DevSecOps Engineer / AWS Cloud Engineer (Serverless, CI/CD, IaC, ECS Fargate) | San Diego, CA
Listed on 2026-09-12
-
IT/Tech
AWS, Cloud Computing: Infrastructure & Operations, Cybersecurity
Dev Sec Ops Engineer / AWS Cloud Engineer (Serverless, CI/CD, IaC, ECS Fargate) | San Diego, CA
Team CaVU
Our name is derived from the aviation acronym "Ceiling and Visibility Unlimited". Team CaVU embodies this positive vibe as we bring creative, powerful and innovative solutions to clients and partners. CaVU is the provider of choice for our clients, crafting best-value support across a wide spectrum of functional areas. We are defined by integrity, technical excellence and commitment to our clients, people and partners.
We consistently make a lasting, positive impact on our community- we make things better!
We are seeking a highly skilled AWS Cloud / Dev Sec Ops Engineer to design, build, and maintain secure, scalable, highly automated cloud-native environments on AWS. This role will lead the engineering of production-grade serverless APIs, event-driven workflows, and containerized services, while embedding security and operational excellence into every stage of the delivery lifecycle (infrastructure, pipelines, runtime, and monitoring). You will partner closely with application engineers (frontend and backend), architects, and security stakeholders to deliver mission-critical systems with strong reliability, performance, and governance.
Key Responsibilities Cloud architecture & delivery- Design and implement cloud-native architectures on AWS, emphasizing serverless-first patterns where appropriate.
- Build and maintain production-ready serverless APIs using AWS Lambda, API Gateway, and related integration patterns (authorize rs, throttling, request validation, WAF integration as needed).
- Create event-driven workflows and orchestration using AWS Step Functions, including retries, error handling, idempotency, and observability.
- Design and maintain containerized workloads using Docker and Amazon ECS on Fargate, including task definitions, scaling, service discovery, and secure networking.
- Develop and manage infrastructure using AWS Cloud Formation (and/or complementary IaC practices as applicable), ensuring reusability, composability, and environment parity (dev/test/prod).
- Implement guardrails for consistent provisioning: tagging standards, baseline security controls, secrets handling, and standardized logging/monitoring.
- Manage VPC, subnets, routing, security groups, NACLs, endpoints, and connectivity patterns for secure, least-privilege architectures.
- Build and maintain Git Lab CI/CD pipelines for automated testing, security checks, deployments, and rollbacks across multiple environments.
- Automate release workflows for serverless and container platforms (blue/green or canary strategies where applicable).
- Implement pipeline-integrated security controls (e.g., dependency scanning, container scanning, IaC scanning, policy-as-code where applicable) and ensure audit-ready traceability.
- Architect secure AWS environments leveraging IAM (least privilege, role-based access, permission boundaries where useful), encryption (KMS), and secure secrets management.
- Implement logging and detection best practices using services such as Cloud Watch Logs/Metrics/Alarms, Cloud Trail, and centralized log aggregation patterns.
- Ensure secure configuration and operational readiness: patching/immutability strategies, secure image practices, runtime hardening, and incident response readiness.
- Design and maintain MySQL / Amazon RDS environments, including backups, parameter tuning, maintenance windows, read replicas (if needed), and secure connectivity.
- Support application teams with data-access patterns, migrations, and reliability considerations (connection…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).