Senior Site Reliability Engineer (FedRAMP)

Posted 4 Hours Ago
Hiring Remotely in United States
Remote
156K-199K Annually
Senior level
Cybersecurity
The Role
Owns the FedRAMP-authorized AWS GovCloud environment, ensuring reliability, security, compliance, patching, vulnerability remediation, continuous monitoring, deployments, hardening, audits, incident response, and on-call support. The role requires hands-on Kubernetes, AWS, infrastructure-as-code, CI/CD, vulnerability management, automation, and regulated-environment experience, while collaborating with SRE and security teams.
Summary Generated by Built In

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.

We defend some of the world’s largest organizations and critical infrastructure in more than 68 countries and we’re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT) infrastructures for enterprises and government entities across energy, manufacturing, transportation, resources, and critical infrastructure.

As we expand our product portfolio and our footprint in the US public sector, our Engineering department is hiring a Site Reliability Engineer to take ownership of our FedRAMP-authorized
environment. You will be the primary engineer responsible for the day-to-day reliability, security posture, and compliance operations of this environment — including patching, deployment, and continuous monitoring (ConMon) — working closely with our Switzerland-based SRE team and our Security & Compliance organization. This position carries a high degree of autonomy and responsibility: you will be the primary owner of the FedRAMP environment and the outcomes it depends on.

You could be the next "Nozomier"! If this sounds like you, read on.

In this role you will:

• Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust
• Act as the primary owner of our FedRAMP environment, ensuring its availability, performance, and continuous compliance with the FedRAMP baseline
• Build and maintain the cloud infrastructure and related services within the FedRAMP authorization boundary (AWS GovCloud)
• Own the patching and vulnerability remediation lifecycle, meeting FedRAMP remediation SLAs (30/90/180 days by severity) and maintaining associated evidence
• Execute and improve the Continuous Monitoring (ConMon) program: monthly vulnerability scanning, POA&M creation and tracking, deviation requests, and monthly deliverables to our 3PAO and agency sponsors
• Manage deployments and change control within the boundary, ensuring changes follow the approved Configuration Management process and Significant Change Request procedures where
applicable
• Maintain system hardening against CIS/STIG benchmarks and FIPS-validated cryptography requirements
• Promote and implement automated solutions across application deployment, patching, evidence collection, and operational activities
• Troubleshoot issues across the entire stack, from network and OS to applications
• Support annual assessments and audits (3PAO), producing artifacts and demonstrating control implementation
• Drive post-incident analysis according to our no-blame culture, including incident reporting obligations to agency stakeholders and US-CERT/CISA where required
• Participate in periodic on-call duties for the FedRAMP environment
• Operate in settings with strong confidentiality and data privacy protocols

To be successful in this opportunity, you will have:
• US citizenship or lawful permanent residency, with all work performed from within the United States, and the ability to pass applicable background investigations (per FedRAMP and agency
requirements)
• Proven professional experience as an SRE, DevOps, or Cloud engineer, including experience operating in a FedRAMP, FISMA, DoD IL, or similarly regulated environment
• Ability to work autonomously and communicate effectively in an async-first setup with a team based in a different time zone (Central European Time)
• Working knowledge of NIST SP 800-53 controls and the FedRAMP continuous monitoring process (scanning, POA&Ms, deviation requests, annual assessments)
• Strong hands-on experience with Kubernetes
• Hands-on experience with AWS, ideally AWS GovCloud (US)
• Experience with vulnerability management tooling (e.g., Tenable/Nessus, Qualys) and interpreting scan results into actionable remediation plans
• Good knowledge and understanding of at least one programming language (Ruby, Python, Go)
• Experience defining infrastructure as code using tools such as Terraform or CloudFormation
• Experience in the definition of CI/CD pipelines using technologies like Jenkins, GitHub Actions, or similar
• Demonstrable experience using AI-enabled tools as part of day-to-day work to improve efficiency, quality, or decision-making, while applying sound professional judgement and maintaining
accountability for outputs — within the constraints of a regulated environment

Nice to have
• Experience preparing for or maintaining a FedRAMP Authorization to Operate (ATO), including SSP contributions and control narratives
• Familiarity with STIG/CIS hardening automation (e.g., Ansible, OpenSCAP)
• Familiarity with SIEM/log aggregation and audit log retention requirements in federal environments
• Experience working with 3PAOs, agency ISSOs/ISSMs, or the FedRAMP PMO
• Relevant certifications (e.g., AWS certifications, CISSP, Security+, CKA)

Nozomi Networks is committed to fair and equitable compensation practices. The base pay scale for this position is $155,584 - $199,012. This is the range the company reasonably and in good faith expects to pay for the position taking into account factors including job-related knowledge, skillset, experience, education and training, certifications, and other relevant business factors. Applications outside the range are welcome to apply.

Additional Compensation and Benefits: The company also offers a wide range of competitive benefits, including medical, dental, vision, life insurance, and disability insurance for eligible employees.  The successful candidate may also be eligible to participate in the company’s equity program and/or variable bonus program, subject to the rules governing such programs.

In addition, eligible employees are able to enroll in a 401(k) plan along with the employer matching program. Nozomi Networks also offers eligible employees flexible paid time off, paid holidays and paid parental leave.

 

Who we are and what we stand for:

Nozomi Networks is the leader in OT and IoT Cybersecurity. We protect the world's critical infrastructure, industrial and government organizations from cyber threats by providing exceptional network visibility, threat detection and operational insight. We’re always innovating and we hire the best at what they do to ensure our customers always have access to fast product enhancements, exceptional engineering support and rapid deployment across continents. If you like a challenge, and value integrity and customer success, we invite you to help Nozomi Networks build the future of OT and IoT cybersecurity.

Diversity, Inclusion and Belonging are part of our core beliefs, at Nozomi Networks. Diversity of thought, background and culture broadens our knowledge of the world and helps us learn, grow, and gain new perspectives. What makes us all different is what makes us powerful.

Our Global Benefits

All of our benefits are customized to the country you are based in, naturally we want to get the best out of our Nozomiers, so we provide the best benefits packages, such as:

  • Health & Wellness
  • Financial
  • Work-Life Balance
  • Unparalleled Flexible Time-Off

Need to know information

Successful candidates will be subjected to background verification checks.

Be cautious of unsolicited messages, fake email addresses, requests for money and unclear job descriptions. Report suspicious activity to authorities. Our open job opportunities and descriptions are posted on Nozomi Networks' career page. If in any doubt please apply for opportunities on our careers website here.

If you would like to know more about our Privacy Policy, please click here. Any questions about how we process personal information, or if you would like help exercising your privacy rights please contact us using the email provided within the Privacy Policy.

Skills Required

  • US citizenship or lawful permanent residency
  • Ability to work from within the United States
  • Ability to pass applicable background investigations
  • Professional experience as an SRE, DevOps, or Cloud Engineer
  • Experience operating in a FedRAMP, FISMA, DoD IL, or similarly regulated environment
  • Ability to work autonomously and communicate effectively in an async-first, distributed setup
  • Working knowledge of NIST SP 800-53 controls and FedRAMP continuous monitoring
  • Strong hands-on experience with Kubernetes
  • Hands-on experience with AWS, ideally AWS GovCloud
  • Experience with vulnerability management tools such as Tenable, Nessus, or Qualys
  • Knowledge of at least one of Ruby, Python, or Go
  • Experience defining infrastructure as code with Terraform or CloudFormation
  • Experience defining CI/CD pipelines using Jenkins, GitHub Actions, or similar technologies
  • Experience using AI-enabled tools in day-to-day professional work
  • Experience maintaining or preparing a FedRAMP Authorization to Operate
  • Familiarity with STIG or CIS hardening automation, such as Ansible or OpenSCAP
  • Familiarity with SIEM, log aggregation, and federal audit log retention requirements
  • Experience working with 3PAOs, agency ISSOs or ISSMs, or the FedRAMP PMO
  • AWS certification, CISSP, Security+, or CKA certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
369 Employees
Year Founded: 2013

What We Do

We accelerate digital transformation by protecting the world’s critical infrastructure, industrial and government organizations from cyber threats. Our solution delivers exceptional network and asset visibility, threat detection, and insights for OT and IoT environments. Customers rely on us to minimize risk and complexity while maximizing operational resilience.

Similar Jobs

Coalfire Logo Coalfire

Senior Site Reliability Engineer

Cloud • Security • Cybersecurity
Remote
United States
1062 Employees
85K-141K Annually
Remote
U.S.
794 Employees
130K-160K Annually

AuthZed Logo AuthZed

Senior Site Reliability Engineer

Artificial Intelligence • Information Technology • Software • Database
Remote
2 Locations
30 Employees
150K-195K Annually

MongoDB Logo MongoDB

Site Reliability Engineer

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
10 Locations
5550 Employees
127K-249K Annually

Similar Companies Hiring

Copia Automation Thumbnail
Cybersecurity • Industrial
New York, New York
50 Employees
SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account