Staff DevSecOps Engineer (R5824)

AI Chopping Block

San Diego (CA)

On-site

USD 160,000 - 230,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Shield AI is seeking a Staff DevSecOps Engineer to design, build, and automate security controls across cloud infrastructure and delivery systems. You will partner with Cybersecurity, Infosec, Build, and Cloud Engineering to turn security requirements into scalable engineering controls.

This hands-on role focuses on secure configurations, reusable patterns, and maintaining secure base images for production workloads while preserving developer efficiency and system reliability.

Qualifications

  • 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer, or equivalent education and experience.
  • Experience implementing security controls in AWS or another major cloud environment.
  • Experience with infrastructure-as-code and automated infrastructure provisioning.
  • Experience securing containerized workloads and building or maintaining hardened container images.
  • Experience integrating security tooling into CI/CD or software delivery systems.
  • Experience with vulnerability management, dependency scanning, container scanning, or configuration validation.
  • Experience implementing identity, secrets, and access controls in cloud or engineering environments.
  • Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language.
  • Ability to diagnose security and configuration issues across infrastructure, containers, and platform services.
  • Experience working with security and engineering teams to implement shared technical controls.

Responsibilities

  • Design and implement security controls across AWS infrastructure and platform services.
  • Build and maintain hardened container images and secure base images for engineering and production workloads.
  • Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems.
  • Automate security and compliance checks to reduce manual review and improve consistency.
  • Implement secrets management, identity, and access controls across infrastructure and engineering systems.
  • Build mechanisms for audit evidence, configuration validation, and compliance reporting.
  • Identify security weaknesses in infrastructure, containers, and delivery systems and drive remediation with owning teams.
  • Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls.
  • Work with Build Engineering and Cloud Engineering to integrate security controls without compromising reliability or developer workflows.
  • At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams.

Skills

Security engineering
AWS
IaC
Container security
CI/CD tooling
Vulnerability management
Identity and access controls
Python/Go/Bash
Audit/compliance

Tools

Terraform
Kubernetes

Job description

Shield AI is a venture-backed defense-tech company with the mission of protecting service members and civilians with intelligent systems. Its products include Hivemind autonomy software, V-BAT and X-BATaircraft, and Aechelon simulation and synthetic reality technologies. With offices and facilities across the U.S., Europe, the Middle East, and Asia-Pacific, Shield AI’s technology actively supports operations worldwide. For more information, visit www.shield.ai. Follow Shield AI on LinkedIn, X, Instagram, and YouTube.

Job Description

Cloud Engineering builds and operates the infrastructure and environments that support Shield AI’s software products and platforms.

As a DevSecOps Engineer, you will design, build, and automate security controls across cloud infrastructure, software delivery systems, and containerized workloads. You will partner with Cybersecurity, Infosec, Build Engineering, and product teams to turn security and compliance requirements into practical engineering controls.

This is a hands-on engineering role focused on making secure configurations repeatable and maintainable. You will work across infrastructure, containers, CI/CD systems, and platform services to reduce security risk without creating unnecessary friction for engineering teams.

What You'll Do
  • Design and implement security controls across AWS infrastructure and platform services
  • Build and maintain hardened container images and secure base images for engineering and production workloads
  • Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems
  • Automate security and compliance checks to reduce manual review and improve consistency
  • Implement secrets management, identity, and access controls across infrastructure and engineering systems
  • Build mechanisms for audit evidence, configuration validation, and compliance reporting
    Identify security weaknesses in infrastructure, containers, and delivery systems and drive remediation with owning teams
  • Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls
  • Work with Build Engineering and Cloud Engineering to integrate security controls without compromising reliability or developer workflows
  • At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams
Required Qualifications
  • 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer, or equivalent education and experience.
  • Experience implementing security controls in AWS or another major cloud environment
  • Experience with infrastructure-as-code and automated infrastructure provisioning
  • Experience securing containerized workloads and building or maintaining hardened container images
  • Experience integrating security tooling into CI/CD or software delivery systems
  • Experience with vulnerability management, dependency scanning, container scanning, or configuration validation
  • Experience implementing identity, secrets, and access controls in cloud or engineering environments
  • Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
  • Ability to diagnose security and configuration issues across infrastructure, containers, and platform services
  • Experience working with security and engineering teams to implement shared technical controls
Preferred Qualifications
  • Experience operating systems in regulated or compliance-driven environments
  • Experience with Kubernetes security, workload identity, or container runtime controls
  • Experience building reusable hardened images or secure infrastructure baselines used across multiple teams
  • Experience with cloud security posture management, policy-as-code, or automated compliance tooling
  • Experience supporting audit evidence collection or continuous compliance workflows
  • Familiarity with software supply-chain security, artifact integrity, or signing/attestation workflows
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff DevSecOps Engineer (R5824)
Staff DevSecOps Engineer (R5824)

AI Chopping Block • San Mateo (CA), Northern (KY)

Hybrid
USD 170,000 - 240,000
Staff DevSecOps Engineer (R5824)
Staff DevSecOps Engineer (R5824)

Shield AI • San Diego (CA)

On-site
USD 150,000 - 230,000
Bonus
Benefits
Equity
Staff DevSecOps Engineer (R5824)
Staff DevSecOps Engineer (R5824)

Shield AI • San Mateo (CA), Northern (KY)

Hybrid
USD 180,000 - 280,000
Staff DevSecOps Engineer (R5824)
Staff DevSecOps Engineer (R5824)

Shieldai • San Diego (CA)

On-site
USD 140,000 - 210,000
Staff DevSecOps Engineer (R5824)
Staff DevSecOps Engineer (R5824)

Shieldai • San Mateo (CA)

On-site
USD 150,000 - 240,000
Staff Cloud Engineer (R5801)
Staff Cloud Engineer (R5801)

Shield AI • San Diego (CA)

On-site
USD 150,000 - 280,000
Bonus
Equity
Benefits
Staff DevSecOps Engineer: Cloud Security & Automation
Staff DevSecOps Engineer: Cloud Security & Automation

Shield AI • San Diego (CA)

On-site
USD 150,000 - 230,000
Bonus
Benefits
Equity
Staff DevSecOps Engineer: Cloud Security & Automation
Staff DevSecOps Engineer: Cloud Security & Automation

Shieldai • San Diego (CA)

On-site
USD 140,000 - 210,000
Staff Cloud Engineer (R5801)
Staff Cloud Engineer (R5801)

Shield AI • San Mateo (CA)

On-site
USD 182,000 - 274,000
Bonus
Benefits
Equity
Staff DevSecOps Engineer: Secure Cloud & Container
Staff DevSecOps Engineer: Secure Cloud & Container

Shield AI • San Mateo (CA), Northern (KY)

Hybrid
USD 180,000 - 280,000