Senior Cloud Security Engineer

Benchmark Analytics

Chicago (IL)

On-site

USD 150,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Unlimited Paid Time Off
Summer Half-Day Fridays
Medical, dental, and vision plans
401(k) benefits
Employer-paid Disability and Life Insurance

Job summary

Benchmark Analytics is hiring a Senior DevSecOps Engineer to enhance security practices within their AWS and Kubernetes environments. This role involves designing secure cloud infrastructure, automating deployment pipelines, and managing IAM strategies. Candidates should have 5-8 years of relevant experience, with strong AWS and Kubernetes skills. The position offers a competitive salary range of $150k-$180k and benefits such as unlimited PTO and the ability to work remotely within the U.S.

Qualifications

  • 5–8 years of experience in DevOps or related roles.
  • Strong hands-on AWS experience: EC2, EKS, IAM, VPC, S3.
  • Production Kubernetes experience with cluster operations.
  • Experience building CI/CD pipelines with security tooling.
  • Knowledge of SOC 2 compliance frameworks.
  • Strong incident response skills.

Responsibilities

  • Design and maintain secure AWS infrastructure.
  • Manage IAM strategy and cloud security posture.
  • Optimize our EKS-based platform's security.
  • Develop secure automated deployment pipelines.
  • Drive shift-left security practices across the organization.

Skills

DevOps
Cloud Engineering
Security Practices
AWS
Kubernetes
Incident Response
Infrastructure-as-Code

Tools

Terraform
GitHub Actions
Datadog

Job description

Dedicated to making a difference in law enforcement agencies across the U.S., our mission is to transform policing by elevating officer performance with a preventative-based early intervention system. Driven by data science and powered by machine learning, our offering analyzes officer performance data in order to identify potentially problematic behavior. In partnership with the University of Chicago, we’ve developed the world’s largest multi-jurisdictional officer performance database, and the only research-driven, evidence-based early intervention system available in policing today.

We’re also the only provider of a fully integrated, cloud-based Software-as-a-Service (SaaS) platform that simplifies essential policing workflows. This platform is designed to be a single-source solution for all operational needs, driving extensive efficiency gains and providing best-in-class advanced analytics and insights.

Benchmark Analytics provides a comprehensive, all-in-one solution that is advancing police force management through state-of-the-art technology and market-leading data and analytics.

The Role:

We’relooking for aSeniorDevSecOpsEngineerto join our Infrastructure & Security team. In this role,you’llown the intersection of platform reliability, cloud infrastructure, and security. You will do this by embedding security practices directly into our engineering lifecycle, rather than treating it as an afterthought.

You’llwork closely with the Director of Infrastructure & Security and across engineering teams to harden our AWS environment, mature our CI/CD pipelines,maintainour Kubernetes platform, and ensure weremainaudit-ready against CJIS and SOC 2 requirements.You’ll alsohave the opportunity todrive automation and AI-assisted operations initiatives as we continue scaling.

This is a high-ownership role.You’llbe trusted tooperateindependently, make sound engineering and security tradeoffs, contribute significantly to security decisions, and lead incident response when things go wrong.

Responsibilities:
  • Design, build, and maintain secure AWS infrastructure across standard and GovCloud environments
  • Own infrastructure-as-code (Terraform / OpenTofu) with a security-first mindset
  • Manage IAM strategy, least-privilege access controls, and cloud security posture
  • Operate and evolve our EKS-based platform including node lifecycle, workload isolation, and cluster security
  • Implement andmaintainadmission control, network policies, and runtime security tooling
  • Partner with engineering teams on deployment patterns and container security
  • Build andmaintainsecure, automated deployment pipelines (GitHub Actions)
  • Integrate SAST, dependency scanning, secrets detection, and container image scanning into the SDLC
  • Drive shift-left security practices across the engineering organization

Security & Compliance

  • Maintain and improve security controls aligned to CJIS Security Policy and SOC 2 Trust Services Criteria
  • Effectively and efficiently triage or resolve security alerts by working with engineering teams and/or committing code yourself
  • Manage vulnerability management workflows, prioritization, and remediation trackingSupport audit preparation, evidence collection, and control documentation
  • Monitor for threats and respond to security findings across cloud, application, and endpoint layers
  • Enforce andmaintainsoftware supply chain security across the organization
  • Serve as an on-call responder for infrastructure and security incidents
  • Drive post-incident reviews and own follow-up remediation items
  • Develop and refine runbooks, alerting, and on-call procedures

AI & Automation

  • Identifyand implement automation opportunities that reduce manual operational toil
  • Contribute to AI-assisted operations initiatives, including agentic workflows and observability improvements
  • Apply security controls to AI tooling and LLM-integrated systems as they are introduced
Job Qualifications:

Required

  • 5–8 years of experience in DevOps,DevSecOps, SRE, Cloud Engineering, or Platform Engineering roles
  • Strong hands-on AWS experience: EC2, EKS, IAM, VPC, S3, and related services
  • Production Kubernetes experience including cluster operations and workload security
  • Experience building andmaintainingCI/CD pipelines with integrated security tooling
  • Working knowledge of SOC 2 or similar compliance frameworks and their operational implications
  • Infrastructure-as-code fluency with Terraform orOpenTofu
  • Strong incident response skills:you’vebeen in the hot seat and know how to stay calm and methodical
  • Excellent written communication: you can document a runbook, write a post-mortem, and explain a technical risk to a non-technical stakeholder

Nice to Have

  • Experience with CJIS Security Policy or other criminal justice / government data frameworks
  • Familiarity with agentic AI workflows or LLM security considerations
  • Experience with observability platforms (Datadog,OpenTelemetry, or similar)
What We Offer:
  • A competitive salary and benefits package.
  • UnlimitedPaid Time Off.
  • Ability to work in a fully remote environment (must be based in the U.S. and willing to work in Central Time Zone).
  • Summer Half-Day Fridays.
  • Freed Up Fridaysduring Spring, Fall, and Winter months to promote productivity and dedicated heads-down work time.
  • Medical, dental, and vision plan offerings along with 401(k).
  • Employer-paid Short-Term Disability, Long-Term Disability, and Life Insurance.
  • Other Voluntary Benefits includeadditionalLife Insurance, Spouse Life Insurance, and Accident Insurance.
  • The satisfaction that comes with being part of a solution that hasrealimpactinthe world.
  • A diverse workforce and inclusive environment that embraces unique contributions and experiences.
  • An empowered culture that encourages creativity and professional growth.
Estimated Annual Salary Range for this Role:
  • $150k-$180k; based on role, experience, and location
Additional Information:
  • Benchmark Analytics is an Equal Opportunity Employer. We value diversity of all kinds in our effort to create a stellar workforce of committed and passionate team members.
  • Unfortunately, we are not able to sponsor employment visas at this time, so we can only accept applications from candidates who are authorized to work in the U.S.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer
Senior Cloud Security Engineer

Benchmark Analytics • Chicago (IL)

On-site
USD 110,000 - 140,000
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Configuration Specialist, Senior
Configuration Specialist, Senior

Benchmark Analytics • Chicago (IL)

On-site
USD 95,000 - 130,000
Competitive salary
Unlimited paid time off
Medical, dental, and vision plans
+4
Manager, Security Engineering, Cloud & AppSec
Manager, Security Engineering, Cloud & AppSec

Horizon3 AI • United States

On-site
USD 149,000 - 185,000
Health, vision & dental insurance
Flexible vacation policy
Generous parental leave
+2
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Theory Ventures • San Francisco (CA)

On-site
USD 150,000 - 210,000
Equity & Ownership
Impact & Visibility
Collaborative Culture
+1
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Software Engineer, Senior (Secret Clearance)
Software Engineer, Senior (Secret Clearance)

Praescient Analytics • Fairfax (VA)

Hybrid
USD 120,000 - 165,000
Comprehensive healthcare
401(k) with company match
3 weeks paid time off plus Federal Holidays
+1
Senior DevSecOps Engineer
Senior DevSecOps Engineer

CACI • Chantilly (VA)

On-site
USD 113,000 - 238,000
Healthcare benefits
Retirement plans
Continuing education support
Senior Security Engineer
Senior Security Engineer

Silversmith Capital Partners • United States

Hybrid
USD 126,000 - 154,000
HDHP + telehealth
Calm subscription
LinkedIn Learning
+3
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Credence Management Solutions, LLC • McLean (VA)

On-site
USD 150,000 - 180,000