Jobs and Careers
AM

Senior DevSecOps Engineer

Amplitude
San Francisco, United Statesfull_timeVerifiedPosted 23 Apr 2025
💰 $266,000/yr($161,000/yr$266,000/yr)

About the role

Amplitude is the leading digital analytics platform that helps companies unlock the power of their products. Over 3,800 customers, including Atlassian, NBCUniversal, Under Armour, Shopify, and Jersey Mike’s, rely on Amplitude to gain self-service visibility into the entire customer journey. Amplitude guides companies every step of the way as they capture data they can trust, uncover clear insights about customer behavior, and take faster action. When teams understand how people are using their products, they can deliver better product experiences that drive growth. Amplitude is the best-in-class analytics solution for product, data, and marketing teams, ranked #1 in multiple categories in G2’s Winter 2024 Report. Learn how to optimize your digital products and business at amplitude.com.

As an organization, we approach challenges with humility, take ownership of our contributions, and embrace a growth mindset that pushes us to constantly improve ourselves, each other, and the value we bring to customers and partners.

Amplitude’s Commitment to Diversity Equity & Inclusion (DEI): Amplitude believes that diversity enables the creation of better products, improves the ability to solve complex problems, and drives more powerful solutions. We strive to create an environment of inclusion—one focused on psychological safety, empathy, and human connection—that will allow employees of all backgrounds to thrive.

About the Role:

As a Senior DevSecOps Engineer, you’ll lead security initiatives across infrastructure and product engineering, bringing a DevSecOps mindset to building automation and secure, scalable systems. You’ll collaborate closely with engineering teams and work across a wide range of domains including cloud security, container security, application security, and developer tooling. This is a role for someone who enjoys context-switching across a range of initiatives and isn't afraid to get into the weeds to unblock teams or ship secure solutions quickly. You’ll also participate in a shared on-call rotation to respond to high-risk security issues and incidents in order to help the business minimize exposure.

Success in this role means driving meaningful improvements in our security posture without slowing down development. You’ll reduce time-to-remediate, build automated guardrails, and proactively identify risks before they become incidents. You'll be a trusted partner to engineering, delivering high-velocity solutions that balance security and developer experience.

Key Responsibilities:

  • Harden AWS and Kubernetes environments through automation, policy-as-code, and guardrails.
  • Own and evolve our DevSecOps strategy across infrastructure and application pipelines.
  • Drive end-to-end secure development practices: integrate security into CI/CD, build pre-commit hooks, and improve developer productivity without sacrificing security.
  • Create and implement lightweight, scalable security controls that support fast-moving teams.
  • Partner with engineering to identify and mitigate risks in architecture, design, and implementation stages.
  • Participate in an on-call rotation to resolve critical/high-risk security issues as well as respond to security incidents with urgency and clarity.
  • Identify opportunities to fix systemic gaps, reduce recurring pain points, and avoid reactive “whack-a-mole” cycles.

What We’re Looking For:

  • 4+ years of experience in security engineering with a strong focus on DevSecOps and secure cloud infrastructure on AWS.
  • Hands-on expertise with infrastructure-as-code tools (Terraform, CloudFormation) for AWS, as well as the Kubernetes ecosystem of tools.
  • Strong coding/scripting skills in Python, Bash, or equivalent languages for automating security tasks.
  • Experience with CI/CD platforms and integrating security controls early in the pipeline.
  • Comfortable navigating ambiguity, driving clarity, and leading through execution in fast-paced environments.
  • Willingness to go above and beyond, including submitting fixes and supporting teams directly when needed.
  • Experience using AI to automate security tasks is a significant plus (e.g. log analysis, code review, alert triage).
  • Familiarity with application security concepts is preferred, but not required.

Who We Are

The Company: Amplitude is filled with humble, life-long learners who are eager to help one another and the company succeed. Our values of growth mindset, ownership, and humility are core to the way we work: we’re tenacious in the face of challenges, we take the initiative to solve problems that drive our shared success, and we operate from a place of empathy and openness, seeking to understan

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Amplitude

View company profile →