Senior DevSecOps / Cloud Security Engineer

Other Jobs To Apply

<p><span style="font-weight: bold">About Propela Tech</span> </p> <p>Propela Tech is a healthcare-focused advisory and technology firm that helps organizations streamline operations, unlock their data, and scale more efficiently through custom-built tools. We’re a team of technologists, former healthcare operators, and strategic thinkers who understand the real-world complexity of running healthcare businesses—and we build solutions that actually work. </p> <p> </p> <p><span style="font-weight: bold">What We’re Looking For</span> </p> <p><em>This role reports directly to our Chief Solutions Officer and Co-Founder, Steven Feld.</em> </p> <p> </p> <p>We are seeking a highly practical, hands-on DevSecOps / Cloud Security Engineer to strengthen and execute our security posture across our cloud infrastructure and development environments. </p> <p>This role is focused on execution, not theory. Unlike traditional security leadership roles centered around policy and oversight, this position is responsible for identifying security gaps and directly implementing the infrastructure, tooling, and policies required to address them. </p> <p> </p> <p>The ideal candidate is a builder and problem solver who understands how to improve security without disrupting production systems, client environments, or development velocity. </p> <p>You will work closely with engineering and DevOps teams to ensure security improvements are deployed safely, incrementally, and without service downtime. </p> <p><br><br></p> <p><span style="font-weight: bold">Key Responsibilities </span><br></p> <p><span style="font-weight: bold"><em>Cloud Infrastructure Security </em></span></p> <ul> <li>Implement and enforce security best practices across our AWS infrastructure </li> </ul> <ul> <li>Harden cloud environments through improvements to IAM policies, network controls, and service configurations </li> </ul> <ul> <li>Implement least privilege access models for users, services, and environments </li> <li>Identify and remediate security gaps across cloud infrastructure and environments </li> </ul> <p><em> </em></p> <p><span style="font-weight: bold"><em>DevSecOps Implementation </em></span></p> <ul> <li>Integrate security practices into CI/CD pipelines and development workflows </li> </ul> <ul> <li>Implement automated security checks including vulnerability scanning, secrets detection, and dependency monitoring </li> </ul> <ul> <li>Ensure infrastructure and application environments follow secure configuration standards </li> </ul> <p> </p> <p><span style="font-weight: bold"><em>Security Gap Identification & Remediation </em></span></p> <ul> <li>Perform ongoing reviews of infrastructure, systems, and processes to identify security gaps </li> </ul> <ul> <li>Select and deploy appropriate security tools or configurations to address identified risks </li> </ul> <ul> <li>Implement monitoring, logging, and alerting for security-relevant events </li> </ul> <p><span style="font-weight: bold"> </span></p> <p><span style="font-weight: bold"><em>Operational Security Improvements </em></span></p> <ul> <li>Implement new infrastructure policies (for example IAM or access restrictions) in ways that avoid production disruption </li> </ul> <ul> <li>Plan and execute staged rollouts of security improvements </li> </ul> <ul> <li>Collaborate with engineering teams to ensure security changes align with development workflows </li> </ul> <p> </p> <p><span style="font-weight: bold"><em>Compliance & Monitoring </em></span></p> <ul> <li>Support security requirements related to healthcare environments and data protection </li> </ul> <ul> <li>Maintain infrastructure visibility through logging, monitoring, and audit tooling </li> </ul> <ul> <li>Assist with security posture improvements tied to SOC2 / HIPAA-style compliance frameworks </li> </ul> <p> </p> <p><span style="font-weight: bold">Operating Philosophy </span><br></p> <p>Security must work within the realities of a live production environment. This role requires a pragmatic mindset that balances risk mitigation with operational continuity. The ideal candidate understands how to improve security without breaking systems, slowing teams down, or disrupting client environments. </p> <p> </p> <p>Security improvements should be implemented through thoughtful rollout strategies, staged changes, and safe infrastructure practices. </p> <p> </p> <p><span style="font-weight: bold">Qualifications </span><br></p> <p><span style="font-weight: bold">Required Experience </span></p> <ul> <li>3+ years experience in DevOps, DevSecOps, Cloud Infrastructure, or Security Engineering </li> </ul> <ul> <li>Strong hands-on experience securing AWS infrastructure </li> </ul> <ul> <li>Experience implementing IAM policies, network security, and infrastructure hardening </li> </ul> <ul> <li>Experience working in live production environments with uptime requirements </li> </ul> <ul> <li>Experience deploying or managing security tooling and monitoring systems </li> </ul> <p> </p> <p><span style="font-weight: bold">Technical Skills </span></p> <p>Experience with several of the following: </p> <ul> <li>AWS security controls (IAM, VPC, CloudTrail, GuardDuty, etc.) </li> </ul> <ul> <li>Infrastructure as Code (Terraform or similar) </li> </ul> <ul> <li>CI/CD security integration </li> </ul> <ul> <li>Secrets management </li> </ul> <ul> <li>Vulnerability scanning </li> </ul> <ul> <li>Logging and monitoring platforms </li> </ul> <ul> <li>Scripting or automation (Python, Bash, etc.) </li> </ul> <p> </p> <p><span style="font-weight: bold">Preferred Experience </span></p> <ul> <li>Experience supporting SOC2, HIPAA, or regulated environments </li> </ul> <ul> <li>Experience working in high-growth startup or product engineering environments </li> </ul> <ul> <li>Background in DevOps, SRE, or platform engineering </li> </ul> <p> </p> <p><span style="font-weight: bold">What Success Looks Like </span></p> <ul> <li>Security risks are identified and resolved quickly </li> </ul> <ul> <li>Infrastructure becomes progressively more hardened and resilient </li> </ul> <ul> <li>Security improvements are deployed without service downtime </li> </ul> <ul> <li>Engineering teams can continue to move quickly while maintaining strong security practices </li> </ul> <p> </p> <p>We are looking for engineers who value practical problem solving, ownership, and real-world impact. </p> <p>We are particularly interested in candidates who have previously worked in DevOps or infrastructure engineering roles and later specialized in security, as this role requires both operational awareness and hands-on implementation. </p> <p> </p> <p><span style="font-weight: bold">Our Core Values</span> </p> <p>At Propela Tech, we look for team members who embody our values every day: </p> <ul> <li><span style="font-weight: bold">Solution-Oriented:</span> We tackle every challenge with a problem-solving mindset. </li> </ul> <ul> <li><span style="font-weight: bold">Extreme Ownership:</span> We take full responsibility for our work, outcomes, and commitments. </li> </ul> <ul> <li><span style="font-weight: bold">Grit, Speed & Results:</span> We move fast, stay resourceful, and focus relentlessly on outcomes. </li> </ul> <ul> <li><span style="font-weight: bold">Show Up Strong:</span> We bring our best selves and elevate the team. </li> </ul> <p> </p> <p><span style="font-size: 12pt; font-weight: bold">Benefits</span></p> <ul> <li><span style="font-size: 12pt">Competitive salary ($130,000 - $150,000), commensurate with experience</span></li> <li><span style="font-size: 12pt">Health, dental, and vision insurance</span></li> <li><span style="font-size: 12pt">Paid time off</span></li> <li><span style="font-size: 12pt">Opportunities for rapid growth and leadership</span></li> </ul> <p><br></p> <p><span style="font-weight: bold">How to Apply</span></p> <p>Ready to build meaningful software with a mission-driven team? Attach your resume and a short note telling us why you're a great fit.</p> <p><br></p> <p><span style="font-weight: bold">Propela Tech is an equal opportunity employer.</span></p> <p><em><span style="font-weight: bold">We value diversity and are committed to creating an inclusive environment for all team members.</span></em></p>

Back to blog