1. About Our Client:
The organization operates in the digital engineering software industry, developing open and scalable infrastructure to manage engineering data. Their platform enables users to integrate engineering models securely and efficiently across various disciplines and organizations, supporting activities such as prototype design, virtual testing, and AI training for complex systems.
2. About the Opportunity:
The DevSecOps Engineer role is essential for securing, hardening, and scaling the infrastructure supporting the platform in cloud-hosted production environments. This position focuses on enhancing security and operational maturity of AWS and Kubernetes systems, ensuring compliance and audit readiness, and maintaining reliability and security as the infrastructure grows. The role also involves supporting environments with regulated and security-sensitive requirements.
3. Responsibilities:
- Design, implement, and maintain secure, scalable AWS infrastructure
- Manage and improve Kubernetes-based production environments
- Develop and maintain infrastructure as code using Terraform
- Harden production systems across cloud, compute, container, identity, and network layers
- Establish secure baseline configurations for infrastructure and platform services
- Support vulnerability management, patching, remediation, and compliance efforts
- Configure, administer, and patch Linux and Windows virtual machines
- Support identity and access management including least privilege and privileged access controls
- Assist with Active Directory domain administration and integration
- Collaborate with engineering teams to enhance security in CI/CD pipelines and operational processes
- Support compliance initiatives, audits, evidence collection, and control validation
- Create and maintain documentation, runbooks, technical standards, and playbooks
- Monitor and troubleshoot complex infrastructure and security issues with timely communication
- Participate in incident response and post-incident analysis
- Stay updated on best practices in cloud, infrastructure, and security for platform resilience
4. Requirements:
- Minimum 5 years in DevOps, DevSecOps, Infrastructure Engineering, Platform Engineering, or Security Engineering
- Hands-on experience with AWS in production
- Experience with Kubernetes in production environments
- Proficiency in Terraform and infrastructure-as-code
- Experience hardening production environments and secure configuration
- Knowledge of compliance frameworks, audit preparation, and control validation
- Experience in vulnerability remediation, patching, and operational security
- Ability to configure and maintain Linux and Windows VMs
- Strong understanding of IAM, secrets management, network security, and operational controls
- Experience securing CI/CD pipelines and deployment workflows
- Excellent troubleshooting and communication skills
- Must live and work in the U.S.
Preferred:
- Experience with regulated or security-sensitive environments
- Familiarity with SOC 2, NIST, ISO 27001, CMMC, or similar frameworks
- Experience with EKS or managed Kubernetes platforms
- Knowledge of Active Directory Domain Services and hybrid identity
- Experience with automation tools such as Ansible or PowerShell
- Familiarity with PostgreSQL, cloud storage, and networking
- Scripting skills in Python, Bash, or PowerShell
- Experience with container security and vulnerability management tools
- Security+ Certification
- Top Secret Security Clearance
5. Pay Range and Compensation Package:
- $135,000 – $220,000 a year
- Compensation varies based on experience, skills, qualifications, location, and business needs
- Eligible for bonuses, equity, and a comprehensive benefits package
Equal Opportunity Statement:
Equal Opportunity Statement: Our client is an equal opportunity employer. They celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, or national origin.
Note:
RemoteHunter is a recruitment partner of this role. Please note that all employment decisions, including candidate assessment, interviews, hiring, compensation, and employment terms, are made exclusively by the hiring employer.