Recruiting from Scratch is a specialized talent firm dedicated to helping companies build exceptional teams. They are seeking a Senior Software Engineer specializing in DevSecOps to build and maintain CI/CD pipelines, improve developer experience, and ensure system reliability while implementing security best practices.
Responsibilities:
- Build and maintain CI/CD pipelines to enable fast, secure, and reliable deployment workflows
- Improve developer experience by reducing friction in build, test, and deployment processes
- Design and operate cloud infrastructure using infrastructure-as-code across AWS environments
- Ensure system reliability through monitoring, alerting, incident response, and capacity planning
- Own vulnerability management, including scanning, triaging, and remediation workflows
- Implement and enforce security best practices across infrastructure, identity, and application layers
- Lead technical efforts related to SOC 2 compliance, including audits and security assessments
- Partner cross-functionally with engineering, product, and customer-facing teams on security and infrastructure initiatives
- Mentor engineers on DevOps, security, and operational best practices
Requirements:
- 5+ years of experience in DevOps, SRE, security engineering, or backend infrastructure roles
- Strong experience building and maintaining CI/CD pipelines (GitLab CI, GitHub Actions, or similar)
- Deep experience with AWS infrastructure and cloud-native architectures
- Proficiency with infrastructure-as-code tools (Terraform, CloudFormation, CDK, etc.)
- Strong scripting and automation skills (Python, Bash, or similar)
- Solid understanding of security fundamentals including vulnerability management, IAM, and secure SDLC
- Experience operating and scaling production systems with a focus on reliability and performance
- Strong communication skills across both technical and non-technical stakeholders
- Experience supporting SOC 2 audits or similar compliance frameworks
- Experience responding to enterprise customer security assessments
- Familiarity with vulnerability scanning tools (Snyk, Trivy, Dependabot, etc.)
- Experience with containerization and orchestration (Docker, Kubernetes, ECS/EKS)
- Experience with observability tools (Datadog, Prometheus, Grafana, etc.)
- Background in healthcare, regulated environments, or enterprise SaaS systems