PactFi

Senior DevSecOps Engineer

PactFi
Apply
2 months ago
Remote, United States or New York, NY, USASenior
H1B sponsor

Base Salary

$165k - $225k/yr

Responsibilities

  • Design, build, and improve secure, scalable AWS infrastructure using Terraform and/or Pulumi with Python.
  • Improve cloud networking, IAM, secrets management, environment isolation, secure configuration, provisioning, access control, auditability, and change management.
  • Build and maintain secure CI/CD pipelines and container-based application, infrastructure, and platform deployment workflows, including rolling updates and rollback strategies.
  • Support Environment as a Service for engineering and QA teams while reducing deployment friction and operational toil.
  • Implement security controls, vulnerability management, access reviews, audit evidence collection, and compliance processes for SOC 2 Type 2 readiness.
  • Build observability across logs, metrics, dashboards, and alerts; maintain centralized logging and define SLOs, SLIs, escalation paths, and operational documentation.
  • Participate in a 24/7 production on-call rotation, incident response, root-cause analysis, and postmortems.
  • Design, document, and test business continuity, disaster recovery, backup, restore, replication, failover, RTO, and RPO procedures.
  • Support secure usage patterns for AI tools and services, including data handling, vendor risk, access controls, and model boundary considerations.

Requirements

  • At least 6 years of experience in DevOps, DevSecOps, SRE, platform engineering, infrastructure, or security engineering.
  • Strong hands-on AWS experience covering IAM, networking, logging, monitoring, and secure access patterns.
  • Experience developing CI/CD pipelines, release automation, and container build and deployment workflows.
  • Infrastructure-as-code experience with Terraform and/or Pulumi with Python, plus strong scripting in Python, Bash, or similar.
  • Strong Ubuntu/Linux command-line experience and networking fundamentals including VPCs, DNS, TLS, routing, firewalls or security groups, load balancing, and private connectivity.
  • Experience with observability, secrets management, IAM, audit logging, vulnerability scanning, and secure configuration.
  • Strong hands-on experience with AI tools such as Claude and ChatGPT and AI-assisted development security and data-handling risks.
  • Experience with 24/7 on-call operations, high-reliability production systems, distributed systems, SLOs, SLIs, incident management, backup and recovery, and disaster recovery procedures.
  • Hands-on experience supporting SOC 2 Type 2 and/or ISO 27001 frameworks and translating compliance requirements into technical controls.
  • Experience in regulated or security-sensitive environments such as fintech, healthcare, or enterprise SaaS is preferred.
  • Experience with Jenkins, Docker, Kubernetes, AWS ECS Fargate, CloudWatch, ELK, Bedrock, Redis, Redshift, AWS Systems Manager, automated compliance evidence collection, disaster recovery testing, or production failover planning is preferred.
  • A bachelor's degree in Computer Science is preferred.

Benefits

  • Competitive salary and equity.
  • Healthcare coverage.
  • 401(k).

Tech Stack

Amazon RedshiftAWSBashDockerJenkinsKubernetesLinuxPythonRedisTerraform

Categories

PactFi

About PactFi

11-50 employees
Contact me