OneTrust

Senior Staff DevOps Engineer - Data Discovery & AI Governance

OneTrust$165K — $247K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Engineering, or a related technical field.
  • 8+ years in DevOps, SRE, or Platform Engineering roles.
  • Expert knowledge of Kubernetes, Helm, Linux, Docker, and networking.
  • Strong working knowledge of Azure, AWS, and GCP, with deep expertise in at least one.
  • Proficiency in Go and/or Python, plus Bash/Shell scripting for automation.
  • Deep understanding of CI/CD pipelines and GitOps workflows.
  • Experience with security scanning and container image hardening.

Responsibilities

  • Architect and maintain production-grade Kubernetes platforms across multi-cloud and on-premises.
  • Develop automation for worker node provisioning using Helm, Terraform, and CloudFormation.
  • Lead a container-hardening program to reduce CVEs systematically.
  • Maintain CI/CD pipelines ensuring zero-downtime deployments and automated rollbacks.
  • Design monitoring, alerting, and self-healing capabilities for the platform.
  • Lead incident investigations and drive systemic fixes to production issues.
  • Mentor engineers on DevOps best practices and improve infrastructure quality.

Benefits

  • Comprehensive healthcare coverage.
  • Flexible PTO.
  • Equity RSUs.
  • Annual performance bonus opportunities.
  • 14+ weeks of paid parental leave.
  • Career development opportunities.
Full Job Description
The Challenge

We are hiring a Senior Staff DevOps Engineer to join our Detect & Discover (D&D) team. This team owns three product lines - Data Discovery, Privacy Automation, and AI Governance - serving thousands of enterprise customers across multi-cloud and on-premises environments.

In this role, you will lead the infrastructure strategy for our Kubernetes-based on-premises platform and cloud deployments. This includes architecting automated worker node deployments for Azure Marketplace, AWS Marketplace, and GCP; driving container-hardening initiatives to systematically eliminate CVEs; and ensuring the reliability, scalability, and security of our distributed scanning and classification platform. You will act as a technical leader, mentoring engineers and collaborating closely with product security, engineering squads, and customer-facing teams.
Your Mission
  • Kubernetes Platform Architecture: Architect and maintain production-grade Kubernetes platforms across cloud (AKS, EKS, GKE) and on-premises (K3s, microk8s) environments. Own the full lifecycle - cluster provisioning, upgrades, node pool management, and disaster recovery.
  • Deployment Automation & Marketplace Publishing: Develop and maintain automation using Helm, ARM templates, BICEP, Terraform, and CloudFormation to streamline worker node provisioning on Azure Marketplace, AWS Marketplace, and Reduce customer setup complexity so clients don't need advanced Kubernetes expertise on-site.
  • Container Hardening & Vulnerability Management: Lead our container-hardening program by adopting secure base images for distributed components including Kafka, PostgreSQL, Elasticsearch, Temporal and Vault. Own the systematic reduction of CVEs flagged by Vulnerability Scanners.
  • CI/CD & Release Engineering: Maintain and improve CI/CD pipelines ensuring zero-downtime deployments, automated rollbacks, and full auditability. Drive GitOps practices, Improve DevEx and infrastructure-as-code across the team.
  • Observability & Platform Reliability: Design monitoring, alerting, diagnostics, and self-healing capabilities using Datadog, Loki, Promtail. Ensure the platform is optimized for performance, logarithmic cost growth, and high-throughput scaling across thousands of tenant environments.
  • Incident Response & Production Support: Lead incident investigations, root cause analysis, and long-term remediation for production service interruptions. Participate in on-call rotation and drive systemic fixes to prevent recurrence.
  • Mentorship & Technical Leadership: Mentor engineers, drive DevOps best practices across teams, and raise the technical bar for infrastructure engineering quality.
You Are
  • A hands-on technical leader with strong analytical and problem-solving skills and a passion for high-quality infrastructure engineering.
  • Technically curious and self-motivated, able to self-teach new technologies and prioritize complex tasks in a fast-paced environment.
  • A collaborative partner who works seamlessly with security teams, software developers, and product managers to drive alignment on infrastructure standards.
  • Someone who thrives in ambiguous environments, takes ownership of complex technical challenges, and influences across teams without direct authority.
  • An encouraging mentor who enjoys upskilling engineers and continuously improving reliability, automation, and customer experience.
Your Experience Includes
  • Education: Bachelor's degree in Computer Science, Engineering, or a related technical field.
  • Experience: 8+ years in DevOps, SRE, or Platform Engineering roles.
  • Container Orchestration: Expert knowledge of Kubernetes, Helm, Linux, Docker, and networking
  • Multi-Cloud Platforms: Strong working knowledge of Azure, AWS, and GCP, with specific depth in at least one.
  • Automation & Scripting: Proficiency in Go and/or Python, plus Bash/Shell scripting for infrastructure automation and integrations.
  • CI/CD & GitOps: Deep understanding of CI/CD pipelines (GitLab or similar), GitOps workflows, and infrastructure-as-code methodologies.
  • Databases & Messaging: Experience with PostgreSQL, Elasticsearch, and distributed messaging systems (Apache Kafka, NATS).
  • Security & Compliance: Experience with security scanning, container image hardening, and vulnerability remediation in enterprise environments.
  • Production Operations: Experience supporting enterprise production environments and handling customer escalations.
  • Methodologies: Prior experience working in Agile/Scrum enterprise software development.
  • Communication: Excellent verbal and written communication and technical leadership skills.
Extra Awesome
  • Experience building and publishing B2B enterprise software on Azure Marketplace, AWS Marketplace, or GCP Marketplace.
  • Proven experience with Chainguard or other minimal, hardened container distributions for software supply chain security.
  • Experience with on-premises enterprise software deployments (K3s, microk8s, airgapped environments).
  • Familiarity with Temporal workflow orchestration or similar durable execution frameworks.
  • Prior exposure to MLOps methodologies, including model versioning, pipeline auditability, and AI asset discovery.
  • Experience with service meshes, Kubernetes operators, and AI-assisted operations.


For California, Colorado, Connecticut, Nevada, New York, Rhode Island, and Washington-based candidates: the annual base pay range for this role is listed below. Within this range, individual pay is determined by several factors, including location, job-related skills, work experience, and relevant education and/or training. This role may also be eligible for discretionary bonuses, equity, and/or commissions, as well as benefits.

Salary Range

$165,000-$247,500 USD

Where we Work

We are embracing an office-first culture, encouraging three days a week in office for most roles, with meaningful opportunities to collaborate and celebrate in person.

Each role may have specific requirements or flexibility depending on the scope of the position, so we encourage you to verify this with your recruiter during your first interview.
Benefits

As an employee at OneTrust, you will be part of the OneTeam. That means you'll receive support physically, mentally, and emotionally so that you can do your best work both in and out of the office. This includes comprehensive healthcare coverage, flexible PTO, equity RSUs, annual performance bonus opportunities, retirement account support, 14+ weeks of paid parental leave, career development opportunities, company-paid privacy certification exam fees, and much more. Specific benefits differ by country. For more information, talk to your recruiter or visit onetrust.com/careers.
Resources

Check out the following to learn more about OneTrust and its people:
Your Data

You have the right to have your personal data updated or removed. You also have the right to have a copy of the information OneTrust holds about you. Further details about these rights are available on the website in our Privacy OverviewYou can change your mind at any time and have your personal data removed from our database. In order to do this you must contact us and let us know you wish to be removed. The request should be made on the Data Subject Request Form.

About OneTrust

OneTrust is a software company that provides a platform for privacy, security, and data governance. The company's platform helps organizations comply with global regulations such as GDPR, CCPA, and LGPD. OneTrust's products include privacy management, third-party risk management, consent management, incident and breach response, and data mapping. The company was founded in 2016 and is headquartered in Atlanta, Georgia. OneTrust has over 10,000 customers, including half of the Fortune 500 companies.
Learn more about OneTrust
Size
1,500 employees
Industry
Founded
2016

Similar Jobs

More Jobs at OneTrust

More Information Technology Jobs

Find similar Senior Staff DevOps Engineer - Data Discovery & AI Governance jobs: