# Compliance Engineer - Public Sector

**Company:** [Wiz](https://hotfix.jobs/companies/wiz)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $174k – $238k/yr
**Experience:** 6+ years
**Skills:** Nist Sp 800-53, FedRAMP, Kubernetes, CI/CD, Containers, Shell Scripting, Python, Terraform, Opentofu, Aws Govcloud, Azure Government, GCP, GitOps, SIEM, Policy As Code
**Posted:** 2026-08-26

> Leads engineering for Wiz’s FedRAMP CR26 initiative, translating federal compliance requirements into scalable compliance-as-code, automation, and evidence-generation solutions. Requires 6+ years in security, DevOps, or systems engineering and deep experience with NIST, FedRAMP, and government cloud environments.

## Job Description

## Responsibilities
- Lead the technical roadmap for FedRAMP Continuous Monitoring, transitioning manual reporting to automated, real-time telemetry.
- Translate NIST SP 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering and product solutions.
- Architect compliance-as-code solutions using native platform capabilities and custom automations.
- Engineer evidence-generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.
- Conduct technical risk assessments and root-cause analysis of compliance findings.
- Guide implementation of compensating controls and cloud hardening measures.
- Own the technical compliance documentation lifecycle, including Security Decision Records (SDRs).
- Collaborate with legal, product, engineering, DevOps, architecture, security, and federal customer teams on technical compliance verification and validation.
- Mentor colleagues on FedRAMP and Department of War compliance best practices and contribute to internal training.

## Requirements
- 6+ years of experience in security engineering, DevOps, and systems engineering, including developing processes and writing code to solve security and compliance problems.
- 4+ years of expertise with NIST SP 800-53, FedRAMP High baselines, and DoW SRG overlays.
- Understanding of FR 20x and CR26 rulesets for Rev. 5 authorizations and their impact on cloud service providers.
- Experience in cloud-native environments with DevSecOps technologies, including CI/CD, containers, and Kubernetes.
- Strong scripting and Infrastructure as Code experience with Shell scripting, Python, and Terraform or OpenTofu.
- Experience with cloud platforms in government environments.
- Must meet the U.S. person definition under EAR Part 772 and ITAR 120.15 and reside in the contiguous United States.

## Preferred Qualifications
- AWS GovCloud experience.
- Azure Government or Google Cloud for Government (Assured Workloads) experience, or equivalent government-cloud experience.
- Experience with microservices, GitOps, observability, logging, SIEM, and security platforms.
- Experience with Packer, configuration-as-code tools, and policy-as-code tools.
- Experience automating compliance validation with cloud-native tools.
- Familiarity with AI-assisted development tools such as Claude Code or OpenAI Codex.

## Compensation
- Base salary range: $174,000–$238,000 USD.
- Compensation also includes bonus, equity, and benefits.

## Similar jobs

- [Senior Security Engineer](https://hotfix.jobs/jobs/b4bd3a90-c9c6-4983-b371-da5d17567c3a) - Jasper - Remote - $174k – $205k/yr
- [Senior GRC Lead](https://hotfix.jobs/jobs/184bbd0f-e014-4dbb-ad67-9e995b7c12bc) - Jasper - Remote - $174k – $205k/yr
- [Senior Application Security Engineer](https://hotfix.jobs/jobs/50407c37-394b-474e-b261-b30218d87d23) - Starburst - Boston, MA - $175k – $215k/yr
- [Senior Security Engineer, Incident Response](https://hotfix.jobs/jobs/e3eb314c-9387-43d9-ac19-4e000eebb406) - Snowflake - Remote - $176k – $253k/yr
- [Senior Security Engineer, AI Incident Response](https://hotfix.jobs/jobs/78fd3868-4f71-43b6-9cd6-de438376e06d) - Snowflake - Menlo Park, CA - $176k – $253k/yr

**Apply:** https://hotfix.jobs/jobs/1664a48a-e3c2-4c6a-91dd-ffcd986273e3
**Canonical:** https://hotfix.jobs/jobs/1664a48a-e3c2-4c6a-91dd-ffcd986273e3