The Data Centre Security Compliance Public Sector Specialist will oversee compliance governance, manage audit lifecycles, and handle IAM operations while interfacing with partners and stakeholders.
Location: Austin, TX
About the Role
Cloudflare is looking for a Data Center Security Compliance Public Sector Specialist to assist our global Data Center Security Compliance team. This critical role is part of the Infrastructure Operations organization that is responsible for building, scaling, and running Cloudflare's data center and network infrastructure around the world. You will play a key role in ensuring the performance, availability, and security of Cloudflare's network. In pursuit of the goal to "help build a better Internet," Cloudflare operates one of the world's largest and most important cloud networks. Spanning more than 300 cities across the globe, Cloudflare's network is a key strategic asset and supports all customers and products.
The DCSC Public Sector Specialist sits at the intersection of physical infrastructure, strict government regulation (FedRAMP), and operational security. We are looking for a driven, detailed, and organized professional that can help us improve operational excellence working with our large, strategic partners. In this role, you will have the opportunity to blend strategic vision with tactical implementation to drive outcomes. The ideal candidate will have experience working with the Data Center Security Compliance Programs with a focus on improving operational excellence to drive growth and scalability. This is your opportunity to join a growing, fast-paced, and market-leading cloud security company that is poised to be one of the iconic brands of the decade. If you are interested in building your career with a company that is experiencing explosive growth, while being given the responsibility and challenge to have a real impact on our company's success, then this is the opportunity for you.
Key Responsibilities
2. Audit Lifecycle Management
3. Identity & Access Management (IAM) Operations
4. Partner Relations & Reporting
Requirements
About the Role
Cloudflare is looking for a Data Center Security Compliance Public Sector Specialist to assist our global Data Center Security Compliance team. This critical role is part of the Infrastructure Operations organization that is responsible for building, scaling, and running Cloudflare's data center and network infrastructure around the world. You will play a key role in ensuring the performance, availability, and security of Cloudflare's network. In pursuit of the goal to "help build a better Internet," Cloudflare operates one of the world's largest and most important cloud networks. Spanning more than 300 cities across the globe, Cloudflare's network is a key strategic asset and supports all customers and products.
The DCSC Public Sector Specialist sits at the intersection of physical infrastructure, strict government regulation (FedRAMP), and operational security. We are looking for a driven, detailed, and organized professional that can help us improve operational excellence working with our large, strategic partners. In this role, you will have the opportunity to blend strategic vision with tactical implementation to drive outcomes. The ideal candidate will have experience working with the Data Center Security Compliance Programs with a focus on improving operational excellence to drive growth and scalability. This is your opportunity to join a growing, fast-paced, and market-leading cloud security company that is poised to be one of the iconic brands of the decade. If you are interested in building your career with a company that is experiencing explosive growth, while being given the responsibility and challenge to have a real impact on our company's success, then this is the opportunity for you.
Key Responsibilities
- Public Sector & Compliance Governance
- Serve as the Subject Matter Expert (SME) on NIST 800-53 control families and FedRAMP requirements.
- Manage Cloudflare's continuous monitoring program, inclusive of annual assessments and significant change requests.
- Collect, validate, and organize FedRAMP evidence and artifacts to present to auditors, FedRAMP customers, and the FedRAMP PMO.
- Help guide our overall security policy and governance architecture to ensure alignment with evolving government regulations.
2. Audit Lifecycle Management
- Orchestrate end-to-end audit activities for standards such as PCI, SOC2, ISO, NIST, and FedRAMP.
- Coordinate with auditors to manage data center access, compliance certificate collection, and evidence defense.
- Work cross-functionally with Engineering, Legal, Product, and Operational teams to maintain management and technical controls.
- Support compliance and regulatory projects, including implementation of new legislation / regulation.
3. Identity & Access Management (IAM) Operations
- Execute monthly Periodic Access Reviews (PARs): Compare portal user lists against ACLs to ensure least-privilege access is maintained across all data centers.
- Manage the lifecycle of portal access: Auditing access, provisioning/deprovisioning users, and maintaining accurate documentation.
- Oversee physical access requests to data centers and ensure strict adherence to security policies.
- Drive the resolution of daily DCSC Jira tickets for portal access, physical access, audits, and site decommissioning.
- Automate and streamline access review processes where possible, utilizing standard communication templates to site managers.
4. Partner Relations & Reporting
- Own, influence, and orchestrate relationships within the partner Offering teams that can help drive Cloudflare offerings and strategic positioning.
- Monitor and implement changes to individual accountability regime requirements (such as UK, Ireland, Singapore and Australia).
- Maintain centralized documentation, databases, dashboards, and reporting mechanisms to track compliance health.
Requirements
- 3-6 years working in Security Compliance, Information Security, or Risk Management.
- Deep familiarity with all NIST 800-53 control families and FedRAMP requirements
- Ability to work closely with auditors and articulate technical concepts
- Experience in auditing of network, operating system, and application security
- Proven experience managing an audit throughout the full audit lifecycle (from readiness to final report)
- Familiarity with additional security standards and frameworks such as ISO 27000, SOC 2, PCI DSS, ISMAP and IRAP.
- Ability to work cross-functionally with internal stakeholders and strong communications skills
- High tolerance for ambiguity and ability to work efficiently and independently in a fast-paced, high-volume environment
- Some travel may be required to engage with regulators and auditors
- Certifications: CISSP, CIPP, CIPM, CIPT, CISA, or CRISC.
- A relevant professional experience working with technology partners, alliances, or third-party vendors, ideally in the following disciplines: Data center Security Compliance, Access Management, audit administration at a leading high-tech company; offering management
- Technical skills including the ability to understand (1) product roadmaps; (2) market trends and factors; and (3) complex partner requirements.
- Strong technical proficiency with spreadsheet software (Excel/Google Sheets) including pivot tables and VLOOKUPs for data reconciliation.
- Organized & Disciplined, with a strong focus on driving outcomes
- Preferred Prior experience with Data Centre Security Compliance disciplines and audit programs and past history working at a hyperscaler or high-growth tech company.
- Preferred Superb organizational skills and demonstrated history managing complex processes including audit cycles, Facts gathering and analytical skills.
Top Skills
Excel
Fedramp
Google Sheets
Iso
Nist 800-53
Pci
Soc2
Cloudflare Austin, Texas, USA Office
405 Comal St, Austin, TX, United States, 78702
Similar Jobs at Cloudflare
Cloud • Information Technology • Security • Software • Cybersecurity
As a Customer Solutions Engineer at Cloudflare, you will act as a technical advisor for Mid Market Customers, guiding them through onboarding and helping them leverage the full capabilities of the Cloudflare platform, ensuring customer success and value maximization.
Top Skills:
Aws LambdaCloudflare WorkersGcp FunctionsJavaScriptNode.jsPythonReactTypescriptVue
Cloud • Information Technology • Security • Software • Cybersecurity
Manage HR technology operations, lead project initiatives like payroll implementation, liaise between HR and IT, and optimize Workday systems.
Top Skills:
JIRAWorkday
Cloud • Information Technology • Security • Software • Cybersecurity
The Software Engineer: Resiliency develops and maintains systems for managing Cloudflare's infrastructure at scale, ensuring reliability and service level capacity through innovative solutions.
Top Skills:
Cloudflare WorkersDurable ObjectsGoGrafanaKubernetesPrometheusPythonR2SentryTypescriptWorkers Kv
What you need to know about the Austin Tech Scene
Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.
Key Facts About Austin Tech
- Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
- Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
- Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
- Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

