Clarityinnovates Senior Principal Platform Engineer at Clarityinnovates building a unified multi-tenant control plane using Kubernetes, Crossplane, and Cluster API. Translate compliance frameworks into automated security controls and pipelines.
Responsibilities
Policy-as-Code & Control Enforcement: Translate NIST 800-53 controls and ISSO policy into automated admission policies, cross-cloud guardrails, and real-time compliance checks using Policy-as-Code frameworks.
Automated Evidence & ConMon: Build pipelines and telemetry dashboards to collect compliance evidence automatically and stream real-time reporting to tools like eMASS/XACTA to support the Authorization to Operate (ATO) lifecycle.
Secure Supply Chain: Implement end-to-end supply chain controls within CI/CD pipelines, including automated SBOM generation, artifact signing, vulnerability scanning, and provenance tracking.
Zero-Trust Infrastructure: Package and configure core security capabilities across IAM, secrets management, service mesh, and network segmentation to ensure robust zero-trust architecture.
Cross-Team Alignment: Partner with software and platform engineers to turn security requirements into actionable backlog items and guide teams on implementing technical controls.
Qualification
Platform Security & InfrastructureCompliance FrameworksSoftware Automation & CI/CDSupply Chain SecuritySecurity ToolingActive DoD Top Secret ClearanceSalary RangeWe are an equal opportunity employer
Required
Platform Security & Infrastructure: 5+ years of hands-on platform engineering experience, with deep technical expertise in cloud infrastructure and zero-trust architectures.
Compliance Frameworks: Direct experience working with NIST SP 800-53, RMF (NIST SP 800-37), or FedRAMP, with a proven ability to translate control statements into software configurations.
Software Automation & CI/CD: Proficiency in Go or Python, along with CI/CD pipeline automation (e.g., GitLab CI) and GitOps workflows.
Supply Chain Security: Hands-on experience with vulnerability scanning, image signing, dependency management, and SBOM validation across cloud and air-gapped systems.
Security Tooling: Experience with enterprise IAM, secrets management platforms (e.g., HashiCorp Vault), and automated policy engines.
Active DoD Top Secret Clearance.
Preferred
Active security or cloud certifications (e.g., CISSP, CCSP).
Experience automating Continuous ATO (cATO) in air-gapped or heavily regulated environments.
Salary Range: $150,000 - $330,000
We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.