Senior Site Reliability Engineer - US Federal (VDI & Infrastructure)

WorkdayReston, VA
$133,400 - $237,600Hybrid

About The Position

This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native). At Workday Government, we support U.S. federal agencies as they modernize their mission-critical operations. You will join the Infrastructure and Federal Platform Engineering team, a high-stakes operational group responsible for the reliability, security, and automation of our IL5-compliant cloud environments. This hybrid role bridges the gap between core Kubernetes-based platform engineering and the specialized operation of our Azure VDI environment. You will be part of a 24/7 on-call rotation where VDI is a first-class citizen of our infrastructure stack. As a Senior SRE with VDI expertise, you will ensure our platforms are scalable, secure, and resilient. You will balance traditional SRE automation tasks with the day-to-day operational rigor required to maintain a high-security Windows 365/AVD environment.

Requirements

  • Minimum of 5 years of experience in SRE, DevOps, or Cloud Operations.
  • At least 3 years of experience operating in high-security environments (DoD IL5, FedRAMP High, or GCC-High).
  • Ability to obtain and maintain a U.S. Government TS/SCI w/CI Poly. (Active clearance preferred).
  • Must be a U.S. Citizen (naturalized or native) per federal contract requirements.
  • Proficiency with Terraform and CI/CD tools (Argo CD).
  • Deep hands-on expertise with Microsoft Entra ID (Conditional Access, Identity Governance) and Microsoft Intune.
  • Experience with Windows 365 or Azure Virtual Desktop (AVD) in a production setting.
  • Familiarity with Microsoft Sentinel and Defender for Endpoint.
  • Strong technical writing skills for creating SOPs, architecture diagrams, and reliability practices.

Nice To Haves

  • Strong understanding of K8s orchestration and container security.
  • Proficiency in at least one language (Python, Go, or Ruby) to automate toil.
  • Familiarity with Azure networking (VNets, NSGs, Azure Firewall) and ExpressRoute.
  • Experience working in air-gapped cloud regions.

Responsibilities

  • Maintain the health and high availability of our Kubernetes-based platform through infrastructure automation and observability.
  • Automate provisioning and configuration management using Terraform and Argo CD.
  • Participate in a 24/7 rotation, serving as a Tier 2/3 escalation point for both platform and VDI-specific incidents.
  • Implement industry standard methodologies and maintain STIG compliance across all endpoints and cloud resources.
  • Lead VDI endpoints using Microsoft Intune and perform monthly patching/security updates for custom golden images.
  • Manage Microsoft Entra ID (formerly Azure AD) features, including Conditional Access policies, Access Packages, and MFA registration (Passkeys/TAP).
  • Monitor and respond to alerts from Microsoft Sentinel, Defender for Endpoint, and Defender for Cloud Apps.
  • Troubleshoot automated user provisioning and manage pool-specific access controls to segregate user populations (Engineering vs. Efficiency).

Benefits

  • Workday Bonus Plan or a role-specific commission/bonus
  • Annual refresh stock grants
  • Comprehensive benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service