The Principal DevSecOps Engineer will evolve systems for building, securing, and scaling a virtual care platform, ensuring security compliance, architecting infrastructure, and improving CI/CD pipelines.
Heartbeat Health is looking for a Principal DevSecOps Engineer to own and evolve the systems that underpin our ability to build, secure, and scale our virtual-first cardiovascular care platform.
This is a hands-on, high-impact role. You’ll design and enforce the systems and guardrails that enable our teams to move quickly - without compromising security or stability. Working closely with engineering, compliance, and leadership, you’ll shape how we think about security, reliability, and velocity. That means designing and hardening our AWS foundation, leveling up our SDLC, and directly raising the bar on how quickly - and safely - we deliver cardiac care at scale.
What You'll Do:
- Level-Up Our CI/CD: Improve GitHub Actions pipelines to improve build speed, consistency, and visibility across teams.
- Architect and Automate Infrastructure: Design and evolve our AWS infrastructure using Terraform and modern IaC best practices.
- Own Observability: Improve logging, metrics, tracing, and alerting across services (Datadog, etc.) to ensure systems are understandable, debuggable, and transparent.
- Lead Security Practices: Define and enforce best practices for cloud and application security; partner with engineering to embed security into our development lifecycle.
- Support Compliance: Partner with compliance and leadership to ensure HIPAA and SOC 2 Type II readiness, including evidence generation and audit support.
- Be the SME: Serve as the go-to expert for all things DevOps, platform security, and cloud infrastructure.
- Set Direction: Collaborate with engineering and product leadership to define technical strategy, roadmap, and investments in platform reliability and security.
About You:
- 8+ years of experience in DevOps, SRE, platform, or security engineering roles
- Deep hands-on experience with:
- AWS core services (EC2, RDS, ECS/EKS, IAM, etc.)
- Infrastructure as code (Terraform or equivalent)
- CI/CD pipelines (GitHub Actions preferred)
- Kubernetes or equivalent container orchestration tools
- Strong grasp of infrastructure and application security practices
- Experience supporting regulated environments (HIPAA, SOC 2, HITRUST, etc.)
- Clear, effective communicator - both written and verbal
- Comfortable working cross-functionally and leading by influence
- Biased toward action, pragmatism, and simplicity
- Proven success in high-autonomy, small-team, or startup environments
Top Skills
AWS
Datadog
Github Actions
Kubernetes
Terraform
Similar Jobs
Cloud • Software
The Principal DevSecOps Engineer will architect secure cloud infrastructure, manage CI/CD pipelines, ensure compliance, and mentor team members.
Top Skills:
AWSAzureCi/CdDockerGCPGoKubernetesPulumiRest ApiSIEM
AdTech • Digital Media • Marketing Tech
The QA Engineer will validate software solutions, develop test strategies, collaborate with engineers on defect resolution, and mentor junior team members to ensure quality assurance standards are met.
Top Skills:
.NetAngularAWSAzureC#DockerKubernetesPythonSap AbapSQL
AdTech • Digital Media • Marketing Tech
Responsible for selling Comcast Advertising products by soliciting clients and advertising agencies, preparing data-driven presentations, and maintaining customer records.
Top Skills:
Ms Powerpoint
What you need to know about the Colorado Tech Scene
With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.
Key Facts About Colorado Tech
- Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
- Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
- Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
- Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute