
Senior DevOps Engineer
PAR Technology3 hours ago
Base Salary
$136k - $175k/yr
Responsibilities
- Design and operate secure CI/CD pipelines with SAST, DAST, SCA, secrets scanning, and container image scanning.
- Harden and automate AWS and/or Azure infrastructure with infrastructure-as-code and policy controls.
- Own Docker and Kubernetes security, including image provenance, runtime protection, network policies, and admission controls.
- Implement cloud security posture management, vulnerability management, threat detection, secrets management, identity controls, and least-privilege access.
- Lead threat modeling, secure design reviews, security remediation, incident response, and post-incident improvements.
- Design and manage cloud networking, traffic-layer security, API gateways, WAF, DDoS protection, CDN configuration, DNS, and TLS/PKI automation.
- Implement GitOps delivery with progressive releases and automated rollback.
- Build observability across metrics, logging, tracing, and alerting while defining SLOs and improving reliability.
- Manage artifact repositories and software supply-chain controls, including SBOMs, signing, and provenance.
- Drive capacity planning, autoscaling, cost optimization, PCI DSS and SOC 2 controls, and automated evidence collection.
- Mentor engineers on secure coding and operational security practices.
Requirements
- 6–12 years of experience in DevOps, platform engineering, security engineering, or a related field, including at least 3 years focused on DevSecOps or application/cloud security in production environments.
- Hands-on experience with GitHub Actions, GitLab CI, Jenkins, or Azure DevOps and security tooling in delivery pipelines.
- Strong AWS and/or Azure cloud engineering experience covering IAM, networking, encryption, logging, and monitoring.
- Production experience securing Kubernetes clusters and containers at scale.
- Proficiency with Terraform or CloudFormation and Python, Go, or Bash.
- Strong networking fundamentals and experience with VPC/VNet design, load balancing, ingress controllers, private connectivity, service mesh, and zero-trust patterns.
- Experience with Prometheus, Grafana, ELK/OpenSearch, or Datadog for observability.
- Working knowledge of OWASP Top 10, dependency and software supply-chain risk, secrets hygiene, and secure SDLC practices.
- Experience with Snyk, Trivy, SonarQube, Wiz, Prisma Cloud, Falco, or equivalent security platforms.
- Clear communication skills and the ability to influence engineers and leaders without direct authority.
- Preferred certifications include CISSP, CKS, OSCP, AWS Certified Security - Specialty, Azure security certifications, GIAC, CCNA, or AWS Certified Advanced Networking - Specialty.
- Experience with highly available multi-region architectures, disaster recovery, chaos engineering, payments or PCI DSS environments, zero-trust architectures, SIEM/SOAR platforms, internal security platforms, or open-source security tooling is preferred.
Benefits
- Remote work is available from New York, Texas, Philadelphia, Florida, North Carolina, Minnesota, Colorado, and Georgia.
- The interview process includes a Talent Acquisition screen, a hiring manager interview, and a team interview via Microsoft Teams.
- PAR provides equal employment opportunities and reasonable accommodations for applicants and employees with disabilities.
Tech Stack
About PAR Technology
PAR Technology Corporation (NYSE: PAR) is the agentic OS for multi-unit operators, helping restaurant, retail, and high-volume commerce brands drive better performance across every location. PAR brings together mission-critical software, hardware, data, and intelligence across point of sale, digital ordering, loyalty, payments, and back-office systems to orchestrate decisions and workflows in real time. Built for complex, multi-unit environments, PAR helps brands improve efficiency, deliver better guest and customer experiences, and turn operational signals into measurable business outcomes.