> Markdown version of [/jobs/ext/597810-infrastructure-as-code-iac-security-engineer-eks-terraform-ci-cd-guardrails](https://www.wearedevelopers.com/jobs/ext/597810-infrastructure-as-code-iac-security-engineer-eks-terraform-ci-cd-guardrails). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Infrastructure as Code (IaC) Security Engineer (EKS/Terraform/CI-CD Guardrails) - **Company:** Calance Consulting Corporation - **Location:** Plano, TX, United States (Remote available) - **Salary:** $141,440.0 - $149,760.0 - **Contract:** Temporary contract - **Skills:** Artificial Intelligence, Continuous Integration, Identity and Access Management, Key Management, Network Segmentation, Role-Based Access Control, Delivery Pipeline, Kubernetes Helm Charts, Infrastructure as Code (IaC), Containerization, Kubernetes, Deployment Automation, CIS Benchmarks, Terraform, Devsecops, Docker - **Published:** June 12, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=1b861a382ae13ac5 ## About the Role Do you have experience in Terraform?, * A security mindset and a track record of making automation inherently safer * Production experience securing Kubernetes environments and IaC pipelines * Strong collaboration with DevSecOps, platform, and engineering teams in fast-paced delivery, * Hands-on secure IaC experience (Terraform, cloud + containerized environments) * Deep production experience with Kubernetes on EKS (networking, RBAC, workload security) * Strong Terraform development skills (reusable modules and secure provisioning patterns) * Experience building Docker images and Helm charts securely * CI/CD integration with automated validation and deployment workflows * Solid understanding of IAM, encryption, secrets management, and network segmentation * Troubleshooting across Kubernetes, Terraform, containers, and pipeline deployments Other Skills: * Working knowledge of security policy enforcement tools (OPA/Gatekeeper, Checkov, tfsec or similar) * Familiarity with NIST/CIS infrastructure governance frameworks * Experience supporting AI/ML or security-focused Kubernetes workloads Important Notes: * This role focuses on embedding security controls into automated infrastructure delivery (IaC, Kubernetes, containers, and CI/CD guardrails). * Prioritize security-first patterns: repeatability, immutability, drift detection, and compliance enforcement. ## Description * Design and maintain secure Infrastructure as Code solutions for cloud and containerized environments supporting AI security workloads * Own EKS cluster security, including node group configuration, networking policies, RBAC, and pod security standards * Develop hardened, reusable Terraform modules with built-in security controls (least-privilege IAM, encryption-at-rest, segmentation) * Build and manage Docker images and Helm charts using security-first practices (image scanning, minimal bases, secrets management, signed artifacts) * Integrate security policy checks into CI/CD pipelines (e.g., OPA/Gatekeeper, Checkov, tfsec) * Automate provisioning/scaling using immutable infrastructure principles and drift detection * Troubleshoot and remediate infrastructure security issues across Kubernetes, Terraform, CI/CD, and containers * Enforce compliance with organizational policies and frameworks such as NIST and CIS Benchmarks * Document secure patterns, deployment runbooks, and automation workflows for the AI security team ## Related Videos - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Terraform for Developers](https://www.wearedevelopers.com/videos/3-terraform-for-developers) - [Building Applications with Infrastructure as Code](https://www.wearedevelopers.com/videos/887-building-applications-with-infrastructure-as-code) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)