About this Senior Site Reliability Engineer (FedRAMP) role at Nozomi Networks
Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.
We defend some of the world’s largest organizations and critical infrastructure in more than 68 countries and we’re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT) infrastructures for enterprises and government entities across energy, manufacturing, transportation, resources, and critical infrastructure.
As we expand our product portfolio and our footprint in the US public sector, our Engineering department is hiring a Site Reliability Engineer to take ownership of our FedRAMP-authorized
environment. You will be the primary engineer responsible for the day-to-day reliability, security posture, and compliance operations of this environment — including patching, deployment, and continuous monitoring (ConMon) — working closely with our Switzerland-based SRE team and our Security & Compliance organization. This position carries a high degree of autonomy and responsibility: you will be the primary owner of the FedRAMP environment and the outcomes it depends on.
You could be the next "Nozomier"! If this sounds like you, read on.
In this role you will:
• Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust
• Act as the primary owner of our FedRAMP environment, ensuring its availability, performance, and continuous compliance with the FedRAMP baseline
• Build and maintain the cloud infrastructure and related services within the FedRAMP authorization boundary (AWS GovCloud)
• Own the patching and vulnerability remediation lifecycle, meeting FedRAMP remediation SLAs (30/90/180 days by severity) and maintaining associated evidence
• Execute and improve the Continuous Monitoring (ConMon) program: monthly vulnerability scanning, POA&M creation and tracking, deviation requests, and monthly deliverables to our 3PAO and agency sponsors
• Manage deployments and change control within the boundary, ensuring changes follow the approved Configuration Management process and Significant Change Request procedures where
applicable
• Maintain system hardening against CIS/STIG benchmarks and FIPS-validated cryptography requirements
• Promote and implement automated solutions across application deployment, patching, evidence collection, and operational activities
• Troubleshoot issues across the entire stack, from network and OS to applications
• Support annual assessments and audits (3PAO), producing artifacts and demonstrating control implementation
• Drive post-incident analysis according to our no-blame culture, including incident reporting obligations to agency stakeholders and US-CERT/CISA where required
• Participate in periodic on-call duties for the FedRAMP environment
• Operate in settings with strong confidentiality and data privacy protocols
To be successful in this opportunity, you will have:
requirements)
• Proven professional experience as an SRE, DevOps, or Cloud engineer, including experience operating in a FedRAMP, FISMA, DoD IL, or similarly regulated environment
• Ability to work autonomously and communicate effectively in an async-first setup with a team based in a different time zone (Central European Time)
• Working knowledge of NIST SP 800-53 controls and the FedRAMP continuous monitoring process (scanning, POA&Ms, deviation requests, annual assessments)
• Strong hands-on experience with Kubernetes
• Hands-on experience with AWS, ideally AWS GovCloud (US)
• Experience with vulnerability management tooling (e.g., Tenable/Nessus, Qualys) and interpreting scan results into actionable remediation plans
• Good knowledge and understanding of at least one programming language (Ruby, Python, Go)
• Experience defining infrastructure as code using tools such as Terraform or CloudFormation
• Experience in the definition of CI/CD pipelines using technologies like Jenkins, GitHub Actions, or similar
• Demonstrable experience using AI-enabled tools as part of day-to-day work to improve efficiency, quality, or decision-making, while applying sound professional judgement and maintaining
accountability for outputs — within the constraints of a regulated environment
Nice to have
• Experience preparing for or maintaining a FedRAMP Authorization to Operate (ATO), including SSP contributions and control narratives
• Familiarity with STIG/CIS hardening automation (e.g., Ansible, OpenSCAP)
• Familiarity with SIEM/log aggregation and audit log retention requirements in federal environments
• Experience working with 3PAOs, agency ISSOs/ISSMs, or the FedRAMP PMO
• Relevant certifications (e.g., AWS certifications, CISSP, Security+, CKA)
Nozomi Networks is committed to fair and equitable compensation practices. The base pay scale for this position is $155,584 - $199,012. This is the range the company reasonably and in good faith expects to pay for the position taking into account factors including job-related knowledge, skillset, experience, education and training, certifications, and other relevant business factors. Applications outside the range are welcome to apply.
Additional Compensation and Benefits: The company also offers a wide range of competitive benefits, including medical, dental, vision, life insurance, and disability insurance for eligible employees. The successful candidate may also be eligible to participate in the company’s equity program and/or variable bonus program, subject to the rules governing such programs.
In addition, eligible employees are able to enroll in a 401(k) plan along with the employer matching program. Nozomi Networks also offers eligible employees flexible paid time off, paid holidays and paid parental leave.
Who we are and what we stand for:
Nozomi Networks is the leader in OT and IoT Cybersecurity. We protect the world's critical infrastructure, industrial and government organizations from cyber threats by providing exceptional network visibility, threat detection and operational insight. We’re always innovating and we hire the best at what they do to ensure our customers always have access to fast product enhancements, exceptional engineering support and rapid deployment across continents. If you like a challenge, and value integrity and customer success, we invite you to help Nozomi Networks build the future of OT and IoT cybersecurity.
Diversity, Inclusion and Belonging are part of our core beliefs, at Nozomi Networks. Diversity of thought, background and culture broadens our knowledge of the world and helps us learn, grow, and gain new perspectives. What makes us all different is what makes us powerful.
Our Global Benefits
All of our benefits are customized to the country you are based in, naturally we want to get the best out of our Nozomiers, so we provide the best benefits packages, such as:
- Health & Wellness
- Financial
- Work-Life Balance
- Unparalleled Flexible Time-Off
Need to know information
Successful candidates will be subjected to background verification checks.
Be cautious of unsolicited messages, fake email addresses, requests for money and unclear job descriptions. Report suspicious activity to authorities. Our open job opportunities and descriptions are posted on Nozomi Networks' career page. If in any doubt please apply for opportunities on our careers website here.
If you would like to know more about our Privacy Policy, please click here. Any questions about how we process personal information, or if you would like help exercising your privacy rights please contact us using the email provided within the Privacy Policy.