What are the responsibilities and job description for the DevSecOps Engineer position at Lazarus AI?
At Lazarus, we build foundation models to help people solve the world's toughest problems. Enterprise and government clients use our APIs to power products and workflows that keep humans focused on what we do best. We're a venture-backed team headquartered in the Boston, MA area, and we share a passion for innovation, growth, and a commitment to the responsible use of AI.
You can check out a demo of what we do here.
Job Overview
We are seeking a proactive and skilled DevOps Engineer/Red Team Specialist to join our team. This role involves managing and securing cloud environments on Google Cloud Platform (GCP), ensuring SOC 2 compliance, and deploying and maintaining CI/CD infrastructure. You will leverage tools like Atlassian, GitHub/GitLab, Rundeck, Terraform, Drata, and Datadog to deliver robust, secure, and scalable solutions. As part of the Red Team, you will identify vulnerabilities in microservices-based architecture and other critical infrastructure to improve system security and reliability.
Key Responsibilities
DevOps Responsibilities:
You can check out a demo of what we do here.
Job Overview
We are seeking a proactive and skilled DevOps Engineer/Red Team Specialist to join our team. This role involves managing and securing cloud environments on Google Cloud Platform (GCP), ensuring SOC 2 compliance, and deploying and maintaining CI/CD infrastructure. You will leverage tools like Atlassian, GitHub/GitLab, Rundeck, Terraform, Drata, and Datadog to deliver robust, secure, and scalable solutions. As part of the Red Team, you will identify vulnerabilities in microservices-based architecture and other critical infrastructure to improve system security and reliability.
Key Responsibilities
DevOps Responsibilities:
- Design, implement, and maintain CI/CD pipelines using GitHub, GitLab, and Rundeck.
- Automate cloud infrastructure provisioning and management with Terraform.
- Ensure optimal performance, scalability, and availability of services in GCP environments.
- Monitor infrastructure and application performance using Datadog and implement optimizations as needed.
- Collaborate with developers to integrate security into CI/CD workflows and protect microservices architecture.
- Perform penetration testing and vulnerability assessments on microservices-based systems and underlying infrastructure.
- Identify and exploit vulnerabilities in applications, networks, and cloud environments.
- Design and execute attack simulation scenarios to test incident response processes.
- Collaborate with the Blue Team to strengthen detection and response capabilities.
- Develop remediation strategies and enhance the overall security posture of the organization.
- Implement and maintain SOC 2 controls, ensuring alignment with compliance requirements.
- Collaborate with stakeholders to document and enforce SOC 2 policies and procedures.
- Use Drata to automate evidence collection and streamline audit processes.
- Address compliance gaps by integrating secure practices into DevOps workflows.
- 3 years of experience in DevOps, cloud infrastructure management, and security.
- Hands-on experience with Atlassian tools (Jira, Confluence), GitHub/GitLab, Rundeck, Terraform, and Datadog.
- Expertise in GCP, including services such as IAM, Security Command Center, and Compute Engine.
- Proven ability to secure and manage microservices-based architecture.
- Strong scripting and automation skills (e.g., Python, Bash).
- Familiarity with SOC 2 compliance frameworks and security best practices.
- Certifications such as GCP Professional DevOps Engineer, OSCP, or CISSP.
- Experience securing CI/CD pipelines and automating vulnerability management.
- Knowledge of incident response and disaster recovery planning for cloud environments.
- Comprehensive benefits package, including health, dental, and vision insurance, as well as retirement savings plans
- Flexible working from home arrangements
- Opportunities for growth and professional development
- A collaborative and supportive company culture
- Access to cutting-edge technology and resources for research and development
- Salary range: 110,000-130,000 equity bonus