Software Development Engineer
You will design, build, and maintain the platform engineering foundation that keeps Boltline secure, compliant, and scalable. You'll own infrastructure-as-code, security automation, and compliance tooling that enables the broader engineering org to move fast without compromising on security posture. You'll combine deep infrastructure expertise with a security-first mindset while thriving in a regulated, high-accountability environment.
Responsibilities
- Design, build, and maintain cloud infrastructure using IaC tooling (Pulumi) across AWS GovCloud environments
- Develop and maintain automation for security controls, compliance evidence collection, and audit readiness (SOC 2, FedRAMP)
- Own platform engineering initiatives including CI/CD pipeline infrastructure, secrets management, and developer tooling
- Build and maintain internal security tooling and integrations across the Boltline platform
- Contribute to architectural decisions around platform security, network segmentation, and access control
- Support and improve observability, alerting, and incident response infrastructure
- Participate in on-call rotation and lead remediation of platform and security incidents
- Partner with engineering teams to embed security and compliance requirements into the SDLC
Requirements
- Bachelor's degree in Computer Science, Information Systems, or related field / equivalent experience
- 3+ years of software or infrastructure engineering experience in production environments
- Strong proficiency in at least one general-purpose language (Python, Go, TypeScript, or similar) for automation and tooling
- Hands-on experience with infrastructure-as-code (Pulumi, Terraform, or equivalent)
- Experience operating in AWS, including IAM, networking, and security services
- Familiarity with security control frameworks (SOC 2, NIST 800-53, or FedRAMP)
- Solid understanding of CI/CD pipelines and DevSecOps practices
- Excellent collaboration and communication skills within cross-functional teams
- Comfort operating in a fast-paced, compliance-sensitive environment
- Experience with AWS GovCloud or other FedRAMP-authorized environments
- Familiarity with ITAR-controlled environments or defense/aerospace software
- Experience with container security, Kubernetes/ECS hardening, or workload isolation
- Hands-on experience with security scanning, SAST/DAST tooling, or vulnerability management pipelines
- Prior work with compliance automation platforms (Paramify, Vanta, Drata, or similar)
- Exposure to identity and access management patterns (SSO, SCIM, least-privilege design)
- Interest in aerospace, manufacturing, or complex physical systems
Benefits
- Equity in the form of stock options
- Subsidized medical, dental, and vision insurance
- Company-paid life and disability insurance
- 401(k) plan with employer match
- 4 weeks' Paid Time Off
- 10 days paid holidays (including an end-of-year closure)
- Paid Family/Parental Leave
- On-site gym or monthly wellness stipend (depending on location)
- Dog friendly offices