MatrixSpace Logo

MatrixSpace

DevSecOps Engineer

Posted 5 Days Ago
Be an Early Applicant
Hybrid
Burlington, MA, USA
125K-150K Annually
Mid level
Hybrid
Burlington, MA, USA
125K-150K Annually
Mid level
Build, operate, and secure AWS cloud environments to meet FedRAMP and government security standards. Integrate security into CI/CD, IaC, and deployment workflows; support authorizations, audits, vulnerability management, system hardening, and compliance documentation.
The summary above was generated by AI

Help build, operate, and secure the cloud infrastructure that enables MatrixSpace to deliver trusted technology to U.S. government customers.

MatrixSpace develops AI-enabled radar and sensing systems that help people understand what's happening in the world around them. By combining advanced radar, edge computing, and AI, we deliver situational awareness in environments where traditional sensing solutions struggle.

We're looking for a hands-on DevSecOps Engineer to join our Release Engineering team. You’ll work across DevOps, cloud infrastructure, security, and compliance, to build secure AWS environments, improve deployment and release workflows, and support FedRAMP and other government security requirements.

If you're technically curious, security-minded, and comfortable moving between DevOps engineering and security/compliance work, we'd love to talk.

THIS IS NOT A FULLY REMOTE ROLE -- YOU WILL BE EXPECTED ONSITE MULTIPLE DAYS PER WEEK.

What You'll Do

  • Build, operate, assess, and secure AWS environments against established security baselines, FedRAMP requirements, and other applicable security standards.
  • Partner with Software Engineering and AI teams to incorporate security and compliance requirements into system architecture, CI/CD, deployment, and operational workflows.
  • Support FedRAMP authorization and continuous monitoring activities, including evidence collection, control maintenance, audit preparation, Plans of Action and Milestones (POA&Ms), and remediation tracking.
  • Perform and support security architecture reviews, risk and gap assessments, vulnerability management, and system hardening, including applicable DISA STIGs.
  • Implement security controls across networking, Linux systems, IAM, encryption, logging, and security monitoring.
  • Build and maintain Infrastructure as Code, CI/CD, deployment, and release automation using tools such as Terraform, Pulumi, and Python, incorporating security and compliance into repeatable infrastructure deployments.
  • Maintain required security documentation, system diagrams, asset inventories, and control implementation details.
  • Work with engineering teams, external assessors, compliance partners, and 3PAOs to support assessments, audits, evidence requests, and ongoing authorization requirements.
  • Contribute to broader Release Engineering initiatives, including CI/CD pipelines, deployment automation, release workflows, cloud infrastructure, developer tooling, and platform reliability.

What We're Looking For

This position requires working directly or indirectly with the US Government in restricted environments. Candidates must be legally authorized to work in the United States without employer sponsorship and may be required to obtain and maintain a U.S. government security clearance in the future.

Required

  • 3-6 years of experience in security engineering, cloud security, DevSecOps, infrastructure security, or a related technical field.
  • Hands-on AWS experience, including networking, Linux, IAM, encryption, logging, vulnerability management, and security monitoring.
  • Experience working with one or more security frameworks such as FedRAMP, NIST 800-53, NIST 800-171, CMMC, RMF, or similar standards.
  • Experience translating security and compliance requirements into practical technical controls alongside engineering teams.
  • Hands-on experience with DevOps practices, Infrastructure as Code, source control, CI/CD pipelines, and automated deployment workflows.
  • Knowledge of system hardening vulnerability remediation, secure configurations, and security control lifecycle management.
  • Strong problem-solving, communication, and cross-functional collaboration skills.

Someone Who Will Thrive in This Role

  • Enjoys being hands-on with infrastructure, automation, security, and release engineering.
  • Can move comfortably between technical implementation, compliance requirements, documentation, and conversations with engineers and assessors.
  • Take ownership of issues from identification through remediation and closure.
  • Prefers building security into engineering workflows rather than treating it as a separate audit function.
  • Is curious about how complex systems work and looks for ways to make security and compliance more automated, repeatable, and scalable.

Bonus Points

  • Direct experience supporting a FedRAMP authorization, particularly within a FedRAMP High environment.
  • Familiarity with AWS GovCloud and NIST 800-53 Experience working directly with external assessors, compliance partners, or a Third-Party Assessment Organization (3PAO).
  • Understanding FIPS 140, encryption and key management, secure system boundaries, and requirements associated with Controlled Unclassified Information (CUI).
  • Experience hardening Linux operating systems using DISA STIGs or similar security configuration standards.
  • Experience with Infrastructure as Code technologies such as Terraform or Pulumi, and/or Python automation.

At MatrixSpace, Release Engineering plays a key role in building the infrastructure, automation, and security foundation behind the systems we deliver to our government customers. You'll help build and operate our cloud platform, improve how we deploy and release software, and ensure security and compliance are built into our infrastructure from the start. If you enjoy working across DevOps, cloud security, and regulated environments, we'd love to hear from you.


HQ

MatrixSpace Burlington, Massachusetts, USA Office

We're located at the Kostas Research Institute, which is part of Northeastern University. About ten minutes from the Burlington Mall

Similar Jobs

6 Days Ago
Remote or Hybrid
USA
Senior level
Senior level
Software
Lead DevSecOps role focused on embedding application security into the SDLC: implement SAST/DAST/SCA and secrets management, secure Azure deployments, integrate security into CI/CD, manage vulnerabilities and compliance, mentor teams, and automate secure infrastructure with IaC (Terraform).
Top Skills: Api SecurityAquaAzureAzure DevopsAzure Key VaultAzure Security CenterBlack DuckBurp SuiteCheckmarxCi/CdDastGithub Advanced SecurityHashicorp VaultMendMicroservicesOwasp ZapPrisma CloudSastScaSecrets ManagementSemgrepSnykSonarqubeTerraformVeracodeWiz
15 Days Ago
Remote or Hybrid
United States
121K-204K Annually
Senior level
121K-204K Annually
Senior level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Lead DevSecOps engineer on the Infrastructure and Platform Services team responsible for implementing and operating global SaaS infrastructure security. Duties include file integrity monitoring, automating audit evidence collection, hardening base images, securing containerized applications, release automation, incident response via on-call rotation, and collaborating with engineering and cybersecurity to meet compliance (FedRAMP, ISO, SOC) and remediation SLAs.
Top Skills: AWSAzureChefContainerizationFile Integrity MonitoringIdsIpsJenkinsPuppetPythonRubySIEMSirpTerraformWaf
21 Days Ago
In-Office or Remote
USA
Senior level
Senior level
Software
Design and harden Azure cloud architectures, embed security into CI/CD and infrastructure via DevSecOps, implement SAST/DAST and supply-chain controls, improve observability and SIEM integrations, remediate security debt, secure containers/Kubernetes, and build automation and developer-friendly guardrails to increase remediation velocity and operational resilience.
Top Skills: AutomationAzureAzure PolicyAzure RbacCi/CdClaude CodeContainer SecurityDastDependency ScanningDockerGitGithub ActionsGithub Advanced SecurityGithub CopilotInfrastructure As CodeKubernetesObservability ToolingPimSastScriptingSecrets ManagementSIEMSoftware Supply-Chain Security

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account