Senior DevOps Platform Engineer (Remote)
Summary
Designs and maintains an enterprise DevOps platform (GitHub/GitHub Copilot/Harness/JFrog) to enable secure, scalable software delivery for Protective’s fintech products, balancing automation, security, and compliance at scale.
Job Summary
Protective is looking for an experienced Senior DevOps Platform Engineer to help build, operate, and continuously improve the enterprise platforms that enable application teams to deliver software securely, reliably, and efficiently. In this role, you will serve as a technical owner and trusted partner across GitHub Enterprise Cloud, GitHub Actions, GitHub Copilot, Harness CI/CD, Harness Artifact Registry, and JFrog Artifactory, working closely with development, security, infrastructure, and compliance teams to advance modern software delivery practices at enterprise scale.
Key Responsibilities
- Support and administer enterprise DevOps Platform, including GitHub Enterprise Cloud, GitHub Copilot, GitHub Actions or Harness CI/CD, JFrog Artifactory or Harness Artifact Registry.
- Help define, implement, and continuously improve enterprise standards for repositories, CI/CD workflows, artifact management, access controls, and platform governance.
- Help define and support enterprise branching strategies, repository standards, branch protection rules, and pull request governance patterns that promote secure, consistent, and auditable software delivery.
- Partner with application teams to onboard new repositories, pipelines, automation patterns, and developer productivity tools.
- Design, maintain, and evolve reusable workflow and pipeline templates that reduce duplication, improve delivery consistency, and accelerate adoption of approved engineering patterns across teams.
- Support secure software delivery practices, including branch protection, policy-based controls, secrets management, audit logging, and access reviews.
- Monitor platform usage, reliability, and performance; lead troubleshooting, incident response, root cause analysis, and continuous improvement efforts for DevOps Platform services.
- Develop and maintain automation using tools and languages such as YAML, PowerShell, Bash, Python, Terraform, Bicep, or similar technologies.
- Create and maintain documentation, onboarding materials, operational runbooks, and self-service guidance for development teams.
- Collaborate with cross-functional partners to balance developer enablement, operational reliability, security, and compliance expectations.
- Participate in an on-call rotation supporting DevOps Platform engineering services.
Core Technology Stack
- GitHub Enterprise Cloud (GHEC)
- GitHub Actions
- GitHub Copilot
- Harness CI/CD
- Harness Artifact Registry
- JFrog Artifactory
Security, Compliance, and Regulatory Alignment
- Implement least privilege access controls, secrets management practices, audit logging, protected branch patterns, and policy-based platform controls.
- Operate GitHub, Harness, and artifact management platforms in alignment with regulated-industry expectations, including access reviews, change management, traceability, and audit readiness.
- Support audit and compliance activities by assisting with evidence collection and documentation (e.g., SOC-related controls).
- Adhere to established SDLC, security, and governance standards.
Required Qualifications
- 5 or more years of experience in DevOps Platform engineering, site reliability engineering, systems engineering, or a related technology role, including experience supporting enterprise-scale engineering platforms or shared developer services.
- Experience working with GitHub Enterprise Cloud, Azure DevOps, or similar source control and collaboration platforms.
- Familiarity with CI/CD concepts and hands-on experience creating or supporting build, test, validation, release, or deployment automation.
- Experience with GitHub Actions, Harness CI/CD, Azure DevOps Pipelines, Jenkins, or comparable automation platforms.
- Working knowledge of artifact repositories or package management platforms such as JFrog Artifactory, Harness Artifact Registry, GitHub Packages, Azure Container Registry, or similar tools.
- Experience with scripting, automation, or configuration using YAML, PowerShell, Bash, Python, Terraform, Bicep, or similar technologies.
- Understanding of identity and access management concepts, including role-based access control, single sign-on, service accounts, and least-privilege access.
- Ability to troubleshoot complex technical issues, influence technical direction, and communicate clearly with both technical and non-technical stakeholders.
- Strong collaboration, documentation, mentoring, and customer-service mindset when supporting engineering teams and helping them adopt approved platform patterns.
Experience in Regulated or Compliance-Driven Environments (Preferred)
- Experience supporting technology platforms in regulated industries such as insurance, financial services, healthcare, or other compliance-driven environments.
- Familiarity with audit, control, or compliance frameworks such as SOC 1, SOC 2, or similar standards.
- Experience working within defined software delivery, change management, security, and access governance processes.
- Experience supporting GitHub Copilot or other AI-assisted development tools, including enablement, guidance, policy configuration, or adoption reporting.
- Ability to balance developer productivity with security, reliability, and compliance requirements.
What We Offer
- Opportunity to help shape enterprise DevOps standards, influence platform architecture, and advance modern software delivery practices across the organization.
- Collaborative work with application, infrastructure, security, and compliance teams.
- Exposure to modern developer platforms, automation tools, and AI-assisted engineering capabilities.
- A role focused on improving developer experience, platform reliability, secure delivery, and engineering effectiveness at enterprise scale.
#LI-VD1
#IND123
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, GitHub URL, Portfolio/video resume URL, Other website
- As part of any recruiting and hiring process, Protective collects and processes personal information relating to job applicants. The Company is committed to being transparent about how it collects and uses that information and to meeting its information protection obligations. In the recruitment and hiring process the “personal information” we collect includes: General Identifying and Contact Information (e.g., name, mailing address, phone number, email address), Employment History Information, Education History Information. Please be aware that the personal information you provide during the application process may be shared internally with employees of Protective as well as our designated third-party vendors for the purposes of the recruitment and hiring process, including contacting you regarding your application and assessing your qualifications for job openings with Protective. California applicants should review the state-specific notice provided in accordance with the California Privacy Rights Act. By clicking “Consent” below you understand and freely give your consent to Protective and our designated third-party vendors collecting and processing your personal information relating to your potential employment with Protective. Applicant Notice - California: As part of Protective’s commitment to transparency related to personal information, and in order to comply with the California Privacy Rights Act (“CPRA”), we are providing you with this disclosure regarding the categories of personal information we may collect from you and the purposes for which that information may be used. Information We Collect: In the recruitment and hiring process the categories of “personal information” we collect include: General Identifying and Contact Information (e.g., name, mailing address, phone number, email address), Employment History Information, Education History Information. Use of Personal Information: The personal information we collect during the application process is used to assess your qualifications for the purposes of the recruitment and hiring process, including contacting your regarding your application and assessing your qualifications for job openings with Protective. The personal information you provide will not be “sold to” or “shared with” a third-party as those terms are defined by the CPRA. The Company will not collect additional categories of personal information or use the personal information we collect for materially different, unrelated, or incompatible purposes without providing you notice. Retention of Information: Each of the categories of information you provide are subject to our internal policies on retaining employee and applicant information. These policies are based on applicable legal retention requirements for retaining personal information of applicants and/or employees. As part of our internal policies, we have a process in place to determine when this information is no longer needed and can be disposed of in a secure manner. Additional Information: For more information on your rights under the CPRA, please see the Company’s California Privacy Rights Act Policy. yes / no · optional
- Are you legally authorized to work in the United States? choose one
- Do you now, or will you in the future, require immigration sponsorship for work authorization (e.g., H-1B)? choose one
- Have you ever been employed with Protective or one of its affiliates? choose one
- What is your target compensation (salary and bonus)?
- Do you have any family members who are employed with Protective? written answer
- How did you hear about this opportunity? choose one · optional
- Do you have a distraction free workspace and consistent access to internet with speeds of 10 Mbps for downloads and 5-10 Mbps for uploads? (you can check it here https://www.att.com/support/speedtest/) choose one · optional
- How many years of experience do you have supporting or administering enterprise-scale DevOps platforms (GitHub Enterprise Cloud, Azure DevOps, Harness, Jenkins, etc.)?
- What hands-on experience do you have with GitHub Enterprise Cloud (GHEC), including repository management, access controls, branch protection rules, and governance?
- Have you built, maintained, or supported CI/CD pipelines using GitHub Actions, Harness CI/CD, Azure DevOps Pipelines, Jenkins, or similar platforms? Please provide examples.
- Which artifact repository solutions have you administered or supported (JFrog Artifactory, Harness Artifact Registry, GitHub Packages, Azure Container Registry, etc.)?
- What scripting or Infrastructure-as-Code technologies have you used in production environments (PowerShell, Bash, Python, Terraform, Bicep, YAML)?
- Describe your experience implementing security controls such as least-privilege access, secrets management, audit logging, branch protection, or RBAC within DevOps platforms.
- Have you supported a DevOps or engineering platform in a regulated or compliance-driven environment (insurance, financial services, healthcare, etc.)?
- Can you describe a time when you led troubleshooting, incident response, or root cause analysis for a critical DevOps platform or CI/CD outage?
- Have you worked directly with development teams to onboard repositories, pipelines, automation frameworks, or developer productivity tools?