and certifications.
- Prepare for technical questions: Be ready to discuss NIST 800-53 and continuous monitoring.
- Demonstrate alignment: Show how your mindset matches Elastic's inclusive culture.
Technical preparation
Master NIST 800-53 controls.,Understand RMF process steps.,Familiarize with DoD IL5 requirements.,Practice FedRAMP High baselines.
Behavioral questions
Describe a complex compliance challenge.,How do you ensure data integrity?,How do you advise technical teams?,Share an experience with risk-based decisions.
Frequently asked questions
- What is the primary focus for the Senior Security Compliance Analyst at Elastic?
- The primary focus is leading the Department of Defense (DoD) Impact Level 5 (IL5) compliance and security accreditation initiatives, ensuring systems meet regulatory and contractual security obligations in cloud and hybrid environments.
- What are the key compliance frameworks mentioned for this Senior Security Compliance Analyst role?
- Key frameworks include DoD IL5, RMF, NIST 800-53, and FedRAMP High baselines. Experience with these is crucial for success in this role at Elastic.
- What type of environment does this Senior Security Compliance Analyst role operate in?
- This role operates in cloud and hybrid environments supporting sensitive government workloads, specifically focusing on US public sector clients within the Department of Defense.
- What soft skills are important for the Senior Security Compliance Analyst at Elastic?
- A high degree of autonomy, strong attention to detail, the ability to prioritize and coordinate, and a creative, practical mindset driven by risk-based decision making are highly valued.
- Does Elastic offer remote work for the Senior Security Compliance Analyst position?
- Elastic is a distributed company and offers flexible locations and schedules for many roles, suggesting a strong possibility for remote or hybrid arrangements, though specifics would need to be confirmed.
- What is the compensation range for the Senior Security Compliance Analyst role at Elastic?
- The typical starting salary range for this role is $133,100—$210,600 USD, with an alternate range of $159,900—$252,900 USD in select high-cost locations.
- What is Elastic's stance on diversity and inclusion for the Senior Security Compliance Analyst role?
- Elastic is committed to creating an inclusive culture that celebrates different perspectives and is an equal opportunity employer. They welcome individuals with disabilities and strive for accessibility.
- Are there any specific technologies or tools relevant to the Senior Security Compliance Analyst role?
- While not explicitly listed as tools, deep experience with DoD cloud security requirements, RMF, NIST 800-53, FedRAMP High baselines, continuous monitoring practices, and potentially compliance-as-code are essential.
Similar roles
Open positions we recommend based on this role.