DevOps Engineer – Policy as Code

Cr33Dstaffing — United States · Posted ~5 hours ago

Senior Contract Hybrid No Visa

Skills

Open Policy Agent Rego Policy as Code CI/CD Terraform integration Cloud governance Security guardrails Compliance controls Identity and access management Terraform Conftest OPA Gatekeeper

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A regulated enterprise technology environment is seeking a DevOps Engineer specialising in policy as code. You'll translate governance and compliance requirements into executable Rego policies, integrate Open Policy Agent with infrastructure provisioning and CI/CD pipelines, and implement security guardrails for cloud environments. Production OPA experience and familiarity with regulated-industry controls are essential. The role requires local availability and in-person interviews.

Highlights

A long-term contract exceeding twelve months, hybrid work, and an opportunity to develop production-grade policy enforcement and compliance automation for enterprise cloud infrastructure.

Description

DevOps Engineer (OPA / Policy-as-Code Engineer) Work Location: Jersey City, NJ (Hybrid) 12+ Months Contract Duration Need Locals & F2F interview. Strong candidate : USC,GC,GCEAD,H4EAD PRIMARY RESPONSIBILITY: Implement policy enforcement, governance guardrails, and compliance validation integrated into blueprint provisioning workflows. This role translates DTCC's regulatory requirements into executable code that runs at deploy time.Production OPA / Rego experience — not just tutorial-level Has integrated OPA with Terraform (e.g., Conftest, OPA Gatekeeper) Background in regulated industry: banking, healthcare, gov, fintech Can translate compliance language (SOC 2, NIST, internal control) into policy code. REQUIRED SKILLS: Strong Open Policy Agent (OPA) experience Experience writing Rego policies Experience implementing Policy-as-Code in CI/CD pipelines Understanding of:Cloud governanceSecurity guardrailsTagging standardsCompliance controlsIdentity and access managementExperience integrating OPA with:TerraformJenkinsBackstageKubernetes / OpenShiftStrong understanding of enterprise security patternsAbility to translate governance requirements into executable policiesPolicy-driven infrastructure automationCompliance team writes rules in English; this engineer turns them into Rego.