Senior DevSecOps Engineer
Listed on 2025-12-17
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing, Security Manager
Stand Together is a philanthropic community that helps America’s boldest changemakers tackle the root causes of our country’s biggest problems, from education to the economy, broken communities, and toxic division, among dozens of other pressing issues. We provide our partners with access to resources including funding, thought leadership, a network of peers, and a playbook for applying proven principles to transform lives and society.
Stand Together is seeking a highly skilled and security-minded Senior Dev Sec Ops Engineer to help us design, build, and secure our cloud infrastructure and software delivery pipelines. You’ll partner with software, data, cyber, and cloud engineering teams to create a secure, scalable, and resilient platform that supports solutions to some of society’s biggest challenges.
This role blends Dev Ops engineering excellence with security-first thinking—you’ll embed security controls directly into our CI/CD processes, drive compliance automation, and champion best practices for cloud security across all three of the major cloud providers.
At Stand Together, you’ll help build secure, scalable solutions that empower people and organizations to address society’s toughest problems. If you thrive at the intersection of cloud engineering and security innovation, we want to hear from you.
How You Will Contribute- Cloud & Infrastructure Security
- Establish and enforce cloud security standards, identity & access management (IAM) policies, and network security controls across AWS and Azure.
- Implement continuous compliance and security monitoring aligned to the AWS Well-Architected Framework and industry standards (CIS, NIST, ISO).
- Design automated guardrails for vulnerability management, patching, and secrets management.
- Dev Ops & Automation
- Architect and maintain CI/CD pipelines with built-in security testing (SAST/DAST), artifact signing, and policy enforcement.
- Develop Infrastructure-as-Code (IaC) using Terraform, Cloud Formation, CDK, or Ansible to ensure repeatable, secure deployments.
- Build and maintain containerized environments (Docker, Kubernetes, ECS, Fargate) with hardened images and runtime security controls.
- Collaboration & Leadership
- Partner with software, data, and business teams to integrate security best practices into application design and deployment.
- Act as a trusted advisor on cloud security strategy, incident response, and disaster recovery.
- Coach engineers on secure coding, Dev Sec Ops patterns, and operational excellence.
- Able to clearly communicate the value of new initiatives to secure cross-functional adoption
- Enthusiasm to contribute to Stand Together's vision and principled approach to solving problems, and a commitment to stewarding our culture, which champions values including transformation and innovation, entrepreneurialism, humility, and respect.
- Experience: 5+ years in Cloud/Dev Ops/Platform engineering with a strong focus on security and automation
- Cloud Expertise: Deep knowledge of AWS services (EC2, RDS, Dynamo
DB, Lambda, SQS/SNS, ECS/ECR, Security Hub, etc.) and equivalent technologies in Azure and GCP
- Security Knowledge:
- Strong understanding of IAM, network security, encryption (KMS), key rotation, and secrets management
- Experience with vulnerability scanning tools (e.g., Security Hub, Inspector, Aqua, Prisma, or similar) and compliance frameworks.
- Familiarity with container security and supply chain security practices.
- Automation & IaC: Proficiency with Terraform, Ansible, Cloud Development Kit (CDK), or similar
- Demonstrated proficiency in threat detection, log aggregation, and incident response using Splunk and alternative SIEM tools
- Programming & Scripting: Proficiency in Python or another high-level language for automation and custom tooling
- CI/CD & Monitoring: Experience with Jenkins, Git Hub Actions, Code Pipeline, or similar, plus observability tools (Prometheus, Grafana, ELK/EFK)
- OS & Networking: Strong Linux/Unix command-line skills and solid grasp of TCP/IP, DNS, VPNs, firewalls, and load balancing
- AWS Certified Solutions Architect, Security Specialty, or Dev Ops Engineer – Professional
- Experience with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).