Remote Senior DevSecOps Platform Security Engineer
About the Role
We're hiring a Remote Senior DevSecOps Platform Security Engineer to join our innovative team at DEFCON AI. In this role, you will build and operate production security controls across our AWS and Kubernetes platform. As a key player in our organization, you will design and implement security guardrails that make secure delivery the default, ensuring our systems are resilient and secure.
What You'll Do
- Design, build, and maintain CI/CD security controls that scale across repositories.
- Implement developer-facing security workflows including SAST/SCA, secrets scanning, IaC scanning, and container scanning.
- Establish software supply chain controls such as SBOM, artifact/image signing and verification, and provenance workflows.
- Enforce Kubernetes policies and admission controls using policy-as-code to encode platform security guardrails.
- Collaborate with Platform/SRE to co-own AWS security guardrails, including IAM patterns, logging and detection, and network and encryption baselines.
- Work closely with Security/GRC on control interpretation and evidence needs, implementing controls in engineering systems and pipelines.
Requirements
- 5+ years of experience in DevSecOps or Platform Security Engineering.
- Strong knowledge of AWS security best practices and Kubernetes security.
- Experience with CI/CD security automation and software supply chain security.
- Familiarity with policy-as-code frameworks and tools.
- Proficiency in scripting languages such as Python or Bash.
- Excellent problem-solving skills and the ability to work collaboratively in a team environment.
Nice to Have
- Experience with security compliance frameworks (e.g., NIST, ISO).
- Knowledge of container orchestration and management tools.
- Familiarity with security tools like Aqua, Twistlock, or similar.
What We Offer
- Competitive salary ranging from $140,000 to $180,000 per year.
- Fully remote work environment with flexible hours.
- Opportunities for professional development and growth.
- Collaborative and innovative team culture.
- Health, dental, and vision insurance benefits.
- Generous paid time off and holidays.
This Remote Senior DevSecOps Platform Security Engineer role offers a unique opportunity to lead security initiatives in a cutting-edge AI company, with a competitive salary and flexible work environment.
Who Will Succeed Here
Proficient in AWS security best practices and services, with hands-on experience in implementing IAM roles and policies to enforce least privilege access across cloud resources.
Strong understanding of Kubernetes security measures, including network policies and pod security standards, with a proactive approach to identifying and mitigating vulnerabilities in containerized applications.
Expertise in CI/CD pipelines with a focus on integrating security automation tools such as Snyk or Aqua Security to ensure that security checks are embedded in the development process from the outset.
Learning Resources
Career Path
Market Overview
Skills & Requirements
Domain Trends
Industry News
Loading latest industry news...
Finding relevant articles from the last 6 months