Innovatus Technology Consulting Logo

Innovatus Technology Consulting

DevSecOps Engineer

Posted 3 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Design, build, and maintain secure, automated AWS cloud-native environments (serverless APIs, event-driven workflows, containerized services). Implement IaC, GitLab CI/CD pipelines, security controls, observability, and production-grade operations for highly reliable, governed systems. Support databases, networking, and incident readiness while partnering with engineering and security stakeholders.
The summary above was generated by AI
DevSecOps Engineer / AWS Cloud Engineer (Serverless, CI/CD, IaC, ECS Fargate)
Location: Remote

Role Summary
We are seeking a highly skilled AWS Cloud / DevSecOps Engineer to design, build, and maintain secure, scalable, highly automated cloud-native environments on AWS. This role will lead the engineering of production-grade serverless APIs, event-driven workflows, and containerized services, while embedding security and operational excellence into every stage of the delivery lifecycle (infrastructure, pipelines, runtime, and monitoring). You will partner closely with application engineers (frontend and backend), architects, and security stakeholders to deliver mission-critical systems with strong reliability, performance, and governance.
Key Responsibilities
Cloud architecture & delivery
  • Design and implement cloud-native architectures on AWS, emphasizing serverless-first patterns where appropriate.
  • Build and maintain production-ready serverless APIs using AWS Lambda, API Gateway, and related integration patterns (authorizers, throttling, request validation, WAF integration as needed).
  • Create event-driven workflows and orchestration using AWS Step Functions, including retries, error handling, idempotency, and observability.
  • Design and maintain containerized workloads using Docker and Amazon ECS on Fargate, including task definitions, scaling, service discovery, and secure networking.
Infrastructure as Code (IaC) & environment management
  • Develop and manage infrastructure using AWS CloudFormation (and/or complementary IaC practices as applicable), ensuring reusability, composability, and environment parity (dev/test/prod).
  • Implement guardrails for consistent provisioning: tagging standards, baseline security controls, secrets handling, and standardized logging/monitoring.
  • Manage VPC, subnets, routing, security groups, NACLs, endpoints, and connectivity patterns for secure, least-privilege architectures.
CI/CD & automation (DevSecOps)
  • Build and maintain GitLab CI/CD pipelines for automated testing, security checks, deployments, and rollbacks across multiple environments.
  • Automate release workflows for serverless and container platforms (blue/green or canary strategies where applicable).
  • Implement pipeline-integrated security controls (e.g., dependency scanning, container scanning, IaC scanning, policy-as-code where applicable) and ensure audit-ready traceability.
Security engineering (built-in, not bolted-on)
  • Architect secure AWS environments leveraging IAM (least privilege, role-based access, permission boundaries where useful), encryption (KMS), and secure secrets management.
  • Implement logging and detection best practices using services such as CloudWatch Logs/Metrics/Alarms, CloudTrail, and centralized log aggregation patterns.
  • Ensure secure configuration and operational readiness: patching/immutability strategies, secure image practices, runtime hardening, and incident response readiness.
Data & persistence
  • Design and maintain MySQL / Amazon RDS environments, including backups, parameter tuning, maintenance windows, read replicas (if needed), and secure connectivity.
  • Support application teams with data-access patterns, migrations, and reliability considerations (connection management for serverless, pooling/proxy patterns where applicable).
Required Qualifications
  • Hands-on expertise building serverless solutions with AWS Lambda, API Gateway, and Step Functions in production.
  • Strong experience with AWS CloudFormation for provisioning and managing environments.
  • Strong CI/CD experience, specifically building and operating GitLab CI/CD pipelines.
  • Strong container expertise with Docker and running workloads on ECS Fargate (services, tasks, scaling, networking).
  • Demonstrated experience architecting secure AWS environments using IAM, VPC/networking, encryption, and logging/auditing best practices.
  • Experience designing/operating MySQL / Amazon RDS in production.
  • Strong scripting/automation skills (e.g., Python and/or Bash) to streamline workflows and reduce toil.
  • Ability to collaborate effectively with frontend/backend engineering teams and translate requirements into secure, automated platform capabilities.
  • Security+ or higher certification
  • AWS Cloud Practitioner certification or higher
  • TS security clearance or the ability to obtain one
Preferred Qualifications (Nice to Have)
  • Familiarity with AWS CDK or Terraform (even if CloudFormation remains primary).
  • Experience with API security patterns: OAuth/OIDC integration, JWT authorizers, rate limiting/throttling, WAF, mTLS (where required).
  • Experience with secrets management (e.g., AWS Secrets Manager / SSM Parameter Store) and key management (KMS).
  • Observability stack experience beyond basics: structured logging, tracing (e.g., X-Ray/OpenTelemetry patterns), metrics-driven alerting.
  • Experience implementing policy-as-code and governance (e.g., SCPs/Organizations, config rules, control frameworks).
  • Experience with performance/cost optimization for serverless and Fargate workloads.
  • Prior experience in regulated environments requiring audit evidence and secure SDLC controls.
Core Skills & Competencies
  • DevSecOps mindset: security and automation as first-class design principles.
  • Systems thinking: understands tradeoffs across reliability, latency, cost, and security.
  • Engineering rigor: version control, reviews, testing, change management, and documentation.
  • Operational ownership: can carry systems from build → run with strong on-call hygiene.
  • Clear communication: able to explain architecture decisions to technical and non-technical stakeholders.

Similar Jobs

Yesterday
Remote
USA
100K-140K Annually
Mid level
100K-140K Annually
Mid level
Computer Vision • Software
Join the CMS BDAMAX team to embed security into CI/CD and infrastructure, manage Terraform-based provisioning, integrate vulnerability findings into remediation workflows, support audit readiness and incident response, and enforce secure governance for AI platforms across a regulated federal environment.
Top Skills: Amazon BedrockArgo WorkflowsAWSAws Security HubAws VpcCursorEc2EcsEksFargateFedrampFismaGeminiGithub CopilotJenkinsKubernetesRds Aurora PostgresqlRoute 53S3Secrets ManagerTerraform
2 Days Ago
In-Office or Remote
TX, USA
Senior level
Senior level
Agency • Information Technology
Lead and mentor DevSecOps efforts across cloud environments: implement vulnerability scanning/remediation, certificate and key management, IAM, security monitoring analytics, automate secure CI/CD pipelines using IaC and tooling, and embed security into development lifecycle.
Top Skills: Amazon AwsAnsibleApi SecurityAtlassian BitbucketBashCertificate ManagementContainer SecurityDigital.AiDynatraceElasticGCPGitlabGitlab CiGoogle KmsHashi VaultIacIbm GuardiumLinuxAzureNmapPacPrisma CloudPrisma ComputePrisma ScanningPythonTenableTerraformThalys Database ProtectionVenafiVulnerability Scanning
3 Days Ago
Remote
USA
190K-199K Annually
Senior level
190K-199K Annually
Senior level
Healthtech • Information Technology
Lead platform security across AWS/EKS: harden supply chain, secrets, IAM, container integrity; build policy-as-code, compliance automation (HITRUST/SOC2), CI/CD security, and operationalize platform security controls while contributing hands-on to infrastructure, observability, and on-call support.
Top Skills: ArgocdAtlantisAWSCrossplaneDockerEksGithub ActionsGoGrafanaHclHelmHitrustInfluxdbKafkaKarpenterKedaKubernetesKyvernoMimirNode.jsPostgresPrometheusPythonRedisSoc 2Sumo LogicTerraformTypescriptVantaVeleroVpa

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account