Raya Logo

Raya

DevSecOps Engineer

Reposted One Month Ago
Remote
Hiring Remotely in USA
160K-190K Annually
Mid level
Remote
Hiring Remotely in USA
160K-190K Annually
Mid level
Own and harden cloud-native security across AWS/EKS and related systems. Triage and remediate scanner findings, embed security checks into CI/CD and PDLC, collaborate with DevOps and engineering, and expand guardrails to make security native to shipping workflows.
The summary above was generated by AI
We prioritize learning and teamwork and love giving people the opportunity to champion solutions to big challenges and grow into better versions of themselves. A great candidate believes in Raya's vision, which is to enrich lives by fostering relationships through quality, in person interactions. You thrive at the intersection of DevOps and Security, and you're excited to drive measurable impact by hardening our AWS/EKS environment and systematically closing out security findings. 
 

Responsibilities

  • Security Ownership: Drive software engineering security hygiene end-to-end, from identifying vulnerabilities and misconfigurations to implementing durable fixes across our platform. This includes AWS, Kubernetes, CDN/WAF, and other technologies used in the PDLC

  • Cross-Functional Collaboration: Work hand-in-hand with DevOps and Engineering teams to embed security best practices into everyday workflows, without slowing down velocity

  • Continuous Learning: Stay current on evolving cloud security threats, tooling, and best practices, ensuring Raya's infrastructure stays ahead of emerging risks

  • Findings Remediation: Triage, prioritize, and systematically close out security findings, translating scanner output into practical, actionable engineering fixes

  • Operational Excellence: Expand and maintain security checks and guardrails in CI/CD pipelines and the broader PDLC, so security becomes a natural part of how we ship, not an afterthought

Qualifications

  • Strong hands-on experience with AWS and Kubernetes/EKS, comfortable navigating cloud infrastructure and container environments from day one

  • Solid foundation in security fundamentals: vulnerability management, IAM, network security, and cloud security posture management

  • Experience triaging and remediating security findings from vulnerability scanners or cloud security tools

  • Familiarity with CI/CD pipelines and integrating security practices into the software development lifecycle

  • Strong communication skills, able to work effectively with both DevOps and Security stakeholders and translate technical risk into clear priorities

  • Experience with Infrastructure-as-Code (e.g., Terraform/OpenTofu), compliance frameworks, or container security tooling

What Sets You Apart

  • Bridge Builder: You naturally sit at the intersection of DevOps and Security, translating between the two and earning trust from both sides

  • Impact-driven: You prioritize the fixes and improvements that meaningfully reduce risk, rather than chasing every alert

  • Growth-oriented: You possess a perpetual learner's mindset, staying curious about new threats, tools, and cloud-native security practices

  • Ownership mentality: You take findings from discovery to resolution without needing to be chased, and you build systems so problems don't recur

  • Productivity-obsessed: You value tools, workflows, and automation that make security scalable rather than manual

  • Bias toward shipping and iteration: You're able to harden systems incrementally, learn, and refine in short cycles rather than waiting for a "perfect" fix

Similar Jobs

2 Days Ago
In-Office or Remote
SC, USA
Senior level
Senior level
Aerospace • Information Technology • Cybersecurity • Defense
Designs and operates secure AWS cloud environments, DevSecOps pipelines, infrastructure-as-code, automated security controls, and incident response workflows. Responsibilities include integrating security testing into CI/CD, managing AWS firewalls and virtualized NGFWs, securing containers and Kubernetes workloads, enforcing IAM and compliance controls, monitoring threats, troubleshooting incidents, and automating remediation. The role supports NIWC Atlantic and requires an active Secret clearance, an ABET-accredited engineering degree, and substantial IT, AWS security, DevOps, and network-security experience.
Top Skills: ArtifactoryAWSAws CodepipelineAws Network FirewallAws SsoAws Step FunctionsAws WafBashCheck Point NgfwCloudFormationCloudtrailCloudwatchDnsEc2EcrEcsEfsEksF5 Big-IpFortinet NgfwGitGitlab CiGoGuarddutyIamJenkinsJIRAKubernetesLambdaPalo Alto NgfwPythonRdsRoute 53S3Security HubSftpSonarqubeTerraformVpcVpn
2 Days Ago
Remote
US
Senior level
Senior level
Aerospace • Information Technology • Cybersecurity • Defense
Designs, builds, and maintains DevSecOps platforms, CI/CD pipelines, cloud infrastructure, Kubernetes environments, infrastructure-as-code, and automated security validation. Supports AWS networking, image hardening, risk assessments, DoD and NIST compliance, system testing, troubleshooting, documentation, and Agile delivery for United States Navy systems. Requires collaboration across engineering teams, technical writers, and project work teams, along with periodic travel and active Secret clearance.
Top Skills: Amazon EksArgo CdAWSCloudFormationCnssi 1253Disa StigsDnsDockerDod 8570FargateGitlab Ci/CdHashicorp VaultIngress/EgressJenkinsKubernetesNist 800OpenshiftRancherRed Hat Enterprise LinuxTerraformTls
2 Days Ago
Remote
US
Senior level
Senior level
Aerospace • Information Technology • Cybersecurity • Defense
Designs, builds, and maintains DevSecOps platforms, CI/CD pipelines, infrastructure-as-code, Kubernetes environments, cloud networking, hardened images, and infrastructure automation. Performs security control validation, risk assessments, troubleshooting, testing, documentation, and compliance activities aligned with DoD and NIST guidance. Supports Agile planning, technical assessments, system integration, and cloud application development for United States Navy systems. Requires an active Top Secret clearance, Security+ certification, U.S. citizenship, and periodic travel.
Top Skills: AgileAmazon EksArgo CdAWSCloudFormationCnssi 1253Disa StigsDnsDockerDod 8570FargateGitlabGitlab Ci/CdHashicorp VaultIngress/EgressJenkinsKubernetesNist 800OpenshiftRancherRed Hat Enterprise LinuxTerraformTls

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account