DevSecOps Engineer
- Location
- Los Angeles, CA
- Work type
- Full Time
- Posted
- 2026-07-20
Job description
Job Description
About the role:
The DevSecOps Engineer on the Duro Design team builds and operates the infrastructure platform that enables hardware engineers to ship with confidence every day. You’ll own the environments, pipelines, clusters, and databases that power our modern stack—ensuring everything is scalable, secure, and reliable. This role partners closely with engineering, security, and product teammates in a fast-moving, highly autonomous environment.
We’re looking for engineers who think in systems, embrace automation, and leverage modern AI-powered workflows to deliver resilient, production-grade infrastructure. This is a hybrid role based in Los Angeles, CA (3 days per week in office).
A day in the life of our DevSecOps Engineer:
Environment Ownership: Provision and manage multi-tenant and dedicated customer environments on AWS using DuploCloud, ensuring isolation, scalability, and reliability.
CI/CD Engineering: Design, optimize, and maintain GitHub Actions pipelines to enable fast, reliable daily deployments with tight feedback loops.
Kubernetes Operations: Deploy, scale, and troubleshoot production Kubernetes clusters, managing autoscaling policies, resource allocation, and health monitoring.
Database Reliability: Own PostgreSQL operations including provisioning, migrations, backups, replication, performance tuning, and disaster recovery strategies.
Infrastructure as Code: Build and maintain reproducible, version-controlled infrastructure using Terraform, Docker, and Kubernetes manifests.
Security Implementation: Partner with SecOps and CISO leadership to implement encryption policies, IAM configurations, VPC segmentation, logging, monitoring, and compliance-driven infrastructure controls across AWS and GovCloud.
Observability & Monitoring: Establish dashboards, alerts, and runbooks to maintain high availability and reduce incident frequency and recovery time.
AI-Driven Infrastructure Engineering: Leverage AI-augmented workflows to generate infrastructure modules, refine deployment scripts, and accelerate operational improvements while maintaining rigorous validation standards.
Continuous Improvement: Evaluate and integrate new tooling, improve provisioning strategies, and evolve infrastructure to support scale, compliance, and long-term system resilience.
Qualifications
Who We’re Looking For
Required:
7+ years of professional experience in DevOps, infrastructure engineering, or site reliability engineering with hands-on production ownership
Bachelor’s degree in Computer Science or related field (or equivalent practical experience)
Deep expertise in AWS (EC2, EKS/ECS, RDS, S3, IAM, VPC, CloudWatch) including experience in commercial and GovCloud environments
Strong Kubernetes experience managing clusters in production environments
Hands-on PostgreSQL operational experience including migrations, backup/recovery, replication, and performance tuning
Experience designing and maintaining CI/CD pipelines, particularly GitHub Actions
Infrastructure as code proficiency with Terraform and containerization tools such as Docker
Strong systems thinking and ability to design scalable, secure, and maintainable infrastructure platforms
Excellent written and verbal communication skills
Comfort operating in autonomous, fast-paced environments
A service-oriented mindset focused on enabling engineering teams to ship quickly and safely
Nice to Have:
Experience with DuploCloud or similar tenant management platforms
Experience building infrastructure for PLM, PDM, or hardware/manufacturing industry software
Background supporting on-premises or compliance-driven deployments
Familiarity with event-driven systems (NATS, Redis, Kafka)
Experience with observability tools such as Datadog, PostHog, or Sentry
Knowledge of compliance frameworks such as SOC 2, FedRAMP, or ITAR
Experience implementing zero-downtime deployment strategies