Staff DevSecOps Engineer
Location
United States
Posted
12 hours ago
Salary
$170K - $245K / year
Seniority
Lead
No structured requirement data.
Job Description
Staff DevSecOps Engineer
Trase Systems
Role Description As the Staff DevSecOps Engineer, you will be the technical owner of how security is built into Trase's software development lifecycle and cloud operations. - Integrate automated security testing, continuous vulnerability management, and secure coding practices into existing CI/CD pipelines. - Own the implementation of Trase's dedicated security architecture, delivering shift-left tooling (SAST, DAST, SCA, secrets scanning, and IaC scanning). - Standardize and operate secure pipelines to empower software engineers to focus on high-velocity delivery while maintaining necessary controls. Responsibilities - Shift-Left Security in CI/CD: - Design, implement, and operate the shift-left security toolchain across CI/CD pipelines. - Define how findings are triaged, routed, and remediated; partner with engineering teams. - Establish and enforce policy-as-code and pre-merge security gates calibrated to risk. - Cloud Security Architecture: - Design and deploy production cloud security architecture, focusing on Google Cloud Platform (GCP). - Implement foundational controls including network segmentation, workload identity, secrets management, and encryption. - Operate cloud security posture management (CSPM) and cloud workload protection capabilities. - Infrastructure-as-Code & Platform Security: - Build, codify, and maintain secure-by-default infrastructure modules in Terraform. - Embed security controls directly into platform abstractions. - Drive secure baselines for Kubernetes, container runtimes, and serverless workloads. - Detection, Monitoring & SIEM: - Operate and fine-tune Trase's SIEM and security telemetry pipeline. - Define detection-as-code practices and tune detections. - Build dashboards and reporting for real-time visibility into the environment. - Incident Response: - Enhance and lead aspects of Trase's technical security incident response capability. - Serve as a senior responder during security events. - Vulnerability & Threat Management: - Operate the end-to-end vulnerability management lifecycle across application, container, and cloud surface area. - Facilitate remediation SLAs and report on progress to leadership. - Cross-Functional Partnership: - Partner closely with Engineering and the broader Security and Compliance team. - Embed with Product and Engineering teams to ensure security is integral to Trase's builds. - Mentorship & Engineering Leadership: - Mentor junior Security and Compliance engineers and members of the Engineering team. - Establish and propagate patterns, runbooks, and reusable building blocks. Qualifications - 10+ years of experience in security engineering, DevSecOps, cloud security, or platform security roles. - Deep, hands-on experience securing modern CI/CD pipelines. - Strong cloud security expertise, primarily in Google Cloud Platform. - Expert-level Terraform skills with a track record of building secure-by-default IaC modules. - Demonstrated experience operating a SIEM end-to-end. - Hands-on incident response leadership experience. - Practical experience in environments governed by SOC 2, HIPAA, and ISO 27001. - Strong programming or scripting skills (Python, Go, or similar). - Excellent partnership skills and a developer-empathetic mindset. - Strong affinity for working with LLMs and AI agents. - US Citizen and eligible for US security clearance. Nice to Have - Hands-on experience implementing security architectures for FedRAMP, DoD RMF, HITRUST, or other heavily regulated frameworks. - Active US security clearance (Secret, TS, or TS/SCI). - Deep Kubernetes and container security expertise. - Experience securing AI/ML workloads. - Industry certifications such as Google Professional Cloud Security Engineer, AWS Security Specialty, OSCP, GIAC, or CKS. - Open source contributions to security tooling, detection content, or IaC modules. Salary Range $170,000-245,000. This represents the typical salary range for this position based on experience, skills, and other factors. Benefits - Career track opportunity with potential for rapid advancement. - 100% employer paid, comprehensive health care including medical, dental, and vision for you and your family. - Paid maternity and paternity for 14 weeks at employees' normal pay. - Unlimited PTO, with management approval. - Opportunities for professional development and continued learning. - Optional 401K, FSA, and equity incentives available. - Mental health benefits available through Tara Mind.
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
• The flagship SRE role at VOLL. Published SLOs for critical systems, an error budget used as a release decision tool, blameless postmortems as an established culture, and DORA metrics as a common language between operations and engineering. • Customer Reliability Engineering as a formal practice. Technical customer support moves from a reactive layer to an engine of operational intelligence — a structured Voice of the Customer feeding the product roadmap, customer metrics tied to internal SLOs, and AI copilots boosting the team's productivity. • Operations built to scale globally. Observability, executable runbooks, and incident response capability operating across multiple geographies and time zones. Reliability that scales without requiring the team to double in size. • A culture of measured excellence. Release, capacity, and investment decisions anchored in data, not opinion. An operation that defends itself with numbers, not narrative. • The next generation of technical leaders. Current engineers and analysts evolving into Tech Leads, Specialists, and potential Managers over the next 18–36 months under your direct mentorship. • The SRE↔Engineering↔Customer loop as a competitive advantage. Not three isolated areas — a single continuous-learning machine where every incident becomes an opportunity to improve the product, the process, and the team.
Site Reliability Engineer, Voice Platform, Cloud Operations, DevOps
EverbridgeKeeping people safe and organizations running. Faster.
• Monitor, operate, and improve production voice and cloud platform environments. • Support Asterisk-based VoIP systems, SIP call flows, routing, interoperability, and troubleshooting. • Analyze signaling, media, network, and platform issues using logs, packet captures, and diagnostic tools. • Maintain CI/CD, deployment automation, monitoring, alerting, dashboards, and runbooks. • Participate in incident response, root-cause analysis, capacity planning, upgrades, and maintenance activities.
DevOps Engineer
RethinkFirstRethink First is a global health technology company providing cloud-based treatment tools, training and clinical support
• Designing and managing cloud environments and creating modern automation tools • Building and deploying continuous integration, continuous development, and constant deployment pipeline (CI/CD Pipeline) • Implementing various development, testing, automation tools, and security strategies • Supporting the delivery of quality code that adheres to standards and methodologies • Performing incident management and root cause analysis, and leveraging observability tools • Managing periodic progress reporting
Staff, Site Reliability Engineer (SRE)
Sprinter HealthFounded in 2021 and headquartered in Menlo Park, California, Sprinter Health is a rapidly expanding healthcare company that provides in-home services such as lab draws, vitals chec
About Sprinter HealthAt Sprinter Health, our mission is reimagining how people access care by bringing it directly to their homes. Nearly 30% of patients in the U.S. skip preventive or chronic care simply because they can’t get to a doctor’s office. For many, the ER becomes their first touchpoint with the healthcare system, driving over $300B in avoidable costs every year. By using the same technologies that power leading marketplace and last-mile platforms, we deliver care where people are, especially those who need it most. So far, we’ve supported more than 2 million patients across 22 states, completed 130,000+ in-home visits, and maintained a 92 NPS. Our team of clinicians, technologists, and operators has raised over $125M from investors like a16z, General Catalyst, GV, and Accel and enjoys multi-year runway. About the RoleWe’re looking for a Staff Site Reliability Engineer who wants to build the reliability, infrastructure, and security foundations that power last-mile healthcare delivery at scale. At Sprinter, you’ll work on the operational backbone behind products that blend logistics, patient experience, safety, and medical operations. Our systems help determine whether patients get access to care, whether clinicians are routed efficiently, whether internal teams can operate effectively, and whether our platform can scale securely and reliably as the business grows. This role is ideal for someone who wants broad ownership across reliability, cloud infrastructure, security, observability, automation, and platform design. You’ll help raise the operational bar across engineering, reduce toil through infrastructure as code and scripting, strengthen our security posture, and guide architectural decisions that make our systems more resilient over time. If you want to make meaningful technical decisions, work across engineering and operations, and help shape the foundation of how a high-growth healthcare company scales, this is that role. Office LocationWe are a hybrid company based in the Bay Area with offices in both San Francisco and Menlo Park. For this requisition, we are open to remote candidates but will prioritize candidates who are local. We care about work-life balance and understand that there will be times where flexibility is needed. What you will do - Design, build, and improve the infrastructure that powers Sprinter’s patient care, clinician operations, internal tooling, and partner-facing systems - Improve reliability across distributed systems, cloud infrastructure, CI/CD, observability, and incident response - Raise the security baseline across cloud infrastructure, access controls, secrets management, identity, and operational workflows - Build and maintain infrastructure as code using Terraform and related tooling - Automate manual infrastructure and operational processes through scripting, tooling, and platform improvements - Partner with engineering teams to improve system architecture, deployment practices, monitoring, logging, and alerting - Troubleshoot complex issues across infrastructure, application, data, and operational boundaries - Help define reliability, security, and infrastructure standards that allow Sprinter to scale without creating brittle systems - Support incident response practices, postmortems, operational readiness, and continuous improvement across engineering - Make pragmatic tradeoffs between reliability, security, speed, and simplicity in a fast-moving startup environment What you have done - Spent 8+ years in site reliability engineering, platform engineering, infrastructure engineering, security engineering, or related technical roles - Led high-impact infrastructure, reliability, platform, or security projects end to end with minimal oversight - Built and operated production systems in cloud environments, ideally AWS and/or GCP - Worked deeply with infrastructure as code, ideally Terraform - Improved observability, monitoring, logging, alerting, and incident response practices across engineering teams - Automated infrastructure, deployment, or operational workflows using scripting languages such as Python, Bash, or TypeScript - Improved cloud security, access management, secrets management, networking, or operational controls - Troubleshot production issues across application, infrastructure, networking, and deployment layers - Worked in environments where reliability, security, ambiguity, and speed all matter - Made technical decisions that balanced immediate business needs with long-term scalability, reliability, and maintainability What gives you an edge - You’ve built or scaled infrastructure in health tech, logistics, marketplace, fintech, or other operationally complex environments - You’ve worked in mid- or growth-stage startups where speed, ambiguity, and pragmatic decision-making were required - You have experience improving security posture in a practical, engineering-friendly way - You’ve helped establish reliability standards, incident response practices, or platform patterns across an engineering org - You’re comfortable working directly with product engineers, data teams, operations, security stakeholders, and technical leadership - You have experience mentoring engineers and raising the operational bar across a broader engineering team - You’ve worked in regulated environments and understand the importance of privacy, security, and compliance best practices - You have people management experience or interest in growing into broader technical leadership over time The Interview ProcessWe aim to complete the interview process within 2–3 weeks. It will usually consist of: - Recruiter Screen: Background fit, motivation, and compensation alignment - Hiring Manager Interview: Experience and technical depth - Technical Interview: SRE fundamentals, observability, incident response, and disaster recovery - Soft Skills Interview: Collaboration style and compatibility with the teams this person will support - Reference Checks: Validation of performance and working style What we offer - Meaningful pre-IPO equity - Medical, dental, and vision plans 100% paid for you and your dependents - Flexible PTO + 10 paid holidays per year - 401(k) with match - 16-week parental leave policy for birthing parent, 8 weeks for all other parents - HSA + FSA contributions - Life insurance, plus short and long-term disability coverage - Free daily lunch in-office - Annual learning stipend - Relocation assistance Our Technology Stack - Terraform and infrastructure-as-code tooling - AWS - GCP - TypeScript - Python - Bash - CI/CD systems - Monitoring, logging, and observability platforms - Identity, access, and secrets management systems - Cloud networking and infrastructure tooling - Container and deployment systems - Serverless AWS, including AppSync, DynamoDB, Lambda, Amplify, CloudFormation, and Node - GraphQL - React Native and React Native for Web Equal Opportunity StatementSprinter Health is an equal opportunity employer. We value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other protected classes. Beware of recruitment fraud and scams that involve fictitious job descriptions followed by false job offers. If you are applying for a job, you can confirm the legitimacy of a job posting by viewing current open roles on our official Sprinter Health Careers website. All legitimate job postings will require an application to be made directly on our official Sprinter Health Careers website. Job-related communications will only be sent from email addresses ending in @sprinterhealth.com. Please ensure that you’re only replying to emails that end with @sprinterhealth.com.


