> Markdown version of [/jobs/ext/2704025-security-operations-engineer-ii](https://www.wearedevelopers.com/jobs/ext/2704025-security-operations-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Operations Engineer II - **Company:** Axon Enterprise, Inc. - **Location:** Boston, MA, United States (Remote available) - **Experience:** Expert - **Salary:** $148,500.0 - $237,600.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Cloud Engineering, Configuration Management Databases, Continuous Integration, Linux, Distributed Systems, Identity and Access Management, Image Management, Key Management, Public Key Infrastructure, Role-Based Access Control, Security Software, Systems Integration, Software Vulnerability Management, Data Logging, Scripting, Okta, Delivery Pipeline, Reliability of Systems, Containerization, Kubernetes, Webforms, Hashicorp - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-security-operations-engineer-ii-axon-2-7981602 ## About the Role * 7+ years of experience in infrastructure, platform, SRE, or security engineering roles. * Previous experience administering Kubernetes platforms (EKS and/or AKS) and container registries (ECR and/or ACR), including cluster provisioning, upgrades, networking, RBAC, policy enforcement, workload security, image management, and ongoing operations in production environments. * Strong experience managing and securing Kubernetes clusters and containerized workloads in production environments. * Hands-on experience with PKI platforms, certificate lifecycle management, secrets management, and encryption technologies. * Experience operating cloud-native security solutions such as AWS KMS, Azure Key Vault, HashiCorp Vault, EJBCA, Smallstep, or Venafi. * Strong understanding of Linux systems, networking, distributed systems, and Kubernetes security best practices. * Experience with automation, scripting, Infrastructure-as-Code, and CI/CD pipelines for PKI and infrastructure operations. * Familiarity with IAM and access management platforms such as Okta, Entra ID, Keycloak, or similar solutions. * Experience with monitoring, logging, alerting, and troubleshooting distributed infrastructure and security systems. * Strong communication and collaboration skills across engineering, operations, and security teams. * Passion for building secure, scalable, and reliable infrastructure platforms. ## Description As a Senior Security Operations Engineer II, you will play a key role in building secure, reliable, and developer-friendly infrastructure that enables teams to move quickly without compromising security. You will solve complex technical challenges, improve system reliability through automation, and partner closely with engineering teams to scale security capabilities across the organization. In this role, you will design and develop security tools that support vulnerability management and secure software delivery pipelines, integrating security seamlessly into developer workflows. Your work will help reduce friction for developers while ensuring high standards for security, reliability, and operational efficiency across mission-critical systems., * Design, build, and operate secure, scalable infrastructure and developer-friendly security platforms. * Own the security and operational health of Kubernetes platforms and container registries, including cluster provisioning, upgrades, hardening, policy enforcement, image security, and ongoing operational support. * Develop and maintain in-house tools for vulnerability management and CMDB lifecycle management, enabling asset discovery, tracking, and remediation workflows. * Design, provision, and manage AWS infrastructure that supports enterprise security services using infrastructure-as-code and cloud-native architectures. * Enhance CI/CD systems with automated security testing, compliance checks, and deployment safeguards. * Implement and improve Kubernetes security practices, including workload protection, policy enforcement, cluster hardening, and runtime monitoring. * Troubleshoot and resolve complex operational and system-level issues across environments. * Partner with engineering, platform, and SRE teams to ensure security solutions fit fast-moving development cycles. * Contribute to infrastructure-as-code and automation initiatives to enforce secure configuration and reduce manual drift. * Continuously evaluate emerging threats and tooling to strengthen defenses and developer productivity. * Build and improve security tooling that integrates into developer workflows, including in-house systems to manage vulnerabilities and the CMDB (Configuration Management Database). * Provision, maintain, and secure Kubernetes platforms and container registries, ensuring clusters are resilient, compliant, and aligned with security best practices. * Implement automated security checks and guardrails in CI/CD pipelines to detect and prevent vulnerabilities early. * Provision and maintain secure AWS infrastructure to support security platforms and services, leveraging infrastructure-as-code and cloud-native best practices. * Collaborate closely with developers and platform teams to design secure services, infrastructure, and deployment processes. * Investigate security and infrastructure incidents, perform root cause analysis, and implement long-term remediation and automation. * Enhance security observability through improved logging, metrics, and alerting to strengthen detection and response. * Maintain and improve internal security tools, runbooks, and documentation to increase operational efficiency., The above job description is not intended as, nor should it be construed as, exhaustive of all duties, responsibilities, skills, efforts, or working conditions associated with this job. The job description may change or be supplemented at any time in accordance with business needs and conditions. Some roles may also require legal eligibility to work in a firearms environment. We collect personal information from applicants to evaluate candidates for employment. You may request access, deletion, or exercise other CCPA rights at axongreenhousesupport@axon.com or via our Axon Privacy Web Form. For more information, please see the Your California Privacy Rights section of our Applicant and Candidate Privacy Notice. Axon's mission is to Protect Life and is committed to the well-being and safety of its employees as well as Axon's impact on the environment. All Axon employees must be aware of and committed to the appropriate environmental, health, and safety regulations, policies, and procedures. Axon employees are empowered to report safety concerns as they arise and activities potentially impacting the environment. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Securing Secrets in the GitOps era](https://www.wearedevelopers.com/videos/546-securing-secrets-in-the-gitops-era) - [Kubernetes Security - Challenge and Opportunity](https://www.wearedevelopers.com/videos/412-kubernetes-security-challenge-and-opportunity) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)