- Company Name
- Vast
- Job Title
- IT DevOps Engineer
- Job Description
-
**Job Title:** IT DevOps Engineer
**Role Summary:**
Design, build, and secure modern cloud‑first and bare‑metal IT infrastructure to support the development of artificial‑gravity space stations. Lead end‑to‑end provisioning, automation, monitoring, and incident response while enforcing zero‑trust and security‑as‑code practices.
**Expectations:**
- 3+ years of experience designing, deploying, and managing highly available security services (e.g., SIEM).
- Proven expertise with Kubernetes (including security features) and cloud environments.
- Strong background in DevOps toolchains (CI/CD, Terraform, CloudFormation, Pulumi, GitOps).
- Ability to collaborate across data‑center, hardware, and networking teams.
- U.S. person status for export‑control compliance.
**Key Responsibilities:**
- Architect and harden Kubernetes clusters on bare metal and cloud platforms, implementing isolation, encryption, and policy enforcement.
- Develop secure provisioning pipelines for bare‑metal servers (DHCP, DNS, PXE/iPXE/HTTPBoot) with measured boot, secure boot, and hardware trust.
- Build and maintain security automation tooling (Go, Python, Bash) for provisioning, monitoring, and continuous validation.
- Manage infrastructure as code using GitOps (Git, Flux, Terraform) with security scanning and policy‑as‑code controls.
- Design and operate monitoring/alerting pipelines; integrate observability tools (e.g., Falco, eBPF, OSQuery).
- Produce and keep up‑to‑date documentation, runbooks, and security procedures for repeatable operations.
- Conduct threat modeling, risk assessments, and drive remediation to reduce attack surface.
- Support incident response: containment, analysis, and post‑incident infrastructure improvements.
**Required Skills:**
- Kubernetes administration and security (RBAC, PodSecurity, admission controllers, runtime security).
- Cloud platforms (AWS, GCP, Azure) and infrastructure‑as‑code (Terraform, CloudFormation, Pulumi).
- Linux system administration and secure boot provisioning.
- Scripting/programming: Go, Python, Bash.
- GitOps workflows (Git, Flux).
- Networking and security fundamentals (zero‑trust, segmentation, authentication).
- Experience with observability and security tooling (SIEM, Falco, eBPF, OSQuery).
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Engineering, Information Technology, or equivalent practical experience.
- Relevant certifications (e.g., Certified Kubernetes Administrator, AWS Certified Solutions Architect) are a plus.
- Must meet U.S. export‑control eligibility (U.S. person).
Long beach, United states
On site
Junior
14-12-2025