Senior DevOps Engineer - Security

San Francisco, California

Apply now Apply later

About Coalesce

Coalesce is on a mission to make the modern data stack effortless for everyone. Our platform powers data modeling, transformation, catalog, and governance for some of the world's most important analytics teams. Customers rely on Coalesce as the core platform for running their data operations, enabling the discovery and transformation of their data into useful, consistent analytics insights that power their business.

About the Infrastructure Team

We are small and nimble, but mighty and now… growing!  We are a team of DevOps generalists tasked with building and maintaining the cloud platform the Coalesce application runs on.  We all bring various experiences and skill sets to the table, and we appreciate new ideas and diverse viewpoints.  We work to ensure that the platform is scalable, resilient, auditable and reproducible and we do this by embracing Infrastructure as Code (IaC) using Terraform and automation, constantly refining and improving to add value to the business. As a department we’re responsible not only for cloud infrastructure, but also CI/CD used to test and deploy our application, and security compliance + audit in partnership with our Security Team.

Our Stack

The App

  • Coalesce is built on TypeScript and React, and runs on Node.js with some Go and Python in different spots. Postgres, Redis and Firebase for storage.

The Infra

  • Managed Kubernetes across AWS, Azure, GCP with over 20+ deployments

  • Kubernetes resources are managed via Kustomize, deployed using ArgoCD

  • Cloud infrastructure is deployed + managed using Terraform for IaC

  • GitHub for source control + GitHubActions for CI/CD

  • DataDog, PagerDuty, Tailscale, Slack, Lucid, Zoom and of course Snowflake, Databricks & Fabric

What You’ll Do

We’re looking to add a new team member that can help with all the things we do, and help us do it more securely.  The applicant will help develop and lead strategic security initiatives to ensure our infrastructure is secure and compliant, and our code is fully tested before it’s deployed to the public.

  • Design, implement, and manage our CI/CD pipelines, integrating security best practices at every stage. Troubleshoot test failures and refine the pipeline to improve outcomes and speed things along.

  • Automate security testing and vulnerability scanning as part of the code development lifecycle.

  • Ensure our Terraform is deploying secure infrastructure each and every time.

  • Monitor and respond to security alerts & incidents

  • Collaborate with Infrastructure and Development teams to improve security posture and processes across the organization.

  • Conduct security audits and risk assessments, identifying and mitigating potential vulnerabilities.

What you Bring
  • 5+ years of experience in DevOps, SRE, or platform engineering roles with a strong emphasis on cloud infrastructure, automation and security.

  • Deep expertise with building, scaling, and optimizing CI/CD pipelines and integrating security scanning, code analysis, and compliance tools (e.g., CodeQL, Trivy, Snyk)

  • Strong background with IaC using Terraform across AWS, GCP, and/or Azure.

  • Proficient in all things Kubernetes, with expertise in related security principles including cluster and deployment policies

  • Familiarity with secret management tools and patterns to ensure security

  • Proficiency in scripting languages like Python, Bash, or Go for automation and custom security tooling.

  • Understanding of cloud security & IAM best practices, zero-trust principles

  • Solid understanding of networking principles and protocols, especially as it relates to networking in the clouds.

  • Experience adhering to security frameworks (e.g., SOC 2, NIST, ISO 27001) and how to align CI/CD and infra with compliance.

Bonus Points
  • Previous Experience as a Data Engineer, working with ETL pipelines, Data Warehouses

  • CISM, CISSP, or other security certifications

  • Kubernetes certifications including CKA, CKS, KCNA, KCSA, CKAD

Since founding Coalesce in 2020, our mission has remained the same: to improve the lives of data professionals by helping them transform data as efficiently as possible. We aim to bring an end to the days of arduous manual coding and inflexible GUIs by providing a best of both worlds solution. 

Coalesce is a fully remote and culture-first company. We believe that our culture is what allows us to not only recruit world-class talent, but also retain it. At Coalesce, you can expect to experience radical honesty, trust in the workplace empathy for yourself and others, and support for continuous learning and improvement.

US Benefits: Coalesce offers the following benefits for this position, subject to applicable eligibility requirements: Medical insurance; Dental insurance; Vision insurance; Life, AD&D, and Disability Insurance; Unlimited Paid Time off, Paid Sick Time, Equity, Internet Reimbursement, WFH Office Set-Up Reimbursement, 401(k) retirement plan, and Company Annual Leave between December 26- January 2. 

Apply now Apply later
Job stats:  0  0  0

Tags: Analytics Audits Automation AWS Azure Bash CI/CD CISM CISSP Cloud Code analysis CodeQL Compliance Databricks DevOps GCP GitHub Governance IAM ISO 27001 Kubernetes NIST Node.js PostgreSQL Python Redis Risk assessment Scripting Snowflake SOC SOC 2 Terraform TypeScript Vulnerabilities

Perks/benefits: Career development Health care Insurance Medical leave Salary bonus Unlimited paid time off

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.