Назад
Company hidden
1 день назад

DevSecOps Engineer (AWS)

150 000 - 160 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
DevSecOps Engineer (AWS): Securing cloud, application, and infrastructure environments across commercial and GovCloud deployments with an accent on threat detection, security automation, and compliance-driven controls. Focus on designing AWS security guardrails, building detection-as-code and SIEM capabilities, securing CI/CD and Kubernetes workloads, and supporting incident response.

Location: Hybrid in Los Angeles, California, United States; 3 days per week in office. Remote work is not available.

Salary: USD 150,000–160,000 per year, plus eligibility for bonus opportunities.

Company

hirify.global is a global embedded semiconductor and software company providing solutions for automotive, industrial, infrastructure, and IoT applications, including cloud-based platforms for electronics development.

What you will do

  • Design and operate security posture controls across AWS commercial and GovCloud environments, including IAM, KMS, VPC segmentation, network controls, and secure-by-default guardrails.
  • Hunt for anomalous and adversarial behavior across cloud, application, and identity telemetry, and build automated detections as code.
  • Architect centralized logging, SIEM, monitoring, alerting, dashboards, and security metrics for leadership, customers, and compliance evidence.
  • Implement and improve CSPM, vulnerability management, secrets management, endpoint and workload protection, and AWS-native security services.
  • Embed security into GitHub Actions, CI/CD, SAST/DAST/SCA, container, and Kubernetes workflows using Terraform, policy as code, and containerization.
  • Support SOC 2, ITAR, and GovCloud controls, threat intelligence operations, incident response, investigation, containment, and post-incident hardening.

Requirements

  • 7+ years of hands-on experience in security engineering, cloud security, or DevSecOps with production ownership of security controls and infrastructure.
  • Bachelor’s degree in Computer Science or a related field, or equivalent practical experience.
  • Deep AWS security expertise across IAM, KMS, VPC and network security, GuardDuty, Security Hub, CloudTrail, Config, and WAF, including commercial and GovCloud environments.
  • Experience with threat detection and hunting, detection engineering, threat intelligence, centralized logging, SIEM administration, alerting, dashboards, and security reporting.
  • Experience securing CI/CD pipelines, integrating SAST/DAST/SCA, managing secrets, and protecting containerized and Kubernetes workloads.
  • Strong Terraform and containerization skills, systems thinking, written and verbal communication, and the ability to work autonomously in a fast-paced environment.

Nice to have

  • AWS Security Specialty, CISSP, OSCP, GCIH, GCIA, GCFA, or similar certification.
  • Experience with DuploCloud or similar tenant and cloud management platforms.
  • Knowledge of SOC 2, FedRAMP, ITAR, or CMMC, and experience with regulated or compliance-driven deployments.
  • Incident response, digital forensics, purple-team, PLM/PDM, hardware, or manufacturing software experience.
  • Familiarity with Datadog, PostHog, Sentry, NATS, Redis, Kafka, PostgreSQL, and Kubernetes operations.

Culture & Benefits

  • Security-first engineering culture focused on measurable detection, automation, operational discipline, and secure-by-default platforms.
  • AI-powered engineering and security workflows with rigorous validation and review standards.
  • Medical, dental, vision, health savings and flexible spending accounts, life insurance, AD&D, pet insurance, and commuter benefits.
  • Company-paid life insurance and AD&D, long- and short-term disability benefits, paid sick time, paid holidays, and accrued vacation.
  • Flexible and inclusive work environment with remote work options available across the broader organization, subject to role requirements.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →