Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. DevSecOps Engineer (US)

$170k

Craft Machine Inc.

About Craft: Craft is the leader in supplier risk intelligence, enabling enterprises to discover, evaluate, and continuously monitor their suppliers at scale. Our AI research and monitoring agents deliver real, actionable intelligence, by operating on top of our unique, proprietary data platform - this helps our customers make better, more informed decisions for their business, faster and strategically secure critical supply chains from risk. Our customers include Fortune 500 companies, government agencies, and global service platforms. We’ve developed distribution partnerships with some of the largest integrators and software platforms globally. We are a post-Series B high-growth technology company backed by top-tier investors in Silicon Valley and Europe, headquartered in San Francisco with hubs in Seattle and Warsaw. We support remote and hybrid work, with team members across North America and Europe. We are looking for innovative and driven people passionate about building the future of Enterprise Intelligence to join our growing team! About the Role: Craft is growing — and we’re looking for a senior engineer to lead one of our most strategically important initiatives: establishing a FedRAMP-authorized cloud environment by defining a secure boundary and hardening our existing cloud platform. This is an initiative with direct impact on Craft’s ability to serve the 40+ federal government agencies we already work with, and to unlock new opportunities across the public sector. You’ll own and lead the implementation of security controls, compliance automation, and secure architecture patterns required to achieve and maintain FedRAMP authorization at both Moderate and High impact levels, with alignment to DoW IL2 and IL5 requirements. Working cross-functionally with infrastructure, engineering, and security, you’ll translate NIST 800-53 Rev. 5 requirements into scalable, auditable technical controls across our platform. This role reports to and partners closely with Jose M., our Manager of DevSecOps. You’ll lead the FedRAMP readiness effort day-to-day — driving the ATO timeline, shaping the program’s architecture, and upleveling team expertise in FedRAMP and NIST controls. If you want to own something consequential at a company that already has a sponsor and active federal relationships, this is it. What You’ll Do: Lead Craft’s FedRAMP readiness program — defining the roadmap, owning the ATO timeline, and driving execution across engineering and security stakeholders. Design and implement AWS GovCloud architecture that meets FedRAMP Moderate and High requirements. Translate NIST 800-53 Rev. 5 controls into concrete, auditable, and continuously enforced technical implementations — not just documentation. Build and maintain compliance automation tooling to continuously validate control adherence across the environment, reducing manual audit burden. Develop and manage secure CI/CD pipelines with integrated security gates, secrets management, and deployment controls appropriate for FedRAMP environments. Author and maintain System Security Plans (SSPs), control implementation statements, and audit evidence packages; work directly with auditors and 3PAOs through assessment cycles. Perform threat modeling, risk assessments, and security architecture reviews across the platform. Define and drive how FedRAMP controls are embedded across the engineering lifecycle, partnering with full-stack, data, and machine learning teams to ensure consistent, scalable adoption. Serve as the internal subject matter expert on FedRAMP, NIST 800-53, and federal compliance — upleveling the broader team’s knowledge as the program matures. Who You Are: Required You have direct, hands-on FedRAMP ATO experience — you’ve been through the process, not just observed it. You have strong working knowledge of NIST 800-53 Rev. 5 controls and how to implement them technically, not just document them. You have deep hands-on experience securing AWS environments. You have direct experience with AWS GovCloud, including its constraints and operational differences from commercial AWS. You write advanced Terraform — modules, policy enforcement, and infrastructure that’s auditable by design. You’ve built or hardened CI/CD pipelines for secure, compliant deployments — integrating security scanning, secrets management, and access controls. You’ve worked directly with auditors and 3PAOs: preparing evidence packages, responding to findings, and supporting assessment activities. Nice to Haves SOC 2 Type II experience, particularly in environments where mapped or extended to support FedRAMP or NIST frameworks. Experience securing data platforms such as Databricks, including data isolation and access control patterns. Familiarity with AI and LLM security concepts: prompt injection risks, model data isolation, inference boundary controls. Experience working in a startup or lean DevSecOps environment where you’ve had to build programs pragmatically with limited resources. What We Offer: Competitive salary starting at $170,000 USD/ year. This starting number can be increased based on levels of expertise, location, cost of living, taxes, market experience, etc. Equity at a well-funded, fast-growing startup Unlimited vacation time so you can take what you need, when you need it 99% covered Health + Dental + Vision insurance for employees and dependents 401K through Empower with options to invest how you want it A Note to Candidates: We are an equal opportunity employer who values and encourages diversity, equity and belonging at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, caste, or disability status. Don’t meet every requirement? Studies have shown that women, communities of color and historically underrepresented talent are less likely to apply to jobs unless they meet every single qualification. At Craft, we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we strongly encourage you to apply. You may be just the right candidate for this or other roles! #J-18808-Ljbffr

Vacancy posted 11 hours ago
Similar jobs that could be interesting for youBased on the Sr. DevSecOps Engineer (US) in San Francisco, CA vacancy
  • $185k - $243k

     ...exceptional design, and the belief that great ideas can come from anywhere—including you. Come help us make learning better for everyone. We're looking for a Sr DevSecOps Engineer with strong network security expertise to help build, secure, and maintain our cloud... 
    Senior
    Work at office
    Local area
    Remote work
    Work from home
    Worldwide
    Flexible hours

    Notability

    San Francisco, CA
    18 days ago
  •  ...A leading cybersecurity organization is looking for a highly skilled Security Engineer with a DevSecOps focus to enhance security across cloud and business systems. The ideal candidate will possess 10+ years of experience in Security Engineering, expertise in vulnerability... 
    Senior

    (ISC)2 East Bay Chapter

    San Francisco, CA
    1 day ago
  • $157k - $281.93k

     ....Within the Experience Foundations team for AEC (Architecture, Engineering, and Construction), we are seeking a Senior Principal Content Strategist...  ...user experience in a measurable way.This moment requires us to work in new ways—using AI internally to improve how we... 
    Senior
    Remote work

    Autodesk

    San Francisco, CA
    2 days ago
  • Deltasoft Solutions LLC is looking for an experienced xECM Engineer to design, implement, and validate enterprise content management solutions using OpenText Extended ECM, SAP S/4HANA integration, and AWS cloud infrastructure. This role involves developing CI/CD pipelines... 
    Senior

    Deltasoft Solutions LLC

    San Francisco, CA
    10 hours ago
  • $150k - $220k

     ...Senior Cloud DevSecOps Infrastructure Engineer Title of Role: Senior Cloud DevSecOps Infrastructure Engineer Location: San Francisco, onsite Company Stage of Funding: Venture-Backed — Healthcare, AI, Security, Enterprise Office Type: Onsite Salary: $150K... 
    Senior
    Work at office

    Recruiting from Scratch

    San Francisco, CA
    3 days ago
  •  ...Senior Manager, Financial Partnerships in San Francisco or New York. The role involves leading strategic banking relationships across the US. Ideal candidates should have over 7 years of experience in payments or financial services, with strong relationship management and... 
    Senior

    Airwallex

    San Francisco, CA
    10 hours ago
  • $140k - $170k

     ...Manager of Accounting to oversee accounting operations. This role involves managing the full cycle of accounting, ensuring compliance with US GAAP during month-end and year-end closings. The ideal candidate should hold a Bachelor's degree in Accounting or Finance, possess an... 
    Senior

    Clutch Canada

    San Francisco, CA
    1 day ago
  • $150k - $170k

     ...Decisive Point is seeking a highly motivated US Senior Payroll Specialist with at least 5 years of payroll experience. This role demands expertise in Workday Payroll and knowledge of tax regulations while offering a flexible hybrid schedule based in San Francisco. Responsibilities... 
    Senior
    Flexible hours

    Decisive Point

    San Francisco, CA
    11 hours ago
  • $90k - $130k

     ...Sr. Accountant, Order-to-Cash, US San Francisco, California, United States To protect and build a future shaped by original ideas, innovations, and creativity. From counterfeits and pirated content to fraudulent sites and unauthorized sellers, MarqVision provides... 
    Senior
    Contract work

    MarqVision

    San Francisco, CA
    1 day ago
  • $132k - $149k

     ...Discord is looking for a Technical Sourcer to support their engineering roles by activating passive candidates. This role involves partnering...  ...field, and proficiency in advanced sourcing techniques. The US base salary for this role ranges from $132,000 to $149,000 annually... 
    Senior
    Remote work

    Ultimate LLC

    San Francisco, CA
    4 days ago
  • $160k - $270k

    Mandolin in San Francisco is looking for a DevSecOps leader to build and manage secure cloud infrastructure on GCP. The ideal candidate will have over 8 years of experience in cloud security and solid expertise in container orchestration. Responsibilities include establishing... 
    Senior

    Mandolin

    San Francisco, CA
    2 days ago
  • A leading healthcare technology firm in San Francisco is seeking a DevSecOps leader to design and manage cloud infrastructure on GCP. You will implement robust security protocols and enhance developer productivity while safeguarding sensitive healthcare data. Ideal candidates... 
    Senior

    Mandolin

    San Francisco, CA
    3 days ago
  •  ...commercial transactions and 3 years in-house in B2B software or infrastructure environments. The position is remote-based within the continental US and demands strong stakeholder management and negotiation skills while balancing risk with business objectives. J-18808-Ljbffr... 
    Senior
    Remote work

    Armada

    San Francisco, CA
    1 day ago
  • $67k - $136.8k

    Ernst & Young Oman is seeking an FSO DevOps Engineer Senior Analyst in San Francisco, California. The role focuses on supporting the Web3 Platform and requires collaboration with globally distributed teams. The ideal candidate will have a Bachelor’s degree in Computer... 
    Senior

    Ernst & Young Oman

    San Francisco, CA
    1 day ago
  • VC Stack is seeking a Senior VC Associate to join its US investment team in San Francisco, playing a vital role in sourcing and evaluating early-stage investment opportunities. This role demands strong analytical abilities and deep interest in markets such as AI and Fintech... 
    Senior

    VC Stack

    San Francisco, CA
    1 day ago
  • $165k - $190k

    HoneyBook is seeking a Senior HR Business Partner to support US-based teams while shaping the company culture and scaling its people strategy. This hybrid role requires 3 days per week in the San Francisco office. The ideal candidate will have over 8 years of HR experience... 
    Senior
    Work at office
    3 days per week

    HoneyBook

    San Francisco, CA
    4 days ago
  • $100k - $155k

    A global financial services firm is seeking a Senior Associate in Regulatory Compliance, US, based in San Francisco or New York. This role focuses on managing compliance with regulatory obligations, overseeing license processes, and advising on regulatory changes. Candidates... 
    Senior

    Airwallex

    San Francisco, CA
    2 days ago
  • $180k - $200k

    OpenAI is seeking a seasoned US Payroll Operations expert based in San Francisco to ensure timely and accurate payroll for over 5,000 employees. The role involves processing biweekly payrolls, supporting mergers and acquisitions, and leading outsourced payroll partners... 
    Senior

    OpenAI

    San Francisco, CA
    10 hours ago
  • $150k - $170k

    A leading collaboration platform is seeking a highly motivated US Payroll Analyst based in San Francisco. The ideal candidate will have over 5 years of end-to-end payroll experience, particularly with Workday Payroll. Responsibilities include managing payroll processes... 
    Senior

    Asana

    San Francisco, CA
    3 days ago
  •  ...currency accounting across 9 group entities. The ideal candidate will have ACA, ACCA, or CPA qualifications, and extensive experience in US GAAP and external audits. Responsibilities include maintaining the general ledger, month-end closure, and supporting audits. This... 
    Senior
    Flexible hours

    Terra Quantum

    San Francisco, CA
    4 days ago
  • A leading live shopping platform is seeking a detail-oriented US Workday Payroll Analyst to manage payroll operations. This role focuses on ensuring accurate and timely payroll processing for US employees, compliance with tax regulations, and optimization of payroll procedures... 
    Senior
    Remote job
    Flexible hours

    Whatnot

    San Francisco, CA
    2 days ago
  •  ...and in-theater experiences. Collaborate closely with product, engineering, and research from concept through production. Work within...  ...~ Able to work normal Eastern Time business hours in a remote US-based role. You will be a great fit if our values resonate... 
    Senior
    Summer work
    Casual work
    Work at office
    Remote work

    Braintrust

    San Francisco, CA
    5 days ago
  •  ...Position SummaryThe Sr. Manager, Demand Generation leads a performance-driven engine focused on pipeline and revenue growth. This role provides strategic leadership and full oversight of all marketing-based programs, including integrated campaigns, sales programs, and... 
    Senior
    Remote work

    Anywhere Real Estate

    San Francisco, CA
    3 days ago
  •  ...Sr Principal Product Mgr Technology is at the heart of Disney's past, present, and...  ...& Technology is a global organization of engineers, product developers, designers, technologists...  ...technology with one-of-a-kind creativity makes us unique. It is at the heart of our past,... 
    Senior
    Local area

    Disney France

    San Francisco, CA
    1 day ago
  • $120 - $150 per hour

     ...processes The ability to produce technical writing and research in a tax context To Qualify for This Role You Must Have Valid US Certified Public Accountant (CPA) license or active state bar membership A bachelor's degree in Accounting, Finance, Business or a... 
    Senior
    Hourly pay
    Seasonal work
    Local area
    Remote work

    EY

    San Francisco, CA
    2 days ago
  •  ...the right strategist with a growth mindset to join our evolving team! We use Customer Generation, a marketing methodology developed by us, which focuses on SQLs and Customers instead of traditional metrics like MQLs. This role reports to the Associate Director and is a... 
    Senior
    Remote job

    Directive

    San Francisco, CA
    4 days ago
  •  ...Sr Principal Product Manager, Sports Commerce Technology is at the heart of Disney'...  ...& Technology is a global organization of engineers, product developers, designers, technologists...  ...with one-of-a-kind creativity makes us unique. It is at the heart of our past, present... 
    Senior
    Local area

    The Walt Disney Studios

    San Francisco, CA
    2 days ago
  •  ...About the job Senior Solutions Architect - West Coast (US) Our client is a fast-growing technology company building modern...  ...of GTM initiatives and solution offerings Work closely with Engineering, Developer Relations, and Support to ensure a seamless customer... 
    Senior
    Contract work
    Remote work
    Flexible hours

    TalentCloud Recruitment Group

    San Francisco, CA
    2 days ago
  • $35 per hour

     ...Event PlannerLocation:San Francisco, United StatesHoursFlexible, Project basedCompensation: Project based, minimum rate of $35/hrAbout Us:Were a scrappy growing startup with big ambitions to become the go-to name for every kind of group travel. Currently specializing in... 
    Senior
    Work at office
    Flexible hours

    flok

    San Francisco, CA
    3 days ago
  • $235.5k - $329.5k

     ...Translational PK/PD Vir Biotechnology is looking for an experienced Sr. Director of Clinical Pharmacology and Translational PK/PD to lead...  ...between the recruiter and Vir Biotechnology and do not obligate us to pay fees should we hire from those resumes. We ask that... 
    Senior
    Full time
    Work at office
    Work visa
    3 days per week

    Softbank Investment Advisers

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. DevSecOps Engineer (US). Be the first to apply!