> Markdown version of [/jobs/ext/3028989-site-reliability-engineer](https://www.wearedevelopers.com/jobs/ext/3028989-site-reliability-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Site Reliability Engineer - **Company:** Nozomi Networks - **Location:** United States - **Experience:** Expert - **Salary:** $155,584.0 - $199,012.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Audit Trail, Cloud Computing, Cloud Engineering, Configuration Management, CompTIA Security+, Federal Information Processing Standards (FIPS), Github, Python (Programming Language), Reliability Engineering, Ansible, Ruby, Security Information and Event Management, Software Deployment, Software Vulnerability Management, Cloudformation, Kubernetes, Nessus, Terraform, Qualys, Jenkins, Plan of Action and Milestones, Vulnerability Analysis, Golang, Programming Languages - **Published:** September 22, 2026 - **Apply:** https://startup.jobs/senior-site-reliability-engineer-fedramp-nozomi-networks-10140538 ## About the Role * Proven professional experience as an SRE, DevOps, or Cloud engineer, including experience operating in a FedRAMP, FISMA, DoD IL, or similarly regulated environment * Ability to work autonomously and communicate effectively in an async-first setup with a team based in a different time zone (Central European Time) * Working knowledge of NIST SP 800-53 controls and the FedRAMP continuous monitoring process (scanning, POA&Ms, deviation requests, annual assessments) * Strong hands-on experience with Kubernetes * Hands-on experience with AWS, ideally AWS GovCloud (US) * Experience with vulnerability management tooling (e.g., Tenable/Nessus, Qualys) and interpreting scan results into actionable remediation plans * Good knowledge and understanding of at least one programming language (Ruby, Python, Go) * Experience defining infrastructure as code using tools such as Terraform or CloudFormation * Experience in the definition of CI/CD pipelines using technologies like Jenkins, GitHub Actions, or similar * Demonstrable experience using AI-enabled tools as part of day-to-day work to improve efficiency, quality, or decision-making, while applying sound professional judgement and maintaining accountability for outputs - within the constraints of a regulated environment Nice to have * Experience preparing for or maintaining a FedRAMP Authorization to Operate (ATO), including SSP contributions and control narratives * Familiarity with STIG/CIS hardening automation (e.g., Ansible, OpenSCAP) * Familiarity with SIEM/log aggregation and audit log retention requirements in federal environments * Experience working with 3PAOs, agency ISSOs/ISSMs, or the FedRAMP PMO * Relevant certifications (e.g., AWS certifications, CISSP, Security+, CKA) ## Description As we expand our product portfolio and our footprint in the US public sector, our Engineering department is hiring a Site Reliability Engineer to take ownership of our FedRAMP-authorized environment. You will be the primary engineer responsible for the day-to-day reliability, security posture, and compliance operations of this environment - including patching, deployment, and continuous monitoring (ConMon) - working closely with our Switzerland-based SRE team and our Security & Compliance organization. This position carries a high degree of autonomy and responsibility: you will be the primary owner of the FedRAMP environment and the outcomes it depends on. You could be the next "Nozomier"! If this sounds like you, read on. In this role you will: * Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust * Act as the primary owner of our FedRAMP environment, ensuring its availability, performance, and continuous compliance with the FedRAMP baseline * Build and maintain the cloud infrastructure and related services within the FedRAMP authorization boundary (AWS GovCloud) * Own the patching and vulnerability remediation lifecycle, meeting FedRAMP remediation SLAs (30/90/180 days by severity) and maintaining associated evidence * Execute and improve the Continuous Monitoring (ConMon) program: monthly vulnerability scanning, POA&M creation and tracking, deviation requests, and monthly deliverables to our 3PAO and agency sponsors * Manage deployments and change control within the boundary, ensuring changes follow the approved Configuration Management process and Significant Change Request procedures where applicable * Maintain system hardening against CIS/STIG benchmarks and FIPS-validated cryptography requirements * Promote and implement automated solutions across application deployment, patching, evidence collection, and operational activities * Troubleshoot issues across the entire stack, from network and OS to applications * Support annual assessments and audits (3PAO), producing artifacts and demonstrating control implementation * Drive post-incident analysis according to our no-blame culture, including incident reporting obligations to agency stakeholders and US-CERT/CISA where required * Participate in periodic on-call duties for the FedRAMP environment * Operate in settings with strong confidentiality and data privacy protocols ## Related Videos - [SRE Methods In an Agency Environment](https://www.wearedevelopers.com/videos/348-sre-methods-in-an-agency-environment) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Coroutine explained yet again 60 years later](https://www.wearedevelopers.com/videos/690-coroutine-explained-yet-again-60-years-later) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [The Best Software Developer Blogs to Read](https://www.wearedevelopers.com/magazine/156-the-best-software-developer-blogs-to-read)