Senior DevOps Engineer, Security & Compliance
Zafran Security
Senior DevOps Engineer
Zafran is looking for a Senior DevOps Engineer with a strong security and compliance background to lead our compliance posture and prepare us for FedRAMP. You will work on hardening our infrastructure, implementing the controls required for regulated customers, and building the evidence and automation needed to achieve and maintain compliance certifications. This role partners closely with our Security team and Tel Aviv DevOps team.
About Zafran
Our Mission: To stop the exploitations of vulnerabilities, everywhere.
What makes us different: Zafran de-risks 90% of critical vulnerabilities overnight across your hybrid environment and uses your existing security tools to rapidly mitigate and remediate the 10% most likely to be exploited.
Who's behind us: Zafran is backed by Sequoia Capital, Cyberstarts, and a deep belief that cybersecurity should move as fast as attackers do. We're one of the fastest-growing companies in the industry, scaling to meet demand from the world's most advanced, security-obsessed organizations.
We're serious about our mission- so expect work that matters, teammates who challenge and inspire you, and plenty of fun along the way!
What you will do
- Lead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)
- Design and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments
- Build the automation, logging, and evidence collection required for continuous compliance
- Implement and maintain secrets management, IAM hardening, network segmentation, and encryption standards
- Develop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments
- Collaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response
- Stay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work
Requirements
- Must be located in the US, with a strong preference for the New York area; US remote considered
- U.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.
- 5+ years of DevOps / platform engineering experience with a strong security focus
- Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP
- Deep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config
- Strong Kubernetes security experience: network policies, admission control, runtime security
- Infrastructure as Code with Terraform, with a focus on policy-as-code
- CI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening
- Solid scripting in Python or Bash
Nice to have
- Prior experience leading or mentoring a small team
- Direct hands-on experience with a FedRAMP Moderate or High authorization
- Experience with GovCloud (AWS US-East/West GovCloud regions)
- Relevant certifications (AWS Security Specialty, CISSP, CCSP)
At Zafran, people matter! We provide a robust benefits program that includes flexible PTO, health insurance plans (medical, dental, vision), a monthly stipend for phone and internet, 401k, flexible spending account, and a home office stipend when joining!
We also provide access to frontier AI models, including Claude, so every employee can work smarter, move faster, and build an AI-first career from day one.
At Zafran, we're proud to be an equal opportunity employer. We believe the best teams are built by people who think differently, come from all kinds of backgrounds, and aren't afraid to challenge the status quo. We welcome everyone across race, religion, gender, gender identity or expression, sexual orientation, age, disability, national origin, and veteran status, because what matters most is what you bring to the table.
If you're curious, fun, and someone who gets things done, we'd love to meet you
$90k - $124k
...requires comfort with responsibility, ambiguity, and operational accountability. ASR seeks a Senior DevSecOps Engineer to build the company’s government-grade security and compliance engineering practice from the ground up. You will architect the CI/CD security pipeline,...SeniorPermanent employmentFor contractorsWork at officeLocal areaWork from home$194.25k - $214.25k
...Stryker Corporation is seeking a Sr. DevOps Security Engineer based in San Francisco, CA. The role involves designing and maintaining secure AWS environments using services such as EKS, IAM, KMS, and GuardDuty. This position allows telecommuting from anywhere in the...SeniorRemote work$194.25k - $214.25k
...Alto Pharmacy is seeking a Sr. DevOps Security Engineer to design and maintain secure AWS environments. This position offers the opportunity for full telecommuting from anywhere in the U.S. The ideal candidate will have extensive experience with AWS services like EKS,...SeniorRemote work- ...applications, SaaS tools, and internal resources. The platform unifies security, data protection, network access, identity, and AI enablement... ...Required skills: ~5+ years of experience as a DevOps Engineer, preferably in a startup environment ~ Experience working...SeniorWorldwide
- Lockheed Martin is seeking a Senior DevSecOps Engineer to design and implement CI/CD pipelines using innovative technologies. This role... ...with cross-functional teams and ensuring compliance with security practices throughout the software lifecycle. The position...SeniorRemote workFlexible hours
- ...A leading cybersecurity firm is seeking a Senior DevOps Engineer to join their global engineering team. In this role, you will design, automate... ...cloud infrastructure, collaborating with development and security teams. You should have over 5 years of DevOps experience, strong...SeniorShift work
$139.2k - $218.4k
...developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than... ...of GitLab. An overview of this role As a Senior Security Engineer on GitLab's Security Incident Response Team (SIRT), you...SeniorFull timeRemote workFlexible hours- ...Overstory is looking for a talented Senior Security Engineer to enhance the company's security and compliance posture. The ideal candidate will lead security initiatives across vulnerability management, compliance, and security operations while collaborating with various...SeniorRemote workFlexible hours
- ...Creyos is seeking a DevOps Engineer to improve software development efficiency remotely in the United States. This role involves automating... ...best practices, and enhancing cloud infrastructure security. Candidates should have over 7 years of experience in a formal...SeniorRemote work
$103.8k - $218.1k
...Job Title: Senior DevOps Engineer - Automation and Security Job Category: Information Technology Time Type: Full time Minimum Clearance Required... ...Manage environment setup and deployment processes. Compliance and Security: Support the project's compliance and...SeniorFull timeContract workWork experience placementFlexible hoursShift work- ...Trace3 is looking for a Cloud Engineer III to support the design and implementation of cloud environments in AWS GovCloud. The role involves executing complex engineering tasks and ensuring compliance with cybersecurity requirements and DoD operational objectives. Required...Senior
$200k - $210k
...Senior Infrastructure Engineer, Security Location: United States Pay found in job post Retrieved from the description. Base pay range $200,000.00/yr... ...infrastructure that ensures high availability, performance, and compliance across web and mobile applications. You will focus on...SeniorFull timeRemote workFlexible hours- ...Company is helping our client find a Senior DevOps Engineer to provide follow-the-sun coverage for... ..., ensuring platform stability, SLA compliance, and rapid incident response during West... ...operational overhead. Integrate security best practices into CI/CD pipelines...Senior
- ...leading tech firm in the United States is seeking a Senior Infrastructure Engineer specializing in security to design and maintain cloud infrastructure. This... ...focuses on high availability, performance, and compliance across applications. The ideal candidate has strong...SeniorRemote workFlexible hours
- ...Job Title: Network Engineer (Senior Cloud Security Engineer) 8502 Work Location: 1801 Main Street, Columbia, SC 29201 Work Mode: Hybrid... ...cloud security frameworks . Contribute to security compliance and documentation across enterprise systems. Daily...SeniorRemote work
- ...Senior DevOps Engineer Simon-Kucher is enabling its employees with generative AI based solutions... ...infrastructure for AI solutions. Build secure landing zones (VNets, private... ...jobs). Ensure AI cloud security and compliance principles. Implement monitoring &...SeniorWork at officeRemote workFlexible hours
- ...telehealth solutions provider in the United States seeks a Staff IAM Engineer to lead their Identity & Access Management program. This... ...mentoring a team, designing IAM solutions, and ensuring compliance with healthcare regulations like HIPAA. Candidates should have...Senior
$150k - $220k
...Senior Cloud DevSecOps Infrastructure Engineer Title of Role: Senior Cloud DevSecOps Infrastructure... ...— Healthcare, AI, Security, Enterprise Office... ...navigate increasingly complex compliance requirements. This... ...years of experience in DevOps or Infrastructure Engineering...SeniorWork at office- ...Senior DevOps Engineer - Orchestration Location: Remote first (Head Office: Cape Town, South Africa... ...enterprise merchants - by providing a secure, scalable, and seamless payments... ...DS and biometric options, and ensures compliance with Scheme Mandates by reviewing and...SeniorWork at officeRemote work
- ...Senior Azure Devops Engineer Design, build, and support Azure Data Services including Azure SQL, Cosmos DB, ADLS, Event Hub, Service... ...storage classes, networking, and observability. Ensure security and compliance through Azure Policy, RBAC, Managed Identities,...Senior
- ...Senior DevOps Engineer Austin, Texas, United States; Reston, Virginia, United States About... ...variety of disciplines. Active US Security clearance or eligibility and willingness... ...where transparency, accuracy, and compliance are paramount. Available across cloud...SeniorRemote workFlexible hours
- ...A leading IT solutions provider is seeking a Senior Cloud Infrastructure & IT Compliance Engineer to ensure the integrity and security of cloud infrastructures. Responsibilities include developing compliance programs, conducting risk assessments, and collaborating with...Senior
$9k
Modern Technology Solutions, Inc. (MTSI) is seeking a Senior Cyber Security - Information Systems Security Manager (ISSM) in Dayton, OH or Hanscom AFB. As a Senior Cybersecurity Engineer / Information Systems Security Manager (ISSM) with MTSI you will support a customer...SeniorFull timeWork at officeLocal areaImmediate startWorldwideFlexible hours$169k - $202k
...Senior DevOps Engineer Job Description Overview CoStar Group (CSGP) is a leading global provider of commercial and residential real... ...Server-less architecture methodologies Familiarity with?PCI?compliance and remediation Mobile application support (iOS, Android...SeniorFull timeWork from home- ...Senior DevOps Engineer- Arlington, VA Job Description About CoStar Group CoStar Group is... ...— partner with product engineering, security, and network teams to deliver safely... ...language helps. Familiarity with PCI compliance and remediation workflows. Mobile...SeniorFull timeWork at officeWork from homeMonday to Thursday
$184.9k - $250.2k
...support programs in sustainability and compliance, and build a platform that will... .... You’ll join our team in AWS Security Assurance, collaborating with engineers designing solutions at massive... ...job responsibilities As an AWS Senior Software Development Engineer (SDE...SeniorInternshipWorldwideFlexible hours$168.1k - $227.4k
...The AWS Compliance & Security Assurance Engineering team is in the business of building customer trust. We are responsible for scaling AWS's ability to... ...on cloud security and compliance, this is it. As a Senior Software Engineer on our team, you will influence projects...SeniorInternshipFlexible hours- ...A leading tech firm is seeking a Senior Security Operations Engineer to enhance security practices and protect data against cyber threats. The ideal candidate will have a strong academic background, experience in threat modelling, and the ability to implement security...SeniorRemote work
- ...Atlanta, is urgently seeking an experienced DevSecOps Engineer. This role includes leading compliance audits and automating deployment processes while... ...Kubernetes and CI/CD tools, and a solid grasp of cloud security. Join a mission-driven company that offers competitive...Senior
- ...About Keeper Keeper Security is a leading cybersecurity... ...), Keeper combines robust compliance with unmatched visibility... ...About the Role The Senior Manager, Federal Platform... ...technical delivery role first (DevOps/SRE/release engineering mindset), paired with strong...SeniorTemporary workFor contractorsRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior DevOps Engineer, Security & Compliance. Be the first to apply!
- devops aws developer (remote) United States
- salesforce devops engineer United States
- devops engineer sre United States
- staff devops engineer United States
- devops engineer azure United States
- devops engineer contract United States
- senior devops cloud engineer United States
- senior devops engineer United States
- principal devops engineer United States
- associate devops engineer United States

