DevOps / Security Engineer — Cloud Platform & IoT Systems
Automation
Cloud
Cloud Architecture
Cloud Infrastructure
Cloud Native
Cloud Operations
Cloud Platform
Cloud Platforms
Cloud Technology
Containerization
Data Security
DevOps
DevSecOps
Engineering
GCP
Identity and Access Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Infrastructure
Infrastructure As Code
Kubernetes
Multi Cloud
Platform Engineering
Security
Security Automation
Security Compliance
Security Operations
Security Testing
Solution Architecture
Job Description
Benefits-forward opportunity in Chantilly, VA with hybrid on-site options and a competitive compensation package. This role offers a salary range of $120,000 – $170,000 per year plus a comprehensive benefits lineup including 401(k), health, dental, vision, paid time off, and par parental leave. The successful candidate will contribute to GoodCloud, a multi-region cloud platform with per-cell Kubernetes deployments that support more than 10 million devices.
Responsibilities
- Own reliability and security operations across GoodCloud’s multi-region deployments, including per-cell Kubernetes clusters deployed via a shared Helm umbrella chart.
- Define and monitor SLOs and error budgets; build and operate monitoring, alerting, and incident-response across cells.
- Conduct security assessments and support penetration testing engagements.
- Manage IAM, access control, and secrets management across regional cells.
- Support data residency controls and cross-jurisdiction compliance, ensuring device data, telemetry, and encryption keys stay within their home region.
- Design and maintain GitLab CI/CD pipelines across distributed engineering teams in the United States and internationally.
- Implement automated security testing (SAST, DAST, dependency and container scanning) within the pipeline.
- Manage infrastructure as code across the cell-based Kubernetes architecture using Terraform and Helm.
- Develop and maintain monitoring, logging, and alerting systems (metrics, traces, structured logs) across all regions.
- Support firmware build pipelines for embedded systems, including migrating from Jenkins to GitLab CI.
- Support firmware security and release-compliance workflows aligned with regulatory requirements.
- Handle vulnerability disclosure intake and patch/release management.
- Coordinate with global engineering teams on security updates and CVE remediation.
- Prepare documentation for regulatory submissions and equipment-authorization needs as required.
- Maintain operational documentation and audit trails to support compliance reviews.
- Track reliability and security metrics and report them through the monthly operations process.
- Support cross-team audit and traceability requirements for U.S. and international offices.
Requirements
- Minimum 5 years of combined experience in DevOps, SRE, or Platform Engineering with meaningful hands-on ownership of production cloud infrastructure.
Technologies
- AWS
- GCP
- Azure
- GitLab CI
- GitHub Actions
- Jenkins
- Terraform
- Docker
- Kubernetes
- Helm
- MQTT
- EMQX
- Kafka
- Linux
Benefits
- 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Parental leave
- Vision insurance
Application question
This is an onsite job. Are you able to work on-site Monday through Friday?