For Employers

ECS Tech Inc

Cloud DevSecOps Engineer

Posted 2 days ago
$130K - $175K per year
10+ years experience
Apply Now

Please mention DailyRemote when applying

?
Resume Match Score

See how much of this job your resume covers, and what’s missing.

Want a recruiter to go through it line by line?

Get professional review

Create a cover letter for this job

Upload your resume and we draft a letter for this exact role, tailored to what it asks for.

  • Tailored to this role
  • Based on your resume
  • Fully editable
AI Summary

The engineer will architect, provision, and maintain production-grade Kubernetes clusters while managing identity brokering services via Keycloak and Okta. They are also responsible for designing automated CI/CD pipelines and implementing robust platform security controls across all environments.

ECS is seeking a Cloud DevSecOps Engineer to work remotely.

 

Job Description:
We are seeking a highly skilled Senior DevSecOps Engineer with extensive experience in cloud-native infrastructure engineering, Kubernetes container orchestration, and enterprise Identity and Access Management (IAM). Tools necessary for excelling in this role include Kubernetes, Docker, Helm, Keycloak Identity Broker, Okta SSO/OIDC, Terraform/IaC, CI/CD pipelines (GitLab CI, GitHub Actions, or Jenkins), and security scanning tooling (Trivy). This role will serve as the infrastructure and security authority within a lean, agile modernization team rebuilding an enterprise Microsoft Power Apps system into a cloud-native platform. You will play a critical role in provisioning and securing Kubernetes cluster environments, engineering automated build and deployment pipelines, deploying and managing high-availability Keycloak identity broker services federated to enterprise Okta, and safeguarding all infrastructure, database, and storage assets across non-production and production environments.

 

 

About the Job

  • Architect, provision, configure, and maintain production-grade Kubernetes cluster environments hosting containerized front-end, backend, and identity services.
  • Deploy, configure, and administer a highly available Keycloak Identity Broker instance running in Kubernetes, federating authentication to enterprise Okta via SAML 2.0 and OIDC.
  • Configure identity brokering rules, realm roles, client scopes, and token exchange policies within Keycloak to power secure authentication for React and Spring Boot services.
  • Design, build, and maintain end-to-end CI/CD pipelines for automated image builds, vulnerability scanning, automated testing gates, and zero-downtime rolling deployments via Helm.
  • Implement robust platform security controls, including Kubernetes Ingress controllers (NGINX/Traefik), TLS certificate automation (cert-manager), network policies, and container image scanning (Trivy).
  • Automate secrets management and configuration injection across environments using tools such as HashiCorp Vault, AWS Secrets Manager, or Kubernetes External Secrets Operator.
  • Provision, monitor, and maintain supporting backing infrastructure including managed PostgreSQL instances and secure Amazon S3 storage buckets.
  • Establish centralized logging, monitoring, and alerting frameworks (Prometheus, Grafana, Loki or EFK stack) to ensure high system observability and reliability.

Salary Range: $130,000-$175,000

General Description of Benefits 

Qualifications
  • Must be a US Citizen with the ability to pass a Public Trust background check
  • Bachelor’s degree in a relevant field
  • 10+ years of relevant work experience
  • 6+ years of systems engineering, DevOps, and cloud infrastructure experience in enterprise Linux and cloud environments.
  • 4+ years of hands-on experience provisioning, operating, and troubleshooting containerized workloads in production Kubernetes clusters.
  • 3+ years of dedicated experience configuring and managing enterprise Identity and Access Management (IAM) systems, specifically Keycloak and Okta (OIDC, OAuth 2.0, SAML 2.0).
  • Strong experience building and maintaining automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Jenkins) integrating security scans and container image registries.
  • Proficiency in Infrastructure as Code (IaC) and configuration management using Terraform, Helm charts, and Kubernetes YAML manifests.
  • Solid background in networking, DNS, TLS/SSL termination, reverse proxy routing, and cloud network access policies.
  • Strong scripting skills in Bash, Python, or Go for automated infrastructure management and operational tooling.
  • Proactive problem-solving capabilities with a security-first engineering mindset and clear technical communication skills.

Automatically Apply to the Best Remote Jobs

Stop the endless job search. Our AI finds and applies to the best jobs for you.

Try it Now
Keep looking

Similar Jobs

See all Remote Software Development jobs →

Clinical Quality Assurance Coordinator

Full Time United States $27 - $31.25 per hour Software Development

Subcontract Administrator (Remote)

Full Time United States $63600 - $111K per year Software Development

DFT Engineer

Full Time United States $160K - $230K per year Software Development

Senior Software Engineer (Autonomy)

Full Time United States Software Development

Senior .NET Developer

Full Time Portugal €35310 - €54400 per year Software Development

Sr. Software Architect (NiCE CXone & Cognigy)

Full Time United States $122K - $191K per year Software Development
Apply Now

Personalize your Remote Job Search in 3 Easy Steps!

Featuring 216,821+ Jobs in Software Development

Answer easy questions

Answer easy questions

216,821+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified