Summary
Epsilon ASI is seeking a Cloud Security / DevSecOps Engineer to maintain and strengthen the security, compliance, and reliability of a FedRAMP-compliant AWS environment. The role focuses on cloud infrastructure, security automation, vulnerability remediation, compliance, and integrating security into the software development lifecycle, with potential growth into broader technical leadership.
Responsibilities
- Maintain and improve FedRAMP compliance within an AWS environment
- Manage and improve infrastructure using Terraform and infrastructure-as-code best practices
- Identify and remediate Golang/container vulnerabilities and other security issues
- Investigate and resolve cloud infrastructure misconfigurations
- Review systems and infrastructure against NIST security guidelines and controls
- Develop and maintain CI/CD automation using GitHub Actions
- Partner with engineering teams to integrate security into the software development lifecycle
- Monitor infrastructure and applications for security vulnerabilities and compliance gaps
- Help establish repeatable processes for security, compliance, and infrastructure management
- Contribute to architectural and engineering decisions as the organization scales
Skills
- Strong professional experience with Terraform and infrastructure as code
- Hands-on experience with Go (Golang)
- Experience building or maintaining CI/CD pipelines using GitHub Actions
- Experience with AWS cloud infrastructure
- Strong understanding of cloud security and infrastructure security principles
- Experience identifying and remediating vulnerabilities in containers and cloud environments
- Familiarity with NIST security guidelines and frameworks
- Experience working in a security-conscious or regulated environment
- Experience maintaining FedRAMP-compliant environments
- Experience with AWS security services and controls
- Kubernetes and container security experience
- Experience with vulnerability management and remediation
- Familiarity with automated security testing and DevSecOps practices
- Experience working with government or highly regulated customers
- Experience with additional infrastructure/security tooling such as Rust is a plus
Qualifications
Must Haves
- Strong professional experience with Terraform and infrastructure as code
- Hands-on experience with Go (Golang)
- Experience building or maintaining CI/CD pipelines using GitHub Actions
- Experience with AWS cloud infrastructure
- Strong understanding of cloud security and infrastructure security principles
- Experience identifying and remediating vulnerabilities in containers and cloud environments
- Familiarity with NIST security guidelines and frameworks
- Experience working in a security-conscious or regulated environment
Nice to Haves
- Experience maintaining FedRAMP-compliant environments
- Experience with AWS security services and controls
- Kubernetes and container security experience
- Experience with vulnerability management and remediation
- Familiarity with automated security testing and DevSecOps practices
- Experience working with government or highly regulated customers
- Experience with additional infrastructure/security tooling such as Rust is a plus
Benefits
- Remote work arrangement
- Significant opportunity for growth, including broader technical leadership and architecture responsibilities over time
- Potential path toward Head of Engineering as the organization continues to grow