Job Description
As a DevSecOps Engineer, you will design, build, and automate security controls across cloud infrastructure, software delivery systems, and containerized workloads. You will partner with Cybersecurity, Infosec, Build Engineering, and product teams to turn security and compliance requirements into practical engineering controls.
This is a hands-on engineering role focused on making secure configurations repeatable and maintainable. You will work across infrastructure, containers, CI/CD systems, and platform services to reduce security risk without creating unnecessary friction for engineering teams.
What You'll Do
- Design and implement security controls across AWS infrastructure and platform services
- Build and maintain hardened container images and secure base images for engineering and production workloads
- Integrate vulnerability, dependency, container, and configuration scanning into software delivery systems
- Automate security and compliance checks to reduce manual review and improve consistency
- Implement secrets management, identity, and access controls across infrastructure and engineering systems
- Build mechanisms for audit evidence, configuration validation, and compliance reporting
Identify security weaknesses in infrastructure, containers, and delivery systems and drive remediation with owning teams - Partner with Cybersecurity and Infosec to translate security requirements into scalable engineering controls
- Work with Build Engineering and Cloud Engineering to integrate security controls without compromising reliability or developer workflows
- At the Staff level, Define reusable patterns and drive adoption of security engineering practices across multiple teams
Required Qualifications
- 5+ years of related experience for Senior Engineer or 7+ years for Staff Engineer, or equivalent education and experience.
- Experience implementing security controls in AWS or another major cloud environment
- Experience with infrastructure-as-code and automated infrastructure provisioning
- Experience securing containerized workloads and building or maintaining hardened container images
- Experience integrating security tooling into CI/CD or software delivery systems
- Experience with vulnerability management, dependency scanning, container scanning, or configuration validation
- Experience implementing identity, secrets, and access controls in cloud or engineering environments
- Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
- Ability to diagnose security and configuration issues across infrastructure, containers, and platform services
- Experience working with security and engineering teams to implement shared technical controls
Preferred Qualifications
- Experience operating systems in regulated or compliance-driven environments
- Experience with Kubernetes security, workload identity, or container runtime controls
- Experience building reusable hardened images or secure infrastructure baselines used across multiple teams
- Experience with cloud security posture management, policy-as-code, or automated compliance tooling
- Experience supporting audit evidence collection or continuous compliance workflows
- Familiarity with software supply-chain security, artifact integrity, or signing/attestation workflows
Skills Required
- 7+ years of related experience for Staff Engineer, or equivalent education and experience
- Experience implementing security controls in AWS or another major cloud environment
- Experience with infrastructure-as-code and automated infrastructure provisioning
- Experience securing containerized workloads and maintaining hardened container images
- Experience integrating security tooling into CI/CD or software delivery systems
- Experience with vulnerability management, dependency scanning, container scanning, or configuration validation
- Experience implementing identity, secrets, and access controls in cloud or engineering environments
- Experience automating security or infrastructure tasks using Python, Go, Bash, or a similar language
- Ability to diagnose security and configuration issues across infrastructure, containers, and platform services
- Experience working with security and engineering teams to implement shared technical controls
- Experience operating systems in regulated or compliance-driven environments
- Experience with Kubernetes security, workload identity, or container runtime controls
- Experience building reusable hardened images or secure infrastructure baselines used across multiple teams
- Experience with cloud security posture management, policy-as-code, or automated compliance tooling
- Experience supporting audit evidence collection or continuous compliance workflows
- Familiarity with software supply-chain security, artifact integrity, or signing and attestation workflows
Shield AI Compensation & Benefits Highlights
-
Healthcare Strength — Healthcare coverage is described as excellent, with dental/vision and mental‑health support, and ancillary protections like life and disability appearing in benefit summaries. The breadth and perceived affordability of coverage are highlighted as a standout component of the package.
-
Parental & Family Support — Paid parental leave is featured alongside enhanced maternity benefits, fertility and childcare support, and onsite resources such as a Mother’s Room. These elements are positioned as competitive and above the minimal baseline for the company’s stage.
-
Equity Value & Accessibility — Equity is granted to all full‑time hires, with RSUs, double‑trigger tax timing, and tools to model scenarios (e.g., through Carta Tax). Communications also reference a transition from options to RSUs, reinforcing access and maturity of ownership programs.
Shield AI Insights
What We Do
At Shield AI, you won't wait years to see your work reach the field. You'll build hardware and software that operates in the real world right now, in the hands of the people who depend on it. Hivemind, our AI pilot, has been flying since 2018. It has flown more than 30 platforms, including an F-16, and it now sits under a U.S. Air Force production contract for Collaborative Combat Aircraft. When you write code or shape a system here, you contribute to technology with a proven flight record and a clear production future. V-BAT flies intelligence, surveillance, and reconnaissance missions with an operational record that stretches from Ukraine to the Indo-Pacific. It delivers eyes where they matter most, in the most demanding conditions on earth. The teams behind it watch their work get tested where the stakes are real. X-BAT takes its first flight this year. It's an AI-piloted fighter that needs no runway, built to operate where traditional aircraft can't. Join now and you help shape a program at its earliest, most formative stage. That's the kind of ground-floor work that defines a career. Do the most impactful work of your life, on problems that matter. Autonomy at this level asks a lot of you. You'll take on problems in perception, planning, and control that few teams anywhere are equipped to solve. You'll work across disciplines, from aerospace and robotics to machine learning and systems engineering, alongside people who hold themselves to an exacting standard and expect the same from you. Our mission is clear: protect service members and civilians with intelligent systems. That purpose runs through every decision, every design review, and every deployment. It's why the work here carries a weight you can feel. Ready to join our mission? Explore our open roles and find where you fit.
Why Work With Us
Founded in 2015 by a former Navy SEAL, Shield AI builds AI pilots and uncrewed aircraft. Veterans aren't an afterthought here, they're at every level. It's why the work carries weight: AI pilots and uncrewed aircraft flying real missions, from Ukraine to the Indo-Pacific, protecting service members and civilians.
Gallery
Shield AI Teams
Shield AI Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
.jpg)


