Senior DevOps Engineer
This is a senior, hands-on security engineering role focused on continuously improving the security posture of the MNTN platform through architecture, automation, and platform engineering. You'll work as a technical peer across DevOps and Engineering, with scope spanning application, cloud, Kubernetes, systems, and network architecture.
You'll combine hands-on work with individual teams and internal consulting to shape secure designs, solve complex problems, and turn recurring risks and requirements into secure defaults, reusable controls, self-service platform capabilities, and automated security observability. The goal is to make strong security practices consistent, measurable, and easy to adopt across Engineering.
This is not a GRC or audit role. Your impact comes from deep technical judgment, effective collaboration, and making good security decisions repeatable across the organization.
What you’ll do
Shape security architecture across applications, cloud infrastructure, Kubernetes, networking, CI/CD, identity, and data flows.
Partner with engineering teams on architecture and threat modeling, helping design secure systems before they ship.
Turn security requirements and recurring risks into secure defaults, reusable platform capabilities, policy-as-code, and automated enforcement. Build automated security monitoring and response, including CVE detection, prioritization, remediation, verification, alerting, and visibility into control failures.
Design and operate secure infrastructure primarily on **Google Cloud and GKE**, using Kubernetes as the core platform abstraction.
Implement and evolve controls for IAM/RBAC, workload identity, least privilege, secrets, environment isolation, network segmentation, container security, and software supply chain.
Build automation, infrastructure tooling, and CI/CD systems using GitOps, Terraform / OpenTofu, Crossplane, Argo, APIs, SDKs, and code.
What success looks like
Security is addressed through architecture and platform design, not one-off fixes.
Secure defaults and self-service capabilities make strong security practices easy to adopt.
Security risks and control failures are visible through automated monitoring and actionable alerting.
Reusable controls and standards improve security consistently across teams and systems.
Engineering teams trust you as an expert technical peer and involve you early in important design decisions.
What you’ll bring
5+ years in Platform, DevOps, SRE, Infrastructure, Cloud Security, or related engineering roles, with meaningful production ownership.
Deep security engineering knowledge across application, cloud, Kubernetes, identity, networking, data, and software supply chain.
Deep cloud and Kubernetes experience; **GCP/GKE strongly preferred**, with equivalent major-cloud experience considered.
Strong understanding of application and systems architecture, APIs, authentication/authorization, distributed systems, networking, and trust boundaries.
Strong software engineering and automation skills in Python and Typescript, including APIs, SDKs, CLIs, and internal tooling.
Deep Terraform / OpenTofu and Kubernetes experience, including reusable infrastructure patterns, GitOps, Helm, ArgoCD, RBAC, and workload security.
Experience with threat modeling, security observability, and translating security or compliance requirements into practical technical controls.
A platform mindset: you solve recurring problems with abstractions, paved roads, automation, and self-service rather than manual processes.
Comfortable using AI-assisted engineering tools daily while independently validating correctness, security, and operational impact.
Able to operate independently, consult effectively with engineering teams, communicate architectural tradeoffs, and influence senior technical peers.