Cloud Security Engineer (DevOps)
Job Description
Own and embed security across cloud infrastructure, applications, and CI/CD pipelines in a modern, continuously deployable environment.
Responsibilities
- Design, implement, and maintain multiple security applications and services in a cloud environment
- Work within CI/CD practices to integrate security into release and deployment workflows
- Troubleshoot and resolve security-related issues across networks, pipelines, and infrastructure
- Build, maintain, and monitor the configuration of security tools
- Develop security monitoring capabilities with alerting and metrics using log aggregators and data collectors
- Serve as a collaboration conduit between security-focused and development-focused teams
- Provide configuration management support for production applications and custom code
- Support vulnerability management across applications and infrastructure
- Apply a range of open-source technologies to solve security problems
- Support automation around security tooling and cloud security controls
- Contribute to secure infrastructure design across enterprise systems
- Provide some on-call or after-hours onsite support in a secure environment as needed for the customer’s mission
Requirements
- U.S. citizen with an existing SECRET security clearance
- Ability to obtain TS/SCI with CI Polygraph
- CompTIA Security+ or other DoDD 8140 certification
- 5+ years of DevOps, software, or infrastructure engineering experience
- Bachelor’s degree (or 4 additional years of experience in lieu of degree)
- Cloud service experience
- Experience with Terraform and Kubernetes (K8S) or equivalent technologies
- Ability to quickly learn and use a wide variety of open-source technologies
- Willingness to work 90% or as needed in a secure environment
- Willingness to provide some on-call or after-hours onsite support
- Role location: Colorado (Westminster or Longmont)
Technologies
- Terraform
- Kubernetes (K8S)
- Open-source tools
- Cloud services
- CI/CD platforms
- Log aggregation, alerting, monitoring tools
- Configuration and vulnerability management
- Python, Java
- Jenkins
- AWS
- Compliance tooling
- Vulnerability detection tools
- Intrusion detection and prevention tools
- Change management and detection tools
- Code analysis tools
- Counterintelligence polygraph
What You’ll Work On
- Cloud-based security applications and services
- Enterprise common infrastructure and shared services
- CI/CD-driven environments and automated pipelines
- Security tooling configuration, tuning, and monitoring
- Log aggregation, alerting, and security metrics
- Configuration and vulnerability management for production applications
- Custom application and code security support
Experience That Will Get Attention
- Security-minded DevOps (or DevOps-minded security) building automation for monitoring, compliance, and vulnerability detection
- Experience turning logs and metrics into actionable security posture, not only dashboards
- Hands-on CI/CD exposure (for example, Jenkins)
- Scripting experience in Python or Java
- Automated deployment and maintenance of security tools across monitoring, intrusion detection/prevention, change detection, and code analysis
High-Signal Experience
- AWS certification or other cloud provider certification
- Jenkins or similar CI/CD tools
- Python and/or Java
- Terraform and Kubernetes
- Monitoring, compliance, and vulnerability detection tools
- Intrusion detection and prevention tooling
- Change management and detection tools
- Code analysis tools
- Custom source application development and maintenance
Location: Westminster, CO 80234 (onsite)
Salary: USD 150,000 per yearly
Minimum Experience: 5 years
Education: Bachelor’s degree