Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Zafran Security

Senior DevOps Engineer, Security & Compliance

Zafran Security

Senior DevOps Engineer working on security and compliance, leading efforts for FedRAMP and SOC 2 certifications. Collaborating with teams on AWS infrastructure and Kubernetes security implementations.

Posted 5/28/2026full-timeRemote • New York • 🇺🇸 United StatesSeniorWebsite

Tech Stack

Tools & technologies
AWSKubernetesPythonTerraform

About the role

Key responsibilities & impact
  • Lead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)
  • Design and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments
  • Build the automation, logging, and evidence collection required for continuous compliance
  • Implement and maintain secrets management, IAM hardening, network segmentation, and encryption standards
  • Develop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments
  • Collaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response
  • Stay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work

Requirements

What you’ll need
  • Must be located in the US, with a strong preference for the New York area; US remote considered
  • U.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.
  • 5+ years of DevOps / platform engineering experience with a strong security focus
  • Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP
  • Deep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config
  • Strong Kubernetes security experience: network policies, admission control, runtime security
  • Infrastructure as Code with Terraform, with a focus on policy-as-code
  • CI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening
  • Solid scripting in Python or Bash
  • Nice to have: Prior experience leading or mentoring a small team
  • Direct hands-on experience with a FedRAMP Moderate or High authorization
  • Experience with GovCloud (AWS US-East/West GovCloud regions)
  • Relevant certifications (AWS Security Specialty, CISSP, CCSP)

Benefits

Comp & perks
  • flexible PTO
  • health insurance plans (medical, dental, vision)
  • a monthly stipend for phone and internet
  • 401k
  • flexible spending account
  • a home office stipend when joining
  • access to frontier AI models, including Claude

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
DevOpsplatform engineeringsecurity controlsAWSKubernetesInfrastructure as CodeTerraformscriptingCI/CD securityvulnerability management
Soft Skills
collaborationmentoringleadership
Certifications
AWS Security SpecialtyCISSPCCSP