> Markdown version of [/jobs/ext/554435-senior-devops-engineer](https://www.wearedevelopers.com/jobs/ext/554435-senior-devops-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior DevOps Engineer - **Company:** TUNNL, LLC - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Amazon Elastic Compute Cloud, Command-Line Interface, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Computer Programming, Continuous Integration, Information Engineering, DevOps, Disaster Recovery, Domain Name System (DNS), Amazon DynamoDB, Github, Identity and Access Management, Virtual Private Networks (VPN), Python (Programming Language), Key Management, Network Security, Machine Learning, Networking Basics, Network Segmentation, Reliability Engineering, Ansible, Prometheus, Zero Trust Network Access, Security Information and Event Management, Software Engineering, Systems Integration, TCP/IP, Software Vulnerability Management, Datadog, Policy as Code, Data Logging, Load Balancing, Cloud Platform System, Delivery Pipeline, Grafana, Firewalls (Computer Science), Amazon Virtual Private Cloud (VPC), Cloudformation, Amazon Relational Database Service, Kubernetes, AWS Fargate, Functional Programming, CIS Benchmarks, Cloud Optimization, Amazon Simple Queue Service (SQS), Terraform, Splunk, Devsecops, Serverless Computing, Docker, Jenkins, Static Application Security Testing, Vulnerability Analysis, Microservices, Dynamic Application Security Testing - **Published:** June 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b66532c29a2d2fb3 ## About the Role Do you have experience in Stakeholder management?, * 5+ years of experience in Cloud Engineering, DevOps, SRE, Platform Engineering, or DevSecOps, with strong focus on security and automation. * Demonstrated senior-level ownership of cloud infrastructure and CI/CD systems supporting production workloads. Cloud Platform Expertise * Deep knowledge of AWS core infrastructure and security services (e.g., IAM, VPC, EC2, RDS, DynamoDB, Lambda, SQS/SNS, ECS/ECR, CloudTrail, Config, Security Hub, Inspector). Security Engineering & Governance * Strong knowledge of IAM design, network security controls, encryption systems (KMS, key rotation), secrets management, and secure service-to-service access patterns. * Experience implementing vulnerability scanning and compliance controls using tools such as Ethyca, Security Hub, Inspector, Aqua, Prisma, or similar. * Familiarity with container security, dependency security, and software supply chain security best practices. Automation & Infrastructure-as-Code * Strong proficiency with Infrastructure-as-Code tooling such as Terraform (preferred), CloudFormation, CDK, or Ansible. * Proven ability to standardize environments and reduce human risk through automation. Observability & Incident Readiness * Experience with SIEM/log aggregation and incident workflows, including Splunk or comparable systems. * Comfort supporting operational readiness through logs, traces, metrics, and post-incident analysis. Engineering Fundamentals * Strong scripting/programming ability (Python preferred) for automation, tooling, and integrations. * Experience with CI/CD tools (GitHub Actions, Jenkins, CodePipeline, or similar). * Familiarity with observability tooling (Prometheus, Grafana, ELK/EFK, or equivalents). * Strong Linux/Unix command-line skills and solid networking fundamentals (TCP/IP, DNS, VPNs, firewalls, load balancing). Expertise That Will Set You Apart * AWS certifications: Solutions Architect, Security Specialty, or DevOps Engineer - Professional. * Experience implementing Zero Trust principles and modern identity-driven security patterns. * Hands-on experience with cloud-native security architecture for microservices and serverless environments. * Background in security operations, incident response, and security program execution in regulated environments. ## Description Tunnl is seeking a highly skilled, security-minded Senior DevOps Engineer to help design, build, and secure our cloud infrastructure and software delivery pipelines. You will partner closely with software engineering, data science / machine learning, data engineering, cyber/security, and platform teams to create a secure, scalable, resilient foundation for solutions that support some of society's biggest challenges. This role blends deep DevOps engineering capability with security-first thinking. You will embed security controls into CI/CD, automate compliance guardrails, and raise the bar for infrastructure reliability and cloud security practices across AWS (with awareness of CLOUD best practices). You will help ensure that security, governance, and operational excellence are built into how Tunnl ships software, not bolted on afterward. If you thrive at the intersection of cloud engineering, automation, and applied security, this role will be a strong fit. How You Will Contribute Cloud & Infrastructure Security * Establish and enforce cloud security standards across AWS, including IAM, network segmentation, encryption, secrets management, and secure workload patterns. * Implement continuous security posture monitoring aligned to the AWS Well-Architected Framework and security best practices (e.g., CIS benchmarks, NIST guidance, ISO principles). * Design automated guardrails for vulnerability management, patching, configuration drift detection, key rotation, and secrets lifecycle management. * Improve detection and response readiness through centralized logging, alerting, and security event workflows. * Own the technical engagement with security and data privacy auditors, serving as Tunnl's primary point of contact for infrastructure, cloud security, and DevSecOps controls. DevOps, CI/CD, and Delivery Automation * Architect and maintain CI/CD pipelines with built-in security scanning and enforcement (SAST/DAST, dependency scanning, IaC scanning, artifact signing, policy-as-code). * Implement repeatable, secure infrastructure deployment using Infrastructure-as-Code (Terraform and/or equivalent tooling). * Build and maintain containerized and cloud-native deployment environments (Docker, Kubernetes and/or ECS/Fargate) with hardened images, runtime controls, and supply chain protections. * Improve developer experience by making secure workflows easy, fast, and consistent across engineering teams. Reliability, Resilience, and Operational Excellence * Help define and implement standards for availability, backup/restore, disaster recovery, and operational maturity. * Partner with engineering leadership to evolve incident response practices including on-call readiness, runbooks, and post-incident learning loops. * Proactively identify reliability/security risks, prioritize remediation, and drive cross-team follow-through. Collaboration & Technical Leadership * Partner across software, data, and cyber teams to ensure security requirements are integrated into system design and delivery. * Serve as a trusted advisor to engineering leadership on cloud security strategy, risk tradeoffs, and platform evolution. * Coach engineers on DevOps patterns, secure-by-default architecture, and operational excellence. * Communicate clearly with both technical and non-technical stakeholders to build trust and adoption of platform/security initiatives. * Contribute to Tunnl's mission and culture through principled execution, respectful collaboration, and high ownership. ## Related Videos - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [We adopted DevOps and are Cloud-native, Now What?](https://www.wearedevelopers.com/videos/485-we-adopted-devops-and-are-cloud-native-now-what) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)