Remote job
Senior Site Reliability Engineer (FedRAMP)
Job details
About this role
Role overview A Senior Site Reliability Engineer role focused on a FedRAMP-authorized cloud environment supporting OT and IoT cybersecurity customers. The engineer will act as the primary owner of the environment's reliability, security posture, and continuous compliance, working closely with a Switzerland-based SRE team and the Security & Compliance organization. The role carries significant autonomy and serves the company's expansion into the US public sector.
Responsibilities - Own day-to-day availability, performance, and continuous FedRAMP baseline compliance for the authorized environment, including AWS GovCloud infrastructure. - Drive the patching and vulnerability remediation lifecycle, meeting 30/90/180-day FedRAMP SLAs by severity and maintaining supporting evidence. - Run and improve the Continuous Monitoring program: monthly vulnerability scans, POA&M creation and tracking, deviation requests, and monthly deliverables to the 3PAO and agency sponsors. - Manage deployments and change control within the authorization boundary, following Configuration Management and Significant Change Request procedures. - Maintain system hardening against CIS/STIG benchmarks and FIPS-validated cryptography, while automating deployment, patching, evidence collection, and operational tasks. - Support annual 3PAO assessments and audits, troubleshoot across the full technology layer, lead post-incident reviews, and participate in on-call duties.
Requirements - US citizenship or lawful permanent residency, with all work performed inside the United States, and the ability to pass applicable background investigations. - Proven SRE, DevOps, or cloud engineering experience operating within FedRAMP, FISMA, DoD IL, or similarly regulated environments. - Working knowledge of NIST SP 800-53 controls and the FedRAMP continuous monitoring process, including scanning, POA&Ms, deviation requests, and annual assessments. - Strong hands-on Kubernetes experience and practical AWS experience, ideally AWS GovCloud (US). - Proficiency with vulnerability management tooling such as Tenable/Nessus or Qualys, and the ability to turn scan results into remediation plans. - Hands-on coding in at least one of Ruby, Python, or Go, plus infrastructure-as-code experience with Terraform or CloudFormation and CI/CD pipeline work using Jenkins, GitHub Actions, or similar.
Nice to have - Familiarity with STIG/CIS hardening automation (e.g., Ansible, OpenSCAP). - Experience with SIEM, log aggregation, and audit log retention in federal environments. - Prior collaboration with 3PAOs, agency ISSOs/ISSMs, or the FedRAMP PMO. - Relevant certifications such as AWS, CISSP, Security+, or CKA. - Demonstrable use of AI-enabled tools to improve day-to-day efficiency and quality.
Benefits and work setup - Base pay range of $155,584 to $199,012, with applications outside the range welcome. - Competitive benefits package including medical, dental, vision, life, and disability coverage for eligible employees. - Eligibility to participate in equity and/or variable bonus programs, a 401(k) plan with employer match, flexible paid time off, paid holidays, and paid parental leave. - Async-first collaboration with a Central European Time-based team; confidentiality and data privacy protocols apply.