Senior DevOps Engineer (Security & Compliance)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior DevOps Engineer (Security & Compliance): Building and hardening cloud infrastructure and compliance automation to achieve FedRAMP and SOC 2 certifications with an accent on AWS security and Kubernetes. Focus on designing automated evidence collection, implementing network segmentation, and translating federal requirements into engineering work.
Location: Must be located in the US (US citizenship or Green Card required), with a preference for the New York area.
Company
focuses on de-risking critical vulnerabilities across hybrid environments using advanced security tools.
What you will do
- Lead technical work to achieve and maintain compliance certifications including SOC 2, ISO 27001, and FedRAMP.
- Design and implement security controls across AWS infrastructure, CI/CD pipelines, and Kubernetes.
- Build automation, logging, and evidence collection for continuous compliance.
- Implement secrets management, IAM hardening, network segmentation, and encryption standards.
- Develop infrastructure solutions for customers in highly regulated industries, including isolated environments.
- Collaborate on threat modeling, vulnerability management, and incident response.
Requirements
- U.S. citizenship or lawful permanent resident status (Green Card) required.
- Must be located in the US.
- 5+ years of DevOps or platform engineering experience with a strong security focus.
- Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP.
- Deep AWS security knowledge (IAM, KMS, GuardDuty, Security Hub, VPC, Config).
- Strong Kubernetes security experience, including network policies and admission control.
- Infrastructure as Code proficiency with Terraform and policy-as-code.
- Solid scripting skills in Python or Bash.
Nice to have
- Prior experience leading or mentoring a small team.
- Hands-on experience with FedRAMP Moderate or High authorization.
- Experience with AWS GovCloud regions.
- Relevant certifications such as AWS Security Specialty, CISSP, or CCSP.
Culture & Benefits
- Flexible PTO and health insurance plans (medical, dental, vision).
- 401k and Flexible Spending Account (FSA).
- Monthly stipend for phone and internet, plus a home office stipend.
- Access to frontier AI models, including Claude, to enhance productivity.
- Commitment to equal opportunity and diversity in the workplace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →