Sphinx Defense Logo

Sphinx Defense

DevSecOps Engineer

Posted 7 Days Ago
Remote
Hiring Remotely in USA
140K-160K Annually
Senior level
Remote
Hiring Remotely in USA
140K-160K Annually
Senior level
Build and maintain cloud-native security platforms across AWS and Kubernetes. Integrate security into CI/CD pipelines, implement automated scanning, monitoring, and remediation, manage IAM, WAFs, and container security, support compliance, vulnerability management, and incident response, and evaluate new security technologies to strengthen platform posture.
The summary above was generated by AI

ABOUT SPHINX

Sphinx builds software to solve complex national security problems in Space. Founded by engineers and technologists with deep experience across commercial and defense technology, we were frustrated by the outdated and insecure technology America's service members are forced to rely on. We're here to do better. 

We’re focused on building modern, scalable products with an emphasis on using open source technologies. Expect talented, motivated, and interesting colleagues who emphasize collaboration, transparency, and individual responsibility.

ABOUT SPHINX

Sphinx builds software to solve complex national security problems in Space. Founded by engineers and technologists with deep experience across commercial and defense technology, we were frustrated by the outdated and insecure technology America's service members are forced to rely on. We're here to do better. 

We’re focused on building modern, scalable products with an emphasis on using open source technologies. Expect talented, motivated, and interesting colleagues who emphasize collaboration, transparency, and individual responsibility.

ABOUT THE ROLE

Sphinx is hiring a DevSecOps Engineer to help secure and scale the cloud-native infrastructure supporting our national security and space-focused software platforms. This role will be responsible for integrating security throughout the software development lifecycle, maintaining critical security tooling, and partnering closely with engineering teams to ensure our applications and infrastructure remain secure, compliant, and resilient.

As a DevSecOps Engineer, you will own and maintain security platforms across our AWS and Kubernetes environments, implement security best practices within CI/CD pipelines, and help drive a security-first engineering culture. As an early member of a growing team, you’ll have significant influence on our security architecture, tooling strategy, and development processes.

WHAT YOU’LL BE FOCUSING ON

  • Configure, deploy, and maintain security tools across cloud-native environments.
  • Integrate security tooling into existing software development and deployment workflows.
  • Partner with engineering teams to implement security best practices throughout the software development lifecycle.
  • Manage and optimize security controls within AWS cloud environments and Kubernetes clusters.
  • Maintain and improve application, infrastructure, and container security posture.
  • Implement automated security scanning, monitoring, alerting, and remediation processes.
  • Support compliance, vulnerability management, and incident response efforts.
  • Continuously evaluate and introduce new security technologies and practices to strengthen platform security.

YOU MIGHT BE A GOOD FIT IF

  • You have 5+ years of experience in DevSecOps, Cloud Security, Site Reliability Engineering, DevOps, or a related discipline.
  • You have hands-on experience operating and securing AWS cloud environments.
  • You have experience administering and securing Kubernetes clusters in production environments.
  • You have experience integrating security tooling into CI/CD pipelines and software delivery workflows.
  • You are comfortable collaborating with software engineers to build security into applications from design through deployment.
  • You have experience implementing Infrastructure as Code using Terraform or similar tools.
  • You thrive in fast-moving environments and enjoy solving complex technical and security challenges.

WE’RE LOOKING FOR A TRACK RECORD OF THE FOLLOWING

  • Experience securing AWS-based cloud infrastructure.
  • Experience operating and securing Kubernetes environments.
  • Experience integrating security tools into software development pipelines.
  • Experience managing identity and access management platforms such as Okta.
  • Experience with container and Kubernetes security solutions such as NeuVector and Kyverno.
  • Experience managing web application firewalls (WAFs) and cloud-native security controls.
  • Experience administering GitLab and securing CI/CD workflows.
  • Experience with monitoring, alerting, and log aggregation platforms such as Sumo Logic.
  • Experience managing software repositories and artifact management platforms such as Nexus.
  • Strong troubleshooting, communication, and cross-functional collaboration skills.

PREFERRED QUALIFICATIONS

  • Experience supporting DoD, national security, or regulated environments.
  • Experience with container security, supply chain security, and vulnerability management programs.
  • Experience implementing security policies as code.
  • Familiarity with zero-trust architecture principles.
  • Experience with incident response, threat detection, and security monitoring.
  • Active Secret or TS/SCI clearance, or the ability to obtain one.

LOCATION

While this role is remote, the potential for travel may occur such as client visits, company gatherings, and other project related travel as needed may be required.

COMPENSATION & BENEFITS
  • This role is between $140,000 - $160,000 base salary.
  • Quarterly bonus structure
  • Equity ownership in the company
  • 100% Premium coverage for medical, dental, and vision for you and dependants
  • Health Savings Accounts
  • Life Insurance
  • 401k employer contribution plan
  • Flexible paid time off policy 
  • Flexible work/remote work policy
 
At Sphinx Defense, we are devoted to building a team that represents a variety of backgrounds, perspectives, and skills. Sphinx Defense is committed to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, and gender identity.
 
CLEARANCE ELIGIBILITY - This position requires eligibility to obtain and maintain a U.S. security clearance. For more information about U.S. Security Clearances: click here. 
 
To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.  

Similar Jobs

Yesterday
In-Office or Remote
125K-155K Annually
Senior level
125K-155K Annually
Senior level
Blockchain • Security • Software
Implement and maintain scalable security controls across cloud and infrastructure. Manage access provisioning, MDM, IaC (Terraform/Ansible), triage vulnerabilities, automate security processes, support secure SDLC, and participate in on-call incident response and security training.
Top Skills: AnsibleAWSLinuxMdmTerraform
Yesterday
In-Office or Remote
Senior level
Senior level
Security • Software
Lead security and reliability for a GCP-based SaaS platform by owning IaC, CI/CD, monitoring, incident response, vulnerability management, compliance (SOC2/ISO27001), and partnering with engineering to shift security left.
Top Skills: AnsibleArgocdBashContainersDockerGCPGitGithub ActionsGkeGoIstioKubernetesPythonTerraformVms
2 Days Ago
Remote
DC, USA
Mid level
Mid level
Information Technology • Consulting • Cybersecurity
Mid-level DevSecOps Engineer to extend and maintain a federal customer's secure infrastructure automation and CI/CD pipelines. Responsibilities include IaC with Terraform/OpenTofu, Ansible automation, GitHub Actions pipelines with embedded security gates, container hardening and scanning, Kubernetes/Helm support, and alignment with CIS and NIST security controls.
Top Skills: AnsibleAWSBashCheckovCis BenchmarksDockerGithub ActionsGitleaksGrypeHashicorp VaultHelmKubernetesNist Sp 800-171Nist Sp 800-207Nist Sp 800-53Opa/RegoOpentofuPythonSemgrepTerraformTfsecTrivy

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account