Staff DevSecOps Engineer (R5824)
Summary
The Staff DevSecOps Engineer designs, builds, and automates security controls for Shield AI’s cloud infrastructure, container images, and CI/CD pipelines, primarily on AWS, using infrastructure‑as‑code, scripting, and security tooling.
Job Description
As a DevSecOps Engineer, you will design, build, and automate security controls across cloud infrastructure, software delivery systems, and containerized workloads. You will partner with Cybersecurity, Infosec, Build Engineering, and product teams to turn security and compliance requirements into practical engineering controls.
This is a hands-on engineering role focused on making secure configurations repeatable and maintainable. You will work across infrastructure, containers, CI/CD systems, and platform services to reduce security risk without creating unnecessary friction for engineering teams.
What You'll Do
- Design and implement security controls across AWS infrastructure and platform services
- Build and maintain hardened container images and secure base images for engineering and production workloads
- Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems
- Automate security and compliance checks to reduce manual review and improve consistency
- Implement secrets management, identity, and access controls across infrastructure and engineering systems
- Build mechanisms for audit evidence, configuration validation, and compliance reporting
Identify security weaknesses in infrastructure, containers, and delivery systems and drive remediation with owning teams - Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls
- Work with Build Engineering and Cloud Engineering to integrate security controls without compromising reliability or developer workflows
- At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams
Required Qualifications
- 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer, or equivalent education and experience.
- Experience implementing security controls in AWS or another major cloud environment
- Experience with infrastructure-as-code and automated infrastructure provisioning
- Experience securing containerized workloads and building or maintaining hardened container images
- Experience integrating security tooling into CI/CD or software delivery systems
- Experience with vulnerability management, dependency scanning, container scanning, or configuration validation
- Experience implementing identity, secrets, and access controls in cloud or engineering environments
- Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
- Ability to diagnose security and configuration issues across infrastructure, containers, and platform services
- Experience working with security and engineering teams to implement shared technical controls
Preferred Qualifications
- Experience operating systems in regulated or compliance-driven environments
- Experience with Kubernetes security, workload identity, or container runtime controls
- Experience building reusable hardened images or secure infrastructure baselines used across multiple teams
- Experience with cloud security posture management, policy-as-code, or automated compliance tooling
- Experience supporting audit evidence collection or continuous compliance workflows
- Familiarity with software supply-chain security, artifact integrity, or signing/attestation workflows
As published by lever · 19 questions · 9 written answers
Basics
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, Twitter URL, GitHub URL, Portfolio URL, Other website
Short answers (1)
- Please state your full legal name:
Pick from a list (9)
- Are you authorized to work in the United States?
- Will you require sponsorship for employment now or in the future?
- This position may require access to information and technology that is subject to export controls, such as EAR. Are you any of the following?
- Shield AI provides technology, services, and support to the United States military and allied forces with their various missions. If selected for employment with Shield AI, your contributions will directly relate to and/or support these missions. Are there any reasons why you would not be able to fully contribute in support of the U.S. military and allied forces?
- How did you hear about us?
- Are you a transitioning service member?
- If yes, what partnership program are you working with? optional
- Are you local to or willing to relocate? optional
- What office(s) would you be willing to relocate to? (Select all that apply) optional
Written answers (9)
- If yes, what type of sponsorship? optional
- If you selected "A protected Individual" OR "Other" to the above question, please explain further. optional
- (Optional) If you selected other or would like to expand on the above, feel free to do so below: optional
- If "Industry Conference" or "Other," please provide more details: optional
- If other, please provide further details optional
- When are you available to start your fellowship? optional
- When are you available for full time work? optional
- What full time job(s) are you applying for?
- If you selected international, what location(s)? optional