{"schemaVersion":"jobsearcher.job.v1","id":"2df4e9fa7cc12e49fc74f55d","url":"https://jobsearcher.com/jobs/2df4e9fa7cc12e49fc74f55d","canonicalUrl":"https://jobsearcher.com/jobs/2df4e9fa7cc12e49fc74f55d","title":"Cloud DevSecOps Engineer","description":"ECS is seeking a Cloud DevSecOps Engineer to work remotely.\n\nJob Description:\nWe are seeking a highly skilled Senior DevSecOps Engineer with extensive experience in cloud-native infrastructure engineering, Kubernetes container orchestration, and enterprise Identity and Access Management (IAM). Tools necessary for excelling in this role include Kubernetes, Docker, Helm, Keycloak Identity Broker, Okta SSO/OIDC, Terraform/IaC, CI/CD pipelines (GitLab CI, GitHub Actions, or Jenkins), and security scanning tooling (Trivy). This role will serve as the infrastructure and security authority within a lean, agile modernization team rebuilding an enterprise Microsoft Power Apps system into a cloud-native platform. You will play a critical role in provisioning and securing Kubernetes cluster environments, engineering automated build and deployment pipelines, deploying and managing high-availability Keycloak identity broker services federated to enterprise Okta, and safeguarding all infrastructure, database, and storage assets across non-production and production environments.\n\nAbout the Job\n\nArchitect, provision, configure, and maintain production-grade Kubernetes cluster environments hosting containerized front-end, backend, and identity services.\nDeploy, configure, and administer a highly available Keycloak Identity Broker instance running in Kubernetes, federating authentication to enterprise Okta via SAML 2.0 and OIDC.\nConfigure identity brokering rules, realm roles, client scopes, and token exchange policies within Keycloak to power secure authentication for React and Spring Boot services.\nDesign, build, and maintain end-to-end CI/CD pipelines for automated image builds, vulnerability scanning, automated testing gates, and zero-downtime rolling deployments via Helm.\nImplement robust platform security controls, including Kubernetes Ingress controllers (NGINX/Traefik), TLS certificate automation (cert-manager), network policies, and container image scanning (Trivy).\nAutomate secrets management and configuration injection across environments using tools such as HashiCorp Vault, AWS Secrets Manager, or Kubernetes External Secrets Operator.\nProvision, monitor, and maintain supporting backing infrastructure including managed PostgreSQL instances and secure Amazon S3 storage buckets.\nEstablish centralized logging, monitoring, and alerting frameworks (Prometheus, Grafana, Loki or EFK stack) to ensure high system observability and reliability.\n\nSalary Range: $130,000-$175,000\n\nGeneral Description of Benefits\n\nRequirements:\nMust be a US Citizen with the ability to pass a Public Trust background check\nBachelor's degree in a relevant field\n10+ years of relevant work experience\n6+ years of systems engineering, DevOps, and cloud infrastructure experience in enterprise Linux and cloud environments.\n4+ years of hands-on experience provisioning, operating, and troubleshooting containerized workloads in production Kubernetes clusters.\n3+ years of dedicated experience configuring and managing enterprise Identity and Access Management (IAM) systems, specifically Keycloak and Okta (OIDC, OAuth 2.0, SAML 2.0).\nStrong experience building and maintaining automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Jenkins) integrating security scans and container image registries.\nProficiency in Infrastructure as Code (IaC) and configuration management using Terraform, Helm charts, and Kubernetes YAML manifests.\nSolid background in networking, DNS, TLS/SSL termination, reverse proxy routing, and cloud network access policies.\nStrong scripting skills in Bash, Python, or Go for automated infrastructure management and operational tooling.\nProactive problem-solving capabilities with a security-first engineering mindset and clear technical communication skills.\n\nReq Benefits:\nBenefits - Everforth ECS","company":"Everforth Ecs","rawCompany":"everforth ecs","city":"Myrtle Point","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-10-02T09:12:56.082Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cloud DevSecOps Engineer","description":"ECS is seeking a Cloud DevSecOps Engineer to work remotely.\n\nJob Description:\nWe are seeking a highly skilled Senior DevSecOps Engineer with extensive experience in cloud-native infrastructure engineering, Kubernetes container orchestration, and enterprise Identity and Access Management (IAM). Tools necessary for excelling in this role include Kubernetes, Docker, Helm, Keycloak Identity Broker, Okta SSO/OIDC, Terraform/IaC, CI/CD pipelines (GitLab CI, GitHub Actions, or Jenkins), and security scanning tooling (Trivy). This role will serve as the infrastructure and security authority within a lean, agile modernization team rebuilding an enterprise Microsoft Power Apps system into a cloud-native platform. You will play a critical role in provisioning and securing Kubernetes cluster environments, engineering automated build and deployment pipelines, deploying and managing high-availability Keycloak identity broker services federated to enterprise Okta, and safeguarding all infrastructure, database, and storage assets across non-production and production environments.\n\nAbout the Job\n\nArchitect, provision, configure, and maintain production-grade Kubernetes cluster environments hosting containerized front-end, backend, and identity services.\nDeploy, configure, and administer a highly available Keycloak Identity Broker instance running in Kubernetes, federating authentication to enterprise Okta via SAML 2.0 and OIDC.\nConfigure identity brokering rules, realm roles, client scopes, and token exchange policies within Keycloak to power secure authentication for React and Spring Boot services.\nDesign, build, and maintain end-to-end CI/CD pipelines for automated image builds, vulnerability scanning, automated testing gates, and zero-downtime rolling deployments via Helm.\nImplement robust platform security controls, including Kubernetes Ingress controllers (NGINX/Traefik), TLS certificate automation (cert-manager), network policies, and container image scanning (Trivy).\nAutomate secrets management and configuration injection across environments using tools such as HashiCorp Vault, AWS Secrets Manager, or Kubernetes External Secrets Operator.\nProvision, monitor, and maintain supporting backing infrastructure including managed PostgreSQL instances and secure Amazon S3 storage buckets.\nEstablish centralized logging, monitoring, and alerting frameworks (Prometheus, Grafana, Loki or EFK stack) to ensure high system observability and reliability.\n\nSalary Range: $130,000-$175,000\n\nGeneral Description of Benefits\n\nRequirements:\nMust be a US Citizen with the ability to pass a Public Trust background check\nBachelor's degree in a relevant field\n10+ years of relevant work experience\n6+ years of systems engineering, DevOps, and cloud infrastructure experience in enterprise Linux and cloud environments.\n4+ years of hands-on experience provisioning, operating, and troubleshooting containerized workloads in production Kubernetes clusters.\n3+ years of dedicated experience configuring and managing enterprise Identity and Access Management (IAM) systems, specifically Keycloak and Okta (OIDC, OAuth 2.0, SAML 2.0).\nStrong experience building and maintaining automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Jenkins) integrating security scans and container image registries.\nProficiency in Infrastructure as Code (IaC) and configuration management using Terraform, Helm charts, and Kubernetes YAML manifests.\nSolid background in networking, DNS, TLS/SSL termination, reverse proxy routing, and cloud network access policies.\nStrong scripting skills in Bash, Python, or Go for automated infrastructure management and operational tooling.\nProactive problem-solving capabilities with a security-first engineering mindset and clear technical communication skills.\n\nReq Benefits:\nBenefits - Everforth ECS","datePosted":"2026-10-02T09:12:56.082Z","dateModified":"2026-10-02T09:12:56.082Z","hiringOrganization":{"@type":"Organization","name":"Everforth Ecs","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Myrtle Point","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"2df4e9fa7cc12e49fc74f55d"},"url":"https://jobsearcher.com/jobs/2df4e9fa7cc12e49fc74f55d"}}