SW Systems Engineer - GovRamp & FedRamp Compliance-Vulnerability backlog or security program -10400

Extreme Networks
Chennai
Workplace: HybridFull timeFunction: IT Operations (Systems/Network Admin)Experience: 2-5 yearsEducation: bachelorsSkills: ["Analytical thinking","Attention to detail","Communication","Independent work","Prioritization"]

Lead GovRamp and FedRamp compliance for the Enterprise Platform (EP1) by running continuous security scanning and validating results. Own vulnerability management and remediation of open CVEs, upgrade dependencies and libraries to reduce security risk, and coordinate patches with development teams. Support GovRamp testing builds, maintain compliance documentation and reporting, and prepare for audits while working with security, compliance, QA, and engineering teams.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Extreme Networks
Extreme Networks
2 days ago

SW Systems Engineer - GovRamp & FedRamp Compliance-Vulnerability backlog or security program -10400

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Lead GovRamp and FedRamp compliance for the Enterprise Platform (EP1) by running continuous security scanning and validating results. Own vulnerability management and remediation of open CVEs, upgrade dependencies and libraries to reduce security risk, and coordinate patches with development teams. Support GovRamp testing builds, maintain compliance documentation and reporting, and prepare for audits while working with security, compliance, QA, and engineering teams.
Location: Chennai
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Mid level

Key Responsibilities

  • •Execute and maintain security scanning schedules for EP1 using SAST, DAST, container scanning, and dependency scanning.
  • •Identify, triage, and remediate open CVEs across the platform, coordinating with development teams to ensure timely closure.
  • •Upgrade and manage dependencies and libraries, including third-party component risk evaluation and maintaining a dependency inventory with security status.
  • •Generate GovRamp-related builds and coordinate with QA and compliance teams to meet GovRamp/FedRamp testing and validation requirements.
  • •Maintain security/compliance documentation and generate compliance reports to support internal review and security audits.

Pay and Benefits

Perks:EquityAnnual BonusRetirement Benefits

Key Requirements

  • •2 to 5 years of software engineering experience with at least 2+ years focused on security, compliance, or vulnerability management.
  • •Hands-on experience with security scanning tools such as Tenable, Snyk, or similar.
  • •Expertise in vulnerability assessment, CVE analysis, and remediation strategies.
  • •Deep understanding of government compliance frameworks such as GovRamp and FedRamp.
  • •Proficiency in programming languages including Java, Python, Go, or C#, along with CI/CD, build systems, and infrastructure scanning.
Experience:2-5 years
Education:Bachelor's in computer science, Cybersecurity, or related field
Skills:Analytical thinkingAttention to detailCommunicationIndependent workPrioritization
Tech Stack:TenableSnykSonarqubeCheckmarxCoverityFortifyOWASP ZAPBurp SuiteAcunetixBlack DuckWhiteSourceDependabotTrivyTwistlockAqua SecurityCloudSploitScoutSuiteProwlerJavaPython

Company Brief

Extreme Networks
Provides wired and wireless network infrastructure, cloud-driven network management, and analytics for enterprises and service providers, delivering switching, routing, security, and access solutions.
Industry: Networking Equipment
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Jose, United States
Founded: 1996
Glassdoor
Glassdoor: 3.6
WebsiteLinkedIn