Senior Site Reliability Engineer (FedRAMP)

Nozomi Networks · United States

  • Senior
  • Full-time
  • $155,584 – $199,012
  • Posted 2026-09-21
  • Confirmed live on 25 September 2026

Apply at Nozomi Networks

Job description

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.

We defend some of the world’s largest organizations and critical infrastructure in more than 68 countries and we’re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT) infrastructures for enterprises and government entities across energy, manufacturing, transportation, resources, and critical infrastructure.

As we expand our product portfolio and our footprint in the US public sector, our Engineering department is hiring a Site Reliability Engineer to take ownership of our FedRAMP-authorized
environment. You will be the primary engineer responsible for the day-to-day reliability, security posture, and compliance operations of this environment — including patching, deployment, and continuous monitoring (ConMon) — working closely with our Switzerland-based SRE team and our Security & Compliance organization. This position carries a high degree of autonomy and responsibility: you will be the primary owner of the FedRAMP environment and the outcomes it depends on.

You could be the next "Nozomier"! If this sounds like you, read on.

In this role you will:

• Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust
• Act as the primary owner of our FedRAMP environment, ensuring its availability, performance, and continuous compliance with the FedRAMP baseline
• Build and maintain the cloud infrastructure and related services within the FedRAMP authorization boundary (AWS GovCloud)
• Own the patching and vulnerability remediation lifecycle, meeting FedRAMP remediation SLAs (30/90/180 days by severity) and maintaining associated evidence
• Execute and improve the Continuous Monitoring (ConMon) program: monthly vulnerability scanning, POA&M creation and tracking, deviation requests, and monthly deliverables to our 3PAO and agency sponsors
• Manage deployments and change control within the boundary, ensuring changes follow the approved Configuration Management process and Significant Change Request procedures where
applicable
• Maintain system hardening against CIS/STIG benchmarks and FIPS-validated cryptography requirements
• Promote and implement automated solutions across application deployment, patching, evidence collection, and operational activities
• Troubleshoot issues across the entire stack, from network and OS to applications
• Support annual assessments and audits (3PAO), producing artifacts and demonstrating control implementation
• Drive post-incident analysis according to our no-blame culture, including incident reporting obligations to agency stakeholders and US-CERT/CISA where required
• Participate in periodic on-call duties for the FedRAMP environment
• Operate in settings with strong confidentiality and data privacy protocols

To be successful in this opportunity, you will have:

• US citizenship or lawful permanent residency, with all work performed from within the United States, and the ability to pass applicable background investigations (per FedRAMP and agency
requirements)
• Proven professional experience as an SRE, DevOps, or Cloud engineer, including experience operating in a FedRAMP, FISMA, DoD IL, or similarly regulated environment
• Ability to work autonomously and communicate effectively in an async-first setup with a team based in a different time zone (Central European Time)
• Working knowledge of NIST SP 800-53 controls and the FedRAMP continuous monitoring process (scanning, POA&Ms, deviation requests, annual assessments)
• Strong hands-on experience with Kubernetes
• Hands-on experience with AWS, ideally AWS GovCloud (US)
• Experience with vulnerability management tooling (e.g., Tenable/Nessus, Qualys) and interpreting scan results into actionable remediation plans
• Good knowledge and understanding of at least one programming language (Ruby, Python, Go)
• Experience defining infrastructure as code using tools such as Terraform or CloudFormation
• Experience in the definition of CI/CD pipelines using technologies like Jenkins, GitHub Actions, or similar
• Demonstrable experience using AI-enabled tools as part of day-to-day work to improve efficiency, quality, or decision-making, while applying sound professional judgement and maintaining
accountability for outputs — within the constraints of a regulated environment

Nice to have
• Experience preparing for or maintaining a FedRAMP Authorization to Operate (ATO), including SSP contributions and control narratives
• Familiarity with STIG/CIS hardening automation (e.g., Ansible, OpenSCAP)
• Familiarity with SIEM/log aggregation and audit log retention requirements in federal environments
• Experience working with 3PAOs, agency ISSOs/ISSMs, or the FedRAMP PMO
• Relevant certifications (e.g., AWS certifications, CISSP, Security+, CKA)

Nozomi Networks is committed to fair and equitable compensation practice

Prepare for the interview

Nothing collected for this employer yet. The Blind 75 is what technical screens draw from; practise it here, with a coach, in Java or Python.

More at Nozomi Networks

More like this

All open software jobs