Skip to content

Open nowPosted 24 hours ago

Sr Manager, Site Reliability Engineer (FedRAMP / AWS GovCloud)

BeyondTrust48 open roles

Where
Remote United States
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr Manager, Site Reliability Engineer (FedRAMP / AWS GovCloud)BeyondTrust · Remote United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on BeyondTrust's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. BeyondTrust postings stay open a median of 31 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 24 hours ago

BeyondTrust median: 31 days open

The posting

BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio.

Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.

The Role

The SRE Manager is the operating leader of a new cross-product SRE team at BeyondTrust, standing up and running the AWS GovCloud environments that bring additional BeyondTrust products into our FedRAMP authorization. Reporting to the VP of Application Engineering, this role owns the reliability, change control, and continuous-compliance machinery for those environments so that product feature teams can stay focused on product delivery.

This is a player-coach role. The right person has staff-level technical depth: they can critically review Terraform, pipeline definitions, and architecture proposals, have personally built and operated this machinery, and can carry context in an incident. That depth is combined with real people-management experience: they have hired, grown, and run a small SRE or DevOps team, and they own the team's delivery, not just its architecture. The engineering execution sits with the team; the manager stays close enough to the keyboard to lead it credibly.

The first-year mission is concrete: build and operate the AWS GovCloud environments that bring the covered products into our FedRAMP authorization, with the automation to keep them continuously compliant under FedRAMP 20x, where evidence is machine-readable, re-verified every few days, and reported monthly.

Our feature teams own product delivery. This role exists so they can focus on it. The SRE Manager takes permanent ownership of the shared operational work that would otherwise fall on feature teams as toil: the GovCloud environments, production operations, release and update machinery, and the compliance evidence pipeline for the covered products.

The team this role leads is an engineering team that owns operations, not an operations team. Its product is automation; operations is the input. Every manual procedure performed twice is a candidate for elimination, and the team's success is measured by the operational work it has made unnecessary, not the tickets it has closed. Hands-on operational work is capped at roughly half of team capacity; the rest goes to engineering the work away. Defending that split against day-to-day pressure is the manager's job.

What You’ll Do

GovCloud build and FedRAMP delivery

  • Own the AWS GovCloud landing zone for the new product environments: multi-account structure, SCPs and guardrails, logging and security-tooling accounts, IaC-native provisioning
  • Own the continuous-compliance evidence pipeline: collection, normalization, and reporting of FedRAMP 20x Key Security Indicators, built to the FedRAMP standard schema
  • Own FedRAMP continuous monitoring obligations for the covered environments, keeping that operational load off feature team engineers; broader compliance obligation tracking and audit coordination are owned by central teams
  • Own the CI/CD pipelines the GovCloud environments require (build, signing, artifact management, quality and security gates) and cloud cost visibility for the covered accounts

Production and change operations

  • Own the production change process, including change request governance, access controls, and approval standards, with auditable separation of duties between development and production
  • Own release and update machinery for cloud fleets: mandatory security updates, staged and jittered rollout windows, cluster-coordinated installs, and verification that a patch actually landed everywhere it was scoped to
  • Own the incident management process, tooling, on-call design, and post-incident review cadence
  • Drive the automated environment promotion path from development through staging to production
  • Note on workload shape: our estates are appliance-model and single-tenant VM fleets alongside shared services, not purely cloud-native. Fleet upgrade orchestration, golden images, and staged rollout at hundreds-to-thousands scale are core, not edge cases.

Intake and prioritization

  • Run intake and prioritization for operational requests from feature teams and leadership, keeping a single trusted view of active work, owners, and risks
  • Ensure the team is not overcommitted and that feature teams have a clear, responsive interface for operational needs

Team leadership

  • Lead a team of DevOps, SRE, and security automation engineers, providing direction, accountability, and operational clarity
  • Partner with the VP of Application Engineering on workforce planning, hiring, role design, and onboarding for the function
  • Build a culture of ownership, transparency, and reliable execution; set delivery rhythms, run planning cycles, and maintain visibility into team capacity and health

What Success Looks Like

  • The covered products live in AWS GovCloud under the FedRAMP authorization, with evidence produced by automation rather than by hand
  • Production changes go through a defined, auditable process; uncontrolled changes do not reach production
  • Patches and releases are verified as landed everywhere they were scoped to, as a system property rather than a manual check
  • FedRAMP continuous monitoring obligations are met on time, every month, without feature teams being interrupted or senior engineers pulled from product work

Better Together

Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.

We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.

About Us

BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.

BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.

Learn more at www.beyondtrust.com.

#LI-BS1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against BeyondTrust's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on BeyondTrust's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    BeyondTrust's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.