Security DevOps Engineer
United States
Full Time Mid-level / Intermediate USD 147K - 220K
Moloco
Moloco provides machine learning-based advertising solutions to drive growth for businesses of all sizes. Turn your first-party data into revenue.About Moloco:
Moloco is a machine learning company empowering organizations of all sizes to grow and unlock the full value of their unique first-party data, elevating the traditional path to performance advertising. While the largest technology companies have proven the speed and scale of ad-targeting utilizing data— the same robust performance powered by machine learning has previously been unavailable beyond their platforms.
That's where Moloco steps in. With Moloco's powerful combination of cutting-edge machine learning technologies, we play a unique and visible role in shaping the digital economy, all while allowing companies to stay independent and scale.
An industry leader at the nexus of machine learning, performance marketing, and visionary product infrastructure, Moloco is advancing the advertising technology industry. We ranked in the top 10% of the Inc. 5000 fastest-growing private companies for 2023. Recognized as one of 46 leading Cloud Computing companies, receiving the Stratus Award for 2023. In 2023, we received Google’s Cloud DevOps Dreamers Award, a recognition given to companies that are implementing DevOps practices to drive organizational success and high performance. Lastly, Moloco is a 2024-certified Great Place to Work! Check us out on Glassdoor and be sure to get an inside look at working at Moloco on Instagram, Twitter, and YouTube.
Moloco is headquartered in Silicon Valley, with offices in San Francisco, New York, Los Angeles, Seattle, London, Berlin, Seoul, Singapore, Beijing, Gurgaon, Bangalore, Tel Aviv and Tokyo.
Creating a diverse workforce and a culture of inclusion and belonging is core to our existence. To reach our goals, diversity of talent and thought is a critical component of how we operate as an organization. Our workforce is our superpower, and we know that fostering a culture of inclusion, authenticity, and belonging will allow us the greatest opportunity to carry out our mission -- to empower businesses of all sizes to grow through operational machine learning.
Moloco is a truly rewarding place to work and in an exciting period of growth, which you could be a part of. Join us today and apply now!
The Impact You’ll Be Contributing to Moloco:
-
We're looking for a Security DevOps Engineer to enhance the security posture of our existing cloud infrastructure and applications. This role plays a critical part in proactively identifying risks, automating security controls, and ensuring our systems remain resilient and compliant as we grow.
The Opportunity:
-
A Security DevOps Engineer ensures security is seamlessly integrated into DevOps workflows, bringing value through:
- Integrated Security: Embeds automated security testing (SAST/DAST) into CI/CD pipelines to identify vulnerabilities early.
- Secure Infrastructure: Implements safeguards across infrastructure-as-code, containers, and cloud environments to minimize risk from misconfigurations or unintended use.
- Threat Management: Automates vulnerability scans and real-time threat responses to reduce risks. Participate in security triage and vulnerability management process.
- Compliance: Ensures adherence to standards like SOC 2 or GDPR within DevOps processes.
- Efficiency: Automates manual security tasks, accelerates development, and reduces delays caused by late-stage fixes.
- Resilience: Builds robust defenses against evolving threats with incident response playbooks and threat intelligence.
How Do I Know if the Role is Right For Me?
Must Have:
- 3+ years of experience as a DevOps Engineer or in a similar role with a strong foundation in CI/CD, automation, and cloud infrastructure
- Strong understanding of cloud security principles (AWS, GCP, or Azure)
- Experience securing CI/CD pipelines (e.g., GitHub Actions, GitLab CI, Jenkins, Harness)
- Familiarity with infrastructure-as-code and related security tools
- Proficiency in scripting languages (Python, Bash, etc)
- Hands-on experience with container security (e.g., Docker image scanning, Kubernetes best practices)
- Knowledge of IAM, secrets management, and secure key handling
- Experience with vulnerability scanning and remediation workflows
- Ability to identify and mitigate misconfigurations in cloud and IaC environments
- Comfortable collaborating with DevOps, platform, and application teams
Nice to Have:
- Familiarity with compliance frameworks (SOC 2, ISO 27001, NIST, etc.)
- Experience with security monitoring and incident response
- Exposure to SIEM or EDR tools (e.g., Splunk, CrowdStrike)
- Experience with SAST/DAST and dependency scanning tools
- Familiarity with zero-trust networking concepts
- Knowledge of threat modeling and risk assessment practices
Our Compensation And Benefits (for United States Residents Only)
In accordance with various state laws, the range provided is a reasonable estimate of the base pay for this role. The actual amount may be higher or lower, based on non-discriminatory factors such as experience, knowledge, skills, and abilities. We also offer a competitive benefits package.
Base Pay Range:$147,200—$220,800 USDMoloco Thrive: Benefits and Well-Being:
We take care of you and create the conditions for you to do the best work of your career. Through a lens of inclusion, we offer innovative benefits that empower our employees to take care of themselves and their families so they can do the best work of their lives. For an overview of our global benefits, click here.
Moloco Values
- Lead with Humility: Everyone’s voice is respected, valued, and heard. With humility, we become more open and accessible to each other. We win, lose, and learn together. Accountability and feedback are essential to our success.
- Uncapped Growth Mindset: We see all situations as opportunities to learn, grow, and improve as individuals and as an organization. We seek diverse perspectives, encourage curiosity, and promote experimentation to push the boundaries of what’s possible.
- Create Real Value: We pursue the most impactful opportunities with rigor and integrity. We take intelligent risks and make disciplined trade-offs to maintain deep focus. We help our customers win by delivering durable value.
- Go Further Together: We’re one team working towards one mission and vision. We collaborate proactively and inclusively, involving the right people at the right time and in the right way. We strive to create a more equitable workplace. We won’t let each other fail.
Additional Resources:
Equal Opportunity:
Moloco is an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, color, creed, religion, national origin, age, sex and gender, gender expression, and gender identity, sexual orientation, marital status, ancestry, physical or mental disability, military and veteran status, or any other characteristic protected by law.
Candidate Privacy Notice:
Your privacy matters to us. By applying, you acknowledge that you’ve reviewed our Candidate Privacy Notice.
Tags: Automation AWS Azure Bash CI/CD Cloud Compliance CrowdStrike DAST DevOps Docker EDR GCP GDPR GitHub GitLab IAM Incident response ISO 27001 Jenkins Kubernetes Machine Learning Monitoring NIST Privacy Python Risk assessment SAST Scripting SIEM SOC SOC 2 Splunk Threat intelligence Vulnerabilities Vulnerability management Vulnerability scans
Perks/benefits: Career development Competitive pay Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.