Rockstar Logo

Rockstar

DevSecOps Engineer

Posted 20 Days Ago
Remote
Hiring Remotely in United States
135K-220K Annually
Senior level
Remote
Hiring Remotely in United States
135K-220K Annually
Senior level
Secure, harden, and scale AWS and Kubernetes production infrastructure. Build Terraform-based infrastructure as code, maintain Linux and Windows systems, improve IAM and CI/CD security, remediate vulnerabilities, support compliance audits, and administer security controls. The role also involves incident response, troubleshooting, documentation, operational runbooks, and collaboration with platform, engineering, and security teams supporting regulated and government environments.
The summary above was generated by AI

Rockstar is recruiting for a digital engineering software company that builds open, scalable infrastructure for engineering data. Their platform allows customers to simply and securely integrate engineering models across disciplines, organizations, and security levels — whether designing prototypes, performing virtual testing, or training AI and autonomy for complex systems. They are a team that values focus, finish, facts, and fellowship.

About the Role

They are seeking a DevSecOps Engineer to join their Engineering team. This role is critical to securing, hardening, and scaling the infrastructure that powers their platform across cloud-hosted production environments.

This engineer will work closely with platform, infrastructure, and security stakeholders to improve the security and operational maturity of their AWS and Kubernetes environments, support compliance and audit readiness, and help ensure their systems are reliable, secure, and maintainable as they grow. This role will also support environments serving regulated and security-sensitive customer needs, including an environment they host for a Government organization.

The ideal candidate combines strong hands-on infrastructure expertise with sound security judgment and a practical, execution-focused mindset. They should be comfortable working across cloud infrastructure, Kubernetes, operating systems, compliance controls, and production operations.

Core Responsibilities

Responsibilities include collaborating with the platform and engineering teams to secure and improve production infrastructure, harden cloud and host configurations, and build repeatable operational practices across environments. Key responsibilities include:

  • Design, implement, and maintain secure, scalable infrastructure in AWS
  • Manage, secure, and improve Kubernetes-based environments, including production workloads
  • Build and maintain infrastructure as code using Terraform
  • Harden production systems across cloud, compute, container, identity, and network layers
  • Develop and maintain secure baseline configurations for infrastructure and platform services
  • Support vulnerability management, patching, remediation, and configuration compliance efforts across environments
  • Configure, administer, and patch both Linux and Windows VMs
  • Support identity and access management practices, including least privilege, role design, and privileged access controls
  • Contribute to administration and integration of Active Directory domains where needed
  • Partner with engineering teams to improve security within CI/CD pipelines, deployment workflows, and operational processes
  • Support compliance initiatives, audits, evidence collection, and technical control validation
  • Develop and maintain documentation, operational runbooks, technical standards, and playbooks
  • Monitor, troubleshoot, and resolve complex infrastructure and security issues with clear and timely communication
  • Participate in incident response and post-incident analysis when infrastructure or platform issues arise
  • Stay current on cloud, infrastructure, and security best practices that can improve platform resilience and delivery
Required Qualifications
  • Minimum of 5 years of experience in DevOps, DevSecOps, Infrastructure Engineering, Platform Engineering, or Security Engineering
  • Strong hands-on experience with AWS in production environments
  • Proven experience with Kubernetes, preferably in production
  • Strong experience with Terraform and infrastructure-as-code practices
  • Experience hardening production environments and implementing secure configuration standards
  • Experience supporting compliance frameworks, audit preparation, evidence gathering, and control validation
  • Experience with vulnerability remediation, system patching, and operational security practices
  • Experience configuring and maintaining both Linux and Windows virtual machines
  • Strong understanding of IAM, secrets management, network security, logging, monitoring, and operational controls
  • Proven experience improving or securing CI/CD pipelines and deployment workflows
  • Excellent troubleshooting and problem-solving skills in complex production environments
  • Strong communication skills with the ability to explain technical concepts to both technical and non-technical stakeholders
  • Must live/work in the U.S.
Preferred Qualifications
  • Experience supporting environments with regulated, compliance-driven, or security-sensitive requirements
  • Familiarity with compliance or security frameworks such as SOC 2, NIST, ISO 27001, CMMC, or similar
  • Experience with EKS or other managed Kubernetes platforms
  • Experience configuring or supporting Active Directory Domain Services, Group Policy, or hybrid identity environments
  • Experience with automation and configuration management tools such as Ansible, PowerShell, or similar
  • Experience with PostgreSQL, cloud storage platforms, and production networking patterns
  • Scripting experience in Python, Bash, or PowerShell
  • Experience with security tooling related to container security, vulnerability management, or policy enforcement
  • Experience supporting customer-facing or mission-critical production infrastructure
  • Security+ Certification
  • Top Secret Security Clearance
Compensation

$135,000 – $220,000 a year

The anticipated compensation range for this position may vary based on experience, skills, qualifications, location, and business needs. In addition to base salary, this role may be eligible for bonuses, equity, and a comprehensive benefits package.

About the Client

The client is a digital engineering software company building open, scalable infrastructure for engineering data. Their platform lets customers simply and securely integrate engineering models across disciplines, organizations, and security levels — whether they're designing prototypes, performing virtual testing, or training AI and autonomy for complex systems.

Focus is rewarded. Finish is remembered.
Facts are friendly. Even when they are not fun.
Fellowship is fundamental. Make others successful.

They may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist their recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact them.

Similar Jobs

5 Days Ago
Easy Apply
Remote
United States
Easy Apply
150K-225K Annually
Senior level
150K-225K Annually
Senior level
Artificial Intelligence • Consumer Web • Digital Media • Fintech • Marketing Tech • Software • Financial Services
Own and mature the company’s DevSecOps and cloud security function. Responsibilities include implementing SOC 2 controls, automating compliance evidence, managing cloud security posture and runtime security, embedding security gates into CI/CD, leading vulnerability remediation, developing auto-remediation and AI-assisted workflows, and securing infrastructure through Terraform and policy-as-code. The role also partners with GRC and corporate security teams while building reusable security tooling and developer-platform guardrails.
Top Skills: Ai/Llm ToolingAspmCi/CdContainer ScanningCspmDependency ScanningInfrastructure As Code (Iac)Policy As CodeSastSbomScaSecret ScanningSIEMSoc 2TerraformVulnerability Management
7 Hours Ago
Remote
United States
115K-155K Annually
Senior level
115K-155K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
Develops, secures, deploys, and supports PACER and court-record systems across the software lifecycle. Responsibilities include building applications and web services, managing CI/CD pipelines, containerized applications, cloud technologies, source control, vulnerability remediation, PCI and FISMA compliance, architecture, testing, performance tuning, disaster recovery, documentation, and Agile collaboration. The role also provides technical support, stakeholder communication, training, and recommendations for emerging technologies.
Top Skills: Apache TomcatAtoBashCCloud ApisConfluenceContainerizationCSSFismaGithub ActionsGitlab Ci/CdJavaJavaScriptJenkinsJetbrains Tool SuiteJIRAJsfJSONLinuxPci DssPerlPrimefacesRed Hat LinuxRestSoapSubversionWsdlXMLXsd
7 Hours Ago
Remote
United States
115K-155K Annually
Senior level
115K-155K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
Develops, operates, and supports secure PACER and court-record systems across the full software lifecycle. Responsibilities include building enterprise applications and web services, managing CI/CD and DevSecOps pipelines, implementing security controls, remediating vulnerabilities, supporting cloud and containerized applications, conducting performance and disaster-recovery planning, maintaining architectures and documentation, and collaborating in Agile teams. The role also provides technical guidance, stakeholder communication, training, and recommendations for improving tools and system viability.
Top Skills: Apache TomcatAtoBashCCloud ApisCloud TechnologiesConfluenceCSSDockerFismaGitGithub ActionsGitlab Ci/CdJavaJavaScriptJenkinsJetbrains Tool SuiteJIRAJsfJSONLinuxLinux ShellPci DssPerlPrimefacesRed Hat LinuxRestSoapSubversionWsdlXMLXsd

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account