Senior DevSecOps Engineer Cloud & Platform Operations
Location: New York, NY Hybrid
Duration: Contract
Priority: Immediate Client targeting closure this week
Job Summary
We are seeking a hands-on Senior DevSecOps Engineer to own the design, security, automation, and reliable operation of AWS and Kubernetes environments. The ideal candidate will have strong experience across cloud infrastructure, Kubernetes/EKS, Infrastructure as Code, DevSecOps, security automation, monitoring, and production operations.
This role will lead automation and security initiatives, troubleshoot production issues, drive incident response and root cause analysis, and mentor engineers across the team.
Key Responsibilities
- Design, build, and operate AWS infrastructure including EC2, VPC, IAM, S3, EBS, RDS, and ELB using multi-account patterns.
- Own the reliability, security, and operational health of Kubernetes/EKS clusters and workloads.
- Develop reusable Terraform modules and enforce Infrastructure as Code standards.
- Lead production troubleshooting, incident response, and root cause analysis.
- Design and maintain monitoring and alerting using CloudWatch, Datadog, or similar tools.
- Automate operational tasks using Python and Bash.
- Improve CI/CD pipelines and integrate security checks including SAST, SCA, secrets scanning, container scanning, and IaC scanning.
- Define and enforce AWS security best practices including least-privilege IAM, KMS encryption, secrets management, network hardening, GuardDuty, Security Hub, and CloudTrail monitoring.
- Lead vulnerability management, OS patching, and remediation/triage of Wiz and Snyk findings.
- Apply Kubernetes security standards including RBAC, IRSA, Pod Security Standards, and network policies.
- Support audit and compliance activities such as SOC 2 and CIS.
- Mentor engineers, participate in code reviews, and document runbooks, standards, and operational procedures.
Required Skills
- 7+ years of DevOps, Cloud, DevSecOps, or Security experience.
- 3+ years in a senior-level role.
- Deep hands-on AWS experience with strong knowledge of AWS security best practices.
- Strong production experience with Kubernetes/EKS.
- Advanced Terraform / Infrastructure as Code skills.
- Strong Linux, networking, VPC, DNS, load balancer, and production troubleshooting experience.
- Strong scripting skills with Python and Bash.
- CI/CD experience with Jenkins, GitHub Actions, CircleCI, or similar platforms.
- Experience integrating security scanning into CI/CD pipelines.
- Hands-on experience with one or more of Wiz, Snyk, SonarQube, or Qualys.
- Strong understanding of AWS security services including IAM, KMS, GuardDuty, Security Hub, and CloudTrail.
- Experience with Kubernetes security concepts including RBAC, IRSA, Pod Security Standards, and network policies.
- Proven experience leading production incidents and mentoring engineers.
- Strong communication, troubleshooting, and problem-solving skills.
Preferred Profile
Candidates with strong hands-on experience across AWS + EKS + Terraform + DevSecOps security tooling, particularly Wiz/Snyk, are highly preferred.
Note: This is an immediate requirement with client closure targeted for this week.
Thanks
Navya