SlipstreamJobsFresh Startup & VC-Backed Jobs

Compliance Engineer - Public Sector

Wiz - Remote - Remote - posted 2026-08-26

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Wiz is a rapidly growing cloud and AI security platform trusted by over 65% of the Fortune 100. The company recently became part of Google, combining Wiz's cloud security capabilities with Google's threat intelligence and security operations. We are seeking an experienced Compliance Engineer to serve as the strategic technical lead for Wiz's FedRAMP CR26 initiative. This is a senior individual contributor role that bridges complex regulatory requirements with scalable engineering practices. You will define the long-term technical roadmap by architecting comprehensive compliance-as-code solutions, utilizing both Wiz's native features and custom-developed automations to efficiently address CR26 Class D rule changes. The role ensures our cloud services meet stringent federal and defense standards while maintaining high availability, security, and audit-readiness. You will work closely with cross-functional teams across sales, product, and engineering to accelerate Wiz's growth in the public sector. The position requires deep expertise in federal compliance frameworks, cloud-native security, and DevSecOps practices. Required qualifications include 6+ years in security engineering, DevOps, or systems engineering with proven ability to develop processes and write code for security/compliance problems. You need 4+ years of expertise in NIST SP 800-53, FedRAMP High baselines, and DoD SRG overlays, with demonstrated ability to assess risk and build engineering solutions enabling compliance. Deep understanding of FR 20x and CR26 rulesets for Rev5 authorizations and their impact on Cloud Service Providers is essential. Experience in cloud-native environments with DevSecOps technologies (CI/CD, containers, Kubernetes) and strong proficiency in scripting and Infrastructure as Code (Shell, Python, Terraform/OpenTofu) are required. Prior experience with cloud platforms in government spaces is necessary. Preferred qualifications include AWS GovCloud, Azure Government, Google Cloud for Government (Assured Workloads), DevSecOps technologies (microservices, GitOps, observability/logging/SIEM), Packer and configuration-as-code tools, policy-as-code tools, and experience automating compliance validation using cloud-native tools.

Similar roles