{"schemaVersion":"jobsearcher.job.v1","id":"6bf6bceb9b1dd43d7e44e59e","url":"https://jobsearcher.com/jobs/6bf6bceb9b1dd43d7e44e59e","canonicalUrl":"https://jobsearcher.com/jobs/6bf6bceb9b1dd43d7e44e59e","title":"Senior DevOps Engineer, Security & Compliance","description":"Description:\n\nZafran is looking for a Senior DevOps Engineer with a strong security and compliance background to lead our compliance posture and prepare us for FedRAMP. You will work on hardening our infrastructure, implementing the controls required for regulated customers, and building the evidence and automation needed to achieve and maintain compliance certifications. This role partners closely with our Security team and Tel Aviv DevOps team.\n\nAbout Zafran:\n\n﻿﻿\n\nOur Mission: To stop the exploitation of vulnerabilities, everywhere.\n\nWhat makes us different: In a world where AI-enabled attackers weaponize vulnerabilities within minutes, the old scan-and-patch-everything model no longer holds. Zafran's Exposure Graph continuously maps every vulnerability across your hybrid environment, chains exploitability through real attack paths and proves 90% of \"critical\" vulnerabilities can't actually reach you. It then neutralizes the real 10% using your compensating controls and safely remediates only where it matters.\n\nWho’s behind us: Zafran is backed by Menlo Ventures, Sequoia Capital, Cyberstarts, and a deep belief that cybersecurity should move as fast as attackers do. We’re one of the fastest-growing companies in the industry, scaling to meet demand from the world’s most advanced, security-obsessed organizations.\n\nWe’re serious about our mission- so expect work that matters, teammates who challenge and inspire you, and plenty of fun along the way!\n\nWhat you will do:\n\nLead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)\n\nDesign and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments\n\nBuild the automation, logging, and evidence collection required for continuous compliance\n\nImplement and maintain secrets management, IAM hardening, network segmentation, and encryption standards\n\nDevelop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments\n\nCollaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response\n\nStay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work\n\nRequirements:\n\nMust be located in the US, with a strong preference for the New York area; US remote considered\n\nU.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.\n\n5+ years of DevOps / platform engineering experience with a strong security focus\n\nDirect experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP\n\nDeep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config\n\nStrong Kubernetes security experience: network policies, admission control, runtime security\n\nInfrastructure as Code with Terraform, with a focus on policy-as-code\n\nCI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening\n\nSolid scripting in Python or Bash\n\nNice to have\n\nPrior experience leading or mentoring a small team\n\nDirect hands-on experience with a FedRAMP Moderate or High authorization\n\nExperience with GovCloud (AWS US-East/West GovCloud regions)\n\nRelevant certifications (AWS Security Specialty, CISSP, CCSP)\n\nAt Zafran, people matter! We provide a robust benefits program that includes flexible PTO, health insurance plans (medical, dental, vision), a monthly stipend for phone and internet, 401k, flexible spending account, and a home office stipend when joining!\n\nWe also provide access to frontier AI models, including Claude, so every employee can work smarter, move faster, and build an AI-first career from day one.\n\nAt Zafran, we’re proud to be an equal opportunity employer. We believe the best teams are built by people who think differently, come from all kinds of backgrounds, and aren’t afraid to challenge the status quo. We welcome everyone across race, religion, gender, gender identity or expression, sexual orientation, age, disability, national origin, and veteran status, because what matters most is what you bring to the table.\n\nIf you’re curious, fun, and someone who gets things done, we’d love to meet you","company":"Zafran Security","rawCompany":"zafran security","city":"Denver","state":"CO","isRemote":false,"isActive":false,"createdAt":"2026-08-14T13:09:48.290Z","occupations":[{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior DevOps Engineer, Security & Compliance","description":"Description:\n\nZafran is looking for a Senior DevOps Engineer with a strong security and compliance background to lead our compliance posture and prepare us for FedRAMP. You will work on hardening our infrastructure, implementing the controls required for regulated customers, and building the evidence and automation needed to achieve and maintain compliance certifications. This role partners closely with our Security team and Tel Aviv DevOps team.\n\nAbout Zafran:\n\n﻿﻿\n\nOur Mission: To stop the exploitation of vulnerabilities, everywhere.\n\nWhat makes us different: In a world where AI-enabled attackers weaponize vulnerabilities within minutes, the old scan-and-patch-everything model no longer holds. Zafran's Exposure Graph continuously maps every vulnerability across your hybrid environment, chains exploitability through real attack paths and proves 90% of \"critical\" vulnerabilities can't actually reach you. It then neutralizes the real 10% using your compensating controls and safely remediates only where it matters.\n\nWho’s behind us: Zafran is backed by Menlo Ventures, Sequoia Capital, Cyberstarts, and a deep belief that cybersecurity should move as fast as attackers do. We’re one of the fastest-growing companies in the industry, scaling to meet demand from the world’s most advanced, security-obsessed organizations.\n\nWe’re serious about our mission- so expect work that matters, teammates who challenge and inspire you, and plenty of fun along the way!\n\nWhat you will do:\n\nLead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)\n\nDesign and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments\n\nBuild the automation, logging, and evidence collection required for continuous compliance\n\nImplement and maintain secrets management, IAM hardening, network segmentation, and encryption standards\n\nDevelop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments\n\nCollaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response\n\nStay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work\n\nRequirements:\n\nMust be located in the US, with a strong preference for the New York area; US remote considered\n\nU.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.\n\n5+ years of DevOps / platform engineering experience with a strong security focus\n\nDirect experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP\n\nDeep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config\n\nStrong Kubernetes security experience: network policies, admission control, runtime security\n\nInfrastructure as Code with Terraform, with a focus on policy-as-code\n\nCI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening\n\nSolid scripting in Python or Bash\n\nNice to have\n\nPrior experience leading or mentoring a small team\n\nDirect hands-on experience with a FedRAMP Moderate or High authorization\n\nExperience with GovCloud (AWS US-East/West GovCloud regions)\n\nRelevant certifications (AWS Security Specialty, CISSP, CCSP)\n\nAt Zafran, people matter! We provide a robust benefits program that includes flexible PTO, health insurance plans (medical, dental, vision), a monthly stipend for phone and internet, 401k, flexible spending account, and a home office stipend when joining!\n\nWe also provide access to frontier AI models, including Claude, so every employee can work smarter, move faster, and build an AI-first career from day one.\n\nAt Zafran, we’re proud to be an equal opportunity employer. We believe the best teams are built by people who think differently, come from all kinds of backgrounds, and aren’t afraid to challenge the status quo. We welcome everyone across race, religion, gender, gender identity or expression, sexual orientation, age, disability, national origin, and veteran status, because what matters most is what you bring to the table.\n\nIf you’re curious, fun, and someone who gets things done, we’d love to meet you","datePosted":"2026-08-14T13:09:48.290Z","dateModified":"2026-08-14T13:09:48.290Z","hiringOrganization":{"@type":"Organization","name":"Zafran Security","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Denver","addressRegion":"CO","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"6bf6bceb9b1dd43d7e44e59e"},"url":"https://jobsearcher.com/jobs/6bf6bceb9b1dd43d7e44e59e"}}