Senior Security Operations Engineer, FedRAMP

MedalliaMclean, VA
Hybrid

About The Position

Medallia is the pioneer and market leader in Experience Management. Our award-winning SaaS platform, Medallia Experience Cloud, leads the market in the management of experiences, insights, and actions for candidates, customers, employees, patients, and residents alike. We believe that every experience is a memory that can last a lifetime. Experiences shape the way people feel about a company. And they greatly influence how likely people are to advocate, contribute, and stay. At Medallia, we are committed to creating a world where organizations are loved by their customers and their employees. We empower exceptional people to create extraordinary experiences together. Bring your whole self. We are looking for a motivated FedRAMP security engineer who is ready to explore the world of Federal Security (FedRAMP and beyond) and GRC Engineering. This role will have a heavy focus on GRC Engineering and FedRAMP compliance and security automation. This is a technical role that not only develops and implements security solutions but uses the solutions to combat malicious cyber attacks while satisfying FedRAMP compliance requirements. While Medallia FedRAMP is a well established FedRAMP certified CSP this is a growing and rapidly evolving landscape with an ever growing range of technologies, tools and a significant potential to grow within the team.

Requirements

  • Must reside in the U.S. and hold U.S. Citizenship or a Green Card (Lawful Permanent Resident) to meet FedRAMP compliance requirements.
  • 5+ years of progressive experience in Security Operations, cloud security, or security systems engineering (managing servers, DB, AWS cloud infrastructure, and core enterprise security tools).
  • Demonstrated experience writing Python code to build security utilities, interact with APIs, and drive system automation.
  • Proven track record directly administering, configuring, and managing enterprise security toolsets throughout their lifecycle.

Nice To Haves

  • Deep practical understanding of cybersecurity fundamentals, threat models, and regulatory frameworks (specifically NIST SP 800-53 and FedRAMP Moderate/High standards) and supporting continuous monitoring in FedRAMP environments.
  • Direct experience building and maintaining custom Splunk applications
  • Proven ability to translate non-technical business and regulatory requirements into scalable technical solutions.
  • Independent problem-solving capabilities with exceptional written and verbal cross-team communication skills.

Responsibilities

  • Full lifecycle security tool management including selecting, deploying, integrating, maintaining, and twilight security technologies such as SIEM’s, Log Management, Vulnerability Management Platforms, AV, etc.
  • Security alert and incident management with a focus on alert and threat hunting automation
  • Will provide technical support for compliance and security audits and will be the subject matter expert for FedRAMP security controls during audits
  • GRC Engineering for compliance automation
  • This is a technical hands on position that will have opportunities for coding, scripting and automation as well as continually learning and understanding new technologies

Benefits

  • medical
  • dental
  • vision
  • 401(k)
  • short-term and long-term disability
  • life and AD&D insurance
  • statutory leaves
  • paid parental leave
  • paid holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service