
Senior DevOps Security Lead
Posted Jul 28

Posted Jul 28
This is a fully remote position, open to applicants in United States.
• Take responsibility for CI/CD pipelines and release engineering across all environments (Dev/QA/Staging/Production/Demo/Multi-Region)
• Manage cloud infrastructure-as-code focusing on reliability, scalability, and cost optimization on AWS
• Oversee the observability/monitoring stack, on-call alerting, and incident response
• Implement and manage change management processes for production deployments
• Lead the information security program, policies, and the SOC 2 control set along with evidence
• Govern identity and access management (IAM) by establishing provisioning standards, least privilege, and enforcing MFA
• Conduct quarterly access reviews and recertification across all in-scope systems
• Manage vendor and third-party security risk assessments and reviews
• Maintain the relationship with the SOC 2 auditor and ensure readiness milestones are met
• Oversee AWS Cognito identity integration, backups, and disaster-recovery procedures
• Monitor platform uptime percentage with a target of 99.9%
• Manage deployment frequency and change-failure rate; also focus on mean time to recovery (MTTR)
• Control infrastructure costs as a percentage of ARR
• Ensure SOC 2 Type 1 readiness milestones are delivered on time
• Complete quarterly access reviews punctually, with exceptions remediated
• Achieve mean time to revoke access during offboarding (target = 1 business day)
• Track security incident counts and time-to-contain
• Bachelor's degree or equivalent experience; AWS or Security certifications are advantageous
• 8+ years of experience in DevOps/SRE/platform engineering coupled with information security, demonstrating senior-level AWS expertise
• Direct experience managing a SOC 2 (or ISO 27001) program, including maintaining auditor relationships and evidence
• Strong expertise in infrastructure-as-code (Terraform / CloudFormation), CI/CD, and containerization
• Profound knowledge in IAM and cloud security - including identity federation, access governance, and system hardening
• Practical experience with observability and production incident response
• Extensive, hands-on Linux expertise - including operating, debugging, and hardening Linux hosts via the command line (systemd, networking, bash scripting, log analysis); familiarity with edge devices (Raspberry Pi) and AWS EC2 services is required
• Working proficiency in Rust - capable of building, packaging, deploying, and troubleshooting the Rust backend / VTS (including ARM / edge cross-compilation) and managing its CI/CD and release pipelines
• A pragmatic approach suited for a small, fast-paced company - risk-based, automation-first, with a low ego; communicates with a bottom-line focus
• Medical insurance offering 1 HSA and 2 PPO plan options
• Flex Spending Account (FSA)/Dependent Care FSA
• Comprehensive dental, vision, life, short- and long-term disability insurance
• Plans for critical illness and hospital indemnity
• 401k with company contributions
• Employee Assistance Program (EAP)
• Company-sponsored telemedicine with 24/7 access
• Wellness Program
• Employee discount program
• 8 paid holidays plus 1 floating holiday
• 15 days of PTO accrued during the first year
• Competitive referral bonus program
• Commitment to work-life balance (essential!)
• Team-building activities, attendance at our annual kickoff each January, and other enjoyable events
• Relaxed professional dress code
DATAGROUP
Ambush
DuoKey
TEKsystems
Get handpicked remote jobs straight to your inbox weekly.