{"schemaVersion":"jobsearcher.job.v1","id":"f80685d91c08ccfd265bc113","url":"https://jobsearcher.com/jobs/f80685d91c08ccfd265bc113","canonicalUrl":"https://jobsearcher.com/jobs/f80685d91c08ccfd265bc113","title":"DevSecOps Engineer","description":"We prioritize learning and teamwork and love giving people the opportunity to champion solutions to big challenges and grow into better versions of themselves. A great candidate believes in Raya's vision, which is to enrich lives by fostering relationships through quality, in person interactions. You thrive at the intersection of DevOps and Security, and you're excited to drive measurable impact by hardening our AWS/EKS environment and systematically closing out security findings.\nResponsibilities\nSecurity Ownership: Drive software engineering security hygiene end-to-end, from identifying vulnerabilities and misconfigurations to implementing durable fixes across our platform. This includes AWS, Kubernetes, CDN/WAF, and other technologies used in the PDLC\nCross-Functional Collaboration: Work hand-in-hand with DevOps and Engineering teams to embed security best practices into everyday workflows, without slowing down velocity\nContinuous Learning: Stay current on evolving cloud security threats, tooling, and best practices, ensuring Raya's infrastructure stays ahead of emerging risks\nFindings Remediation: Triage, prioritize, and systematically close out security findings, translating scanner output into practical, actionable engineering fixes\nOperational Excellence: Expand and maintain security checks and guardrails in CI/CD pipelines and the broader PDLC, so security becomes a natural part of how we ship, not an afterthought\nQualifications\nStrong hands-on experience with AWS and Kubernetes/EKS, comfortable navigating cloud infrastructure and container environments from day one\nSolid foundation in security fundamentals: vulnerability management, IAM, network security, and cloud security posture management\nExperience triaging and remediating security findings from vulnerability scanners or cloud security tools\nFamiliarity with CI/CD pipelines and integrating security practices into the software development lifecycle\nStrong communication skills, able to work effectively with both DevOps and Security stakeholders and translate technical risk into clear priorities\nExperience with Infrastructure-as-Code (e.g., Terraform/OpenTofu), compliance frameworks, or container security tooling\nWhat Sets You Apart\nBridge Builder: You naturally sit at the intersection of DevOps and Security, translating between the two and earning trust from both sides\nImpact-driven: You prioritize the fixes and improvements that meaningfully reduce risk, rather than chasing every alert\nGrowth-oriented: You possess a perpetual learner's mindset, staying curious about new threats, tools, and cloud-native security practices\nOwnership mentality: You take findings from discovery to resolution without needing to be chased, and you build systems so problems don't recur\nProductivity-obsessed: You value tools, workflows, and automation that make security scalable rather than manual\nBias toward shipping and iteration: You're able to harden systems incrementally, learn, and refine in short cycles rather than waiting for a \"perfect\" fix\n$160,000 - $190,000 a year\nWe may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.","company":"Raya App","rawCompany":"raya app","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-03T18:57:44.070Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"We prioritize learning and teamwork and love giving people the opportunity to champion solutions to big challenges and grow into better versions of themselves. A great candidate believes in Raya's vision, which is to enrich lives by fostering relationships through quality, in person interactions. You thrive at the intersection of DevOps and Security, and you're excited to drive measurable impact by hardening our AWS/EKS environment and systematically closing out security findings.\nResponsibilities\nSecurity Ownership: Drive software engineering security hygiene end-to-end, from identifying vulnerabilities and misconfigurations to implementing durable fixes across our platform. This includes AWS, Kubernetes, CDN/WAF, and other technologies used in the PDLC\nCross-Functional Collaboration: Work hand-in-hand with DevOps and Engineering teams to embed security best practices into everyday workflows, without slowing down velocity\nContinuous Learning: Stay current on evolving cloud security threats, tooling, and best practices, ensuring Raya's infrastructure stays ahead of emerging risks\nFindings Remediation: Triage, prioritize, and systematically close out security findings, translating scanner output into practical, actionable engineering fixes\nOperational Excellence: Expand and maintain security checks and guardrails in CI/CD pipelines and the broader PDLC, so security becomes a natural part of how we ship, not an afterthought\nQualifications\nStrong hands-on experience with AWS and Kubernetes/EKS, comfortable navigating cloud infrastructure and container environments from day one\nSolid foundation in security fundamentals: vulnerability management, IAM, network security, and cloud security posture management\nExperience triaging and remediating security findings from vulnerability scanners or cloud security tools\nFamiliarity with CI/CD pipelines and integrating security practices into the software development lifecycle\nStrong communication skills, able to work effectively with both DevOps and Security stakeholders and translate technical risk into clear priorities\nExperience with Infrastructure-as-Code (e.g., Terraform/OpenTofu), compliance frameworks, or container security tooling\nWhat Sets You Apart\nBridge Builder: You naturally sit at the intersection of DevOps and Security, translating between the two and earning trust from both sides\nImpact-driven: You prioritize the fixes and improvements that meaningfully reduce risk, rather than chasing every alert\nGrowth-oriented: You possess a perpetual learner's mindset, staying curious about new threats, tools, and cloud-native security practices\nOwnership mentality: You take findings from discovery to resolution without needing to be chased, and you build systems so problems don't recur\nProductivity-obsessed: You value tools, workflows, and automation that make security scalable rather than manual\nBias toward shipping and iteration: You're able to harden systems incrementally, learn, and refine in short cycles rather than waiting for a \"perfect\" fix\n$160,000 - $190,000 a year\nWe may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.","datePosted":"2026-08-03T18:57:44.070Z","dateModified":"2026-08-03T18:57:44.070Z","hiringOrganization":{"@type":"Organization","name":"Raya App","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"f80685d91c08ccfd265bc113"},"url":"https://jobsearcher.com/jobs/f80685d91c08ccfd265bc113"}}