Senior DevOps Engineer
Keeper Security is hiring a Senior DevOps Engineer with direct experience building and managing infrastructure in IL5-compliant environments. This role is critical to our efforts to deliver secure and scalable cloud systems aligned with DoD and FedRAMP High standards. You'll play a hands-on role in automating, deploying, and securing infrastructure that powers one of the world's most trusted cybersecurity platforms. Join one of the fastest-growing cybersecurity companies and bring your IL5 DevOps expertise to mission-critical work.
About Keeper Keeper Security is transforming cybersecurity for organizations around the world with next-generation privileged access management. Keeper's zero-trust and zero-knowledge cybersecurity solutions are FedRAMP and StateRAMP Authorized, FIPS 140-2 validated, as well as SOC 2 and ISO 27001 certified. Trusted by thousands of organizations to protect every user on every device, Keeper is the industry leader for best-in-class password management, secrets management, privileged access, secure remote access and encrypted messaging.
About the Job
We're seeking a seasoned DevOps engineer who thrives in high-security, compliance-driven environments. You'll be responsible for designing and maintaining cloud infrastructure, CI/CD pipelines, and automation in IL5-compliant deployments. This includes collaborating closely with security engineering, platform engineering, and compliance teams to deliver highly available and audit-ready systems. This is a deeply technical role requiring experience with hardened environments, automation under strict compliance controls, and secure cloud architecture.
Responsibilities
- Design, implement, and manage IL5-compliant infrastructure in AWS GovCloud and/or Azure Government
- Automate infrastructure provisioning using Terraform and Infrastructure-as-Code best practices
- Build and maintain secure CI/CD pipelines in compliance with FedRAMP High / IL5 requirements
- Collaborate with security and compliance teams to ensure proper controls, monitoring, and reporting
- Configure logging, alerting, and telemetry in restricted environments
- Harden operating systems and container runtimes to meet DISA STIGs and other security benchmarks
- Support secure secrets management, access controls (RBAC, ABAC), and audit logging
- Participate in architecture discussions to ensure infrastructure is scalable, resilient, and compliant
- Assist with documentation and evidence collection for audits and ATO (Authority to Operate) processes
Requirements
- 5+ years of experience in DevOps, SRE, or Infrastructure Engineering roles
- Hands-on experience with IL5 or FedRAMP High environments (required)
- Deep familiarity with AWS GovCloud or Azure Government
- Strong IaC experience using Terraform, Terragrunt, or similar tooling
- Proficiency in scripting (e.g., Python, Bash) and automating system tasks
- Experience building secure CI/CD workflows (GitHub Actions, Jenkins, GitLab CI)
- Knowledge of STIG hardening, CIS benchmarks, and compliance automation
- Understanding of zero-trust principles and secure enclave architectures
- Ability to work collaboratively with security and compliance stakeholders
Preferred Qualifications
- Prior experience contributing to an ATO process for a FedRAMP or DoD deployment
- Familiarity with Kubernetes in a high-compliance environment
- Experience with secrets management (Vault, AWS KMS, etc.)
- Exposure to vulnerability scanning, compliance drift detection, or SIEM integration
Benefits
- Medical, Dental & Vision (inclusive of domestic partnerships)
- Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life
- Voluntary Short/Long Term Disability Insurance
- 401K (Roth/Traditional)
- A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)
- Above market annual bonuses
Keeper Security, Inc. is an equal opportunity employer and participant in the U.S. Federal E-Verify program. We celebrate diversity and are committed to creating an inclusive environment for all employees. Classification: Exempt