Senior DevSecOps

Vultr

$130K — $145K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in DevSecOps, platform engineering, or infrastructure security
  • Strong Linux administration skills with deep understanding of CIS benchmarks and hardening practices
  • Experience with configuration management tools in production environments
  • Hands-on experience with Kubernetes security including RBAC, network policies, and workload identity
  • Proficiency building CI/CD pipelines with integrated security scanning
  • Experience with policy-as-code frameworks
  • Familiarity with golden image pipelines for VMs and containers
  • Strong scripting skills (Bash, Python) for automation and remediation
  • Experience with observability tooling for infrastructure security telemetry

Responsibilities

  • Design, build, and maintain automated golden image creation pipelines for Linux VM and container base images
  • Implement and manage automated Linux patching workflows
  • Build and maintain configuration management pipelines to enforce hardened baselines
  • Integrate security scanning into CI/CD pipelines
  • Implement policy-as-code controls to enforce security guardrails
  • Own the golden image factory from upstream source validation to automated testing
  • Manage secrets lifecycle and distribution
  • Respond to configuration drift and vulnerability alerts with durable automation fixes
  • Instrument telemetry pipelines to surface image drift and unpatched CVEs

Benefits

  • Remote work opportunities
  • A collaborative and innovative work environment
  • Focus on security-first engineering practices
  • Commitment to automation and continuous improvement
Full Job Description
Join Vultr

Vultr is seeking a DevSecOps Engineer to design, build, and secure the automated infrastructure that underpins our cloud platform. You will own the security lifecycle of golden images, Kubernetes clusters, and configuration management pipelines, embedding compliance and hardening at build time, not as an afterthought. The ideal candidate brings deep expertise in Linux security, container hardening, and policy-as-code, with a bias toward durable automation over manual remediation.

Key Responsibilities
  • Design, build, and maintain automated golden image creation pipelines for Linux-based VM and container base images, enforcing CIS hardening standards at build time and validating compliance before promotion through configuration management tooling
  • Implement and manage automated Linux patching workflows
  • Build and maintain configuration management pipelines to continuously enforce hardened baselines across Linux workloads, detecting and remediating drift
  • Integrate security scanning (vulnerability, secrets, SBOM, and compliance) into CI/CD pipelines
  • Implement policy-as-code controls to enforce security guardrails preventing non-compliant workloads and misconfigured systems from reaching production
  • Own the golden image factory from upstream source validation through automated CIS benchmark testing and image promotion gates, covering both VM and container images used in CI/CD
  • Manage secrets lifecycle and distribution ensuring no secrets are baked into images
  • Respond to configuration drift, vulnerability alerts, and patch compliance gaps with root-cause analysis and durable automation fixes rather than one-off manual remediation
  • Instrument telemetry pipelines to surface image drift, configuration deviation, and unpatched CVEs in near-real time

Qualifications
  • 5+ years of experience in DevSecOps, platform engineering, or infrastructure security
  • Strong Linux administration skills with deep understanding of CIS benchmarks and hardening practices
  • Experience with configuration management tools in production environments
  • Hands-on experience with Kubernetes security including RBAC, network policies, and workload identity
  • Proficiency building CI/CD pipelines with integrated security scanning (vulnerability, secrets, SBOM, compliance)
  • Experience with policy-as-code frameworks
  • Familiarity with golden image pipelines for VMs and containers, and image promotion workflows
  • Strong scripting skills (Bash, Python) for automation and remediation
  • Experience with observability tooling for infrastructure security telemetry


Compensation

$130,000 - $145,000

This salary can vary based on location, years of experience, background and skill set.

[We are currently accepting applications from candidates residing in the following states: Alabama, Arizona, Colorado, Connecticut, Florida, Georgia, Idaho, Illinois, Indiana, Iowa, Kentucky, Louisiana, Maryland, Massachusetts, Michigan, Minnesota, Missouri, Montana, Nebraska, Nevada, New Jersey, New Mexico, New York, North Carolina, Ohio, Oklahoma, Pennsylvania, Rhode Island, South Carolina, Tennessee, Texas, Utah, Vermont, Virginia, Wisconsin.]

Similar Jobs

More Jobs at Vultr

More Information Technology Jobs

Find similar Senior DevSecOps jobs: