IT Infrastructure, Security & DevOps Engineer

Trustpoint

Virginia (MN)

On-site

USD 139,000 - 172,000

Full time

7 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

TrustPoint is building the world’s first commercial, authenticated GPS system in space. The IT Infrastructure, Security & DevOps Engineer will design, deploy, and manage IT infrastructure, cloud environments, networking, and developer platforms powering satellite and ground systems.

Responsibilities include owning AWS infrastructure, CI/CD pipelines, IaC with Terraform, secure remote access, and leading security/compliance programs including CMMC readiness for regulated workloads.

Qualifications

  • Bachelor’s degree in CS/IT or equivalent.
  • 5+ years in IT infrastructure, systems administration, or DevOps.
  • Strong Linux system administration skills.
  • Experience managing AWS environments.
  • Experience with Terraform or other IaC tools.
  • Experience with Docker and containerized applications.
  • Strong networking knowledge (TCP/IP, DNS, VPNs, firewalls).
  • Experience with Git and CI/CD pipelines.
  • Proficiency in Python, Bash, or PowerShell scripting.
  • Hands-on experience implementing security controls in regulated environments (NIST SP 800-171, 800-53, CMMC, FedRAMP, ISO 27001).
  • Experience writing security documentation and audit evidence.
  • Must be a U.S. Person.

Responsibilities

  • Design, deploy, and manage IT infrastructure, cloud environments, networking, and developer platforms.
  • Lead IT security and compliance program, including CMMC readiness and fed government standards.
  • Own AWS infrastructure (VPCs, EC2, IAM, S3, RDS, CloudWatch, Systems Manager).
  • Build and maintain CI/CD pipelines and artifact registries.
  • Develop infrastructure as code with Terraform and secure IAM policies.
  • Containerize apps and deploy on ECS, Kubernetes, or similar platforms.
  • Automate provisioning with Python or Bash and maintain internal tooling.
  • Implement secure remote access (WireGuard, Tailscale, NetBird).
  • Establish monitoring, logging, and incident response procedures.
  • Prepare ITAR/EAR controls, RMF, and NISPOM aligned documentation.

Skills

Linux
AWS
Terraform
Docker
CI/CD
Python
Security
Networking
Git
Scripting

Education

Bachelor’s degree in Computer Science or IT

Tools

Terraform
Docker
Kubernetes
Prometheus/OpenTelemetry
ELK/OpenSearch

Job description

Join TrustPoint and Build the World’s First Commercial GPS System in Space

GPS is a ubiquitous global utility in modern society; knowing one’s location is critical for government, commercial, and personal applications. Still, today’s solutions for determining location are inaccurate, slow, unencrypted, and susceptible to jamming and spoofing. TrustPoint is building the world’s first commercial, authenticated GPS system in space to deliver secure, precise positioning, navigation, and timing to customers worldwide.

Position: IT Infrastructure, Security & DevOps Engineer

The Position

As TrustPoint’s IT Infrastructure, Security & DevOps Engineer, you will design, deploy, and manage the IT infrastructure, cloud environments, networking, and developer platforms that power our engineering organization. The role bridges traditional IT operations and modern DevOps practice, ensuring our engineers have a secure, scalable, and automated environment to develop, test, and deploy the software behind our satellites, ground systems, and products.

You will own everything from office networking and endpoint management to AWS infrastructure, CI/CD pipelines, infrastructure automation, security, and developer enablement. Your work will directly improve developer productivity, system reliability, and the security of environments that span our offices, cloud, and globally distributed field systems.

You will also lead TrustPoint's IT security and compliance program. As our government business grows, our infrastructure has to meet the standards our customers operate under: CMMC for controlled unclassified information, FedRAMP-aligned practices for the services we deliver, and AWS GovCloud for regulated workloads. You will own that effort end to end, and build the IT foundation for a future facility clearance and the accredited environments that come with it.

We’ll Expect You To…

  • Design, configure, and maintain office, lab, and remote network infrastructure including routers, switches, firewalls, VLANs, VPNs, and Wi-Fi networks.
  • Administer Windows, Linux, and macOS systems and manage user accounts, identity, permissions, MFA, and endpoint security through Microsoft 365 or Google Workspace.
  • Design and maintain TrustPoint’s AWS infrastructure including VPCs, EC2, IAM, Route 53, S3, RDS, CloudWatch, Systems Manager, and cloud networking.
  • Deploy and manage infrastructure as code using Terraform, with secure, least-privilege IAM roles and policies, while optimizing cloud cost, performance, and security.
  • Build and maintain CI/CD pipelines using GitHub Actions, GitLab CI, or Jenkins, and maintain artifact repositories, package registries, and container registries.
  • Containerize applications using Docker and deploy workloads on ECS, Kubernetes, or similar orchestration platforms.
  • Automate provisioning and operational tasks using Python or Bash.
  • Deploy and maintain secure remote access solutions such as WireGuard, Tailscale, or NetBird for employees and field-deployed systems.
  • Create reproducible development environments and internal tooling that improve engineering onboarding and productivity.
  • Implement monitoring, alerting, and centralized logging using CloudWatch, Grafana, or Prometheus.
  • Perform vulnerability assessments and security hardening, respond to infrastructure incidents, and participate in root cause analysis.
  • Configure backup, disaster recovery, and business continuity solutions; maintain IT documentation and standard operating procedures; and procure and manage IT hardware and software assets.
  • Lead TrustPoint's CMMC readiness and certification: scope the CUI enclave, implement NIST SP 800-171 controls, maintain the SSP and POA&M, manage the SPRS score, and carry us through assessment.
  • Design and operate segmented environments for CUI and export-controlled data, including AWS GovCloud and Microsoft 365 GCC High or equivalent.
  • Own DFARS 252.204-7012 compliance and related contract flowdowns, and implement ITAR/EAR safeguards in IT systems.
  • Support FedRAMP-aligned control implementation and evidence for TrustPoint services delivered to government customers.
  • Build the IT foundation for a future facility clearance (FCL), including NISPOM requirements and accredited classified systems under RMF; grow into ISSM for those systems.
  • Run security operations: vulnerability management, patch cadence, EDR, log retention, access reviews, incident response, and security awareness training.

You’ll Need to Have…

  • Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in IT infrastructure, systems administration, or DevOps.
  • Strong Linux system administration skills.
  • Experience managing AWS environments.
  • Experience with Terraform or other infrastructure as code tools.
  • Experience with Docker and containerized applications.
  • Strong networking knowledge including TCP/IP, DNS, DHCP, VLANs, VPNs, routing, and firewalls.
  • Experience with Git and CI/CD pipelines.
  • Proficiency in Python, Bash, or PowerShell scripting.
  • Hands‑on experience implementing security controls in a regulated environment: NIST SP 800-171, 800-53, CMMC, FedRAMP, or ISO 27001.
  • Experience writing and maintaining security documentation and audit evidence.
  • Strong troubleshooting and communication skills.
  • Must be a U.S. Person (U.S. citizen or permanent resident).

We’d Like to See…

  • Experience with Kubernetes (EKS, k3s, or similar).
  • Experience with Zero Trust networking approaches such as NetBird, WireGuard, or Tailscale.
  • Familiarity with Prometheus, Grafana, and ELK/OpenSearch.
  • AWS Solutions Architect, SysOps Administrator, or DevOps Engineer certifications.
  • Experience supporting embedded systems, robotics, aerospace, or IoT environments.
  • Experience with software‑defined radios, Linux‑based embedded devices, or edge computing.
  • Experience with messaging systems such as ZeroMQ, MQTT, or NATS.
  • Familiarity with GitHub Enterprise and Python‑based automation frameworks.
  • Experience taking an organization through CMMC Level 2 assessment or FedRAMP authorization.
  • Experience with AWS GovCloud or Microsoft 365 GCC High.
  • Familiarity with NISPOM and DCSA processes, or experience serving as ISSM/ISSO.
  • Familiarity with ITAR/EAR technical data controls in an engineering environment.
  • Active U.S. security clearance, or eligibility to obtain one.
  • Self-starter with a builder mindset and experience thriving in a startup environment.

Cultural Fit

  • Thrive in a start-up environment where every team member’s contributions directly shape the product.
  • Comfortable holding a security line without slowing engineers down; finds the control that works rather than the one that's easiest to document.
  • Effective communication style that instills a culture of optimism and positivity.
  • Sense of humor and ability to proactively problem solve.
  • Encourages colleagues to think and plan strategically while executing well tactically.
  • Works well with all company levels and disciplines (i.e. Legal, HR, etc.).
  • Willing to “roll up sleeves” in a new venture, working closely with colleagues.

Compensation and Benefits

The selected candidate will be competitively compensated with salary, equity (stock options), and standard benefits. The salary range for this position is $139,000 to $172,000.

TrustPoint, Inc. is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, disability or handicap, sex, marital status, veteran status, sexual orientation, arrest record or any other characteristic protected by applicable federal, state or local laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Engineer - Systems
Chief Engineer - Systems

TrustPoint, Inc. • Virginia (IL)

On-site
USD 175,000 - 228,000
Principal Systems Engineer
Principal Systems Engineer

TrustPoint • Virginia (MN)

On-site
USD 175,000 - 228,000
Equity (stock options)
U.S. Government Business Development Lead
U.S. Government Business Development Lead

TrustPoint • Virginia (MN)

On-site
USD 163,000 - 212,000
Mission Operations / Ground Software Lead
Mission Operations / Ground Software Lead

TrustPoint • Virginia (MN)

On-site
USD 175,000 - 228,000
Mission Operations / Ground Software Lead
Mission Operations / Ground Software Lead

TrustPoint, Inc. • Virginia (IL)

On-site
USD 175,000 - 228,000
Embedded Software Engineer
Embedded Software Engineer

TrustPoint • Virginia (MN)

On-site
USD 100,000 - 130,000
Salary
Equity (stock options)
Full benefits package
Ground Station Lead
Ground Station Lead

TrustPoint • Virginia (MN)

On-site
USD 140,000 - 190,000
Senior Electrical Design Engineer
Senior Electrical Design Engineer

TrustPoint • Virginia (MN)

On-site
USD 139,000 - 172,000
Equity (stock options)
Standard benefits
Senior Electrical Design Engineer
Senior Electrical Design Engineer

TrustPoint, Inc. • Virginia (IL), Northern (KY)

On-site
USD 139,000 - 172,000
Space-Grade IT Infra & Security DevOps Engineer
Space-Grade IT Infra & Security DevOps Engineer

Trustpoint • Virginia (MN)

On-site
USD 139,000 - 172,000