{"schemaVersion":"jobsearcher.job.v1","id":"0a42a731624d7d8dc981c43a","url":"https://jobsearcher.com/jobs/0a42a731624d7d8dc981c43a","canonicalUrl":"https://jobsearcher.com/jobs/0a42a731624d7d8dc981c43a","title":"Senior DevSecOps Engineer","description":"Senior DevSecOps Engineer (Remote-based role that requires US-citizenship)\nAbout us\nHyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new software platform. With Hyperproof, companies can save time and money while also operating their programs at a much higher level of effectiveness and accountability. We envision a world where organizations we depend on are truly trustworthy - and Hyperproof is the platform that will get them there.\nWe have a great team and culture - picture yourself in a highly collaborative startup environment where you can make a real impact on something truly important. It's an exciting time to be at Hyperproof; we raised our Series B round in 2023, validating our teamwork and company vision, and we continue to grow rapidly.\nAs we continue to grow, we are seeking a talented Senior DevSecOps Engineer to join our team and lead our efforts in supporting our multi-region, FedRAMP-authorized infrastructure.\nWHO YOU ARE:\nYou are a seasoned Senior DevSecOps Engineer with a passion for ensuring the reliability, scalability, and security of cloud-based infrastructure. You thrive in dynamic environments and possess a deep understanding of Azure technologies. Your expertise in DevOps methodologies and security practices, and federal compliance standards makes you an invaluable asset to any team.\nYou excel at collaborating with cross-functional teams and are dedicated to driving innovation and continuous improvement. You understand that compliance and developer velocity are not opposing forces — and you know how to architect systems that deliver both.\nWHAT YOU WILL DO:\nAs a Senior DevSecOps Engineer, you will lead the management and optimization of Hyperproof's Azure-based infrastructure across commercial and FedRAMP regions. Your responsibilities will include:\nDevelop and execute DevOps strategy tailored to all Hyperproof regions, including our FedRAMP-authorized environments.\nOwn and evolve our Terraform/Terragrunt IaC pipeline for multi-subscription promotion, including continuous monitoring\nArchitect secure, scalable platform infrastructure including GitHub Actions, GitLab, and ADO CI/CD pipelines with security gates, Kubernetes environments, observability systems, and compliance automation that enables developer velocity while maintaining continuous compliance posture.\nSupport FedRAMP authorization activities: contribute to SSP documentation, NIST 800-53 control implementations, 3PAO coordination, and readiness assessments while establishing repeatable processes.\nLead the design and security implementation of our Seattle-based on-premise build/test platform. You will ensure that physical hardware configurations (firmware, networking, and storage layout) maintain parity with our Azure Kubernetes Service (AKS) patterns while meeting strict SOC 2 compliance standards for local developer workflows.\nEstablish security and compliance architecture patterns across encryption, network segmentation, secrets management, supply chain security, and incident response.\nDrive technical decisions and technology selection for cloud platforms, compliance tooling, and security controls.\nMentor and raise the technical bar across engineering teams through architecture reviews, design discussions, and establishing FedRAMP best practices.\nPartner with security, product, and business leadership to translate federal customer requirements into technical architecture and deliver measurable improvements in security posture and operational efficiency.\nMonitor, triage, and remediate CVEs and security vulnerabilities across infrastructure, container images, and dependencies — maintaining compliance with FedRAMP continuous monitoring requirements.\nWHAT YOU WILL BRING:\nRequired:\nU.S. citizenship, residing and working from within the United States.*\nBS in Computer Science, Engineering, or a related field (or equivalent experience).\n5+ years of extensive experience in SRE, DevSecOps or Platform engineering roles, with a focus on managing Azure-based infrastructure.\nDemonstrated knowledge and interest in applying AI technologies towards fully or partially automating compliance & security workflows\nStrong programming skills (Python, Bash, Go, or Node.js) and demonstrated ability to drive complex technical initiatives from architecture through production.\nExpertise in modern platform technologies: Kubernetes security, infrastructure-as-code (Terraform/Terragrunt), GitOps (Helm/ArgoCD/Flux), Ansible, CI/CD security, observability systems, and secrets management.\nFamiliarity with compliance standards and regulations, particularly NIST 800-53 and FedRAMP.\nExcellent communication and collaboration skills, with the ability to work effectively in a cross-functional team environment.\nA positive attitude and a willingness to learn, adapt, collaborate, and grow in a dynamic environment.\nPreferred:\nExperience contributing to FedRAMP authorization efforts (Moderate or High), including SSP documentation, control implementation, or 3PAO coordination.\nExperience with Azure networking, and security boundaries.\nExperience with compliance automation, supply chain security (SBOM, image signing), or secrets management at scale.\nProfessional certifications: CISSP, Azure Security Specialty, CKS, or equivalent.\nFamiliarity with CMMC, OSCAL, or compliance-as-code practices.\nExperience with vulnerability scanning and remediation tooling (e.g., Trivy, Snyk, Qualys, or Defender for Cloud).\nAdvanced degree in Computer Science or related field, or equivalent experience architecting secure, compliant platforms at scale.\n\nLOCATION\nCandidate must be a US-citizen but can be located anywhere within the US.\n\nCANDIDATE EXPERIENCE\nWe respect your time and aim for transparency throughout the interview process. You can expect:\nA 30-minute initial chat with our Principal People & Talent Partner.\nA Take Home Assessment, which you will work on within GitHub.\nThree 60-minute 1:1 interviews with members of our engineering team, one of them who will be the hiring manager.\nThis process allows both parties to ask questions and gauge fit for the team.\n\nDue to the nature of the work and participation in federal security and compliance programs, U.S. citizenship is required as a bona fide occupational qualification in accordance with federal government security and compliance regulations. This role requires physical presence within the United States while working — access to FedRAMP-authorized environments from outside U.S. borders is not permitted.\n\nWHERE YOU'LL GO\nHyperproof also loves to see an internal transfer. If a linear career path is not what you're looking for, you can work with your manager and our people team to explore lateral moves to other parts of the organization as you continue to grow with us.\nWHAT WE OFFER TO OUR EMPLOYEES\nPlease note: Benefits listed below are for employees in the United States; contractor roles or international positions may differ\nAnnual compensation reviews + equity\nUnlimited PTO: strongly encouraged to unplug and recharge\nHealth: coverage for medical, dental, and vision - employee and dependents\n401K, which vests immediately, complete with a 4% company match\n12 weeks of Parental leave and 1 year free diapers and wipes with Honest\nAnnual company in-person events and quarterly in-person connects\n$500 home office stipend - at the time of hire. Any additional home office needs are requested as needed.\n$100 quarterly paid wellness stipend\nPet insurance discount\nSlack channel notifications turn off after 5 pm based on your time zone\nTwo Hypercharge weeks of rest where we close company-wide (July & Dec)\nIt's an exciting time to be at Hyperproof — we recently raised $40 million in our Series B financing, further cementing Hyperproof as the emerging leader in the risk and compliance management space.\nAt Hyperproof's core are our passionate team members who focus on user experience, beautiful design, and evangelize a positive social impact of our cloud based platform. We help organizations streamline their risk and compliance workflows so our customers can spend more time strategically managing programs and less time wrangling spreadsheets.\nWe are disrupting the governance, risk, and compliance software space with our innovative platform by helping traditionally unsung heroes (compliance professionals) do the right things so the wrong things don't happen.\nLearn more about the @hyperproof culture and how it all started.\nA NOTE ABOUT OUR INTERVIEW PROCESS\nWe're committed to creating a fair, respectful, and secure hiring experience for everyone. As part of that commitment, we use standard verification steps throughout our interview process.\nHere's what that means for you:\nWe may conduct routine verification checks during the hiring process.\nYou might be asked additional questions to better understand your experience and background.\nFor video interviews, we ask that candidates be on camera without filters or visual modifications.\nThese steps are applied consistently for all candidates and are designed to ensure an equitable experience for everyone.\nEQUAL OPPORTUNITY EMPLOYER\nHyperproof is committed to a diverse and inclusive workplace — it's one of our core values! Hyperproof is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.\nOur company is dedicated to building a diverse, inclusive, and authentic workplace. If you're excited about this role, but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others.\nTo ensure a smooth interview process, all candidates will be required to provide a valid phone number that is not a VOIP (Voice Over Internet Protocol) number. This helps us maintain clear and reliable communication throughout your interview experience.","company":"Hyperproof","rawCompany":"hyperproof","city":"Raleigh","state":"NC","isRemote":false,"isActive":false,"createdAt":"2026-08-05T15:44:19.913Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior DevSecOps Engineer","description":"Senior DevSecOps Engineer (Remote-based role that requires US-citizenship)\nAbout us\nHyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new software platform. With Hyperproof, companies can save time and money while also operating their programs at a much higher level of effectiveness and accountability. We envision a world where organizations we depend on are truly trustworthy - and Hyperproof is the platform that will get them there.\nWe have a great team and culture - picture yourself in a highly collaborative startup environment where you can make a real impact on something truly important. It's an exciting time to be at Hyperproof; we raised our Series B round in 2023, validating our teamwork and company vision, and we continue to grow rapidly.\nAs we continue to grow, we are seeking a talented Senior DevSecOps Engineer to join our team and lead our efforts in supporting our multi-region, FedRAMP-authorized infrastructure.\nWHO YOU ARE:\nYou are a seasoned Senior DevSecOps Engineer with a passion for ensuring the reliability, scalability, and security of cloud-based infrastructure. You thrive in dynamic environments and possess a deep understanding of Azure technologies. Your expertise in DevOps methodologies and security practices, and federal compliance standards makes you an invaluable asset to any team.\nYou excel at collaborating with cross-functional teams and are dedicated to driving innovation and continuous improvement. You understand that compliance and developer velocity are not opposing forces — and you know how to architect systems that deliver both.\nWHAT YOU WILL DO:\nAs a Senior DevSecOps Engineer, you will lead the management and optimization of Hyperproof's Azure-based infrastructure across commercial and FedRAMP regions. Your responsibilities will include:\nDevelop and execute DevOps strategy tailored to all Hyperproof regions, including our FedRAMP-authorized environments.\nOwn and evolve our Terraform/Terragrunt IaC pipeline for multi-subscription promotion, including continuous monitoring\nArchitect secure, scalable platform infrastructure including GitHub Actions, GitLab, and ADO CI/CD pipelines with security gates, Kubernetes environments, observability systems, and compliance automation that enables developer velocity while maintaining continuous compliance posture.\nSupport FedRAMP authorization activities: contribute to SSP documentation, NIST 800-53 control implementations, 3PAO coordination, and readiness assessments while establishing repeatable processes.\nLead the design and security implementation of our Seattle-based on-premise build/test platform. You will ensure that physical hardware configurations (firmware, networking, and storage layout) maintain parity with our Azure Kubernetes Service (AKS) patterns while meeting strict SOC 2 compliance standards for local developer workflows.\nEstablish security and compliance architecture patterns across encryption, network segmentation, secrets management, supply chain security, and incident response.\nDrive technical decisions and technology selection for cloud platforms, compliance tooling, and security controls.\nMentor and raise the technical bar across engineering teams through architecture reviews, design discussions, and establishing FedRAMP best practices.\nPartner with security, product, and business leadership to translate federal customer requirements into technical architecture and deliver measurable improvements in security posture and operational efficiency.\nMonitor, triage, and remediate CVEs and security vulnerabilities across infrastructure, container images, and dependencies — maintaining compliance with FedRAMP continuous monitoring requirements.\nWHAT YOU WILL BRING:\nRequired:\nU.S. citizenship, residing and working from within the United States.*\nBS in Computer Science, Engineering, or a related field (or equivalent experience).\n5+ years of extensive experience in SRE, DevSecOps or Platform engineering roles, with a focus on managing Azure-based infrastructure.\nDemonstrated knowledge and interest in applying AI technologies towards fully or partially automating compliance & security workflows\nStrong programming skills (Python, Bash, Go, or Node.js) and demonstrated ability to drive complex technical initiatives from architecture through production.\nExpertise in modern platform technologies: Kubernetes security, infrastructure-as-code (Terraform/Terragrunt), GitOps (Helm/ArgoCD/Flux), Ansible, CI/CD security, observability systems, and secrets management.\nFamiliarity with compliance standards and regulations, particularly NIST 800-53 and FedRAMP.\nExcellent communication and collaboration skills, with the ability to work effectively in a cross-functional team environment.\nA positive attitude and a willingness to learn, adapt, collaborate, and grow in a dynamic environment.\nPreferred:\nExperience contributing to FedRAMP authorization efforts (Moderate or High), including SSP documentation, control implementation, or 3PAO coordination.\nExperience with Azure networking, and security boundaries.\nExperience with compliance automation, supply chain security (SBOM, image signing), or secrets management at scale.\nProfessional certifications: CISSP, Azure Security Specialty, CKS, or equivalent.\nFamiliarity with CMMC, OSCAL, or compliance-as-code practices.\nExperience with vulnerability scanning and remediation tooling (e.g., Trivy, Snyk, Qualys, or Defender for Cloud).\nAdvanced degree in Computer Science or related field, or equivalent experience architecting secure, compliant platforms at scale.\n\nLOCATION\nCandidate must be a US-citizen but can be located anywhere within the US.\n\nCANDIDATE EXPERIENCE\nWe respect your time and aim for transparency throughout the interview process. You can expect:\nA 30-minute initial chat with our Principal People & Talent Partner.\nA Take Home Assessment, which you will work on within GitHub.\nThree 60-minute 1:1 interviews with members of our engineering team, one of them who will be the hiring manager.\nThis process allows both parties to ask questions and gauge fit for the team.\n\nDue to the nature of the work and participation in federal security and compliance programs, U.S. citizenship is required as a bona fide occupational qualification in accordance with federal government security and compliance regulations. This role requires physical presence within the United States while working — access to FedRAMP-authorized environments from outside U.S. borders is not permitted.\n\nWHERE YOU'LL GO\nHyperproof also loves to see an internal transfer. If a linear career path is not what you're looking for, you can work with your manager and our people team to explore lateral moves to other parts of the organization as you continue to grow with us.\nWHAT WE OFFER TO OUR EMPLOYEES\nPlease note: Benefits listed below are for employees in the United States; contractor roles or international positions may differ\nAnnual compensation reviews + equity\nUnlimited PTO: strongly encouraged to unplug and recharge\nHealth: coverage for medical, dental, and vision - employee and dependents\n401K, which vests immediately, complete with a 4% company match\n12 weeks of Parental leave and 1 year free diapers and wipes with Honest\nAnnual company in-person events and quarterly in-person connects\n$500 home office stipend - at the time of hire. Any additional home office needs are requested as needed.\n$100 quarterly paid wellness stipend\nPet insurance discount\nSlack channel notifications turn off after 5 pm based on your time zone\nTwo Hypercharge weeks of rest where we close company-wide (July & Dec)\nIt's an exciting time to be at Hyperproof — we recently raised $40 million in our Series B financing, further cementing Hyperproof as the emerging leader in the risk and compliance management space.\nAt Hyperproof's core are our passionate team members who focus on user experience, beautiful design, and evangelize a positive social impact of our cloud based platform. We help organizations streamline their risk and compliance workflows so our customers can spend more time strategically managing programs and less time wrangling spreadsheets.\nWe are disrupting the governance, risk, and compliance software space with our innovative platform by helping traditionally unsung heroes (compliance professionals) do the right things so the wrong things don't happen.\nLearn more about the @hyperproof culture and how it all started.\nA NOTE ABOUT OUR INTERVIEW PROCESS\nWe're committed to creating a fair, respectful, and secure hiring experience for everyone. As part of that commitment, we use standard verification steps throughout our interview process.\nHere's what that means for you:\nWe may conduct routine verification checks during the hiring process.\nYou might be asked additional questions to better understand your experience and background.\nFor video interviews, we ask that candidates be on camera without filters or visual modifications.\nThese steps are applied consistently for all candidates and are designed to ensure an equitable experience for everyone.\nEQUAL OPPORTUNITY EMPLOYER\nHyperproof is committed to a diverse and inclusive workplace — it's one of our core values! Hyperproof is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.\nOur company is dedicated to building a diverse, inclusive, and authentic workplace. If you're excited about this role, but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others.\nTo ensure a smooth interview process, all candidates will be required to provide a valid phone number that is not a VOIP (Voice Over Internet Protocol) number. This helps us maintain clear and reliable communication throughout your interview experience.","datePosted":"2026-08-05T15:44:19.913Z","dateModified":"2026-08-05T15:44:19.913Z","hiringOrganization":{"@type":"Organization","name":"Hyperproof","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Raleigh","addressRegion":"NC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"0a42a731624d7d8dc981c43a"},"url":"https://jobsearcher.com/jobs/0a42a731624d7d8dc981c43a"}}