Staff DevSecOps Engineer
Shield AI is a U.S. defense-technology company developing mission-autonomy software and autonomous aircraft for military and allied operations.
Funding history
Investors
About Shield AI
Founded in 2015, Shield AI builds Hivemind autonomy software and V-BAT and X-BAT aircraft for operations in contested, GPS- and communications-denied environments. Its current site also presents Aechelon synthetic-reality simulation and Vision Systems detection and tracking products.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will design, build, and automate security controls for cloud infrastructure, software delivery systems, and containerized workloads. You will create hardened images, integrate security scanning into CI/CD, manage identity and secrets controls, produce audit evidence, remediate weaknesses, and establish reusable security patterns across teams.
Requirements
- 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer
- Experience implementing security controls in AWS or another major cloud environment
- Experience with infrastructure as code and automated infrastructure provisioning
- Experience securing containerized workloads and hardened container images
- Experience integrating security tooling into CI/CD or software delivery systems
- Experience with vulnerability management, dependency scanning, container scanning, or configuration validation
- Experience implementing identity, secrets, and access controls
- Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
Responsibilities
- Design and implement security controls across AWS infrastructure and platform services
- Build and maintain hardened container images and secure base images
- Integrate vulnerability, dependency, container, and configuration scanning into delivery systems
- Automate security and compliance checks
- Implement secrets management, identity, and access controls
- Build audit evidence, configuration validation, and compliance reporting mechanisms
- Identify security weaknesses and drive remediation
- Define reusable security engineering patterns and drive their adoption
Benefits
- Bonus
- Benefits
- Equity
