Description
This position is listed on behalf of a partner company, who manages all applications and next steps.
Our partner is looking for a DevOps Lead (FedRAMP) based in United States.
This is a highly technical leadership role responsible for owning and evolving a mission-critical federal cloud environment.
You will combine hands-on DevOps and cloud engineering with end-to-end responsibility for FedRAMP authorization and continuous compliance.
The role spans AWS and Azure government environments, Kubernetes, Terraform, CI/CD, security automation, monitoring, and incident response.
You will serve as the senior technical authority for the federal platform and the primary engineering point of contact for customers, agencies, and assessors.
A major focus will be turning compliance requirements into automated, continuously validated engineering practices.
You will also help shape technical strategy, represent the environment during security reviews, and eventually grow a small U.S.-based infrastructure team.
This opportunity is ideal for an experienced engineer who wants significant ownership while remaining deeply involved in building and operating production systems.
Accountabilities
Own, operate, and continuously improve the federal cloud environment across AWS GovCloud, AWS commercial regions, Azure Government, Azure Commercial, and GCP.Design, implement, and maintain infrastructure using EKS, Terraform, Helm, CI/CD pipelines, hardened images, FIPS-validated endpoints, secrets management, and centralized logging.Write infrastructure code directly while establishing engineering standards and reusable patterns for the broader team.Build automation for continuous configuration validation, drift detection, evidence collection, inventory accuracy, and other compliance-related workflows.Determine how new platform capabilities are introduced into the federal environment and ensure they are implemented securely and cleanly.Own production health, monitoring, observability, availability, and incident response for the environment.Lead the FedRAMP continuous monitoring program, including vulnerability scanning, POA&M management, inventory, reporting, and ongoing compliance activities.Own authorization documentation and artifacts, including the System Security Plan, boundary diagrams, control implementations, and their transition to OSCAL-based processes.Assess changes to the authorization boundary, determine their impact, and manage associated notification and compliance requirements.Lead annual assessments and third-party assessment organization engagements from scope definition and evidence preparation through findings resolution.Serve as the primary technical interface with federal program stakeholders, agency sponsors, assessors, and other external parties.Represent the federal environment in technical discussions with agency security teams, contractors, and prospective customers.Partner with Sales, Sales Engineering, and Customer Success teams to provide credible technical guidance during security reviews, architecture discussions, and audit responses.Translate federal security and compliance requirements into practical, implementable engineering solutions for distributed R&D teams.Contribute to the development of a small U.S.-based infrastructure team while continuing to maintain significant hands-on engineering responsibility.Stay current with evolving FedRAMP requirements, cloud security practices, and emerging compliance automation approaches, and proactively communicate their implications.
Requirements
5+ years of professional experience in DevOps, Site Reliability Engineering, cloud infrastructure, or a closely related discipline, with substantial production ownership.Demonstrated hands-on experience working within a FedRAMP-authorized environment and a practical understanding of authorization boundaries, significant changes, assessments, evidence, and 3PAO expectations.Deep AWS expertise, including hands-on experience with AWS GovCloud and a clear understanding of its differences from commercial AWS environments.Strong production Kubernetes experience, including operating, troubleshooting, securing, and upgrading Kubernetes clusters.3+ years of hands-on Terraform and infrastructure-as-code experience at scale.Strong programming and automation capabilities in Python or an equivalent language, with an ability to replace manual processes with reliable automation.Fluency in NIST SP 800-53 Rev.
5 and the ability to translate security controls into concrete technical implementations.Experience with vulnerability management and security operations in regulated or compliance-driven environments.Experience with cloud infrastructure, CI/CD, configuration management, secrets management, logging, monitoring, and security automation.Strong understanding of production reliability, incident response, observability, and operational best practices.Excellent written and verbal communication skills, with the ability to explain complex technical and compliance topics to federal customers and security stakeholders.Strong customer-facing presence and the ability to build credibility during technical discussions, security reviews, audits, and architecture deep dives.Ability to work effectively with distributed international engineering teams and maintain meaningful working-hour overlap with teams based in Israel.Must be based in the United States and able to access authorized environments in accordance with applicable federal personnel screening requirements.Ability to operate autonomously, establish priorities, make sound technical decisions, and take full ownership of outcomes.Experience with FedRAMP 20x, OSCAL tooling, or Key Security Indicator-based validation is a strong advantage.Exposure to DoD IL4 or IL5, StateRAMP, CMMC, or IRAP is beneficial.Experience building or managing a small infrastructure team is a plus.Familiarity with compliance automation platforms such as Xacta, Paramify, RegScale, or Vanta is advantageous.Experience within a cybersecurity product company or cloud-native security environment is preferred.A bachelor's degree in Computer Science, Computer Engineering, or a related discipline is desirable, though equivalent hands-on experience may be considered.
Benefits
Annual salary range of $230,000–$260,000, based on experience, skills, and other relevant factors.Competitive equity package.Discounted medical, dental, and vision coverage with significant employer contributions.Benefits coverage beginning on the first day of employment.Generous paid time off and U.S.
holidays.Flexible remote and hybrid work arrangements.Choice of Mac or Windows laptop.Work-from-home stipend during the first month of employment.Monthly reimbursement for home internet and cell phone expenses.Opportunity to work with talented colleagues across a global organization.Opportunity to take ownership of a strategically important federal cloud environment while remaining highly hands-on technically.Applications are accepted on an ongoing basis until the position is filled.
How Jobgether Works
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements.
Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company.
The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer.
This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR).
You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information.
These tools assist our recruitment team but do not replace human judgment.
Final hiring decisions are ultimately made by humans.
If you would like more information about how your data is processed, please contact us.