Featured Job

Site Reliability Engineer

San Francisco, CA Full-time On-site $150k — $150k per year 10/01/2026 Job ID: 000341
Apply Now
Site Reliability Engineering DevSecOps Patch management AWS EC2

Summary

What you’ll impact

The role is for an experienced Site Reliability Engineer with a focus on DevSecOps, responsible for ensuring reliability, security, and compliance of cloud infrastructure, APIs, and software supply chain. The engineer will lead patch management, vulnerability remediation, and automation of security controls across AWS and other cloud environments while collaborating with cross-functional teams.

Responsibilities

What you'll do

  • Own and execute end-to-end patch management across AWS compute resources (EC2, ECS, Lambda runtimes, EKS nodes), third-party dependencies, and OS-level packages.
  • Monitor, triage, and remediate vulnerabilities identified by security scanning tools (e.g., AWS Inspector, Dependabot, Security Hub, or equivalent), prioritizing by CVSS severity and business impact.
  • Maintain and enforce branch protection rules, secret scanning policies, and dependency update workflows across all code repositories.
  • Design and implement automated pipelines for continuous compliance checking, security testing (SAST/DAST/SCA), and infrastructure drift detection.
  • Collaborate with IT & Info-Sec SMEs on AWS IAM roles and policies, VPC configurations, Security Groups, CloudTrail, Config, and GuardDuty to ensure least-privilege access and auditability.
  • Collaborate with development teams to embed security controls into CI/CD pipelines (GitHub Actions, CodePipeline, or equivalent) without impeding developer velocity.
  • Support the reliability and availability of production APIs — including uptime monitoring, incident response, runbook creation, and post-incident reviews.
  • Partner with Legal and Data Governance SMEs on API access procedures and monitoring.
  • Define and track SLOs/SLAs for internal and external APIs; implement alerting and dashboards using observability tooling (e.g., CloudWatch, Datadog, Grafana).
  • Lead periodic infrastructure and dependency audits; produce clear reports on patch compliance status and open risk items for engineering and security leadership.
  • Maintain thorough documentation of patching schedules, runbooks, access policies, and environment configurations.
  • Participate in on-call rotation and contribute to a culture of continuous improvement.

Requirements

What you’ll bring

  • Bachelor's Degree in Computer Science, Information Systems, or a related field (or equivalent practical experience).
  • 5+ years of professional experience in a Site Reliability Engineering, Software Engineering, DevOps, or DevSecOps role.
  • Demonstrated expertise managing AWS environments — including EC2, Lambda, ECS/EKS, S3, RDS, IAM, VPC, CloudTrail, Config, and GuardDuty.
  • Experience with various cloud environments: AWS, Azure, GPC
  • Strong experience with GitHub administration: branch protection, Actions workflows, secret scanning, Dependabot, and code owners.
  • Hands-on experience with patch management and vulnerability remediation at scale, including OS-level patching (Amazon Linux, Ubuntu) and dependency lifecycle management.
  • Proficiency with infrastructure-as-code tools (Terraform, CloudFormation, or AWS CDK).
  • Experience integrating security tooling (SAST, DAST, SCA, container scanning) into CI/CD pipelines.
  • Solid understanding of API reliability patterns: health checks, rate limiting, circuit breakers, and observability.
  • Familiarity with compliance frameworks relevant to cloud environments (SOC 2, CIS Benchmarks, NIST CSF).
  • Strong scripting skills in Python, Bash, or similar for automation and tooling.
  • Excellent communication skills and ability to translate technical risk for non-technical stakeholders.
  • Build observation (logging, metrics, alerting) systems to make sure system works well, and develop response plans.

Ready to Move Forward?

Apply now and our recruiting team will reach out with next steps, interview guidance, and client insights tailored to this role.