Senior / Staff DevSecOps Engineer
Core
Build and own the security infrastructure for engineering systems, spanning runtime security, access control, secrets management, compliance, and CI/CD hardening to enable fast, secure development.
Role type
Senior/Staff DevSecOps Engineer (Security Infrastructure)
Builds
Secure-by-default foundations, tooling, and automation for cloud/container environments and CI/CD pipelines.
Domain
Cybersecurity, Cloud Infrastructure, DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
DevSecOps, AWS security services (IAM, SCPs, Organizations, GuardDuty, Security Hub, CloudTrail), Infrastructure as Code (Terraform), Policy-as-code (OPA, Checkov, tfsec), Secrets management, CI/CD pipeline hardening, Container security, Incident response, Compliance program management
Preferred skills
Growing a DSO/security engineering function, Observability tooling (LGTM stack), Configuration management (Ansible), Developer-facing security platforms
Technologies
AWS, Terraform, Ansible, Docker, GitHub Actions, Trivy, Grafana, Loki, Tempo, Mimir, PagerDuty, Go, TypeScript, Node, React, Python
Responsibilities
Own runtime security and vulnerability management across cloud and container environments; Design and enforce identity and access management (IAM) across AWS and internal systems; Own secrets and credentials management; Lead security incident response; Manage AWS Organization structure, account boundaries, SCPs, and guardrails; Harden and maintain CI/CD pipelines; Drive compliance efforts; Build and maintain secure-by-default templates; Reduce friction through automation; Produce lightweight, practical security guidance; Shape the direction of the DSO function as it scales.
Seniority
Senior/Staff, hands-on IC with team-building responsibilities