We are seeking an experienced security-first Platform/DevOps Engineer or Solutions Architect with expertise in Linux, networking, hybrid cloud infrastructure, and automation. This role focuses on designing, building, and securing scalable, automated, and compliant platforms—both cloud-native and on-premises—while meeting standards such as NIST, FIPS, FedRAMP, CIS Benchmarks, and leveraging SELinux where applicable.
You will partner with engineering, security, and product teams to embed DevSecOps best practices across the entire lifecycle, ensuring both the product and the platform it runs on are secure, compliant, and high performing.
Cloud Platforms: AWS (EC2, ECS/EKS, Lambda, RDS), Azure (AKS, Azure Files, Azure SQL)
Security & Compliance: IAM design, Zero Trust, DevSecOps, NIST, FIPS, SELinux, CIS Benchmarks, vulnerability management, compliance automation
IaC: Terraform, Ansible
CI/CD: GitHub Actions, Azure DevOps, Jenkins
Containers: Docker, Kubernetes, OpenShift, Helm
Networking: VPC architecture, secure connectivity, load balancing
Observability: Prometheus, Grafana, ELK Stack
Scripting: Python, Bash, PowerShell
Ideal Profile
Proven track record in designing secure, compliant, and automated hybrid/cloud platforms.
Deep expertise in platform hardening, security automation, and compliance-driven architecture.
Experience embedding compliance validation and security scanning into CI/CD pipelines.
Ability to translate regulatory requirements into enforceable technical solutions.
Strong communication skills to advocate for security and compliance at both technical and executive levels.
Experience delivering deployable, security-compliant products to customers is a plus.
Architect, secure, and automate hybrid and cloud-native platforms (AWS, Azure, on-premises).
Build and maintain CI/CD pipelines (GitHub Actions, Jenkins, Azure DevOps) with integrated security gates.
Implement Infrastructure as Code (Terraform, Ansible) for reproducible, policy-compliant deployments.
Deploy and manage Kubernetes, EKS/AKS, and OpenShift clusters with hardened configurations and secure Helm-based deployments.
Apply Zero Trust principles, enforce IAM best practices, and ensure container runtime security.
Integrate compliance standards (NIST, FIPS, SELinux, CIS Benchmarks) into all infrastructure and product deployments.
Enforce strict container image security and implement automated vulnerability scanning.
Partner with leadership to ensure architectures meet business goals, performance targets, and regulatory requirements.