Senior DevOps Engineer, Security & Compliance

Job not on LinkedIn

🕒 6 days ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Zafran Security

Zafran Security

11 - 50 employees

🔐 Security

🔒 Cybersecurity

🤝 B2B

Security • Cybersecurity • B2B

Zafran Security is a company that specializes in threat exposure management, offering a centralized platform that integrates with security tools to uncover, remediate, and mitigate exposure risks across hybrid environments. The platform provides features like exposure hunting, vulnerability prioritization and remediation, proactive exposure mitigation, and a risk-based vulnerability management approach. Trusted by Fortune 500 companies, Zafran aims to improve organizations' defense postures by continually analyzing and optimizing their security controls to protect against high-profile vulnerabilities and threat groups.

📋 Description

• Lead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process) • Design and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments • Build the automation, logging, and evidence collection required for continuous compliance • Implement and maintain secrets management, IAM hardening, network segmentation, and encryption standards • Develop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments • Collaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response • Stay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work

🎯 Requirements

• Must be located in the US, with a strong preference for the New York area; US remote considered • U.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment. • 5+ years of DevOps / platform engineering experience with a strong security focus • Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP • Deep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config • Strong Kubernetes security experience: network policies, admission control, runtime security • Infrastructure as Code with Terraform, with a focus on policy-as-code • CI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening • Solid scripting in Python or Bash • Nice to have: Prior experience leading or mentoring a small team • Direct hands-on experience with a FedRAMP Moderate or High authorization • Experience with GovCloud (AWS US-East/West GovCloud regions) • Relevant certifications (AWS Security Specialty, CISSP, CCSP)

🏖️ Benefits

• flexible PTO • health insurance plans (medical, dental, vision) • a monthly stipend for phone and internet • 401k • flexible spending account • a home office stipend when joining • access to frontier AI models, including Claude

Apply Now

Similar Jobs

🕒 6 days ago

PTC

5001 - 10000

🏢 Enterprise

Senior Cloud Operations Engineer modernizing PTC’s Network Operations Center cloud processes. Collaborating with teams to drive innovation in cloud automation and observability.

AWS

Azure

Cloud

Docker

Python

SaltStack

Terraform

🕒 6 days ago

Nsight Health

201 - 500

☁️ SaaS

🤝 B2B

DevOps / Platform Lead owning CI/CD pipelines and infrastructure for a healthcare tech company. Focused on compliance, security, and AI fluency while building a greenfield deployment foundation.

🇺🇸 United States – Remote

💵 $160k - $190k / year

💰 $75k Seed Round - Nsight Health on 2024-02

⏰ Full Time

🟠 Senior

⛑ DevOps & Site Reliability Engineer (SRE)

AWS

Terraform

🕒 6 days ago

Nsight

501 - 1000

📡 Telecommunications

DevOps / Platform Lead for a healthcare organization improving care delivery through technology. Design and manage CI/CD pipelines while ensuring compliance and security in deployment infrastructure.

AWS

Cloud

DNS

Grafana

Prometheus

Python

Terraform

🕒 6 days ago

Emergent Software

51 - 200

☁️ SaaS

🤝 B2B

DevOps Architect leading the technical direction of our DevOps practice. Joining the cloud infrastructure team at Emergent Software to mentor engineers and guide client architecture discussions.

Azure

Cloud

Terraform

🕒 6 days ago

Replika

51 - 200

🤖 Artificial Intelligence

👥 B2C

Senior DevOps Engineer improving developer experience at Replika. Collaborating on deployments, CI/CD, and efficient development processes.

AWS

Cloud

Docker

Google Cloud Platform

Kubernetes

Python