
OS Image Factory Engineer
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United States.
• Create, develop, and sustain standardized operating system images for both RHEL and Windows environments.
• Oversee the development and management of container image build, validation, promotion, and lifecycle processes.
• Construct automated image pipelines utilizing EC2 Image Builder and/or HashiCorp Packer.
• Design and maintain CI/CD pipelines to automate image creation, testing, security validation, approval, promotion, and retirement.
• Utilize Ansible for configuration management, OS hardening, software installation, and reproducible image configuration.
• Incorporate vulnerability scanning and security assessment tools into image build and release pipelines.
• Establish and uphold DISA STIG-hardened configurations, validating compliance through OpenSCAP or similar tools.
• Generate and maintain FIPS-enabled builds where necessary.
• Implement image signing and attestation to ensure Zero Trust software supply chain integrity and verification.
• Manage image artifacts, versions, metadata, dependencies, and retention policies in sanctioned registries and repositories.
• Create lifecycle processes for image creation, testing, release, patching, deprecation, and retirement.
• Enforce standards for image governance, release controls, approval workflows, and configuration baselines.
• Maintain traceability between source configurations, build pipelines, security outcomes, image versions, and released artifacts.
• Collaborate with platform, cloud, cybersecurity, and application teams to fulfill operational, compliance, and deployment needs.
• Develop automated tests to assess image functionality, configuration, security posture, and readiness for release.
• Keep technical documentation, build standards, operating procedures, and image-factory governance processes up to date.
• Continuously enhance image build times, reliability, repeatability, security controls, and pipeline automation.
• A Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related technical field.
• Proven experience in OS image engineering for RHEL and Windows platforms.
• Practical experience with container image creation, management, scanning, and lifecycle management.
• Familiarity with EC2 Image Builder, HashiCorp Packer, or similar image automation technologies.
• Significant experience in developing and maintaining CI/CD pipelines for infrastructure or system artifacts.
• Hands-on expertise with Ansible for configuration management and automation.
• Experience in integrating vulnerability scanning, compliance validation, and security policy enforcement into automated pipelines.
• Background in implementing DISA STIG hardening and compliance validation using OpenSCAP or comparable technologies.
• Knowledge of FIPS-enabled operating system and application configurations.
• Experience in executing image signing, provenance, integrity validation, and attestation within a software supply chain.
• Proficient in managing artifact repositories, container registries, image versions, retention policies, and artifact promotion workflows.
• Strong understanding of configuration management, version control, release management, and infrastructure-as-code practices.
• Experience working in AWS GovCloud, government, defense, or other regulated cloud environments is preferred.
• Familiarity with Zero Trust principles, software supply chain integrity, trusted artifacts, and continuous verification.
• Excellent troubleshooting, documentation, governance, and cross-functional collaboration skills.
• Preferred certifications include: RHCE; Red Hat Certified Specialist in Containers; Red Hat Certified Specialist in Ansible Automation; CKA or CKAD; Microsoft Certified: Windows Server Hybrid Administrator Associate.
• Competitive salary, paid bi-monthly.
• Exceptional medical coverage.
• 100% of medical premiums covered by True Zero.
• Company-wide new business incentive programs.
• Contribution Incentives (e.g. white papers, blog posts, internal webinars, etc.).
• Three weeks of PTO plus 11 Paid Holidays annually.
• 401k Program with 100% company match on the first 4%.
• Monthly reimbursement for Cell Phone and Home Internet expenses.
• Paternity/Maternity Leave.
• Investment in training and certifications to expand and deepen your technical skills.
Anduril Industries
Sargent & Lundy
Sargent & Lundy
Get handpicked remote jobs straight to your inbox weekly.