10 hours ago
Base Salary
$116k - $181k/yr
Responsibilities
- Design, build, and maintain CI/CD pipelines with automated security gates for static analysis, software composition analysis, secrets detection, container scanning, and infrastructure-as-code policy checks.
- Provision and manage Azure and AWS infrastructure as code and enforce configuration standards through policy-as-code.
- Harden Docker and Kubernetes workloads, including image lifecycle, admission control, runtime policy, network segmentation, and least-privilege workload identity.
- Own secrets management and pipeline authentication using vaulted credentials, short-lived tokens, and federated identity.
- Triage vulnerabilities across source code, dependencies, container images, and cloud posture and drive remediation to closure.
- Build software supply chain controls covering dependency hygiene, artifact signing, provenance, and SBOM generation and distribution.
- Define security detections, dashboards, alerting, and observability for delivery and runtime environments and participate in incident response.
- Automate cloud security posture assessment and remediation across identity, network, logging, and encryption baselines.
- Support control mapping and automated audit evidence collection.
- Improve engineering security practices through reusable pipeline templates, golden paths, code review, and mentoring.
Requirements
- Must be a U.S. Person under ITAR, including a U.S. citizen, lawful permanent resident, or other protected individual.
- 5–10 years of professional experience in DevOps, platform, site reliability, security, or software engineering, including at least 3 years directly securing CI/CD pipelines or cloud infrastructure.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related technical field, or equivalent demonstrated experience.
- Production experience with Azure or AWS, including identity and access management, networking, and logging services.
- Hands-on experience with GitHub Actions, GitLab CI, Azure Pipelines, or Jenkins.
- Proficiency with Terraform, Bicep, CloudFormation, or Pulumi managed through version control and peer review.
- Working knowledge of Docker and Kubernetes, including image hardening and cluster access control.
- Automation and scripting ability with Python, Go, Bash, or PowerShell.
- Experience operating application security tooling such as Blackduck or Rapid7, including SAST, software composition analysis, secrets scanning, and image scanning.
- Knowledge of least privilege, network segmentation, key management, OAuth 2.0, OIDC, SAML, and the OWASP Top 10.
- Experience with Git workflows, code review, and branch protection.
- Preferred qualifications include regulated-industry or aerospace, automotive, advanced manufacturing, and operational technology experience; software supply chain, policy-as-code, Kubernetes security, secrets platforms, SIEM, threat modeling, observability, relevant certifications, or developer platform contributions.
- Strong written and verbal communication skills for explaining security risks and engineering tradeoffs.
Benefits
- Hybrid on-site role at the Torrance, California headquarters, primarily in office and laboratory settings with periodic manufacturing-floor work requiring personal protective equipment.
- Monday–Friday core business hours with occasional after-hours deployment, maintenance, and security incident response responsibilities.
- Participation in a shared on-call rotation for pipeline and infrastructure incidents.
- Competitive salary, equity plan, and discretionary results-based incentive bonus opportunities.
- Paid vacation, sick time, company holidays, year-end shutdown, and paid parental leave.
- HMO and Premium PPO health plans, company-sponsored life insurance, and short- and long-term disability coverage.
- Learning and development reimbursement opportunities.
- Occasional lifting and moving of equipment weighing up to 25 pounds.
Tech Stack
About Divergent
Divergent designs, manufactures, and assembles structures and systems using its DAPS software-driven, additive manufacturing and automation platform. The privately held company, founded in 2014 and headquartered in Torrance, California, operates multiple adaptive factories and offers production programs and Tier 1 supply to global automotive OEMs while supporting U.S. aerospace and defense companies. Its work targets complex, lightweight, production-ready solutions across critical industrial sectors.
