{"id":1488501,"url":"https://alion.io/job/origami-risk-llc-devops-manager-infrastructure","title":"DevOps Manager, Infrastructure","company":{"id":7314,"name":"Origami Risk","domain":"origamirisk.com","url":"https://alion.io/company/origami-risk-llc","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"iCIMS","truth_index":null},"role":"DevOps","role_family":"DevOps","seniority":"lead","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":145000,"max":185000,"currency":"USD","period":"year","gross":null,"usd_annual":185000},"salary_estimate":null,"experience_years_min":6,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"Amazon CloudWatch","optional":false},{"name":"Amazon EC2","optional":false},{"name":"Amazon ECS","optional":false},{"name":"Amazon EKS","optional":false},{"name":"Amazon S3","optional":false},{"name":"Anomaly Detection","optional":false},{"name":"Ansible","optional":false},{"name":"AWS","optional":false},{"name":"AWS CDK","optional":false},{"name":"AWS Lambda","optional":false},{"name":"Claude Code","optional":false},{"name":"Configuration Management","optional":false},{"name":"Cursor","optional":false},{"name":"Datadog","optional":false},{"name":"DNS","optional":false},{"name":"Docker","optional":false},{"name":"IAM","optional":false},{"name":"Incident Management","optional":false},{"name":"Least Privilege","optional":false},{"name":"LLM","optional":false},{"name":"New Relic","optional":false},{"name":"Nginx","optional":false},{"name":"NIST 800-53","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SOC 2","optional":false},{"name":"Sumo Logic","optional":false},{"name":"Terraform","optional":false},{"name":"Vault","optional":false},{"name":"Windows","optional":false},{"name":"Windows Server","optional":false},{"name":"AWS Step Functions","optional":true},{"name":"Azure","optional":true},{"name":"Azure DevOps","optional":true},{"name":"Chaos Engineering","optional":true},{"name":"CI/CD","optional":true},{"name":"ElasticSearch","optional":true},{"name":"GitHub Actions","optional":true},{"name":"Graylog","optional":true},{"name":"HashiCorp Vault","optional":true},{"name":"Kibana","optional":true},{"name":"Kubernetes","optional":true},{"name":"Logstash","optional":true}],"status":"live","first_seen_at":"2026-09-30T00:05:15Z","employer_posted_date":"2026-09-30","last_verified_at":"2026-10-04T01:59:11Z","board_verified":true,"closed_at":null,"days_open":4,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":4},"description":"Overview\nA great infrastructure team is defined not by how fast it responds to incidents, but by how rarely incidents occur, because the team built the systems, automation, and AI-augmented operations that prevent them. The DevOps Manager, Infrastructure is the people leader and hands-on technical operator who makes that true at Origami Risk.\nThis manager leads the team that builds, runs, and continuously improves the cloud infrastructure that Engineering teams and clients depend on every day that spans AWS, self-hosted Windows and Active Directory, network and web-tier appliances, identity and secrets, and the automation platform that ties it all together. This is a hands-on technical leader who coaches Engineers on infrastructure engineering craft, sets a high bar for reliability and operational discipline, drives AI adoption into daily DevOps workflows, and partners with Engineering, Security, and Product so that infrastructure is a source of competitive advantage and not a constraint on what Engineering can deliver. On this team, manual work is a problem to be solved, automation is the default, and every Engineer is expected to use AI to work faster and diagnose more accurately.\nStarting base pay for this role is between $145,000 and $185,000. The actual base pay is dependent upon many factors, such as transferable skills, work experience, business needs, training, location, and market demands. The base pay range is subject to change and may be modified in the future. This role will be eligible for a bonus as well as competitive medical, dental, and vision benefits, wellness reimbursement, life insurance, and a 401(k) with company match. We offer vacation and sick leave benefits (under a flexible time off policy in most states).\nResponsibilities\nWhat this team runs:\nThis is a broad estate spanning cloud-native and traditional infrastructure, operated to one modern standard. The successful candidate is energized by that breadth, not surprised by it. The team owns:\n Cloud (AWS): the core AWS estate - compute, container platforms, networking, and the supporting services Engineering and clients depend on, provisioned as code. \nWindows & Active Directory: the self-hosted Active Directory environment and Windows Server fleet, including the application servers that host the platform. \nNetwork & Web Tier: the firewall estate and web-tier proxy and load-balancing layer that route, secure, and front application traffic. \nAutomation Platform: the automation and configuration-management platform that drives consistent, repeatable change across the estate. \nIdentity & Secrets: the shared secrets-management platform, consumed self-service by teams across Engineering. \nDNS, Domains & Certificates: the DNS, domain, and certificate lifecycle that keeps services reachable and trusted. \nStorage, File & Access Services: the storage, file, backup, and remote-access services that support the business. \nKey responsibilities:\nPeople Leadership & Team Development\nLeads, develops, and retains a team of Cloud Infrastructure Engineers building a high-performance culture defined by technical excellence, an automation mindset, and operational ownership. \nSets clear goals, role expectations, and success criteria for each engineer; conducts regular 1:1s and gives direct, constructive feedback with a visible path for growth. \nConducts structured performance reviews that recognize strong operational contributions, address delivery or quality gaps specifically, and grow both AI fluency and foundational infrastructure depth. \nIdentifies capability gaps across the team encompassing IaC, Windows/AD administration, networking, container orchestration, security controls, and AI-assisted operations, while building targeted hiring, upskilling, and cross-training plans. \nFosters a culture where every manual process is a temporary state, automation is the permanent solution, and AI tooling is an expected part of how each engineer works. \nSupports Engineering hiring across the organization by participating in technical interviews and helping calibrate the infrastructure engineering bar. \nCloud Infrastructure Operations\nOwns the operational health of the organization's AWS infrastructure setting team standards for provisioning, configuration management, environment consistency, patching cadences, capacity planning, and cost optimization across all environments. \nLeads the team's infrastructure-as-code practice ensuring resources are defined, versioned, peer-reviewed, and deployed through Terraform, and that manual changes are treated as exceptions to be immediately codified. \nOversees the team's operation of the Ansible Automation Platform encompassing roles, inventory, and configurations as the primary configuration-management system across the estate. \nEnsures reliable operation of the self-hosted Active Directory forests, Windows Server fleets, and Windows RDS, including Group Policy, OU structure, service-account and gMSA management, and identity hygiene. \nOwns certificate, DNS, and domain lifecycle management across, ensuring renewals and changes are reliable and never a source of outages. \nEnsures our Vault secrets service is operated to a high standard as a shared, self-service secrets platform for multiple teams. \nDrives cloud cost efficiency as a continuous discipline, by right-sizing, reserved capacity, auto-scaling, and resource-cleanup automation that control spend as the platform scales. \nOversees core AWS services, EC2, ECS, EKS, Lambda, RDS, S3, VPC, Route 53, IAM, CloudFront, and Auto Scaling, while ensuring configurations are standardized, documented, and aligned with architectural and security standards. \nNetwork, Firewall & Web-Tier Operations\nOwns operation of the Fortinet firewall estate and NGINX Plus web tier encompassing IPS, routing, firewall policy, object management, SSL inspection, and VIP configuration that proxies traffic to NGINX that is deployed and configured through Terraform and Ansible. \nEnsures the infrastructure architecture reflects network security controls, traffic-routing policies, and connectivity requirements - operating infrastructure that is reliable and secure at every layer. \nHolds the team accountable for firmware and security-update discipline across firewalls, NGINX, FTP, and other network-facing systems. \nDelivery Automation & Release Support\nEnsures the infrastructure and automation the team owns integrate cleanly with the delivery pipeline - enabling automated provisioning and deployment workflows and holding the team accountable for the infrastructure reliability that automated releases depend on. \nPartners with the Release Automation and Engineering Systems teams so that pipeline tooling has the environment provisioning, configuration, and deployment automation it needs - with appropriate access controls, standards alignment, and change tracking. \nOversees deployment automation for containerized services, Lambda functions, ECS tasks, and EKS workloads - ensuring patterns are consistent, traceable, and recoverable across environments. \nCoaches Engineers to diagnose and eliminate the root causes of flaky, intermittent infrastructure failures rather than treating them as acceptable operational noise. \nAI-Augmented DevOps Operations\nDrives adoption of AI development tools - including Claude Code and Cursor - across the team's daily workflow, establishing norms for AI-assisted IaC authoring, automation scripting, and operational documentation. \nChampions AI-assisted operations as a management discipline - integrating AI-powered log analysis, anomaly detection, runbook generation, and LLM-augmented incident analysis into workflows that reduce mean time to diagnosis. \nUses AI to accelerate the team's most demanding work - large-scale infrastructure audit and compliance analysis, drift detection, capacity planning, and intelligent alerting - and shares effective patterns with engineering leadership. \nEvaluates AI-native infrastructure tools and makes evidence-based recommendations to the Director of DevOps on where AI investment will deliver the highest operational return. \nHolds team members accountable for AI tool adoption and proficiency - incorporating AI fluency into performance conversations, development plans, and hiring criteria. \nObservability, Monitoring & Incident Response\nLeads the team's ownership of infrastructure and application observability - monitoring dashboards, alerting policies, log aggregation, and anomaly detection across the stack using New Relic, Datadog, CloudWatch, and related tooling. \nHolds the team accountable for alert quality - building monitoring that surfaces actionable signals rather than noise that erodes on-call confidence. \nOwns the team's on-call model - rotation schedules, escalation paths, and readiness standards - ensuring every engineer has the runbooks, tooling access, and AI-assisted investigation capabilities to resolve incidents effectively. \nLeads blameless post-incident reviews, produces structured root cause analyses, and owns follow-through on corrective actions that prevent recurrence. \nTracks infrastructure reliability metrics - availability, MTTR, change failure rate, and deployment frequency - reporting trends and improvement actions to the Director of DevOps. \nSecurity, Compliance & Access Management\nHolds the team accountable for infrastructure security controls across all environments - IAM policy governance, security-group management, secrets management, encryption standards, vulnerability patching, and compliance with baselines aligned to NIST 800-53, ISO/IEC 27001, and SOC 2. \nEnsures the team conducts regular infrastructure security assessments - reviewing IAM permissions, security-group configurations, exposed endpoints, and compliance configurations - and drives timely remediation of identified gaps. \nOwns infrastructure access governance - provisioning and de-provisioning that are timely, least-privilege, regularly reviewed, and audit-ready at all times. \nSupports audit readiness and evidence collection for SOC 2, ISO/IEC 27001, and NIST 800-53 - maintaining accurate records of infrastructure configurations, access grants, and change history. \nPartners with Application Security Engineers to integrate infrastructure-level controls - container scanning, secrets management, and network-policy enforcement - into the automation workflows the team owns. \nCross-Functional Collaboration & Stakeholder Management\nServes as the primary operational partner to Engineering delivery teams - providing infrastructure consultation during system design and ensuring services are operationally sound and reliably deployable. \nCollaborates with the Engineering Systems and Release Workflow teams on pipeline governance, release planning, and deployment coordination - ensuring required infrastructure capacity is available, validated, and ready before promotion. \nRepresents the DevOps team in Engineering leadership forums - communicating infrastructure health, operational risk, team capacity, and improvement roadmap with data-backed specificity. \nManages vendor and tooling relationships relevant to the infrastructure domain - cloud provider support, monitoring platforms, firewall/appliance vendors, and licensing - ensuring SLAs are met and escalations are handled with urgency. \nQualifications\nBachelor's Degree in Computer Science, Software Engineering, Information Systems, or a related field. \n6+ years of cloud infrastructure engineering experience, including 2+ years in a management role with direct people-leadership accountability for a DevOps or Infrastructure Engineering team. \nDemonstrated track record of leading and developing technical teams - hiring, coaching, performance management, and building a high-performance culture. \nDeep hands-on proficiency with AWS cloud services - EC2, ECS, EKS, Lambda, RDS, S3, VPC, IAM, Route 53, CloudFront, and Auto Scaling - designing and operating production AWS environments at scale....","description_format":"text","description_chars":17555,"description_truncated":true,"requirements":{"experience_years_min":6,"management_years_min":2,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Education assistance","Flexible time off","Life insurance","Parental leave","Vision insurance"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[{"name":"United Kingdom","iso":"GB"}],"relocation_offered":false,"industries":["Financial Services","Health Care","InsurTech"],"lifecycle":[{"event":"open","at":"2026-09-30T00:05:15Z"}],"visa":[{"country":"US","licensed_sponsor":true,"evidence":"H-1B filings in 12 months: 1 · green card filings: 1","filings_12m":1,"filings_prev_12m":3,"green_card_filings_12m":1,"median_offered_wage_usd":160000,"route":null,"cap_exempt":false,"checked_at":"2026-10-03T21:08:04+00:00","sources":["US Department of Labor: LCA disclosure data (H-1B, H-1B1, E-3)","US Department of Labor: PERM disclosure data (green cards)"],"filings_for_role_12m":1}],"liveness":{"score":81,"band":"hot","label":"Hiring now","p_open":0.9,"p_active":0.903,"p_room":1,"age_days":3,"expected_fill_days":31,"reasons":["conf:67","velocity","win:early"],"computed_at":"2026-10-03T05:45:00Z"},"pay":{"stated_usd_annual":185000,"is_top_pay":true},"html_url":"https://alion.io/job/origami-risk-llc-devops-manager-infrastructure","json_url":"https://alion.io/job/origami-risk-llc-devops-manager-infrastructure.json","meta":{"generated_at":"2026-10-04T02:52:54Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4374,"day_limit":5000,"remaining_today":626,"minute_limit":60,"resets_at":"2026-10-05T00:00:00Z"}}}