Schedule Consultation

Senior DevSecOps Engineer

We are seeking an experienced Senior DevSecOps Engineer to manage, scale, and secure our multi-cloud infrastructure while streamlining developer, data, and AI operations. In this role, you will administer platform systems across major cloud providers (AWS, Azure, Google Cloud) and VPS/self-hosted hosting environments (DigitalOcean, Proxmox clusters, or equivalent), supporting core platform components.

In addition to driving infrastructure reliability, you will lead operational security initiatives by managing components of our Information Security Program, enforcing Role-Based Access Controls (RBAC), driving multi-layered security practices, and preparing for security compliance audits. You will also serve as the primary DevOps liaison for our data engineering, architecture, and data-layer initiatives—ensuring high availability, secure pipeline delivery, and seamless collaboration across development teams.

Key Responsibilities

1. Multi-Cloud & Platform Infrastructure Management

  • Provision, monitor, and maintain production, staging, and development environments across AWS, Azure, GCP, and DigitalOcean.
  • Manage multi-region architecture and platform components supporting systems such as LiftAI, LiftETL, LiftData, and LiftLegacy.
  • Oversee virtualization and containerization environments (Kubernetes, Docker, microk8s, Proxmox, and ESXi/vSphere).
  • Utilize Infrastructure as Code (IaC) solutions to automate predictable, secure, and repeatable system deployments.

2. Information Security, RBAC, AI & Compliance Management

  • Administer key operational aspects of our overall Information Security Plan, security policies, and incident response procedures.
  • Support technical enforcement and monitoring of our AI Governance Policy, providing guidelines and infrastructure controls for safe team usage of AI tools, coding agents, and commercial/open-source LLMs (e.g., Claude, ChatGPT).
  • Implement and enforce strict Role-Based Access Control (RBAC), Least Privilege principles, and Identity & Access Management (IAM) across cloud accounts, databases, Kubernetes clusters, and internal services.
  • Design and maintain a multi-layered security strategy (defense-in-depth) spanning network security (pfSense site-to-site VPNs, firewalls, micro-segmentation), workload isolation, data encryption at rest and in transit, and vulnerability management—including securing systems for AI integration and protecting against AI-driven threats/data leaks.
  • Ensure continuous compliance readiness, perform routine system audits, manage audit logs for user/service activity, and support external security certifications or customer audits.

3. Data Layer Infrastructure & Data DevOps Support

  • Collaborate directly with Data Engineers and Data Architects to deploy, scale, and secure data pipeline tools (e.g., Apache Airflow, dbt, or equivalent orchestrators).
  • Administer, tune, secure, and back up production relational, document, and cloud data warehouse systems (Postgres, MongoDB, BigQuery/Snowflake, MariaDB/MySQL).
  • Build and maintain automated CI/CD pipelines (GitHub/GitLab) embedded with automated security scanning (SAST/DAST, container vulnerability checking) for ETL jobs and microservices.
  • Containerize, secure, and host OpenSource LLM models and GPU inference microservices to support Lift development teams.

4. Monitoring, Triage & Cost Optimization

  • Maintain a unified monitoring, security alerting, and log aggregation stack (Prometheus, Grafana, Promtail) with automated anomaly detection and daily triage routines.
  • Conduct cost-optimization analysis across cloud vendors and self-hosted/hybrid nodes to maximize efficiency without compromising security or uptime.

Qualifications & Skills Breakdown

CategoryRequirements & Skills 
Experience5+ years in IT Operations, DevOps, or Systems Security and AI Governance supporting production web & data platforms.
Cloud & VirtualizationStrong administration experience with IaaS/PaaS such as AWS, Azure, GCP, DigitalOcean, and virtualization (Proxmox/ESXi).
Information Security & ComplianceHands-on experience with Information Security planning, RBAC/IAM enforcement, audit log retention, vulnerability scanning, multi-layer network defense, and audit prep (SOC 2, ISO 27001, HIPAA, or equivalent).
Containerization & K8sHands-on experience with Docker, Kubernetes management (CKA or CKS certification preferred), and microk8s.
Data Layer OpsProven ability supporting relational/NoSQL databases (Postgres, MongoDB) and cloud data warehouses (BigQuery).
Automation & ScriptingProficiency in Python, Bash, and IaC tools (Ansible/Terraform/Puppet).
CI/CD & Version ControlDeep familiarity with Git, GitHub CI/CD, and workflows integrated with DevSecOps practices.
Nice-to-Have Skills (Super Preferred)Familiarity with AI Governance principles, securing systems for AI tools/coding agents/LLMs (Claude, ChatGPT), protecting against AI security risks/data leakage, Certified Kubernetes Security Specialist (CKS), CISSP, Security+, GPU provisioning, Apache Airflow, and site-to-site pfSense VPNs.

Other Job Posts

Upload Your Resume

Interested in working for Avenue7Media? Please submit your information below. 

Name(Required)
Address
Max. file size: 256 MB.