Senior Data Engineer

Mount Indie
San Diego, CA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Airflow Amazon S3 Apache HTTP Server Information Engineering Extract Transform Load (ETL) Software Debugging Linux Federal Information Processing Standards (FIPS) Apache Hive Key Management PostgreSQL Microsoft SQL Server
+21 more
Online Analytical Processing OAuth OpenID Operational Databases Oracle (Applications) Role-Based Access Control Simple Object Access Protocol (SOAP) SQL Databases Data Streaming Ceph (Software) Pulumi Okta Delivery Pipeline Debezium Kubernetes Apache Flink Apache Kafka Vertica Terraform Stream Processing Legacy Systems

Job description

Forward-deployed means aligned with the mission hero , not always on a plane . Most of the work is remote. You’ll travel to sites when the engagement genuinely calls for it - initial standup, in-SCIF integration work, on-the-ground incident response, training and knowledge transfer - and you’ll be on a video call or in a shared chat with that same mission hero the rest of the time. The job is being their engineer, not living at their desk.

You are a data engineer, a data scientist, and a general solutioner. You can take responsibility for the full breadth of a data platform - storage, ingestion, streaming, governance, access, and the Kubernetes machinery underneath all of it - make it work where it has to work, analyze what’s running through it, and solve problems in real time for the mission hero.

Responsibilities:

Deploy and harden UDS Data Capability in the mission hero’s environment - stand up the UDS Store (Iceberg, Rook/Ceph, pgvector, Postgres), wire up UDS Transit for air-gap data movement, configure UDS Govern policies (Pepr/Lula), and integrate UDS Connect (Strimzi/Kafka) where streaming or legacy connectors are required.

Own the integration with what they already have - connect UDS Data Capability to whatever’s already running: Big Bang, legacy Oracle and SQL Server, flat-file drops,

SOAP/REST endpoints, message buses, existing object storage, identity providers (Keycloak, mission-side SSO).

Build pipelines that move data through classification boundaries - ingestion, transformation, catalog registration, model/dataset packaging via Zarf, cross-domain transit, eventual consistency across DDIL conditions.

Operate what you deploy - initial day-2 ownership: capacity, performance, backup/restore (Velero), observability (Vector/Loki), incident response, upgrade paths. Hand off to the mission hero’s ops team once it’s stable.

Generate accreditation artifacts - STIG evidence, cATO documentation, FIPS validation notes, policy mappings. You produce the evidence the mission hero’s ISSM/ISSO needs to actually run this in IL4/IL5.

Be the voice of the mission hero back to product and engineering - file the issues, write the postmortems, propose the operator improvements, push the platform team on what’s actually breaking in the field. Your field experience is the highest-signal input we have.

Train and transfer - leave the mission hero’s team self-sufficient: runbooks, architecture docs, working sessions, knowledge transfer.

Grow junior Data Engineer FDEs - pair on hard problems, review integration designs before they reach the customer, and help junior engineers build judgment faster than they would alone. You’re not managing anyone; you’re making the team better.

Requirements

Data engineering breadth

Lakehouse & storage - production experience with Apache Iceberg (or Delta/Hudi), object storage (Ceph/S3-compatible), Postgres (including extensions like pgvector), and at least one columnar/OLAP engine (Trino, DuckDB, ClickHouse, Spark SQL).

Streaming & integration - Kafka (preferably Strimzi on Kubernetes), Flink or equivalent stream processing, CDC patterns (Debezium), and the ability to bridge legacy systems (Oracle, SQL Server, flat files, SOAP) into modern pipelines.

Pipelines & orchestration - Airflow, Dagster, Argo Workflows, or similar; comfort building, scheduling, monitoring, and recovering production data pipelines.

Governance, catalog & access - REST catalogs (Iceberg REST, Polaris/Gravitino/Nessie family), ABAC/RBAC patterns, OIDC/OAuth, lineage and audit.

Data modeling & SQL - fluent in SQL; comfortable designing schemas for both analytical and operational workloads.

Platform & infrastructure (Desired Experience - we can train on this!)

Kubernetes in production - deployments, operators, CRDs, storage classes, networking. You don’t have to write controllers from scratch, but you can read and debug them.

Linux fundamentals, container runtime behavior, networking, TLS, secrets management.

IaC (Terraform, Pulumi, or similar) and GitOps patterns (Flux, ArgoCD).

Familiarity with the CNCF ecosystem - what’s a foundation project, what’s a single-vendor project, why it matters.

What “forward-deployed” requires

Active DoD security clearance required - Top Secret; minimum active Secret with the ability to obtain Top Secret

Comfort being the technical face of the team to a mission hero - listening before prescribing, writing clearly, briefing technical and non-technical stakeholders, and saying “I don’t know yet, let me find out” without losing the room.

Comfort with on-site work when the engagement calls for it - in SCIFs and other restricted spaces, sometimes for days or weeks - and equal comfort doing the rest of the work remotely without losing the relationship.

Bias toward delivery. You’d rather ship a working integration with rough edges than a perfect design that hasn’t met a real workload.

Self-direction. The mission hero’s environment will surprise you, and the answer often isn’t in the documentation yet - you’ll write it.

The maturity to mentor without hovering. Junior engineers grow by doing hard things. Your job is to make sure they have what they need, not to do it for them.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 ¡ Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz ¡ WWC Europe 2026

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard ¡ WWC 2025

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 ¡ LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz ¡ WWC Europe 2026

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani ¡ Europe 2026 Virtual

Videos

See all

Related articles

See all