About the company
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a DevOps Lead (FedRAMP) based in United States.
This is a highly technical leadership role responsible for owning and evolving a mission-critical federal cloud environment.
Responsibilities
- Own, operate, and continuously improve the federal cloud environment across AWS GovCloud, AWS commercial regions, Azure Government, Azure Commercial, and GCP.
- Design, implement, and maintain infrastructure using EKS, Terraform, Helm, CI/CD pipelines, hardened images, FIPS-validated endpoints, secrets management, and centralized logging.
- Write infrastructure code directly while establishing engineering standards and reusable patterns for the broader team.
- Build automation for continuous configuration validation, drift detection, evidence collection, inventory accuracy, and other compliance-related workflows.
- Determine how new platform capabilities are introduced into the federal environment and ensure they are implemented securely and cleanly.
- Own production health, monitoring, observability, availability, and incident response for the environment.
- Lead the FedRAMP continuous monitoring program, including vulnerability scanning, POA&M management, inventory, reporting, and ongoing compliance activities.
- Own authorization documentation and artifacts, including the System Security Plan, boundary diagrams, control implementations, and their transition to OSCAL-based processes.
- Assess changes to the authorization boundary, determine their impact, and manage associated notification and compliance requirements.
- Lead annual assessments and third-party assessment organization engagements from scope definition and evidence preparation through findings resolution.
- Serve as the primary technical interface with federal program stakeholders, agency sponsors, assessors, and other external parties.
- Represent the federal environment in technical discussions with agency security teams, contractors, and prospective customers.
- Partner with Sales, Sales Engineering, and Customer Success teams to provide credible technical guidance during security reviews, architecture discussions, and audit responses.
- Translate federal security and compliance requirements into practical, implementable engineering solutions for distributed R&D teams.
- Contribute to the development of a small U.S.-based infrastructure team while continuing to maintain significant hands-on engineering responsibility.
- Stay current with evolving FedRAMP requirements, cloud security practices, and emerging compliance automation approaches, and proactively communicate their implications.
Requirements
- 5+ years of professional experience in DevOps, Site Reliability Engineering, cloud infrastructure, or a closely related discipline, with substantial production ownership.
- Demonstrated hands-on experience working within a FedRAMP-authorized environment and a practical understanding of authorization boundaries, significant changes, assessments, evidence, and 3PAO expectations.
- Deep AWS expertise, including hands-on experience with AWS GovCloud and a clear understanding of its differences from commercial AWS environments.
- Strong production Kubernetes experience, including operating, troubleshooting, securing, and upgrading Kubernetes clusters.
- 3+ years of hands-on Terraform and infrastructure-as-code experience at scale.
- Strong programming and automation capabilities in Python or an equivalent language, with an ability to replace manual processes with reliable automation.
- Fluency in NIST SP 800-53 Rev. 5 and the ability to translate security controls into concrete technical implementations.
- Experience with vulnerability management and security operations in regulated or compliance-driven environments.
- Experience with cloud infrastructure, CI/CD, configuration management, secrets management, logging, monitoring, and security automation.
- Strong understanding of production reliability, incident response, observability, and operational best practices.
- Excellent written and verbal communication skills, with the ability to explain complex technical and compliance topics to federal customers and security stakeholders.
- Strong customer-facing presence and the ability to build credibility during technical discussions, security reviews, audits, and architecture deep dives.
- Ability to work effectively with distributed international engineering teams and maintain meaningful working-hour overlap with teams based in Israel.
- Must be based in the United States and able to access authorized environments in accordance with applicable federal personnel screening requirements.
- Ability to operate autonomously, establish priorities, make sound technical decisions, and take full ownership of outcomes.
- Experience with FedRAMP 20x, OSCAL tooling, or Key Security Indicator-based validation is a strong advantage.
- Exposure to DoD IL4 or IL5, StateRAMP, CMMC, or IRAP is beneficial.
- Experience building or managing a small team is a plus.
Conditions
- Remote-first work environment.
- Opportunity to shape technical strategy and grow a small U.S.-based infrastructure team.