Staff Site Reliability Engineer
lifechruh
Job Summary
The Staff Site Reliability Engineer is responsible for ensuring the integrity, performance, and reliability of cloud infrastructure. This role leads security-focused reliability efforts, partners with cybersecurity and engineering teams to drive secure practices, and automates security monitoring. Key responsibilities include designing, implementing, and maintaining secure cloud infrastructure, leading security initiatives, partnering with cybersecurity, building incident response processes, automating security monitoring, implementing secure coding practices, and mentoring other engineers. This role is crucial for ensuring the robustness, scalability, and resilience of the systems supporting Life.Church's applications and platforms.
Must Have
- Design and maintain secure cloud infrastructure.
- Lead security initiatives related to infrastructure reliability.
- Automate monitoring and alerting for security anomalies.
- Proficiency in at least one programming language.
- 7+ years of experience in SRE, DevOps, or Platform Engineering.
Good to Have
- Certifications such as CISSP, ISM, OSCP, or CKS.
- Experience implementing secure CI/CD pipelines.
- Working knowledge of data privacy regulations (GDPR, CCPA).
- Experience with zero-trust networking or policy-as-code.
- Contributions to open source security or SRE tooling.
Perks & Benefits
- Paid parental leave.
- Generous employer-paid leave for vacation and sick time.
- Medical, Dental, and Vision insurance.
- Life insurance at 2x annual salary.
- Short-Term and Long-Term disability coverage.
- Comprehensive wellness and mental health benefits.
- 401(k) retirement plan.
- $160 annually in development dollars.
- Casual dress and work environment.
Job Description
- Design, implement, and maintain secure, scalable, and reliable cloud infrastructure.
- Lead security initiatives related to infrastructurere liability, observability, and automation.
- Partner closely with the Cybersecurity team to coordinate and support penetration testing, vulnerability assessments, and remediation efforts across cloud infrastructure and application platforms.
- Build and maintain incident response and postmortem processes with a focus on security root causes.
- Automate monitoring and alerting for infrastructure and application-level security anomalies.
- Partner with software engineers to implement secure coding practices and infrastructure-as-code (IaC) policies.
- Mentor other engineers on secure systems design, DevSecOps best practices, and incident preparedness.
- Excellent verbal, written, and interpersonal communication skills in order to maintain relationships and partnerships.
- Maintain a systematic and organized approach to completing assignments accurately, thoroughly, and timely.
- Clearly explain complicated and detailed processes in a concise and simple way.
- Ability to self-motivate, take initiative, make independent decisions, and problem-solve.
- Ability to collaborate in a team environment and work independently.
- Strong leadership skills and understanding on developing and guiding others.
- Deep understanding of cloud security principles (IAM, VPC design, key management, service hardening).
- Proficiency in at least one programming language (e.g., Go, Python, Java).
- Familiarity with container security, Kubernetes security hardening, and service mesh security.
- High School Diploma or GED.
- Certifications such as CISSP, ISM, OSCP, or Certified Kubernetes Security Specialist (CKS)preferred.
- 7+ years of related work experience in SRE, DevOps, or Platform Engineering, with a strong focus on security.
- Experience implementing secure CI/CD pipelines and automated security testing tools.
- Experience with system monitoring, incident response, and postmortem analysis.
- Working knowledge of data privacy regulations impacting global users (e.g., GDPR, CCPA) preferred.
- Experience with zero-trust networking, identity-aware proxies, or infrastructure policy-as-code preferred.
- Experience with contributions to open source security or SRE tooling preferred.