Senior DevOps Engineer
ECS Tech Inc · United States
Ascensus · Atlanta, Georgia, United States
What they do, how they make money, why this role exists.
Reading up on Ascensus…
One proof-of-work idea, an hour to build, that shows this employer you get their business.
Sketching a proof-of-work idea…
Who likely hires for this role, a LinkedIn search pre-filled to find them, and a short intro written for this exact job — you send it yourself.
Ascensus is the leading independent technology and service platform powering savings plans across America, providing products and expertise that help nearly 16 million people save for a better today and tomorrow.
Section 1: Position Summary
We are seeking a Senior DevOps Engineer with 10+ years of hands‑on experience designing, building, and operating enterprise‑grade CI/CD platforms across hybrid environments (AWS and on‑premises). This role will lead platform standardization, progressive delivery, reliability engineering, and security‑by‑design to enable high‑quality, low‑risk software delivery at scale.
Design, implement, and operate a standardized CI/CD framework supporting Dev, QA, PartnerLab, Staging, and Production Define promotion workflows with enforced quality gates and artifact immutability Establish PartnerLab as a dedicated integration and validation environment with no direct path to Production Ensure environment parity across AWS and on‑prem systems Progressive Delivery & Release Engineering Implement feature flags, canary deployments, blue‑green deployments, and phased rollouts Enable automated rollback based on health checks, error rates, and SLO breaches Maintain full release traceability from commit through production
Integrate unit, integration, regression, security, and performance testing into CI/CD pipelines Enforce automated quality gates before environment promotion Support manual validation workflows with controlled access, observability, and test artifacts
Automate database schema versioning, migrations, rollbacks, and validation Build lower‑environment refresh pipelines sourced from production data Enforce data masking and PII anonymization for non‑production environments Validate data integrity and consistency post‑refresh
Define and enforce observability standards across logs, metrics, and traces Implement service health dashboards, alerts, and incident signals Integrate deployment health into automated release decisions Support on‑call readiness, incident response, and post‑incident reviews
Embed security scanning, secrets management, and access controls into pipelines Enforce least‑privilege IAM, credential rotation, and artifact integrity checks Align CI/CD workflows with enterprise change management and audit requirements
AWS (mandatory): ECS, EKS, Lambda, RDS, IAM, CloudFormation, CloudWatch Hybrid infrastructure experience across on‑prem VMs, bare metal, and internal networks Terraform for modular, reusable, policy‑compliant infrastructure
GitHub Enterprise & GitHub Actions (reusable workflows, templates, runners, environments) CI/CD orchestration across hybrid AWS and on‑prem topologies Artifact versioning, promotion, and immutability strategies
Docker image design, optimization, and security hardening Kubernetes (EKS and on‑prem) deployment patterns, scaling, and lifecycle management Helm for deployment standardization
Automated testing frameworks (unit, integration, regression, performance) Static and dynamic analysis tools (code quality, security, dependency scanning) Feature flag platforms or equivalent internal capabilities
Oracle and Microsoft SQL Server (mandatory) Schema migration tooling with automated rollback Data masking, anonymization, and controlled refresh automation
Metrics, logging, and tracing with Prometheus, Grafana, Splunk, New Relic, CloudWatch, OpenTelemetry, ELK SLO‑driven alerting and deployment health evaluation (e.g., Uptrends, PagerDuty) Automated failure containment and rollback strategies
HashiCorp Vault, AWS Secrets Manager, or equivalent Secure pipeline design with controlled credential access Compliance‑ready logging, approvals, and traceability
Experience in regulated or financial services environments Strong documentation, runbooks, and architectural communication Proven collaboration with application, infrastructure, security, and QA teams Comfortable operating in enterprise, onshore delivery models We are proud to be an Equal Opportunity Employer The national average salary range for this role is 120-165k in base pay, exclusive of any bonuses and benefits.
This base salary range represents the low and high end of the salary range for this position. Actual salary offered will vary and may be above or below the range based on various factors including but not limited to location, experience, performance, and internal pay alignment.
We do not anticipate that candidates hired will begin at the top of the range however, from time to time, it may occur on a case-by-case basis. Other rewards and benefits may include: 401(k) match, Medical, Dental, Vision, Paid-Time-Off, etc. For more information, please visit careers.ascensus.com/#Benefits.
Be aware of employment fraud. All email communications from Ascensus or its hiring managers originate from @ascensus.com or @futureplan.com email addresses. We will never ask you for payment or require you to purchase any equipment. If you are suspicious or unsure about validity of a job posting, we strongly encourage you to apply directly through our website.
Straight from the source — this role comes from Ascensus's own hiring system (Workday), not a scraped repost. iRocket links you directly; we don't host the posting or the application.
ECS Tech Inc · United States
Modular · United States
Rise Works · United States