- Company Name
- OceanMD, a WELL Health Company
- Job Title
- DevOps and Security Engineer
- Job Description
-
Job title: DevOps and Security Engineer
Role Summary: Design, implement, and manage secure AWS infra for a cloud‑native SaaS healthcare platform. Own CI/CD pipelines, infrastructure-as-code, security controls, monitoring, and incident response to ensure high availability, compliance, and data protection.
Expectations: Deliver security‑first solutions in a fast‑moving, multi‑region environment; lead automation, compliance, and resilience initiatives; act as a bridge between development, operations, and security teams.
Key Responsibilities:
- Architect and enforce AWS security best practices across VPCs, IAM, VPNs, firewalls, and RDS.
- Create and maintain IaC (Terraform, Ansible) for production workloads and CI/CD pipelines (Jenkins, GitHub Actions).
- Implement and manage security tooling: CSPM/DSPM/ASPM, vulnerability scanners, IAM audit, SIEM integrations.
- Govern, monitor, and alert on infrastructure and application events; lead incidents and post‑mortem processes.
- Develop and enforce policy‑as‑code frameworks for governance and compliance (ISO 27001, SOC 2).
- Mentor and collaborate with developers, product, and ops to embed security into every layer of the platform.
- Continuously evaluate new cloud‑security services and frameworks; drive automation of compliance checks.
Required Skills:
- Expert in AWS services (EC2, RDS, S3, VPC, CloudTrail, Config, Security Hub).
- Proficiency with IaC tools: Terraform, Ansible, and CI/CD systems (Jenkins, GitHub Actions, GitLab CI).
- Strong background in network security, IAM, VPN, firewalls, and container security.
- Experience with SIEM, CSPM, DSPM, ASPM, IaC security scanners, and vulnerability management.
- Knowledge of compliance standards (ISO 27001, SOC 2, HIPAA/HITRUST).
- Problem‑solving mindset, excellent communication, and mentorship ability.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Relevant certifications: AWS Certified Security – Specialty, AWS Certified DevOps Engineer – Professional, or equivalent.