JOBSEARCHER

Senior DevSecOps Engineer

Vultr $130K - $145K/year Posted 5 days ago100% remote US only US (remote)About The RoleWho We AreVultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world. With 33 global cloud data center locations, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud Compute, Cloud GPU, Bare Metal, and Cloud Storage solutions. In December 2024 Vultr announced an equity financing at a $3.5 billion valuation. Founded by David Aninowsky and self-funded for over a decade, Vultr has grown to become the world’s largest privately-held cloud infrastructure company.Vultr CaresExcellent Medical Benefits w/ 100% company-paid premiums for employee only plan + 100% company-paid dental & vision premiums401(k) plan that matches 100% up to 4% with immediate vestingProfessional Development Reimbursement of $2,500 each year11 Holidays + Paid Time Off Accrual + Rollover Plan + take your birthday offCommitment matters to Vultr! Increased PTO at 3 year & 10 year anniversary + 1 month paid sabbatical every 5 years + Anniversary Bonus each year$500 first year remote office setup + $400 each following year for new equipmentInternet reimbursement up to $75 per monthGym membership reimbursement up to $50 per monthCompany-paid Wellable subscriptionJoin VultrVultr is seeking a DevSecOps Engineer to design, build, and secure the automated infrastructure that underpins our cloud platform. You will own the security lifecycle of golden images, Kubernetes clusters, and configuration management pipelines, embedding compliance and hardening at build time, not as an afterthought. The ideal candidate brings deep expertise in Linux security, container hardening, and policy-as-code, with a bias toward durable automation over manual remediation.Key ResponsibilitiesDesign, build, and maintain automated golden image creation pipelines for Linux-based VM and container base images, enforcing CIS hardening standards at build time and validating compliance before promotion through configuration management toolingImplement and manage automated Linux patching workflowsBuild and maintain configuration management pipelines to continuously enforce hardened baselines across Linux workloads, detecting and remediating driftIntegrate security scanning (vulnerability, secrets, SBOM, and compliance) into CI/CD pipelinesImplement policy-as-code controls to enforce security guardrails preventing non-compliant workloads and misconfigured systems from reaching productionOwn the golden image factory from upstream source validation through automated CIS benchmark testing and image promotion gates, covering both VM and container images used in CI/CDManage secrets lifecycle and distribution ensuring no secrets are baked into imagesRespond to configuration drift, vulnerability alerts, and patch compliance gaps with root-cause analysis and durable automation fixes rather than one-off manual remediationInstrument telemetry pipelines to surface image drift, configuration deviation, and unpatched CVEs in near-real timeQualifications5+ years of experience in DevSecOps, platform engineering, or infrastructure securityStrong Linux administration skills with deep understanding of CIS benchmarks and hardening practicesExperience with configuration management tools in production environmentsHands-on experience with Kubernetes security including RBAC, network policies, and workload identityProficiency building CI/CD pipelines with integrated security scanning (vulnerability, secrets, SBOM, compliance)Experience with policy-as-code frameworksFamiliarity with golden image pipelines for VMs and containers, and image promotion workflowsStrong scripting skills (Bash, Python) for automation and remediationExperience with observability tooling for infrastructure security telemetryWe are currently accepting applications from candidates residing in the following states: Alabama, Arizona, Colorado, Connecticut, Florida, Georgia, Idaho, Illinois, Indiana, Iowa, Kentucky, Louisiana, Maryland, Massachusetts, Michigan, Minnesota, Missouri, Montana, Nebraska, Nevada, New Jersey, New Mexico, New York, North Carolina, Ohio, Oklahoma, Pennsylvania, Rhode Island, South Carolina, Tennessee, Texas, Utah, Vermont, Virginia, Wisconsin.SkillsDevOps / SRE Python Kubernetes Linux Bash CI/CD DevSecOps Security Cloud Security Automation ObservabilityHow to applyApply directly on the employer's apply-click#track" data-apply-click-url-value="/jobs/335-senior-devsecops-engineer/apply_clicks" data-apply-click-placement-value="prose" data-apply-click-target-value="url" data-apply-click-token-value="eyJfcmFpbHMiOnsiZGF0YSI6eyJqIjozMzUsIm4iOiJNZFVHUFRlNVJXcmpqNW9YIiwidCI6MTc4NjI5MDMzMDkwNn0sImV4cCI6IjIwMjYtMDgtMTBUMDM6NDU6MzAuOTA2WiIsInB1ciI6ImFwcGx5X2NsaWNrIn19--a98d03b32d6ae65828f8554d0684497129cab4cc" href="https://jobs.ashbyhq.com/vultr/1851405d-f98f-4c91-aec0-d77a36750c21">application page. Your application goes straight to them.Republished listingThis opportunity was discovered on Vultr's public careers page and is republished here for discovery purposes. Applications are handled by the employer.Vultr team? Claim this listing or ask us to remove it.ApplyApply for this roleYou'll be taken to the employer's own application page.apply-click#track" data-apply-click-url-value="/jobs/335-senior-devsecops-engineer/apply_clicks" data-apply-click-placement-value="card" data-apply-click-target-value="url" data-apply-click-token-value="eyJfcmFpbHMiOnsiZGF0YSI6eyJqIjozMzUsIm4iOiJNZFVHUFRlNVJXcmpqNW9YIiwidCI6MTc4NjI5MDMzMDkwNn0sImV4cCI6IjIwMjYtMDgtMTBUMDM6NDU6MzAuOTA2WiIsInB1ciI6ImFwcGx5X2NsaWNrIn19--a98d03b32d6ae65828f8554d0684497129cab4cc" href="https://jobs.ashbyhq.com/vultr/1851405d-f98f-4c91-aec0-d77a36750c21">Apply nowJob OverviewSalary $130K - $145K/yearLocation Remote US only US (remote)Type Full timeLevel SeniorPosted Aug 5, 2026VultrView company & all rolesCurated by ForcepullThis role was curated by the Forcepull team. We hand-picked it because we think it's a great opportunity from a company we respect.