Location - Fully remote
Duration - 1-year contract (with the possibility of extension)
Travel - 5% to 15% business travel within North America, depending on circumstances
General Description
We are looking for a proactive and skilled DevOps/Security Engineer to join our team at ACRE. This role is crucial for ensuring the reliability, security, and efficiency of our systems. The ideal candidate will have solid experience in DevSecOps practices, cloud infrastructure, and security protocols, with a passion for optimizing processes and securing our systems.
Specific Responsibilities
- Design, implement, and manage CI/CD pipelines to automate the software development process and improve deployment efficiency.
- Monitor system performance and reliability, ensuring high availability and responsiveness of the ACRE platform.
- Collaborate with software engineers and product teams to integrate security best practices throughout the development lifecycle.
- Integrate and maintain security assessments and vulnerability scans in the delivery cycle.
- Oversee Penetration Testing/Ethical Hacking.
- Implement and manage cloud infrastructure on AWS.
- Develop and maintain documentation for infrastructure configurations, deployment processes, and security protocols.
- Stay up to date with industry trends and emerging security threats, applying new techniques and technologies to improve the organization’s security posture.
- Provide support for incident response and disaster recovery planning, ensuring business continuity in case of a security breach or system failure.
Scope
Critical role as a member of the ACRE team, working to integrate security best practices throughout the development lifecycle, improve deployment efficiency, and support the company’s short-, medium-, and long-term objectives, including a potential external sale.
Contacts
Internal relationships include communication with some corporate functions (e.g., Insurance, TIS).
External relationships include communication with some external clients or service providers (e.g., Brokers, Advisors, Developers, Others).
Required Knowledge and Skills
- University degree in Computer Science, Information Technology, or a related field.
- More than 5 years of experience in DevOps, cloud engineering, or security engineering, preferably in a fast-paced startup environment.
- Strong proficiency with cloud platforms, particularly AWS, including services like EC2, S3, RDS, and DynamoDB.
- Experience with containerization technologies (e.g., Docker) and orchestration tools.
- Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI, CircleCI) and version control systems (e.g., Git).
- Strong understanding of security best practices, including network security, application security, and data protection.
- Experience with scripting languages for automation and process improvement.
- Strong problem-solving skills and the ability to work independently as well as collaboratively in a team.
- Experience with infrastructure as code (IaC) tools (e.g., Terraform, CloudFormation) for managing cloud resources.
Preferred:
- Knowledge of compliance frameworks and regulations relevant to the insurance or legal industries (e.g., GDPR, HIPAA).
- Familiarity with monitoring and logging tools (e.g., Prometheus, Grafana, ELK Stack) to ensure system health and security.
- Relevant certifications (e.g., AWS Certified DevOps Engineer, CISSP) are a plus.