This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a DevOps Lead (FedRAMP) based in United States.
This is a highly technical leadership role responsible for owning and evolving a mission-critical federal cloud environment.
You will combine hands-on DevOps and cloud engineering with end-to-end responsibility for FedRAMP authorization and continuous compliance.
The role spans AWS and Azure government environments, Kubernetes, Terraform, CI/CD, security automation, monitoring, and incident response.
You will serve as the senior technical authority for the federal platform and the primary engineering point of contact for customers, agencies, and assessors.
A major focus will be turning compliance requirements into automated, continuously validated engineering practices.
You will also help shape technical strategy, represent the environment during security reviews, and eventually grow a small U.S.-based infrastructure team.
This opportunity is ideal for an experienced engineer who wants significant ownership while remaining deeply involved in building and operating production systems.
Accountabilities:
- Own, operate, and continuously improve the federal cloud environment across AWS GovCloud, AWS commercial regions, Azure Government, Azure Commercial, and GCP.
- Design, implement, and maintain infrastructure using EKS, Terraform, Helm, CI/CD pipelines, hardened images, FIPS-validated endpoints, secrets management, and centralized logging.
- Write infrastructure code directly while establishing engineering standards and reusable patterns for the broader team.
- Build automation for continuous configuration validation, drift detection, evidence collection, inventory accuracy, and other compliance-related workflows.
- Determine how new platform capabilities are introduced into the federal environment and ensure they are implemented securely and cleanly.
- Own production health, monitoring, observability, availability, and incident response for the environment.
- Lead the FedRAMP continuous monitoring program, including vulnerability scanning, POA&M management, inventory, reporting, and ongoing compliance activities.
- Own authorization documentation and artifacts, including the System Security Plan, boundary diagrams, control implementations, and their transition to OSCAL-based processes.
- Assess changes to the authorization boundary, determine their impact, and manage associated notification and compliance requirements.
- Lead annual assessments and third-party assessment organization engagements from scope definition and evidence preparation through findings resolution.
- Serve as the primary technical interface with federal program stakeholders, agency sponsors, assessors, and other external parties.
- Represent the federal environment in technical discussions with agency security teams, contractors, and prospective customers.
- Partner with Sales, Sales Engineering, and Customer Success teams to provide credible technical guidance during security reviews, architecture discussions, and audit responses.
- Translate federal security and compliance requirements into practical, implementable engineering solutions for distributed R&D teams.
- Contribute to the development of a small U.S.-based infrastructure team while continuing to maintain significant hands-on engineering responsibility.
- Stay current with evolving FedRAMP requirements, cloud security practices, and emerging compliance automation approaches, and proactively communicate their implications.
- 5+ years of professional experience in DevOps, Site Reliability Engineering, cloud infrastructure, or a closely related discipline, with substantial production ownership.
- Demonstrated hands-on experience working within a FedRAMP-authorized environment and a practical understanding of authorization boundaries, significant changes, assessments, evidence, and 3PAO expectations.
- Deep AWS expertise, including hands-on experience with AWS GovCloud and a clear understanding of its differences from commercial AWS environments.
- Strong production Kubernetes experience, including operating, troubleshooting, securing, and upgrading Kubernetes clusters.
- 3+ years of hands-on Terraform and infrastructure-as-code experience at scale.
- Strong programming and automation capabilities in Python or an equivalent language, with an ability to replace manual processes with reliable automation.
- Fluency in NIST SP 800-53 Rev. 5 and the ability to translate security controls into concrete technical implementations.
- Experience with vulnerability management and security operations in regulated or compliance-driven environments.
- Experience with cloud infrastructure, CI/CD, configuration management, secrets management, logging, monitoring, and security automation.
- Strong understanding of production reliability, incident response, observability, and operational best practices.
- Excellent written and verbal communication skills, with the ability to explain complex technical and compliance topics to federal customers and security stakeholders.
- Strong customer-facing presence and the ability to build credibility during technical discussions, security reviews, audits, and architecture deep dives.
- Ability to work effectively with distributed international engineering teams and maintain meaningful working-hour overlap with teams based in Israel.
- Must be based in the United States and able to access authorized environments in accordance with applicable federal personnel screening requirements.
- Ability to operate autonomously, establish priorities, make sound technical decisions, and take full ownership of outcomes.
- Experience with FedRAMP 20x, OSCAL tooling, or Key Security Indicator-based validation is a strong advantage.
- Exposure to DoD IL4 or IL5, StateRAMP, CMMC, or IRAP is beneficial.
- Experience building or managing a small infrastructure team is a plus.
- Familiarity with compliance automation platforms such as Xacta, Paramify, RegScale, or Vanta is advantageous.
- Experience within a cybersecurity product company or cloud-native security environment is preferred.
- A bachelor's degree in Computer Science, Computer Engineering, or a related discipline is desirable, though equivalent hands-on experience may be considered.
- Annual salary range of $230,000-$260,000, based on experience, skills, and other relevant factors.
- Competitive equity package.
- Discounted medical, dental, and vision coverage with significant employer contributions.
- Benefits coverage beginning on the first day of employment.
- Generous paid time off and U.S. holidays.
- Flexible remote and hybrid work arrangements.
- Choice of Mac or Windows laptop.
- Work-from-home stipend during the first month of employment.
- Monthly reimbursement for home internet and cell phone expenses.
- Opportunity to work with talented colleagues across a global organization.
- Opportunity to take ownership of a strategically important federal cloud environment while remaining highly hands-on technically.
- Applications are accepted on an ongoing basis until the position is filled.
Requirements:
Benefits:

