DevSecOps Engineer (Cloud Security and Compliance)

NETFORCE Group

Kansas City, Northern (MO, KY)

Hybrid

USD 100,000 - 170,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Fully remote work
US time zone alignment
English lessons
Paid vacation and sick days
Onboarding program

Job summary

SoftDoes, a U.S.-based software development company, is seeking a DevSecOps Engineer to harden cloud infrastructure and drive security compliance across environments. You will collaborate with engineering, security, and leadership to pass vendor reviews and enable SOC 2 and ISO 27001 certifications.

You will build secure CI/CD pipelines, implement least-privilege access, and manage logging, monitoring, and incident response.

Qualifications

  • Up to 2 years of DevSecOps experience with cloud infrastructure and deployment pipelines.
  • English at B2 level or higher; collaboration with US client stakeholders.
  • SOC 2 or ISO 27001 experience, even if you were the technical owner not the compliance PM.
  • Experience with Vanta, Drata, Secureframe, or similar evidence automation tools.
  • Experience working with HIPAA or other regulated client environments.
  • AWS certifications such as Solutions Architect or Security Specialty.

Responsibilities

  • Build and maintain secure cloud infrastructure and CI/CD pipelines.
  • Implement access control, least privilege, and secrets management across environments.
  • Standardize logging, monitoring, alerting, and audit trails.
  • Create and maintain secure SDLC practices, including code scanning and dependency scanning.
  • Set up incident response basics, including runbooks and on-call expectations.
  • Compliance readiness for SOC 2 and ISO 27001 by implementing required controls and gathering evidence.
  • Vulnerability management and patching routines for infrastructure and dependencies.
  • Improve backup, disaster recovery, and business continuity practices.
  • Support client security questionnaires with clear technical answers and evidence.

Skills

Cloud security
CI/CD pipelines
Incident response
Documentation
Auditing support

Tools

AWS
Terraform
Docker
Kubernetes
SAST
DAST

Job description

DevSecOps Engineer (Cloud Security and Compliance)

SoftDoes is a U.S.-based custom software development company headquartered in Kansas City, Missouri. We build custom software, SaaS platforms, web and mobile applications, AI solutions, and cloud infrastructure for businesses across industries such as healthcare, fintech, construction, legal, and real estate.We work with modern technologies and focus on solving complex business problems through reliable, scalable software solutions.

SoftDoes is a U.S.-based custom software development company headquartered in Kansas City, Missouri. We build custom software, SaaS platforms, web and mobile applications, AI solutions, and cloud infrastructure for businesses across industries such as healthcare, fintech, construction, legal, and real estate.

We work with modern technologies and focus on solving complex business problems through reliable, scalable software solutions.

About the role

The company is moving deeper into enterprise work. We need a DevSecOps engineer who can help harden our infrastructure, implement security best practices, and drive compliance readiness so we can pass enterprise vendor reviews and pursue certifications like SOC 2 and ISO 27001. You will work closely with engineering and leadership across infrastructure, security, and compliance.

What you will do:

  • Build and maintain secure cloud infrastructure and CI/CD pipelines
  • Implement access control, least privilege, and secrets management across environments
  • Standardize logging, monitoring, alerting, and audit trails
  • Create and maintain secure SDLC practices, including code scanning, dependency scanning, and change control
  • Set up incident response basics, including runbooks, on-call expectations, and post-incident process
  • Compliance readiness for SOC 2 and ISO 27001 by implementing required technical controls and gathering evidence
  • Vulnerability management and patching routines for infrastructure and dependencies
  • Improve backup, disaster recovery, and business continuity practices
  • Support client security questionnaires with clear technical answers and evidence

Requirements:

  • Up to 2 years of DevSecOps experience with cloud infrastructure and deployment pipelines
  • Hands-on experience with AWS, including IAM, networking, compute, and logging services
  • Experience with Infrastructure as Code such as Terraform
  • Experience with containerization and orchestration, Docker and Kubernetes preferred
  • Comfort setting up security tooling, SAST, DAST, dependency scanning, secret scanning
  • Ability to document systems clearly and work with auditors or compliance tools when needed
  • English at B2 level or higher - you will collaborate directly with US client stakeholders
  • SOC 2 or ISO 27001 experience, even if you were the technical owner not the compliance PM
  • Experience with Vanta, Drata, Secureframe, or similar evidence automation tools
  • Experience working with HIPAA or other regulated client environments
  • AWS certifications such as Solutions Architect or Security Specialty

What We Offer:

  • Working hours aligned with US time zones, typically 16:00-23:59 Kyiv time
  • English lessons to support clear and confident communication
  • Paid vacation and sick days
  • Fully remote work
  • Opportunities for professional growth within the team
  • Structured, personalized onboarding to help you ramp up effectively
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote DevSecOps Engineer - Cloud Security & Compliance
Remote DevSecOps Engineer - Cloud Security & Compliance

NETFORCE Group • Kansas City (MO), Northern (KY)

Hybrid
USD 100,000 - 170,000
Fully remote work
US time zone alignment
English lessons
+2
DevSecOps Lead/Architect
DevSecOps Lead/Architect

UsefulBI • Alameda (CA)

Hybrid
USD 180,000 - 240,000
Onsite work 4 days/week
Exposure to regulatory compliance
DevSecOps – Staff Engineer
DevSecOps – Staff Engineer

Marketplace Operations Inc. • Tennessee

On-site
USD 120,000 - 150,000
Wellness Reimbursement Program
Office Commutation Reimbursement Program
Paid parental leaves
DevSecOps Engineer
DevSecOps Engineer

ANAUTICS INC • Oklahoma City (OK)

On-site
USD 90,000 - 130,000
DevOps Engineer
DevOps Engineer

Fantom Corporation • Chantilly (VA)

On-site
USD 100,000 - 130,000
DevSecOps Engineer
DevSecOps Engineer

Steampunk, Inc. • McLean (VA)

Hybrid
USD 80,000 - 175,000
DevSecOps Engineer
DevSecOps Engineer

ShorePoint • Herndon (VA)

On-site
USD 120,000 - 180,000
Health insurance
401k
Education assistance
DevSecOps Engineer
DevSecOps Engineer

Kavaliro • Salt Lake City (UT)

Hybrid
USD 150,000 - 170,000
Equity
Annual bonus
Employer matched retirement plan
+1
Senior DevSecOps Engineer
Senior DevSecOps Engineer

West Search Partners, LLC • Longmont (CO)

On-site
USD 100,000 - 140,000
DevSecOps Engineer ( US Citizen)
DevSecOps Engineer ( US Citizen)

Blue Yonder • Dallas (TX)

On-site
USD 90,000 - 120,000
Comprehensive medical coverage
401K with matching
Flexible time off
+2