Назад
Company hidden
4 часа назад

DevSecOps Engineer (GCP/Kubernetes)

179 451 - 187 900$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
DevSecOps Engineer (GCP/Kubernetes): Building and maturing application security capabilities across Virta's cloud-native applications and platform with an accent on IAM, network security, vulnerability management, and secure development. Focus on automating security controls, strengthening Kubernetes and GCP configurations, and embedding security practices into the software development lifecycle.

Location: Remote within the United States; corporate roles are not hired in AK, AR, DE, HI, ME, MS, NM, OK, SD, VT, or WI.

Salary: $179,451–$187,900 annually, with location-based compensation.

Company

hirify.global provides individualized nutrition and ongoing clinical care to help reverse obesity, type 2 diabetes, and prediabetes.

What you will do

  • Assess and improve security controls across GCP and Kubernetes environments.
  • Partner with Engineering, Product, and Platform teams to integrate shift-left security practices into the software development lifecycle.
  • Design and manage security tooling and automation for vulnerability detection, remediation, and compliance verification.
  • Evolve IAM, least-privilege access, auditing, network security architecture, and cloud controls.
  • Establish and communicate practical security policies, standards, and engineering guidelines.
  • Drive vulnerability management, incident response preparedness, and security awareness across the engineering organization.

Requirements

  • 5–7+ years of relevant experience, including 2+ years in a high-growth startup or similar environment.
  • Hands-on experience securing cloud-native applications and infrastructure, especially Kubernetes; GCP experience is strongly preferred.
  • Strong knowledge of networking, IAM, encryption, and common web application vulnerabilities, including the OWASP Top 10.
  • Application security experience with secure coding, vulnerability management, and SAST, DAST, or IAST testing.
  • Proficiency with Infrastructure as Code, specifically Terraform.
  • Development experience with Go and/or Python, plus strong communication and cross-functional influence skills.

Nice to have

  • Experience with threat modeling.

Culture & Benefits

  • Remote-first work environment with office hubs in Denver and San Francisco.
  • Work focused on protecting sensitive patient information governed by HIPAA.
  • Security and privacy training is provided.
  • Culture emphasizes people first, ownership, impact, transparency, evidence-based decisions, and rapid iteration.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →