The DevSecOps Engineer plays a foundational and critical role in the development and maintenance of a high-security infrastructure for an enterprise-grade Agent Development Platform (ADP) within a US-based real estate intelligence platform. This role is responsible for architecting and securing the environment where autonomous agents operate, ensuring strict isolation, zero-trust connectivity, and robust data protection to support advanced agentic reasoning capabilities.
Key Responsibilities and Contributions:
- Agent Sandboxing & Isolation: Led the implementation and management of Firecracker MicroVMs to provide isolated, ephemeral runtimes for autonomous agents. Ensured that agents execute within strictly isolated and secure environments, leveraging container technologies such as Kubernetes and Docker where applicable.
- Secure Data Infrastructure: Provisioned and optimized a multi-layered data stack comprising PostgreSQL for OLTP workloads, ChromaDB/PGVector as vector databases, and Neo4j as a graph database to enable relational knowledge mapping essential for AI-driven applications.
- Event Orchestration: Designed and managed high-performance event streaming systems using AWS SQS, EventBridge, and Kafka to facilitate agent-to-agent communication and Human-in-the-Loop (HITL) escalation mechanisms.
- Infrastructure as Code (IaC): Automated the provisioning and management of AWS cloud infrastructure and Kubernetes clusters using industry-standard IaC tools, ensuring repeatability, scalability, and security compliance.
- Security & Identity Integration: Implemented WorkOS/IDP solutions for B2B identity management and multi-tenancy, enforcing strict logical separation of tenant data and configurations to maintain data privacy and security.
- Network Hardening: Architected and enforced strict egress controls including firewalls and proxy-only outbound routing to prevent data exfiltration by autonomous agents, upholding a zero-trust security posture.
Technical Skills and Expertise Demonstrated:
- Expertise in AWS cloud services, Kubernetes orchestration, and container security.
- Experience with Firecracker MicroVMs for secure, ephemeral runtime environments.
- Management and scaling of vector and graph databases tailored for AI applications.
- Strong security-first mindset with knowledge of zero-trust architecture and OWASP principles.
- Proficiency in event-driven architectures and real-time streaming platforms.
- Advanced scripting skills in Python and Bash for automation and CI/CD security gates.
- Experience with workflow orchestration tools such as Temporal for managing complex agent workflows.