Code for America believes in leveraging technology to improve government services and is looking for a talented Staff DevOps Engineer. The role involves designing, automating, and scaling secure cloud infrastructure while ensuring compliance with relevant standards, ultimately supporting civic programs and enhancing public trust.
Responsibilities:
- Develop and optimize CI/CD pipelines using GitHub Actions for secure, automated deployments
- Implement, maintain, and monitor containerized applications (Docker, Kubernetes, ECS, or EKS)
- Automate cloud resource provisioning, scaling, and governance with reusable modules and policy-as-code
- Manage and monitor infrastructure for performance, reliability, and cost optimization
- Contribute to and enforce secure DevOps best practices (least privilege, secrets management, audit logging, vulnerability scanning)
- Support platform integration for AI/ML workloads, container orchestration, and environment isolation
- Actively seeks and applies emerging practices in cloud infrastructure, security, and AI/ML tooling; adapts approaches in response to shifts in compliance requirements, platform needs, or organizational priorities
- Mentors peers on DevOps best practices and contributes to team-wide standards
- Collaborate closely with engineering and security teams to ensure compliance with frameworks such as SOC 2, HIPAA, and NIST 800-53
- Other duties as assigned
Requirements:
- 7+ years of relevant software engineering experience
- 3–5+ years of hands-on DevOps, SRE, or infrastructure engineering experience
- Experience building and maintaining Infrastructure as Code (IaC) modules to provision and manage cloud-based deployments
- Deep experience with AWS (CloudFormation, IAM, ECS/EKS, Lambda, CloudWatch, S3, VPC, RDS)
- Strong communication, documentation, and collaboration skills in matrixed organizations
- Familiarity with Azure or Google Cloud Platform (GCP) a plus
- Proficient in GitHub Actions, Docker, and Kubernetes
- Experience working in regulated or compliance-heavy environments (SOC 2, HIPAA, FedRAMP, NIST)
- Ability to set up automated security testing for applications
- Experience securely integrating PAAS systems with first-party environments
- Experience with LLM application development, including agentic workflows and LLM orchestration
- Scripting in Ruby, Python, Bash, or Go for automation and tool development