MrBeast Logo

MrBeast

Senior DevSecOps Engineer

Posted Yesterday
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in USA
Senior level
Easy Apply
Remote
Hiring Remotely in USA
Senior level
Design and implement security guardrails across AWS and GCP, embed policy-as-code in Terraform, integrate security into CI/CD, build detection and SOAR playbooks, lead threat modeling, and partner with engineering to reduce MTTD/MTTR and scale compliance.
The summary above was generated by AI
About Us

Beast Industries is a multifaceted media and entertainment company founded by Jimmy Donaldson, popularly known as MrBeast, the most watched person in the world. Renowned for revolutionizing digital content creation, Beast Industries encompasses a diverse portfolio of ventures that extend far beyond its origins on YouTube. With a mission to entertain, inspire, and create significant social impact, Beast Industries operates across various domains including digital media, philanthropy, consumer products, and innovative business initiatives. At Beast Industries, we believe in the transformative power of digital media and its potential to entertain, educate, and effect positive change. Our commitment to innovation, creativity, and philanthropy drives us to explore new frontiers, create unforgettable experiences, and build a legacy that inspires future generations.

Location: (On-site / Hybrid / Remote – NY, Bay Area, Chicago, Greenville)
Architect and scale security-first engineering across multi-cloud infrastructure.

Role Overview

At MrBeast, we operate at massive scale across content, commerce, fintech, philanthropy, and global digital platforms. Security is not an afterthought. It is a foundational capability.

We are looking for a Senior DevSecOps Engineer to architect and scale a security-first engineering culture across our cloud infrastructure and CI/CD pipelines. You will embed security directly into development workflows, automate detection and response at scale, and harden our AWS and GCP environments against evolving threats.

You will partner deeply with Engineering, IT, and Compliance to ensure our systems remain resilient as we grow.

The Role

This is not a reactive security role. It is a builder role.

You will own the integration of security into our cloud environments and software delivery lifecycle. You will design security guardrails, embed enforcement into infrastructure and pipelines, build scalable detection systems, and automate incident response. You will operate at the intersection of DevOps, Security, and Automation while influencing engineering standards across the company.

What You’ll Do

  • Design and implement cloud security guardrails across AWS and GCP

  • Embed policy enforcement and compliance checks directly into Terraform modules

  • Conduct architecture reviews and continuously harden multi-cloud environments

  • Lead threat modeling efforts for new infrastructure and product initiatives

  • Lead secrets management strategy across Vault, AWS Secrets Manager, and GCP Secret Manager

  • Integrate SAST, DAST, and dependency scanning into GitHub Actions workflows

  • Lead secure code review initiatives and drive secure-by-design engineering practices

  • Partner with engineering teams to eliminate vulnerabilities before production

  • Design, build, and tune high-fidelity detection logic within SIEM platforms

  • Map detections to MITRE ATT&CK and relevant threat models

  • Improve signal-to-noise ratio through advanced alert tuning and correlation logic

  • Develop log aggregation and monitoring strategies across application and infrastructure layers

  • Conduct detection coverage gap analysis

  • Build and maintain SOAR playbooks to automate repeatable response workflows

  • Reduce mean time to detect (MTTD) and mean time to respond (MTTR)

  • Continuously improve response playbooks through post-incident analysis

  • Automate evidence collection for audits and regulatory requirements

  • Translate security controls into technical enforcement mechanisms

  • Help scale compliance programs without adding operational overhead

What You’ll Bring

  • 5+ years of experience in DevSecOps, Cloud Security, or Security Engineering roles

  • Deep experience securing AWS and GCP environments

  • Advanced Terraform expertise including infrastructure as code, reusable modules, and policy-as-code

  • Strong Python proficiency for automation, API integrations, and custom tooling

  • Hands-on experience with SIEM and SOAR platforms including detection engineering and integration

  • Deep familiarity with CI/CD security best practices and GitHub Actions

  • Experience designing and managing identity architectures including Okta, Azure AD, or similar platforms, covering SSO, SCIM, lifecycle automation, and conditional access

  • Familiarity with Elastic SIEM or modern log aggregation platforms

  • Experience with EDR/XDR platforms such as SentinelOne, CrowdStrike, or Defender, including policy tuning and telemetry integration

  • Experience managing endpoint security controls and MDM solutions such as Jamf or Intune

  • Experience securing Google Workspace environments

Why MrBeast

You will own security architecture across multiple cloud environments. You will influence engineering standards across the company. You will not be reviewing tickets. You will be building scalable systems that embed security into how we operate at scale.

This role is built for someone who thrives on ownership, automates everything possible, and wants to design modern security infrastructure from the ground up.

BenefitsThe Perks, Why Work On the MrBeast Team

We are redefining what entertainment and storytelling look like at global scale. Every piece of content we publish reaches millions and influences culture in real time. This is your opportunity to lead the team that decides how those moments come to life across every screen.

  • Competitive Salary
  • Generous Medical (Blue Cross Blue Shield), Dental, Vision and company-paid Life Insurance 
  • Company contributions to employee Health Savings Accounts (HSA) 
  • 401k Plan with Safe Harbor company-matching
  • Flexible vacation policy and paid company holidays
  • Company-provided technology package 
  • Relocation assistance where applicable, including travel and company-provided housing for the first 90 days

Top Skills

Python,Aws,Gcp,Terraform,Github Actions,Vault,Aws Secrets Manager,Gcp Secret Manager,Sast,Dast,Dependency Scanning,Siem,Soar,Elastic Siem,Mitre Att&Ck,Edr/Xdr,Sentinelone,Crowdstrike,Microsoft Defender,Okta,Azure Ad,Sso,Scim,Jamf,Intune,Google Workspace,Ci/Cd

Similar Jobs

12 Days Ago
In-Office or Remote
Atlanta, GA, USA
120K-170K Annually
Senior level
120K-170K Annually
Senior level
Fintech • Gaming • Mobile • Sports • Esports
Manage and enhance security practices within the infrastructure team, including implementing security controls, conducting reviews, and collaborating with DevOps teams.
Top Skills: ArgocdAWSAzureCdnCrowdstrikeDdos MitigationDevsecopsEcsGCPGithub ActionsHelmKubernetesNoSQLOpentofuSQLTerraformWaf
27 Minutes Ago
Remote
United States
Expert/Leader
Expert/Leader
Edtech • Fintech • Payments • Social Impact • Financial Services • Big Data Analytics
The Senior DevSecOps Engineer will architect security posture, drive compliance, enhance system hardening, and ensure robust security across platforms in collaboration with DevOps and Engineering teams.
Top Skills: AlienvaultAWSAws Security HubCi/CdDatadog SecurityNode.jsSoc2 Type 2Splunk
7 Days Ago
Remote
USA
110K-124K Annually
Senior level
110K-124K Annually
Senior level
Information Technology • Consulting
Support secure, mission-critical federal platforms by designing and operating CI/CD pipelines, containerized workloads (Kubernetes), secure artifact management, cloud (AWS) deployments, observability, and access controls. Collaborate with developers, data scientists, and government stakeholders to enable secure experimentation, automation, and scale from IL2 to IL4+ environments.
Top Skills: Kubernetes,Gitlab Ci,Aws,Datadog,Elastic Cloud,Vs Code,Containerization,Ci/Cd,Artifact Repositories,Sso,Iam,Token-Based Authentication,Service-To-Service Authentication

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account