What You'll Do:
- Cloud & Infrastructure Security (AWS):
- Secure cloud infrastructure using services like IAM, VPC, CloudTrail, GuardDuty, and AWS Config.
- Manage infrastructure as code using Terraform or CloudFormation with a security-first mindset.
- Monitor for misconfigurations and enforce least-privilege access patterns.
- CI/CD and DevSecOps Enablement:
- Harden GitLab CI/CD pipelines using SAST, DAST, and SCA tools.
- Automate security gates, compliance checks, and merge requirements.
- Embed security testing into development workflows to “shift left.”
- Threat & Vulnerability Management:
- Integrate tools like Rapid7 and Snyk into CI/CD and runtime environments.
- Triage and drive vulnerability remediation with engineering and IT teams.
- Use Jira or similar systems to track issues through resolution.
- Secrets Management & IAM:
- Use Vault, AWS Secrets Manager, or equivalent for secrets handling.
- Implement IAM policies using least privilege and policy-as-code approaches.
- Rotate, audit, and monitor credentials across services and environments.
- Developer Education & Enablement:
- Guide engineers on secure coding practices and pipeline hygiene.
- Build internal tooling, playbooks, and documentation to scale best practices.
- Promote a DevSecOps culture through education and automation.
What You'll Need:
- A first-principles mindset — You question assumptions, break problems down to fundamentals, and prefer root-cause solutions over pattern-matching.
- 6–10 years of experience in security engineering, DevSecOps, or infrastructure security.
- Deep hands-on experience with AWS security services, including IAM, VPC, CloudTrail, GuardDuty, and Config.
- Proven ability to secure and optimize GitLab CI/CD pipelines.
- Proficiency with Terraform or CloudFormation and a security-first IaC mindset.
- Strong scripting skills in Python, Bash, or Go.
- Experience with secrets management tools like Vault or AWS Secrets Manager.
- A track record of collaborating with engineers to remediate vulnerabilities and enforce security standards.
- Familiarity with compliance frameworks like SOC 2, ISO 27001, or NIST.
- Certifications like AWS Security Specialty, CISSP, OSCP, or GIAC.
- Experience with SBOM generation, GitOps, or supply chain security.
Bonus Points For:
- Background working in IP-sensitive environments (e.g., biotech, advanced manufacturing, R&D-heavy orgs).
- Contributions to open source security projects or tooling.
ITAR Notice:
- This position may require access to technical data controlled under the International Traffic in Arms Regulations (ITAR) or the Export Administration Regulations (EAR). As such, applicants must be U.S. citizens, lawful permanent residents, or protected individuals as defined by 8 U.S.C. 1324b(a)(3).
Similar Jobs
What We Do
Atomic Machines is redefining humanity’s relationship with matter. We see a future where our tools will allow us to reorganize matter at the atomic level at will, where we will go from bits to atoms for any object or machine that can be designed in alignment with physical laws. We have begun our journey with the development of a robotic manufacturing platform capable of making an entirely new class of micro-electromechanical (MEMS) devices. We are well funded and have exceptionally strong product/market fit and a clear go-to-market path for the device we will make first with our platform. Our platform breaks traditional manufacturing paradigms and constraints, enabling inexpensive rapid prototyping as well as large scale manufacturing with highly compelling economics.
Joining forces with us means becoming part of an incredibly talented, inventive and passionate multi-disciplinary team working on a massive world-changing mission. You will have the opportunity to help define the company from its early days. You’ll be challenged to learn and grow as a builder and a leader as the company itself grows rapidly. And you will receive significant equity compensation - you’ll truly be a company owner and benefit financially from our overall success.








