FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior DevOps Engineer, Security & Compliance
Zafran SecuritySenior DevOps Engineer working on security and compliance, leading efforts for FedRAMP and SOC 2 certifications. Collaborating with teams on AWS infrastructure and Kubernetes security implementations.
Tech Stack
Tools & technologiesAWSKubernetesPythonTerraform
About the role
Key responsibilities & impact- Lead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)
- Design and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments
- Build the automation, logging, and evidence collection required for continuous compliance
- Implement and maintain secrets management, IAM hardening, network segmentation, and encryption standards
- Develop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments
- Collaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response
- Stay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work
Requirements
What you’ll need- Must be located in the US, with a strong preference for the New York area; US remote considered
- U.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.
- 5+ years of DevOps / platform engineering experience with a strong security focus
- Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP
- Deep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config
- Strong Kubernetes security experience: network policies, admission control, runtime security
- Infrastructure as Code with Terraform, with a focus on policy-as-code
- CI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening
- Solid scripting in Python or Bash
- Nice to have: Prior experience leading or mentoring a small team
- Direct hands-on experience with a FedRAMP Moderate or High authorization
- Experience with GovCloud (AWS US-East/West GovCloud regions)
- Relevant certifications (AWS Security Specialty, CISSP, CCSP)
Benefits
Comp & perks- flexible PTO
- health insurance plans (medical, dental, vision)
- a monthly stipend for phone and internet
- 401k
- flexible spending account
- a home office stipend when joining
- access to frontier AI models, including Claude
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
DevOpsplatform engineeringsecurity controlsAWSKubernetesInfrastructure as CodeTerraformscriptingCI/CD securityvulnerability management
Soft Skills
collaborationmentoringleadership
Certifications
AWS Security SpecialtyCISSPCCSP