We are seeking a Lead DevSecOps Engineer to define and own secure build and deployment processes, with an understanding of the challenges associated with modern cloud infrastructure, including potential integrations with AI/ML components. You will maintain and improve our cloud infrastructure as part of a dynamic cross-functional team.
The Lead DevOps Engineer should be a proactive, result-oriented, and self-motivated individual who can multi-task, meet deadlines, and remain calm during uncertainties. They should also have a good understanding of their organization's infrastructure, including cloud infrastructure.
This position can be based out of our HQ in Portland, OR, or remote from anywhere in the U.S.
Our Technical Stack
Our front end is built in an up-to-date version of Angular, leveraging Material Design for a sleek and consistent style. For robustness and productivity, we use statically-typed languages: TypeScript in the front end, backed by HTTP services written in Go and Nest.js.
Technologies currently in use; Packer, Ansible, Docker, Terraform, CloudFormation, Python, Go, Bash, datadog and git.
We deploy on Amazon EC2 and ECS using a variety of AWS cloud services; including RDS-hosted Postgresql, S3, OpenSearch, Lambda, and SES. Continuous integration and delivery are supported by TeamCity. Slack, Jira, and Google's productivity suite facilitate communication and planning.
Essential Responsibilities & Duties
Own the development and execution of a strategic DevOps roadmap. This includes identifying key areas for improvement, defining measurable goals, and ensuring alignment with the organization's overall technology strategy.
- Accountable for site reliability, including proactive monitoring and incident response
- Design, implement, and monitor enterprise-grade secure fault-tolerant infrastructure. Keep up-to-date on AWS technologies and recommend improvements.
- Define and evolve Build & Release best practices, supporting traceability and auditability of change. Ensure continuous availability of DevOps tools.
- Collaborate with cross-functional teams on scalable features for developer productivity, environment monitoring, and autonomous delivery. Build infrastructure automation tools and frameworks using Docker.
- Act as a technical expert on DevOps and SecOps Infrastructure projects. Integrate applications into cloud environments and conduct cloud assessments, planning, and migration activities.
- Automate deployment processes for efficiency and security. Leverage application monitoring tools for troubleshooting. Promote a culture of automation.
- Mentor and actively guiding team members in their professional development and fostering their growth into future leaders
- Use automation tools to eliminate manual tasks, such as code deployment and infrastructure provisioning
- Monitor key performance indicators (KPIs) to understand how systems are performing
- Ensure the security of the system by integrating security recommendations into the product as it's being built; work with the InfoSec & Compliance teams to maintain security compliance.
- Continuous delivery: Integrate new code or features frequently, and write scripts to automatically configure the deployment environment
- Integrate various systems and tools to enable continuous integration, delivery, and deployment
Research shows that people who identify as being from underrepresented groups are more likely to doubt the strength of their qualifications, so we encourage you to submit an application if you're interested in this role despite any reservations you may have about your background or skill set.
Qualifications
- 10+ years experience in DevOps engineering or similar role
- Proven track record in implementing and managing complex DevOps pipelines
- Experience, either formally or informally, leading and mentoring a DevOps team
Experience With AWS Cloud Technologies
- Certificates/secrets, authentication/authorization implementations.
- Expertise in CI/CD pipelines, cloud computing, scripting, containerization, and configuration management tools
- Database, information security, data privacy, and compliance knowledge.
- Application of encryption and security in public clouds
- Strong understanding of application development and SDLC practices
- Adept at problem-solving and troubleshooting
- Experience with OWASP, SANS, OpenSAMM, BSIMM, penetration testing, vulnerability scanning, and security monitoring tools
- Implementing pipelines using SCA, SAST, DAST, IAST, and RASP solutions
- SaaS expansion experience is a plus
- Excellent communication, collaboration, leadership, and analytical skills
What Is Nice To Have
- Certification(s) and or training(s) such as:
- SANS/SEC-540: Cloud Security and DevSecOps Automation
- Systems Security Certified Practitioner (SSCP)
- Certified Information Systems Security Professional (CISSP)
- Certified Authorization Professional (CAP)
- Certified Secure Software Lifecycle Professional (CSSLP)
- HealthCare Information Security and Privacy Practitioner (HCISPP)
- Familiarity with the specific DevOps considerations for AI/ML systems is highly desirable.
Who We Are
At RadarFirst, our mission is to solve complex data privacy challenges with innovation. We are revolutionizing incident response management using automated, smart, and purpose-built SaaS technology. RadarFirst is a pioneer in the privacy field, recognized for its innovation with multiple patents and high-profile industry awards. Our customers include some of the nation’s largest healthcare, insurance, financial, and government organizations.
Our Values
Respect & CandorInclusion & InnovationIntegrity & Empathy
Why Join RadarFirst?
Benefits
At RadarFirst, our team is filled with smart, thoughtful, and forward-thinking contributors who are experts at what they do. Our culture of innovation and trust is paramount to our success. We work hard, but we also encourage and support a healthy work/life balance. We offer a generous package of benefits and perks that make RadarFirst a great place to work, including:
- Comprehensive benefits that include medical and dental, 401k, Life and Disability insurance, unlimited PTO, paid holiday time, 12 weeks paid parental leave, and company stock options. Plus flexible spending accounts for medical, dependent care, and commuter expenses
- Community outreach programs to encourage giving back to our community both as a group and individually
- Commitment to anti-racism work and accountability to our short-term and long-term equity & inclusion action plan
RadarFirst Is a Community-first Organization, Operating On a Hybrid Model. We Actively Support All Employees Working In The Way They Need. For Those Who Wish To Work From The Office, These Are Some Features Of Our Downtown Portland Office
- On-site amenities such as indoor bike racks, showers, lockers, and gym facilities
- Casual work environment in an ideal central location, close to great food, shopping, and transportation options
This employer participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. If E-Verify cannot confirm that you are authorized to work, this employer is required to give you written instructions and an opportunity to contact Department of Homeland Security (DHS) or Social Security Administration (SSA) so you can begin to resolve the issue before the employer can take any action against you, including terminating your employment. Employers can only use E-Verify once you have accepted a job offer and completed the Form I-9.
The salary range for this role is $160,000 - $170,000 a year.