Job Description
Engineer Secure and Resilient Infrastructure by designing, building, maintaining, and improving secure, scalable, and highly available infrastructure in our multi-cloud environment (primarily AWS) using Infrastructure as Code (IaC) principles with tools like Terraform, Kubernetes, and Helm. Automate Proactive Security by engineering and automating threat detection, incident response, and vulnerability management processes. You will build the tools and workflows that allow us to respond to threats at machine speed. Secure the Software Development Lifecycle by Architecting and securing our CI/CD pipelines, integrating automated security tooling (SAST, DAST, SCA) to provide developers with fast, actionable feedback. Master Container Security by managing, operating, and securing our container orchestration platform (Kubernetes), implementing best practices for container security from the registry to runtime, including knowledge of hardening requirements such as CIS Benchmarks or DISA STIG. Lead Incident Response by acting as a technical lead during security and reliability incidents, driving resolution and conducting blameless post-mortems to engineer preventative solutions. Drive Automated Compliance by implementing and automating technical controls to ensure continuous compliance with frameworks such as FedRAMP, SOC 2, and ISO 27001. Mentor and Lead as a subject matter expert for security and reliability, mentoring other engineers and championing a culture of operational excellence and security ownership across the organization.
About Smartsheet
For over 20 years, Smartsheet has helped people and teams achieve–well, anything.