SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Orca Security, a $1.8B cloud security unicorn, is seeking a DevOps Lead to own and operate its FedRAMP environment across AWS GovCloud, AWS East/West, Azure Government, Azure Commercial, and GCP. This is a hands-on leadership role combining deep technical ownership with people management.
You will be Orca's most senior engineer in the federal environment, responsible for all infrastructure, authorization, and relationships with federal agencies and assessors. Key responsibilities include:
**Build and Operate the Federal Environment:**
- Own and evolve the FedRAMP environment including EKS, Terraform, Helm, CI/CD, FIPS validated endpoints, hardened images, secrets management, and centralized logging
- Write infrastructure code and set standards for how it is written
- Design automation that makes compliance a byproduct of system operations, covering continuous configuration validation, drift detection, evidence collection, and inventory accuracy
- Decide how new platform capabilities land in the federal environment
- Own production health, monitoring, and incident response
**Own the FedRAMP Program:**
- Run continuous monitoring end-to-end, including scanning, POA&M, inventory, and reporting
- Own authorization artifacts from SSP and boundary diagrams through control implementation, leading migration to OSCAL
- Assess and categorize changes to the boundary and own notification processes
- Lead annual assessments and 3PAO engagements
- Serve as Orca's interface to the FedRAMP PMO, agency sponsors, and assessors
- Track program direction and communicate implications early
**Represent Orca to Federal Customers:**
- Be the technical voice for the federal environment in security reviews, architecture deep dives, and audit responses
- Work directly with federal sales, sales engineering, and customer success teams
- Translate requirements between agency ISSOs and R&D teams
You are a hands-on engineer who wants to stay technical while growing a small US-based team over time. You have deep expertise in cloud infrastructure, FedRAMP compliance, and federal security requirements. You excel at translating between technical and compliance domains, and you thrive in roles with real authority and ownership.