> Markdown version of [/jobs/ext/209553-senior-security-operations-engineer-ii](https://www.wearedevelopers.com/jobs/ext/209553-senior-security-operations-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Operations Engineer II - **Company:** Amazon.com, Inc. - **Location:** Seattle, WA, United States (Remote available) - **Experience:** Expert - **Salary:** $148,500.0 - $237,600.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Bioinformatics, Cyber Security, Continuous Integration, Linux, Disaster Recovery, Distributed Systems, Identity and Access Management, Instant Messaging Technology, Key Management, Public Key Infrastructure, Phishing, Data Logging, Scripting, Okta, Spring Cloud, Containerization, Kubernetes, Hashicorp, Serverless Computing - **Published:** May 16, 2026 - **Apply:** https://www.careerjet.com/jobad/us96bd01d7f00b2364e71297a41a64a16a ## About the Role * 7+ years of experience in infrastructure, platform, SRE, or security engineering roles. * Strong experience managing and securing Kubernetes clusters and containerized workloads in production environments. * Hands-on experience with PKI platforms, certificate lifecycle management, secrets management, and encryption technologies. * Experience operating cloud-native security solutions such as AWS KMS, Azure Key Vault, HashiCorp Vault, EJBCA, Smallstep, or Venafi. * Strong understanding of Linux systems, networking, distributed systems, and Kubernetes security best practices. * Experience with automation, scripting, Infrastructure-as-Code, and CI/CD pipelines for PKI and infrastructure operations. * Familiarity with IAM and access management platforms such as Okta, Entra ID, Keycloak, or similar solutions. * Experience with monitoring, logging, alerting, and troubleshooting distributed infrastructure and security systems. * Strong communication and collaboration skills across engineering, operations, and security teams. * Passion for building secure, scalable, and reliable infrastructure platforms. ## Description As a Senior Security Operations Engineer, you'll play a key role in ensuring the reliability, performance, and scalability of our security infrastructure. You'll solve complex technical problems, improve our systems through thoughtful automation, and work closely with cross-functional teams to support our services as they scale. You'll provide hands on execution capabilities for new initiatives in the Identity space, primarily to build out, maintain and support for PKI solutions at scale and provide auxiliary execution support for user identity and access management (IAM) initiatives. Your work will have a direct impact on uptime, efficiency, and the overall developer experience-contributing to our mission to deliver high-quality mission critical systems at speed. What You'll Do Location: This role is based out of our Seattle, WA office and follows a hybrid schedule. We rely on in-person collaboration and ask that team members work onsite Tuesdays through Fridays, with the flexibility to work remotely on Mondays, unless there is an approved workplace accommodation. We believe that connection fuels innovation, and our in-office culture is designed to foster meaningful teamwork, mentorship, and shared success. Reports to: Manager, InfoSec Engineering Direct Reports: 0 * Design, deploy, and operate PKI infrastructure supporting secure authentication, encryption, and certificate lifecycle management. * Manage certificates, secrets, keys, and trust stores, including issuance, renewal, rotation, and revocation. * Build, maintain, and secure Kubernetes clusters hosting PKI and secret management services. * Automate PKI and secret management workflows using Infrastructure-as-Code, CI/CD pipelines, and Kubernetes-native tooling. * Monitor and troubleshoot PKI, certificate, secret, and Kubernetes infrastructure issues, performing root cause analysis and remediation. * Collaborate with other teams to integrate PKI and secrets management into cloud-native applications and services. * Maintain operational documentation, runbooks, and disaster recovery procedures for PKI and Kubernetes environments. * Ensure PKI and Kubernetes platforms meet security, reliability, and compliance requirements. * Build and operate secure, reliable, and scalable PKI and secrets management infrastructure. * Design and implement PKI solutions supporting 24x7 production and enterprise environments. * Manage certificates, secrets, encryption keys, and access controls across Kubernetes-based platforms. * Deploy, maintain, and secure Kubernetes clusters hosting PKI and secret management services. * Automate certificate lifecycle, secret rotation, and infrastructure operations using CI/CD and Infrastructure-as-Code. * Troubleshoot and resolve PKI, certificate, secret, and Kubernetes infrastructure issues. * Collaborate with SRE, platform, and security teams to integrate PKI and secrets management into cloud-native services. * Participate in on-call rotations, incident response, and operational improvement initiatives. * Document PKI architecture, operational procedures, and security best practices, Studies have shown that women and people of color are less likely to apply to jobs unless they check every box in the job description. If you're excited about this role and our mission to Protect Life but your experience doesn't align perfectly with every qualification listed here, we encourage you to apply anyways. You may be just the right candidate for this or other roles. Important Notes The above job description is not intended as, nor should it be construed as, exhaustive of all duties, responsibilities, skills, efforts, or working conditions associated with this job. The job description may change or be supplemented at any time in accordance with business needs and conditions. Some roles may also require legal eligibility to work in a firearms environment. We collect personal information from applicants to evaluate candidates for employment. You may request access, deletion, or exercise other CCPA rights at or via our . For more information, please see the Your California Privacy Rights section of our Axon's mission is to Protect Life and is committed to the well-being and safety of its employees as well as Axon's impact on the environment. All Axon employees must be aware of and committed to the appropriate environmental, health, and safety regulations, policies, and procedures. Axon employees are empowered to report safety concerns as they arise and activities potentially impacting the environment. We are an equal opportunity employer that promotes justice, advances equity, values diversity and fosters inclusion. We're committed to hiring the best talent - regardless of race, creed, color, ancestry, religion, sex (including pregnancy), national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, genetic information, veteran status, or any other characteristic protected by applicable laws, regulations and ordinances - and empowering all of our employees so they can do their best work. If you have a disability or special need that requires assistance or accommodation during the application or the recruiting process, please email Please note that this email address is for accommodation purposes only. Axon will not respond to inquiries for other purposes. Phishing alert: Axon will never ask you to pay for any part of the hiring process, including training, equipment, or background checks. We do not make job offers via text message, WhatsApp, or instant messaging platforms without a formal interview process. All legitimate job openings are listed on our official careers page at . If you receive a suspicious offer or outreach from an email address that is not @axon.com, or if you are asked for sensitive personal information (bank details, Social Security Number) prematurely, please ignore the message and report it to . Create a Job Alert Interested in building your career at Axon? Get future opportunities sent straight to your email. Create alert ## Related Videos - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Kubernetes Security - Challenge and Opportunity](https://www.wearedevelopers.com/videos/412-kubernetes-security-challenge-and-opportunity) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)