Summary
✨ AI‑Generated
A senior remote DevSecOps role designing secure cloud infrastructure, automation pipelines, and compliance-focused engineering solutions across major cloud platforms.
Highlights
Fully remote senior engineering role with strong ownership, cloud security focus, automation responsibilities, and competitive compensation.
Description
DevSecOps & Cloud Engineer:
This is a fully remote, senior-level engineering role on a small, high-ownership team at a fast-growing cybersecurity consulting firm.
You will lead the design, implementation, and governance of secure IaC environments across AWS, Azure, and GCP—building scalable, automation-first cloud solutions that align with compliance frameworks including FedRAMP, SOC 2, and CMMC.
Your decisions carry weight: this team works directly with client engineering and compliance teams, and the infrastructure you build defines outcomes.
Reports to the Director of FedRAMP Engineering.
Compensation: $170,000–$200,000 base + bonus
Logistics: Remote (U.S.
only)
Here’s what you’ll be doing:
Design, implement, and maintain CI/CD pipelines that enforce automated security gates, policy-as-code checks, and compliance validation before deploymentBuild and maintain a library of secure, reusable Terraform modules that encode compliance requirements—FedRAMP, SOC 2, ISO 27001, CMMC—directly into infrastructureOwn security architecture decisions across cloud deployments: IAM design, network segmentation, secrets management, logging and monitoring pipelines, and encryption controlsIdentify manual or repetitive processes and replace them with reliable, scalable automationPartner directly with client engineering and compliance teams to translate regulatory and security requirements into executable infrastructure solutionsDocument and communicate architectural decisions clearly to both technical and non-technical stakeholdersContribute to internal tooling, methodology, and standards as an early member of a growing practice
And what you need to have:
3+ years of professional experience in cloud infrastructure or DevSecOps, with a focus on Terraform and reusable module creation in at least one major cloud platform (AWS, GCP, or Azure)1+ year of hands-on Terraform in enterprise environments, including integration with CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, or equivalent)Strong cloud security fundamentals: IAM, networking, secrets management, encryption, and monitoringFamiliarity with CSPM tools such as Prisma Cloud, Wiz, Lacework, AWS Security Hub, or AWS InspectorProficiency in Python or Bash scriptingExperience securely configuring Linux operating systems including DISA STIG hardeningSolid understanding of compliance frameworks: FedRAMP, FISMA, CMMC Level 2, SOC 2, etc.AWS Solutions Architect Associate certification required; AWS Solutions Architect Professional, Security Specialty, GCP, or Azure equivalents preferredExperience with SAST/DAST tooling (SonarQube, Snyk, Burp Suite, Tenable/Nessus, or similar) preferredExperience with containerization, Kubernetes, and secure hardening preferred