10 hours ago
Base Salary
$158k - $233k/yr
Responsibilities
- Build and manage infrastructure, monitoring, telemetry, and compute environments for the security platform portfolio.
- Lead the infrastructure-as-code and engineering strategy for Microsoft Sentinel, including ingestion pipelines, workspace governance, detection frameworks, and cost optimization.
- Develop reusable, hardened Terraform and Bicep/ARM modules through automated release pipelines with policy-as-code gates.
- Architect orchestration workflows connecting IT service management, messaging channels, and SIEM/SOAR platforms for evidence collection and incident remediation.
- Create on-demand security sandboxes for offensive security exercises and adversary simulation testing.
- Establish monitoring and infrastructure for validating AI-driven tools before production rollout.
- Contribute to an internal developer portal for vulnerability metrics, automated remediation workflows, and guardrails.
- Automate compliance evidence gathering against regulatory and industry security frameworks.
- Mentor distributed engineers, guide technical roadmaps, and promote operational excellence.
Requirements
- 12+ years of experience in SRE, cloud infrastructure, platform engineering, or security engineering with a bachelor’s degree, or 8+ years with a master’s degree.
- 3+ years leading a production platform as a senior or lead engineer.
- Experience with Microsoft Sentinel and Azure Monitor/Log Analytics, including workspace topology, connectors, KQL, automation rules, and playbooks.
- Experience with Terraform custom modules, state architecture, and multi-environment design.
- Experience building and managing release pipelines with Azure DevOps Pipelines, GitHub Actions, or similar platforms.
- Experience developing with Python.
- Experience defining SLOs and SLIs, managing error budgets, developing observability strategies, designing incident-response rotations, and conducting blameless postmortems.
- Experience with technical writing and stakeholder alignment across Security, DevOps, and Product Engineering.
- Preferred experience extending security-platform patterns to AWS or GCP.
- Preferred familiarity with OPA/Rego, Azure Policy, Checkov, ARM, or Bicep.
- Preferred experience automating SOC 2, ISO 27001, or FedRAMP compliance controls.
- Preferred Microsoft SC-200, AZ-500, AZ-400, or HashiCorp Certified: Terraform Associate certification.
- Preferred experience with C#/.NET, Kubernetes, or container runtimes.
Benefits
- Hybrid work arrangement requiring at least two days per week in the office, with frequency subject to team needs.
- Eligible for a company bonus plan and Restricted Stock Units.
- Paid time off and company holidays based on region.
- Up to six months of paid parental leave for birth, adoption, or foster care placement.
- Full health-benefit plan options, including some 100% employer-paid plans from the first day of employment.
- Retirement and pension programs with potential employer contributions.
- Learning and development options including coaching, online courses, and education reimbursement.
- Paid compassionate-care leave for bereavement and other life-changing events.
- Employment is unavailable in Alaska, Hawaii, Maine, Mississippi, North Dakota, South Dakota, Vermont, West Virginia, and Wyoming.
Tech Stack
Categories
Site Reliability
About DocuSign
DocuSign builds e-signature, contract lifecycle management, and agreement workflow software used by businesses to prepare, sign, and manage contracts. It sells cloud-based subscriptions and APIs that integrate with systems like Salesforce, Microsoft, and Google to automate document workflows and compliance. Founded in 2003 and headquartered in San Francisco, DocuSign is a public company on NASDAQ with over 1.5 million customers in more than 180 countries.
