Staff DevSecOps Engineer (R5824)

Shield AI
San Mateo, CA
On-site

Who this role is best for

Geared toward candidates comfortable with security automation in cloud environments and working across multiple engineering teams.

Best fit for

  • Candidates with experience in cloud security automation and cross-functional collaboration in defense or compliance-driven environments
    — “Cloud Engineering builds and operates the infrastructure and environments that support Shield AI’s software products and platforms.
  • Individuals who can define and drive security engineering practices across multiple teams
    — “At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams
  • Candidates with a background in container security and CI/CD integration
    — “Build and maintain hardened container images and secure base images for engineering and production workloads

Things to consider

  • Background check and possible reference check are required for all offers
    — “All offers are contingent on a cleared background and possible reference check.
  • Compensation varies by location, experience, and certifications
    — “Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location.

How to stand out

  • Highlight your experience with security automation in CI/CD pipelines and cloud environments
    — “Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems
  • Showcase your ability to translate compliance requirements into engineering controls
    — “Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls
  • Demonstrate your skills in automating security tasks using Python, Go, or Bash
    — “Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
  • Show evidence of working with audit and compliance reporting mechanisms
    — “Build mechanisms for audit evidence, configuration validation, and compliance reporting
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · Team

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • reducing security risk
  • improving consistency
  • driving remediation
Typical background
cloud securitydevopsinfrastructure engineering

Skills & requirements

Required

Cloud SecurityInfrastructure-as-codeContainerizationVulnerability ManagementIdentity And Access ControlsAutomation

Preferred

PythonGoBashAWSAzureGCP

Stack & domain

AWSInfrastructure-as-codeAutomated Infrastructure ProvisioningSecuring Containerized WorkloadsHardened Container ImagesIntegrating Security ToolingVulnerability ManagementDependency ScanningContainer ScanningConfiguration ValidationIdentitySecretsAccess ControlsAutomating Security Or Infrastructure TasksPythonGoBashDiagnosing Security And Configuration IssuesWorking With Security And Engineering TeamsCloud InfrastructureSoftware Delivery SystemsContainerized WorkloadsCi/cd SystemsPlatform Services

About the role

Original posting from Shield AI via Lever

Shield AI is a venture-backed defense-tech company with the mission of protecting service members and civilians with intelligent systems. Its products include Hivemind autonomy software, V-BAT and X-BAT aircraft, and Aechelon simulation and synthetic reality technologies. With offices and facilities across the U.S., Europe, the Middle East, and Asia-Pacific, Shield AI’s technology actively supports operations worldwide. For more information, visit www.shield.ai. Follow Shield AI on LinkedIn, X, Instagram, and YouTube. 

Job Description:

Cloud Engineering builds and operates the infrastructure and environments that support Shield AI’s software products and platforms. 

As a DevSecOps Engineer, you will design, build, and automate security controls across cloud infrastructure, software delivery systems, and containerized workloads. You will partner with Cybersecurity, Infosec, Build Engineering, and product teams to turn security and compliance requirements into practical engineering controls. 

This is a hands-on engineering role focused on making secure configurations repeatable and maintainable. You will work across infrastructure, containers, CI/CD systems, and platform services to reduce security risk without creating unnecessary friction for engineering teams. 

What You'll Do::

  • Design and implement security controls across AWS infrastructure and platform services
  • Build and maintain hardened container images and secure base images for engineering and production workloads  
  • Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems  
  • Automate security and compliance checks to reduce manual review and improve consistency  
  • Implement secrets management, identity, and access controls across infrastructure and engineering systems  
  • Build mechanisms for audit evidence, configuration validation, and compliance reporting  

Identify security weaknesses in infrastructure, containers, and delivery systems and drive remediation with owning teams

  • Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls  
  • Work with Build Engineering and Cloud Engineering to integrate security controls without compromising reliability or developer workflows  
  • At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams  

Required Qualifications::

  • 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer, or equivalent education and experience. 
  • Experience implementing security controls in AWS or another major cloud environment  
  • Experience with infrastructure-as-code and automated infrastructure provisioning 
  • Experience securing containerized workloads and building or maintaining hardened container images  
  • Experience integrating security tooling into CI/CD or software delivery systems  
  • Experience with vulnerability management, dependency scanning, container scanning, or configuration validation  
  • Experience implementing identity, secrets, and access controls in cloud or engineering environments  
  • Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language  
  • Ability to diagnose security and configuration issues across infrastructure, containers, and platform services  
  • Experience working with security and engineering teams to implement shared technical controls  

Preferred Qualifications::

  • Experience operating systems in regulated or compliance-driven environments  
  • Experience with Kubernetes security, workload identity, or container runtime controls  
  • Experience building reusable hardened images or secure infrastructure baselines used across multiple teams  
  • Experience with cloud security posture management, policy-as-code, or automated compliance tooling  
  • Experience supporting audit evidence collection or continuous compliance workflows
  • Familiarity with software supply-chain security, artifact integrity, or signing/attestation workflows

Compensation:

#LI-DM2

#LD

Full-time regular employee offer package:

Pay within range listed + Bonus + Benefits + Equity

Temporary employee offer package:

Pay within range listed above + temporary benefits package (applicable after 60 days of employment)

Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. All offers are contingent on a cleared background and possible reference check. Military fellows and part-time employees are not eligible for benefits. Please speak to your talent acquisition representative for more information.

###

Shield AI is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender identity or Veteran status. If you have a disability or special need that requires accommodation, please let us know.

Source: Shield AI careers (Lever)

Similar roles