Z

Senior DevOps Engineer, Security & Compliance

icon building Company : Zafran.io
icon briefcase Job Type : Full Time
icon remote-alt Remote / Work from Home

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
Apply Now
icon loader Apply Now
Open only for candidates based in the US

Let AI Supercharge Your Job Hunt!

JobCopilot scans 500,000+ company career sites daily to find jobs for you

Never miss an opportunity Save hours by auto-filling applications forms Land more interviews with tailored applications
happy man
thunder iconActivate JobCopilot

Job Description - Senior DevOps Engineer, Security & Compliance

Zafran is looking for a Senior DevOps Engineer with a strong security and compliance background to lead our compliance posture and prepare us for FedRAMP. You will work on hardening our infrastructure, implementing the controls required for regulated customers, and building the evidence and automation needed to achieve and maintain compliance certifications. This role partners closely with our Security team and Tel Aviv DevOps team.

About Zafran



Our Mission: To stop the exploitations of vulnerabilities, everywhere.

What makes us different: Zafran de-risks 90% of critical vulnerabilities overnight across your hybrid environment and uses your existing security tools to rapidly mitigate and remediate the 10% most likely to be exploited.

​​Who’s behind us: Zafran is backed by Sequoia Capital, Cyberstarts, and a deep belief that cybersecurity should move as fast as attackers do. We’re one of the fastest-growing companies in the industry, scaling to meet demand from the world’s most advanced, security-obsessed organizations.

We’re serious about our mission- so expect work that matters, teammates who challenge and inspire you, and plenty of fun along the way!

What you will do

  • Lead the technical work to achieve and maintain compliance certifications (SOC 2, ISO 27001, and the upcoming FedRAMP process)
  • Design and implement security controls across AWS infrastructure, CI/CD pipelines, Kubernetes, and application deployments
  • Build the automation, logging, and evidence collection required for continuous compliance
  • Implement and maintain secrets management, IAM hardening, network segmentation, and encryption standards
  • Develop infrastructure solutions for customers in highly regulated industries, including isolated or dedicated environments
  • Collaborate with security, legal, and engineering on threat modeling, vulnerability management, and incident response
  • Stay ahead of FedRAMP, FISMA, and related federal requirements and translate them into concrete engineering work
  • Must be located in the US, with a strong preference for the New York area; US remote considered
  • U.S. citizenship or lawful permanent resident status (Green Card) required due to FedRAMP-related eligibility requirements and access to a U.S.-only environment.
  • 5+ years of DevOps / platform engineering experience with a strong security focus
  • Direct experience implementing controls for SOC 2, ISO 27001, HIPAA, PCI, or FedRAMP
  • Deep AWS security knowledge: IAM, KMS, GuardDuty, Security Hub, VPC design, Config
  • Strong Kubernetes security experience: network policies, admission control, runtime security
  • Infrastructure as Code with Terraform, with a focus on policy-as-code 
  • CI/CD security: SAST, DAST, SCA, image scanning, supply chain hardening
  • Solid scripting in Python or Bash

Nice to have

  • Prior experience leading or mentoring a small team
  • Direct hands-on experience with a FedRAMP Moderate or High authorization
  • Experience with GovCloud (AWS US-East/West GovCloud regions)
  • Relevant certifications (AWS Security Specialty, CISSP, CCSP)

At Zafran, people matter! We provide a robust benefits program that includes flexible PTO, health insurance plans (medical, dental, vision), a monthly stipend for phone and internet, 401k, flexible spending account, and a home office stipend when joining!

We also provide access to frontier AI models, including Claude, so every employee can work smarter, move faster, and build an AI-first career from day one.

At Zafran, we’re proud to be an equal opportunity employer. We believe the best teams are built by people who think differently, come from all kinds of backgrounds, and aren’t afraid to challenge the status quo. We welcome everyone across race, religion, gender, gender identity or expression, sexual orientation, age, disability, national origin, and veteran status, because what matters most is what you bring to the table.

If you’re curious, fun, and someone who gets things done, we’d love to meet you

Original job Senior DevOps Engineer, Security & Compliance posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Apply Now
Open only for candidates based in the US
Share Job
Share Job

About the Company

Zafran.io

Zafran is looking for an experienced, detail-oriented, and strategic Senior Marketing Operations Manager to join our dynamic team. This role will report directly to the Head of Growth Marketing and will be responsible for architecting, enhancing, and maintaining he marketing tech stack and owning ou...

Read more about the company

Auto-Apply to Senior DevOps Engineer Jobs with your AI JobCopilot

thunder icon Auto-Apply with AI

Similar Senior DevOps Engineer Jobs in the US

GrabJobs is the no1 job portal in the US, connecting you to thousands of jobs fast! Find the best jobs in the US, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.