Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Founding DevSecOps Engineer image - Rise Careers
Job details

Founding DevSecOps Engineer

MetalBear builds open-source developer tools for cloud engineers. Our flagship product, mirrord, allows developers to run local processes as if they were inside their cloud environment—without the hassle of deployment or disrupting shared environments.

We are looking for a Founding DevSecOps Engineer to take ownership of our IaC, security architecture, certifications (e.g. ISO 27001, SOC2), and CI/CD pipelines. This role is crucial in ensuring that our engineering team can develop and deploy efficiently while maintaining compliance and security best practices. You will work closely with the team behind mirrord to enhance and secure the development workflow for cloud-native applications.

Key Responsibilities:

  • Maintain and improve our IaC setup, ensuring reliability, scalability, and security.
  • Oversee security architecture, implementing best practices for cloud security and compliance.
  • Lead certification efforts, including ISO 27001, SOC 2, and other relevant frameworks.
  • Continuously assess and enhance security posture across infrastructure and applications.
  • Design, implement, and maintain CI/CD pipelines to streamline deployment and development workflows.
  • Experience with Infrastructure as Code (Terraform, Pulumi, or similar tools).
  • Strong knowledge of cloud platforms (AWS, GCP, Azure) and cloud security best practices.
  • Experience with security frameworks and certifications (ISO 27001, SOC 2, NIST, etc.).
  • Hands-on experience managing CI/CD pipelines (GitHub Actions, GitLab CI, ArgoCD, etc.).
  • Knowledge of containerization and orchestration (Docker, Kubernetes).
  • Proficiency in scripting languages (Python, Bash, or similar).
  • Understanding of security concepts, threat modeling, and vulnerability assessments.
  • Strong problem-solving skills and ability to work independently.

Preferred Qualifications:

  • Experience with DevSecOps practices and tools.
  • Familiarity with compliance automation tools.
  • Background in software development or system administration.

Average salary estimate

$150000 / YEARLY (est.)
min
max
$120000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Founding DevSecOps Engineer, MetalBear

At MetalBear, we're on a mission to empower cloud engineers with innovative open-source developer tools. Our flagship product, mirrord, revolutionizes how developers interact with their cloud environments by allowing them to run local processes seamlessly without the burden of deployment. We're excited to welcome a Founding DevSecOps Engineer to our team, who will play a pivotal role in shaping our security landscape. In this position, you'll be at the heart of our Infrastructure as Code practices, striving for reliability, scalability, and security. Your expertise will steer our security architecture and certification initiatives, including vital standards like ISO 27001 and SOC 2, ensuring we meet compliance while fostering an efficient development process. Collaborating closely with the talented team behind mirrord, your contributions will enhance our operations and safeguard our cloud-native applications. If you're passionate about DevSecOps, proficient in various cloud platforms, and have a knack for designing CI/CD pipelines, we can’t wait to see how you’ll help us level up our security and efficiency. Join us in transforming the development workflow for cloud engineers; together, we can redefine the landscape of open-source tools.

Frequently Asked Questions (FAQs) for Founding DevSecOps Engineer Role at MetalBear
What are the main responsibilities of a Founding DevSecOps Engineer at MetalBear?

As a Founding DevSecOps Engineer at MetalBear, you will be responsible for maintaining and improving our Infrastructure as Code setup, overseeing security architecture, leading certification efforts like ISO 27001 and SOC 2, and continuously enhancing our security posture. Additionally, you’ll design and maintain CI/CD pipelines to ensure streamlined deployment and development workflows.

Join Rise to see the full answer
What qualifications are expected for the Founding DevSecOps Engineer position at MetalBear?

The ideal candidate for the Founding DevSecOps Engineer role at MetalBear should possess strong experience with Infrastructure as Code tools (like Terraform or Pulumi), a solid understanding of cloud platforms (AWS, GCP, Azure), along with knowledge of security frameworks and compliance standards such as ISO 27001 and SOC 2. Proficiency in scripting languages and experience with CI/CD tools are also crucial for success in this position.

Join Rise to see the full answer
How does the Founding DevSecOps Engineer at MetalBear contribute to security compliance?

The Founding DevSecOps Engineer at MetalBear plays a crucial role in ensuring our compliance with security standards. This includes leading certification efforts and implementing best practices in cloud security while continuously assessing and enhancing our security posture across infrastructure and applications, thereby safeguarding our products and services.

Join Rise to see the full answer
What tools and technologies should a Founding DevSecOps Engineer be familiar with at MetalBear?

At MetalBear, a Founding DevSecOps Engineer should be well-versed in Infrastructure as Code tools like Terraform and Pulumi, cloud platforms including AWS, GCP, and Azure, as well as CI/CD pipelines management through platforms such as GitHub Actions and GitLab CI. Familiarity with containerization technologies like Docker and orchestration tools like Kubernetes is also beneficial.

Join Rise to see the full answer
What is the working environment like for a Founding DevSecOps Engineer at MetalBear?

The environment at MetalBear is dynamic and collaborative, fostering innovation and open communication. As a Founding DevSecOps Engineer, you’ll work closely with the brilliant team behind mirrord, contributing to a culture of continuous improvement and excellence in developing cloud-native applications.

Join Rise to see the full answer
Common Interview Questions for Founding DevSecOps Engineer
How do you approach implementing Infrastructure as Code for security?

In your response, emphasize the importance of reliability, scalability, and security within IaC setups. Include examples of IaC tools you’ve used, such as Terraform or Pulumi, and discuss how you ensure compliance and security best practices during implementation.

Join Rise to see the full answer
Can you describe your experience with cloud security frameworks?

Outline your knowledge of different cloud security frameworks like ISO 27001 and SOC 2. You can mention past experiences where you successfully implemented these frameworks and how they benefitted the organization by enhancing its security posture.

Join Rise to see the full answer
What strategies do you use to improve CI/CD pipelines?

Discuss specific strategies you've employed, such as automating testing or integrating security checks into the CI/CD pipeline. Highlight tools you've used like GitHub Actions or GitLab CI and share measurable results from improvements you've made.

Join Rise to see the full answer
How do you assess an organization's security posture?

In your answer, describe your methodology for assessing security, including threat modeling and vulnerability assessments. Share any tools you utilize for this purpose, and provide an example of a successful assessment you conducted in previous roles.

Join Rise to see the full answer
What challenges have you faced in managing security architecture?

Reflect on specific challenges faced regarding security architecture, whether from compliance requirements or evolving threats. Use this opportunity to highlight your problem-solving skills and how you overcame these challenges effectively.

Join Rise to see the full answer
What role does automation play in your DevSecOps practices?

Explain how automation is integral to your DevSecOps workflow, detailing aspects like compliance automation, CI/CD pipeline automation, and security checks. Discuss how automation leads to efficiency and security improvements.

Join Rise to see the full answer
Can you provide an example of a threat modeling exercise you've conducted?

Use this chance to share a case where you led a threat modeling session. Describe the process, the tools used, and the outcomes, emphasizing critical threats identified and mitigation strategies formulated.

Join Rise to see the full answer
What scripting languages do you prefer and why?

Discuss your experience with scripting languages like Python or Bash. Explain why you prefer these languages, giving examples of how they've helped you automate tasks or solve complex problems in past roles.

Join Rise to see the full answer
How do you stay updated with the latest DevSecOps trends and technologies?

Share your methods for staying informed, whether through online courses, industry blogs, podcasts, or community networking. Highlight your commitment to continuous learning and how you apply new information to your work.

Join Rise to see the full answer
What is your philosophy regarding collaboration between development and security teams?

Articulate your belief in fostering strong collaboration between development and security. Discuss practices like including security in the development lifecycle and encouraging open dialogue to enhance overall security effectiveness.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 23 hours ago

Join AbbVie as a Senior Analyst for MES Systems in Waco, Texas, where you'll oversee critical manufacturing processes.

Photo of the Rise User
CAI Hybrid Indianapolis, Indiana
Posted 3 days ago

Join CAI as a Reliability Field Engineer, where your expertise will shape the best maintenance practices for our clients.

Photo of the Rise User
JASARA PMC Remote No location specified
Posted 10 days ago

Become a vital part of JASARA PMC as a Design Low Voltage Engineer, focusing on compliance and project success in low voltage systems design.

Posted 5 days ago

As a key player in our engineering team, you will drive efficiency and innovation in processing systems at Sazerac.

Posted 3 hours ago

Royal Electric Company invites an experienced Electrical Estimator to join their team, focusing on building strong relationships in the Sacramento and Bay Markets.

Photo of the Rise User
Workday Remote Canada, ON, Toronto
Posted 6 hours ago

Join Workday as a Senior Principal AI Architect to lead the charge in shaping enterprise-wide AI strategies and driving innovation.

Photo of the Rise User
Vast Hybrid Long Beach, California, United States
Posted 3 days ago

Vast is looking for a skilled Senior Systems Engineer eager to advance the frontiers of space technology and human-rated space habitation.

Photo of the Rise User
Anduril Industries Hybrid Costa Mesa, California, United States
Posted 14 days ago

Join Anduril Industries as a Vehicle Management Systems Lead, where you will drive the development of embedded software for cutting-edge military aircraft.

MATCH
VIEW MATCH
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 2, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
H
Someone from OH, Akron just viewed Brand Marketing Manager at Huntington
R
Someone from OH, Hamilton just viewed Forklift Operator Warehouse at Ryder
Photo of the Rise User
Someone from OH, Cincinnati just viewed Ad Ops Specialist, Display at System1
Photo of the Rise User
Someone from OH, Cincinnati just viewed FQHC Billing & Collections Manager at OhioGuidestone
Photo of the Rise User
Someone from OH, Cleveland just viewed Enrollment Specialist- Remote at Adtalem Global Education
o
Someone from OH, Dayton just viewed Marketing and Communications Specialist at osu
Photo of the Rise User
Someone from OH, Columbus just viewed Construction Coordinator at Meijer
Photo of the Rise User
Someone from OH, Steubenville just viewed Legal & Compliance Internship at Smiths Group
Photo of the Rise User
Someone from OH, Warren just viewed Senior Front-End Developer at Worldly
Photo of the Rise User
Someone from OH, Tiffin just viewed Game Operations Specialist at Genius Sports
u
Someone from OH, Loveland just viewed Customer Service Agent - Part Time at uhaul
Photo of the Rise User
Someone from OH, Cleveland just viewed HR Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Mid Level, System Administrator - (ETS) at Delivery Hero
Photo of the Rise User
Someone from OH, Mason just viewed Inside Sales Co-Op at VEGA Americas
Photo of the Rise User
Someone from OH, Sandusky just viewed Director of IT at Kyo
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
6 people applied to Machinist Apprentice at LLNL