Skip to content

Open nowPosted 3 days ago

IT Infrastructure, Security & DevOps Engineer

trustpoint11 open roles

Where
Dulles, Virginia, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowIT Infrastructure, Security & DevOps Engineertrustpoint · Dulles, Virginia, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on trustpoint's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 3 days ago

The posting

Join TrustPoint and Build the World’s First Commercial GPS System in Space

GPS is a ubiquitous global utility in modern society; knowing one’s location is critical for government, commercial, and personal applications. Still, today’s solutions for determining location are inaccurate, slow, unencrypted, and susceptible to jamming and spoofing. TrustPoint is building the world’s first commercial, authenticated GPS system in space to deliver secure, precise positioning, navigation, and timing to customers worldwide.

Position: IT Infrastructure, Security & DevOps Engineer

The Position

As TrustPoint’s IT Infrastructure, Security & DevOps Engineer, you will design, deploy, and manage the IT infrastructure, cloud environments, networking, and developer platforms that power our engineering organization. The role bridges traditional IT operations and modern DevOps practice, ensuring our engineers have a secure, scalable, and automated environment to develop, test, and deploy the software behind our satellites, ground systems, and products.

You will own everything from office networking and endpoint management to AWS infrastructure, CI/CD pipelines, infrastructure automation, security, and developer enablement. Your work will directly improve developer productivity, system reliability, and the security of environments that span our offices, cloud, and globally distributed field systems.

You will also lead TrustPoint's IT security and compliance program. As our government business grows, our infrastructure has to meet the standards our customers operate under: CMMC for controlled unclassified information, FedRAMP-aligned practices for the services we deliver, and AWS GovCloud for regulated workloads. You will own that effort end to end, and build the IT foundation for a future facility clearance and the accredited environments that come with it.

We’ll Expect You To…

  • Design, configure, and maintain office, lab, and remote network infrastructure including routers, switches, firewalls, VLANs, VPNs, and Wi-Fi networks.
  • Administer Windows, Linux, and macOS systems and manage user accounts, identity, permissions, MFA, and endpoint security through Microsoft 365 or Google Workspace.
  • Design and maintain TrustPoint’s AWS infrastructure including VPCs, EC2, IAM, Route 53, S3, RDS, CloudWatch, Systems Manager, and cloud networking.
  • Deploy and manage infrastructure as code using Terraform, with secure, least-privilege IAM roles and policies, while optimizing cloud cost, performance, and security.
  • Build and maintain CI/CD pipelines using GitHub Actions, GitLab CI, or Jenkins, and maintain artifact repositories, package registries, and container registries.
  • Containerize applications using Docker and deploy workloads on ECS, Kubernetes, or similar orchestration platforms.
  • Automate provisioning and operational tasks using Python or Bash.
  • Deploy and maintain secure remote access solutions such as WireGuard, Tailscale, or NetBird for employees and field-deployed systems.
  • Create reproducible development environments and internal tooling that improve engineering onboarding and productivity.
  • Implement monitoring, alerting, and centralized logging using CloudWatch, Grafana, or Prometheus.
  • Perform vulnerability assessments and security hardening, respond to infrastructure incidents, and participate in root cause analysis.
  • Configure backup, disaster recovery, and business continuity solutions; maintain IT documentation and standard operating procedures; and procure and manage IT hardware and software assets.
  • Lead TrustPoint's CMMC readiness and certification: scope the CUI enclave, implement NIST SP 800-171 controls, maintain the SSP and POA&M, manage the SPRS score, and carry us through assessment.
  • Design and operate segmented environments for CUI and export-controlled data, including AWS GovCloud and Microsoft 365 GCC High or equivalent.
  • Own DFARS 252.204-7012 compliance and related contract flowdowns, and implement ITAR/EAR safeguards in IT systems.
  • Support FedRAMP-aligned control implementation and evidence for TrustPoint services delivered to government customers.
  • Build the IT foundation for a future facility clearance (FCL), including NISPOM requirements and accredited classified systems under RMF; grow into ISSM for those systems.
  • Run security operations: vulnerability management, patch cadence, EDR, log retention, access reviews, incident response, and security awareness training.

You’ll Need to Have…

  • Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in IT infrastructure, systems administration, or DevOps.
  • Strong Linux system administration skills.
  • Experience managing AWS environments.
  • Experience with Terraform or other infrastructure as code tools.
  • Experience with Docker and containerized applications.
  • Strong networking knowledge including TCP/IP, DNS, DHCP, VLANs, VPNs, routing, and firewalls.
  • Experience with Git and CI/CD pipelines.
  • Proficiency in Python, Bash, or PowerShell scripting.
  • Hands-on experience implementing security controls in a regulated environment: NIST SP 800-171, 800-53, CMMC, FedRAMP, or ISO 27001.
  • Experience writing and maintaining security documentation and audit evidence.
  • Strong troubleshooting and communication skills.
  • Must be a U.S. Person (U.S. citizen or permanent resident).

We’d Like to See…

  • Experience with Kubernetes (EKS, k3s, or similar).
  • Experience with Zero Trust networking approaches such as NetBird, WireGuard, or Tailscale.
  • Familiarity with Prometheus, Grafana, and ELK/OpenSearch.
  • AWS Solutions Architect, SysOps Administrator, or DevOps Engineer certifications.
  • Experience supporting embedded systems, robotics, aerospace, or IoT environments.
  • Experience with software-defined radios, Linux-based embedded devices, or edge computing.
  • Experience with messaging systems such as ZeroMQ, MQTT, or NATS.
  • Familiarity with GitHub Enterprise and Python-based automation frameworks.
  • Experience taking an organization through CMMC Level 2 assessment or FedRAMP authorization.
  • Experience with AWS GovCloud or Microsoft 365 GCC High.
  • Familiarity with NISPOM and DCSA processes, or experience serving as ISSM/ISSO.
  • Familiarity with ITAR/EAR technical data controls in an engineering environment.
  • Active U.S. security clearance, or eligibility to obtain one.
  • Self-starter with a builder mindset and experience thriving in a startup environment.

Cultural Fit

  • Thrive in a start-up environment where every team member’s contributions directly shape the product.
  • Comfortable holding a security line without slowing engineers down; finds the control that works rather than the one that's easiest to document.
  • Effective communication style that instills a culture of optimism and positivity.
  • Sense of humor and ability to proactively problem solve.
  • Encourages colleagues to think and plan strategically while executing well tactically.
  • Works well with all company levels and disciplines (i.e. Legal, HR, etc.).
  • Willing to “roll up sleeves” in a new venture, working closely with colleagues.

Compensation and Benefits

The selected candidate will be competitively compensated with salary, equity (stock options), and standard benefits. The salary range for this position is $139,000 to $172,000.

TrustPoint, Inc. is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, disability or handicap, sex, marital status, veteran status, sexual orientation, arrest record or any other characteristic protected by applicable federal, state or local laws.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against trustpoint's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on trustpoint's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    trustpoint's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.