DevOps/Platform Lead

Nsight
United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$160,000.0 - $190,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Audit Trail Bash Shell Software as a Service Cloud Computing Configuration Management Static Program Analysis Continuous Integration DevOps Programming Tools Disaster Recovery
+22 more
Domain Name System (DNS) Github Identity and Access Management Python (Programming Language) Key Management Network Configuration and Change Management Networking Basics Routing Ansible Prometheus Toolchain Datadog Scripting GitHub Copilot Grafana Amazon Virtual Private Cloud (VPC) Cloudwatch Terraform SentinelOne Expertise Software Version Control Static Application Security Testing Vulnerability Analysis

Job description

If you have built pipelines that engineering teams actually depend on, you have been paged at 2am and made sure it did not happen again, and you care about getting security right, not as a box to check but as a prerequisite for shipping confidently, this role was built for you., As our DevOps / Platform Lead, you will own the full deployment infrastructure for PRVNT: CI/CD pipelines, security gates, environment parity, secrets management, and the AI native toolchain that enables our engineering team to move fast without leaving compliance behind. This is a greenfield build, not a maintenance seat. You will work directly with the VP of Engineering to design and operate the pipeline foundation the entire organization runs on., CI/CD and Delivery Infrastructure

  • Design, build, and own CI/CD pipelines for all new products and greenfield builds; provide support on existing pipeline infrastructure as needed.
  • Define pipeline standards that support parallel release streams and implement merge-blocking gates that prevent new high-severity security findings from reaching production.
  • Design deployments for forward progression: feature flags, canary releases, and automated validation gates that make every release safe to ship without relying on rollback.
  • Manage GitOps workflows using ArgoCD or equivalent with declarative deployment configuration, sync policies, and environment promotion gates.
  • Enforce source control standards across all repositories: branching strategy, signed commits, branch protection rules, and CODEOWNERS configuration.

Security and Compliance Automation

  • Automate vulnerability detection and remediation workflows at the pipeline level: static analysis, dependency scanning, and container scanning integrated as blocking gates, not advisory reports.
  • Generate and maintain SBOMs for all containerized workloads; container registry scanning integrated into the pipeline as a blocking gate.
  • Maintain continuous audit evidence trails across all products, enabling rapid response to HiTrust R2 and SOC 2 review requests without a fire drill.
  • Enforce secrets management, access controls, and HIPAA-compliant infrastructure configurations: KMS, Secrets Manager, IAM policies, and GuardDuty alerting owned and maintained here., * Architect and maintain the infrastructure that supports AI-assisted development: how AI-generated output enters the pipeline, how it gets validated, and how it ships safely to production.
  • Enforce BAA-compliant AI tooling standards at the infrastructure level, with documented usage boundaries for non-PHI environments.
  • Build audit trail infrastructure and automated review gates for AI-generated code: every AI contribution entering production must be traceable, attributable, and compliant with the engineering quality bar., * Provision and manage all cloud infrastructure through IaC: Terraform required; no manual console changes to production.
  • Execute container orchestration on EKS or ECS: configuration, scaling, and environment consistency across all products.
  • Own disaster recovery planning, availability architecture, and uptime accountability across all production systems.
  • Build and maintain the full observability stack: Prometheus, Grafana, Loki, Tempo, and OpenTelemetry (or equivalent) with alerting that surfaces real signal, not noise.
  • Own VPC architecture, DNS, NACLs, and routing across environments: network configuration is infrastructure code, not tribal knowledge.

The Impact You’ll Make

Infrastructure Architect: You will build the deployment foundation the entire organization runs on - production-grade, compliance-first, and designed to scale with us.

Compliance Enabler: By designing airtight security gates and audit evidence trails, you will ensure HiTrust R2 and SOC 2 reviews are non-events - not fire drills - protecting both the business and the patients we serve.

AI Pioneer: You will architect the infrastructure that makes AI agents first-class participants in the engineering pipeline - safely, traceably, and in full compliance with HIPAA and BAA requirements.

Requirements

Do you have experience in Vuls?, * 5+ years in DevOps or platform engineering, with at least 2 years in a healthcare or regulated industry environment; direct, hands on HIPAA compliant deployment experience, not just theory.

  • Hands on AWS at production depth: EKS or ECS with working command of ECR, IAM, VPC, KMS, Secrets Manager, CloudWatch, and GuardDuty; built and operated in this stack.
  • IaC at production scale: Terraform required; all environment configuration is code, reviewed, and version controlled.
  • GitOps practice: ArgoCD or equivalent; declarative deployment, sync policies, and gating promotions across environments safely.
  • Demonstrated GitHub Actions experience at scale; pipelines that engineering teams rely on in production, not sandbox demos.
  • Observability stack ownership: Prometheus, Grafana, Loki, Tempo, OpenTelemetry, or Datadog; built or owned a real observability setup with alerting that drives action, not noise.
  • Container fundamentals: image lifecycle management, ECR, SBOM generation, and container scanning integrated into the pipeline as a gate.
  • Scripting fluency in Python and Bash; network fundamentals including VPC design, DNS, NACLs, and routing.
  • Demonstrated experience integrating SAST and SCA tooling (Snyk, SentinelOne, or equivalents) into CI/CD with merge blocking enforcement.
  • Working knowledge of HiTrust R2 or SOC 2 controls, including audit evidence requirements and how infrastructure decisions create or close compliance gaps.
  • Daily, demonstrated use of Claude Code, GitHub Copilot, or equivalent AI assisted development tools. This is a hard requirement. You cannot build AI native infrastructure if you have never operated inside the model.
  • Strong track record of platform reliability ownership; on call accountability for production systems.

Preferred:

  • Ansible experience for configuration management.
  • Scripting or development experience in Go.
  • Certifications: CKA, CKS, or AWS Solutions Architect (Associate or Professional). These signal the right foundation but do not substitute for demonstrated production experience.
  • Experience operating within a SaaS healthcare platform environment (RPM, CCM, or similar).
  • Exposure to AI native infrastructure architecture beyond standard CI/CD automation.

Benefits & conditions

Pulled from the full job description

  • Paid time off
  • Vision insurance
  • Dental insurance, * PTO
  • Medical, Dental, Vision, and supplemental insurance options
  • 401(k) Plan with 3.5% Company Match
  • Company-provided equipment

About the company

Nsight Health is transforming how care is delivered through Remote Patient Monitoring (RPM), Chronic Care Management (CCM), and Behavioral Health Integration (BHI). We empower healthcare providers to manage chronic conditions using real-time data, AI-enabled technology, and 24/7 clinical support. Our HIPAA-compliant platform connects patients and care teams nationwide-improving outcomes, adherence, and peace of mind. Join a fast-growing, mission-driven team that blends healthcare and technology to make a measurable difference in people’s lives., Nsight Health is an AI-first organization. Every member of our leadership and operations team is expected to actively use AI tools in their day-to-day work - not as a novelty, but as a core productivity multiplier. This role requires genuine curiosity about AI, comfort experimenting with tools like Claude, ChatGPT, and workflow automation platforms, and the judgment to know when AI helps and when it doesn’t. If AI makes you uncomfortable, this is not the right role.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

5:34 min

Managing token budgets and enterprise usage of coding agents

Chris Heilmann +2 · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

3:32 min

Shifting to a DevOps career from non-technical backgrounds

Megha Kadur · LIVE

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

Videos

See all

Related articles

See all