UpstaffSign up
Last Update Last Updated: September, 2026

Senior DevSecOps Engineer

DevOps, Security Operations (SecOps).

Senior
C1 (Advanced)

Required Skills

AWS
AWS
ChromaDB
Python
Python

Nice to Have

Kubernetes
Kubernetes
PostgreSQL
PostgreSQL
AWS EventBridge
AWS EventBridge
Azure VM
Okta IdP administration
DRY
CI/CD
CI/CD
ISO 27001
GDPR
LangSmith
Langfuse
Neo4j
Neo4j
AI
AWS SQS
AWS SQS
Kafka
Kafka
Bash
Bash
IaC
SOC 2
Docker
Docker
OLTP
Vector
OWASP
PGVector
Firecracker
MicroVM
WorkOS
IDP

Summary

  • DevSecOps Engineer with expertise in architecting secure AWS production environments and implementing Firecracker MicroVMs for isolated agent runtimes
  • Skilled in managing multi-layered data infrastructures (PostgreSQL, ChromaDB/PGVector, and Neo4j) for AI-driven applications
  • Background in event-driven architectures (AWS SQS, EventBridge, and Kafka), combined with advanced automation in Python and Bash for CI/CD security gates
  • Zero-trust security models, network hardening, and multi-tenancy identity management with WorkOS/IDP
  • Skilled in IaC, Kubernetes security, and workflow orchestration with Temporal, ensuring compliance readiness for SOC 2 and ISO 27001
  • Location: USA, Mexico, Brazil, Argentina

Are you a talented developer looking for a remote job that lets you show your skills and get decent compensation? Join Upstaff.com, a platform that connects you with hand-picked startups and scale-ups in the US and Europe.

Role Overview:

The DevSecOps Engineer plays a foundational and critical role in the development and maintenance of a high-security infrastructure for an enterprise-grade Agent Development Platform (ADP) within a US-based real estate intelligence platform. This role is responsible for architecting and securing the environment where autonomous agents operate, ensuring strict isolation, zero-trust connectivity, and robust data protection to support advanced agentic reasoning capabilities.

Key Responsibilities and Contributions:

  • Agent Sandboxing & Isolation: Led the implementation and management of Firecracker MicroVMs to provide isolated, ephemeral runtimes for autonomous agents. Ensured that agents execute within strictly isolated and secure environments, leveraging container technologies such as Kubernetes and Docker where applicable.
  • Secure Data Infrastructure: Provisioned and optimized a multi-layered data stack comprising PostgreSQL for OLTP workloads, ChromaDB/PGVector as vector databases, and Neo4j as a graph database to enable relational knowledge mapping essential for AI-driven applications.
  • Event Orchestration: Designed and managed high-performance event streaming systems using AWS SQS, EventBridge, and Kafka to facilitate agent-to-agent communication and Human-in-the-Loop (HITL) escalation mechanisms.
  • Infrastructure as Code (IaC): Automated the provisioning and management of AWS cloud infrastructure and Kubernetes clusters using industry-standard IaC tools, ensuring repeatability, scalability, and security compliance.
  • Security & Identity Integration: Implemented WorkOS/IDP solutions for B2B identity management and multi-tenancy, enforcing strict logical separation of tenant data and configurations to maintain data privacy and security.
  • Network Hardening: Architected and enforced strict egress controls including firewalls and proxy-only outbound routing to prevent data exfiltration by autonomous agents, upholding a zero-trust security posture.

Technical Skills and Expertise Demonstrated:

  • Expertise in AWS cloud services, Kubernetes orchestration, and container security.
  • Experience with Firecracker MicroVMs for secure, ephemeral runtime environments.
  • Management and scaling of vector and graph databases tailored for AI applications.
  • Strong security-first mindset with knowledge of zero-trust architecture and OWASP principles.
  • Proficiency in event-driven architectures and real-time streaming platforms.
  • Advanced scripting skills in Python and Bash for automation and CI/CD security gates.
  • Experience with workflow orchestration tools such as Temporal for managing complex agent workflows.

How to Apply for Senior DevSecOps Engineer

Be ready for the next steps:

  • Create your profile on our website (import from LinkedIn)
  • 20-30-minute screening call
  • Technical interview feedback
  • Project Selection (we are looking for the best project for you).

Who can apply:

  • We work with developers across Europe, LATAM, the U.S. (W-9 form owners), Canada, Asia, Oceania, and the UK.
  • We do not provide visa assistance, and this cooperation model does not include direct-hire benefits.
  • We cannot accept applicants from Russia, Belarus, Iran, or North Korea.
This job is currently open and accepting applications 🔥
Apply Now
Submit CV / GitHub One time, no registration. Share your CV, LinkedIn, or GitHub profile.

Not your stack?

Join the Upstaff community and we are looking for the best project for you.

Submit a Talent for Senior DevSecOps Engineer
Attachment File attachment Arrow

Upload File. Drag and Drop or Browse

{# when reCAPTCHA is disabled server-side (staging/local test), drop the g-recaptcha binding so the button submits directly — keeps front/back in sync via one flag #}
At Upstaff we respect confidentiality, privacy and value your information.

Confidential (C) UPSTAFF LTD, England and Wales, #12727246 17 Montgomery Drive, Tavistock, United Kingdom PL19 8KX

Terms, conditions and legal information.

Thank you! 🎉

Your message has been successfully sent. We’ll review it and get back to you as soon as possible.

Create an account to save your details and track your applications.

Sign up