DevSecOps Engineer

Mosaic.tech

Deutschland

Remote

EUR 116.000 - 189.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Istari Digital seeks a DevSecOps Engineer to secure and scale production infrastructure across AWS and Kubernetes. You will harden cloud configurations, manage IAM and secrets, and drive compliance and audit readiness.

The role collaborates with security, platform, and engineering to deliver reliable, secure systems across environments including regulated customer needs.

Qualifikationen

  • Minimum of 5 years in DevOps/DevSecOps or security engineering.
  • Strong hands-on AWS in production environments.
  • Proven Kubernetes and Terraform experience in production.
  • Experience with vulnerability remediation and patching processes.
  • Experience implementing IAM, secrets management, and network security.
  • Must live/work in the United States.

Aufgaben

  • Design, implement, and maintain secure, scalable infrastructure in AWS.
  • Manage, secure, and improve Kubernetes-based production environments.
  • Build and maintain infrastructure as code using Terraform.
  • Harden production systems across cloud, compute, container, and network layers.
  • Develop and maintain secure baseline configurations for infrastructure and services.
  • Support vulnerability management, patching, remediation and compliance efforts.
  • Configure, administer, and patch Linux and Windows VMs.
  • Enhance CI/CD pipelines with security controls and governance.
  • Assist with compliance initiatives, audits, and evidence collection.
  • Document runbooks and operational standards.

Kenntnisse

DevSecOps experience
AWS production
Kubernetes
Terraform IaC
Vulnerability mgmt
Compliance audits
IAM
Linux admin
Windows admin
CI/CD security
Incident response

Tools

AWS
Kubernetes
Terraform
CI/CD pipelines
Active Directory
Linux
Windows

Jobbeschreibung

We are seeking a DevSecOps Engineer to join our Engineering team. This role is critical to securing, hardening, and scaling the infrastructure that powers our platform across cloud-hosted production environments.

This engineer will work closely with platform, infrastructure, and security stakeholders to improve the security and operational maturity of our AWS and Kubernetes environments, support compliance and audit readiness, and help ensure our systems are reliable, secure, and maintainable as we grow. This role will also support environments serving regulated and security-sensitive customer needs, including an environment we host for a Government organization.

The ideal candidate combines strong hands-on infrastructure expertise with sound security judgment and a practical, execution-focused mindset. They should be comfortable working across cloud infrastructure, Kubernetes, operating systems, compliance controls, and production operations.

Core Responsibilities

    Responsibilities include collaborating with the platform and engineering teams to secure and improve production infrastructure, harden cloud and host configurations, and build repeatable operational practices across environments. Key responsibilities include:

  • Design, implement, and maintain secure, scalable infrastructure in AWS

  • Manage, secure, and improve Kubernetes-based environments, including production workloads

  • Build and maintain infrastructure as code using Terraform

  • Harden production systems across cloud, compute, container, identity, and network layers

  • Develop and maintain secure baseline configurations for infrastructure and platform services

  • Support vulnerability management, patching, remediation, and configuration compliance efforts across environments

  • Configure, administer, and patch both Linux and Windows VMs

  • Support identity and access management practices, including least privilege, role design, and privileged access controls

  • Contribute to administration and integration of Active Directory domains where needed

  • Partner with engineering teams to improve security within CI/CD pipelines, deployment workflows, and operational processes

  • Support compliance initiatives, audits, evidence collection, and technical control validation

  • Develop and maintain documentation, operational runbooks, technical standards, and playbooks

  • Monitor, troubleshoot, and resolve complex infrastructure and security issues with clear and timely communication

  • Participate in incident response and post-incident analysis when infrastructure or platform issues arise

  • Stay current on cloud, infrastructure, and security best practices that can improve platform resilience and delivery

Required Qualifications
  • Minimum of 5 years of experience in DevOps, DevSecOps, Infrastructure Engineering, Platform Engineering, or Security Engineering

  • Strong hands-on experience with AWS in production environments

  • Proven experience with Kubernetes, preferably in production

  • Strong experience with Terraform and infrastructure-as-code practices

  • Experience hardening production environments and implementing secure configuration standards

  • Experience supporting compliance frameworks, audit preparation, evidence gathering, and control validation

  • Experience with vulnerability remediation, system patching, and operational security practices

  • Experience configuring and maintaining both Linux and Windows virtual machines

  • Strong understanding of IAM, secrets management, network security, logging, monitoring, and operational controls

  • Proven experience improving or securing CI/CD pipelines and deployment workflows

  • Excellent troubleshooting and problem-solving skills in complex production environments

  • Strong communication skills with the ability to explain technical concepts to both technical and non-technical stakeholders

  • Must live/work in the U.S.

Preferred Qualifications
  • Experience supporting environments with regulated, compliance-driven, or security-sensitive requirements

  • Familiarity with compliance or security frameworks such as SOC 2, NIST, ISO 27001, CMMC, or similar

  • Experience with EKS or other managed Kubernetes platforms

  • Experience configuring or supporting Active Directory Domain Services, Group Policy, or hybrid identity environments

  • Experience with automation and configuration management tools such as Ansible, PowerShell, or similar

  • Experience with PostgreSQL, cloud storage platforms, and production networking patterns

  • Scripting experience in Python, Bash, or PowerShell

  • Experience with security tooling related to container security, vulnerability management, or policy enforcement

  • Experience supporting customer-facing or mission-critical production infrastructure

  • Security+ Certification

  • Top Secret Security Clearance

  • About Istari Digital

    Istari is a digital engineering software company building open, scalable infrastructure for engineering data. Our platform lets customers simply and securely integrate engineering models across disciplines, organizations, and security levels — whether they're designing prototypes, performing virtual testing, or training AI and autonomy for complex systems.

    Focus is rewarded. Finish is remembered.

    Facts are friendly. Even when they are not fun.

    Fellowship is fundamental. Make others successful.

    135000 - 220000 USD a year

    The anticipated compensation range for this position may vary based on experience, skills, qualifications, location, and business needs. In addition to base salary, this role may be eligible for bonuses, equity, and a comprehensive benefits package.
    Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
    oder ziehe deine Datei hierhin.
    Similar jobs

    Ähnliche Jobs, die dir auch gefallen könnten

    Pre-Sales Solution Architect
    Pre-Sales Solution Architect

    Mosaic.tech • Deutschland

    Remote
    EUR 120.000 - 180.000
    Federal Platform Engineer
    Federal Platform Engineer

    Horizon3 • Deutschland

    Hybrid
    EUR 104.000 - 164.000
    Competitive compensation
    Hybrid & remote work
    Growth opportunities
    +1
    DevOps/SRE
    DevOps/SRE

    Embedded Shishya • Deutschland

    Remote
    EUR 70.000 - 95.000
    Software Engineer - Cloud Infrastructure
    Software Engineer - Cloud Infrastructure

    Jackalope Digital LLC • München

    Vor Ort
    EUR 100.000 - 150.000
    Senior Platform Engineer (d/f/m)
    Senior Platform Engineer (d/f/m)

    United States Digital Space LLC • Berlin

    Vor Ort
    EUR 110.000 - 140.000
    Stock options
    30 days vacation
    Flexible hours
    +2
    External Job Posting Title Senior Systems Administration Support (UNIX/Linux OS) / Active Secret
    External Job Posting Title Senior Systems Administration Support (UNIX/Linux OS) / Active Secret

    Peraton • Wiesbaden

    Vor Ort
    EUR 97.000 - 154.000
    Manager, DevOps
    Manager, DevOps

    United States Digital Space LLC • Deutschland

    Hybrid
    EUR 166.000 - 194.000
    Health care options
    401(k) benefits
    Paid sick leave
    +3
    Senior DevOps Engineer Configuration Management
    Senior DevOps Engineer Configuration Management

    Utimaco • Aachen

    Vor Ort
    EUR 70.000 - 100.000
    Open corporate culture
    Company pension
    Flexible working model
    +2
    Principal Platform Engineer | Agentic AI | Identity and Access Management
    Principal Platform Engineer | Agentic AI | Identity and Access Management

    Embedded Shishya • Deutschland

    Hybrid
    EUR 150.000 - 190.000
    Engineering Manager, Security *EU/UK remote*(m/f/d)
    Engineering Manager, Security *EU/UK remote*(m/f/d)

    Pliant • Berlin

    Hybrid
    EUR 90.000 - 130.000
    Remote-friendly work model
    AI security tooling
    Pliant Card with monthly credit