Founded in 2003, Stand Together is a philanthropic organization dedicated to solving society’s most pressing issues by connecting like-minded professionals across various sectors
Senior DevSecOps Engineer
Location
Virginia
Posted
167 days ago
Salary
0
Seniority
Senior
Job Description
Senior DevSecOps Engineer
Stand Together, Inc.
• Cloud & Infrastructure Security: Establish and enforce cloud security standards, identity & access management (IAM) policies, and network security controls across AWS and Azure. • Implement continuous compliance and security monitoring aligned to the AWS Well-Architected Framework and industry standards (CIS, NIST, ISO). • Design automated guardrails for vulnerability management, patching, and secrets management. • DevOps & Automation: Architect and maintain CI/CD pipelines with built-in security testing (SAST/DAST), artifact signing, and policy enforcement. • Develop Infrastructure-as-Code (IaC) using Terraform, CloudFormation, CDK, or Ansible to ensure repeatable, secure deployments. • Build and maintain containerized environments (Docker, Kubernetes, ECS, Fargate) with hardened images and runtime security controls. • Collaboration & Leadership: Partner with software, data, and business teams to integrate security best practices into application design and deployment. • Act as a trusted advisor on cloud security strategy, incident response, and disaster recovery. • Coach engineers on secure coding, DevSecOps patterns, and operational excellence. • Able to clearly communicate the value of new initiatives to secure cross-functional adoption.
Job Requirements
- Experience: 5+ years in Cloud/DevOps/Platform engineering with a strong focus on security and automation
- Cloud Expertise: Deep knowledge of AWS services (EC2, RDS, DynamoDB, Lambda, SQS/SNS, ECS/ECR, Security Hub, etc.) and equivelant technologies in Azure and GCP
- Security Knowledge: Strong understanding of IAM, network security, encryption (KMS), key rotation, and secrets management
- Experience with vulnerability scanning tools (e.g., Security Hub, Inspector, Aqua, Prisma, or similar) and compliance frameworks.
- Familiarity with container security and supply chain security practices.
- Automation & IaC: Proficiency with Terraform, Ansible, Cloud Development Kit (CDK), or similar
- Demonstrated proficiency in threat detection, log aggregation, and incident response using Splunk and alternative SIEM tools
- Programming & Scripting: Proficiency in Python or another high-level language for automation and custom tooling
- CI/CD & Monitoring: Experience with Jenkins, GitHub Actions, CodePipeline, or similar, plus observability tools (Prometheus, Grafana, ELK/EFK)
- OS & Networking: Strong Linux/Unix command-line skills and solid grasp of TCP/IP, DNS, VPNs, firewalls, and load balancing
Benefits
- Competitive benefits: Enjoy a 6% 401(k) match with immediate vesting, flexible time off, comprehensive health and dental plans, plus wellness and mental health support through Peloton and Talkspace.
- A meaningful career: Join a passionate community of over 1,300 employees dedicated to improving lives and driving innovative solutions to complex social challenges.
- Commitment to growth: Thrive in a non-hierarchical environment that empowers employees to discover, develop and apply their unique talents.
- Competitive compensation: Our approach rewards the value you create through competitive salaries and bonus opportunities, allowing you to share in the success you help drive.
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
• Build and maintain software tools that manage sandboxed, containerized workloads (Docker, Kubernetes) in a multi-tenant environment. • Design and implement high-throughput, containerized services in Go. • Develop Terraform modules and CI/CD pipelines to automate deployment, verification, and monitoring. • Partner with Security and Platform Engineering to advance sandboxing, networking, and security best practices. • Work closely with client engineering and partner teams to plan, build, and launch integrations that meet technical requirements and business goals.
Senior Site Reliability Engineer, SRE
BoldLiberando el potencial de los emprendedores a través de herramientas financieras
• Liderar la evolución de la plataforma hacia una arquitectura multi-región resiliente, de baja latencia y con conectividad global segura. • Garantizar la continuidad del negocio frente a fallos regionales y elevar los estándares técnicos que sustentan millones de transacciones diarias. • Diseñar e implementar estrategias de alta disponibilidad geográfica (Active-Active / Active-Passive) y Disaster Recovery (DR) entre múltiples regiones de AWS. • Orquestar la conectividad compleja de la organización utilizando Direct Connect, AWS Transit Gateway, VPC Peering y VPNs. • Liderar la migración de infraestructura legada hacia AWS CDK, asegurando que cada componente de la red y cómputo esté definido como código. • Gestión avanzada del ciclo de vida de instancias EC2 y configuración de Firewalls.
Junior Cloud - DevOps Engineer
ImplicitNo-Code Knowledge Engine for creating AI Knowledge Navigators.
• Assist with day-to-day AWS operations • Help deploy Kubernetes workloads (deployments, services, ingress, namespace organization) • Perform basic troubleshooting across services and AWS resources • Document technical processes • Participate in review sessions
Site Reliability Engineer, SRE
Mida TechnologiesAI-powered, ethical debt collections and recovery solutions
• Build and maintain highly available, scalable, and secure cloud infrastructure. • Develop automation frameworks that streamline deployments, monitoring, and performance optimization. • Implement and manage observability tools (metrics, logs, tracing) to ensure deep visibility into system behavior. • Improve reliability through capacity planning, chaos engineering, and failure-mode analysis. • Own CI/CD pipelines and ensure smooth, automated release processes. • Collaborate with backend, frontend, data, and product teams to define SLIs, SLOs, and error budgets. • Manage incident response, root cause analysis, and postmortems to prevent recurrence. • Optimize system performance and reduce operational costs through proactive engineering. • Enforce security best practices across infrastructure, deployments, and access management. • Reduce manual toil by building automation and self-healing systems.



