Skip to main content

Infrastructure DevOps Software Engineer III

Compensation
$164,652–$230,513/year

Job Description

Application close date:

Applications will be accepted on an ongoing basis until the requisition is closed.

At Blue Origin, we envision millions of people living and working in space for the benefit of Earth. We’re working to develop reusable, safe, and low-cost space vehicles and systems within a culture of safety, collaboration, and inclusion. Join our team of problem solvers as we add new chapters to the history of spaceflight!  


This role is part of the Blue Origin Engines business unit, where our focus is the design, development, manufacturing, and testing of engines and propulsion systems. Built for multiple uses, our family of engines is powering the next generation of rockets for commercial, civil, national security, and human spaceflight.

As part of a small team, you will help build the internal cloud platform that Engines software and data teams build on every day. You will own significant components of that platform — reusable infrastructure-as-code modules, golden paths, Kubernetes services, and self-service automation — and you will support multiple internal customer teams running on shared environments with differing security, scale, and lifecycle needs. This hands-on position requires demonstrated depth authoring reusable IaC, operating production Kubernetes at scale, and applying site reliability engineering practices to systems you did not write. We operate with a strong bias for automation and an AI-first approach to development.  Together, our teams deliver the platform and automation that allow high-velocity development teams to ship safely and often.

We are looking for someone to apply their technical expertise, leadership skills, and commitment to quality to positively impact safe human spaceflight. Passion for our mission and vision is required!


Responsibilities:

As a Platform DevSecOps Engineer III, you will own platform components from design through verification and ongoing operation, working with minimal oversight and general guidance on new assignments. You will independently develop solutions to problems of diverse scope, use technical judgment to select the methods and technologies best suited to the solution while balancing risk, lead root cause analysis on major-scope production issues, and own technical reviews and documentation for your projects. You will provide input to schedule, budget, and milestones, provide technical feedback that improves the solutions of other engineers, and participate in company-wide tool development and process improvement efforts. Specific responsibilities include:

  • Design, build, and own reusable infrastructure-as-code modules in Pulumi and Terraform, treating them as versioned products with clear interfaces, defaults, tests, documentation, and deprecation paths.
  • Build and maintain golden paths and paved-road templates that let development teams provision compliant, production-ready infrastructure without deep cloud expertise.
  • Own the design and operation of shared AWS platform services, including account and network topology, identity and access patterns, and environment promotion strategy.
  • Design and operate production Kubernetes platforms on Amazon EKS, including cluster architecture, networking, autoscaling, upgrade strategy, multi-tenancy, and resource governance.
  • Build platform capabilities that support microservice architectures, including service scaffolding, ingress and service discovery, secrets delivery, and production readiness standards.
  • Apply a strong bias for automation, eliminating manual and repetitive operational work through code, tooling, and self-service capabilities.
  • Use AI coding assistants and agentic development tooling as a routine part of the development workflow to accelerate module development, test generation, refactoring, and documentation.
  • Build AI-assisted automation into platform operations, such as automated triage, log and alert summarization, remediation suggestions, and change impact analysis.
  • Establish and follow responsible practices for AI-assisted development, including human review, test coverage, secure handling of proprietary and export-controlled information, and validation of generated code and configuration.
  • Design and build CI/CD pipelines and deployment patterns (blue/green, canary, progressive rollout, automated rollback) that enable teams to deploy safely and frequently.
  • Establish and improve DevSecOps practices across the platform lifecycle, including automated security scanning, policy-as-code, secrets management, image hardening, IAM least-privilege design, and vulnerability and patch remediation workflows.
  • Own observability for platform infrastructure and microservices, including metrics, logging, distributed tracing, dashboards, and alerting strategy, and drive alert quality to reduce noise and mean time to detection.
  • Define and instrument SLIs, SLOs, and error budgets in partnership with customer teams, and drive reliability improvements against them.
  • Lead incident response and postmortems, perform root cause analysis on major-scope production failures, and drive corrective and preventive actions to closure.
  • Define and execute performance, capacity, scalability, resiliency, and cloud cost optimization efforts across the platform.
  • Define and implement security and compliance controls in accordance with Blue Origin standards and export control (ITAR/EAR) requirements.

Minimum Qualifications:

  • B.S. degree or higher in computer engineering, electrical engineering, computer science, information systems, mathematics, physics, aerospace, or related field.
  • 5+ years of hands-on experience developing, deploying, and operating software or cloud infrastructure.
  • Demonstrated experience as a platform engineer, DevOps/DevSecOps engineer, site reliability engineer, or cloud infrastructure engineer, including ownership of production systems.
  • Demonstrated experience building and maintaining reusable, versioned infrastructure-as-code modules consumed by other teams, including Pulumi and Terraform.
  • Deep hands-on experience with AWS, including EC2, EKS, S3, VPC and networking, IAM, RDS, CloudWatch, Route 53, and Secrets Manager or Parameter Store.
  • Demonstrated experience designing, deploying, and operating production Kubernetes clusters, including upgrades, networking, autoscaling, and troubleshooting.
  • Experience supporting multiple internal customer teams or tenants on shared infrastructure, including multi-account or multi-tenant patterns, isolation, and guardrails.
  • Experience with Docker / containers, container image build pipelines, registries, and image hardening.
  • Experience designing and maintaining CI/CD pipelines, including pipeline creation, editing, and deployment automation (e.g., GitLab CI, GitHub Actions, Jenkins, Argo CD).
  • Demonstrated bias for automation, with a track record of replacing manual operational work with code and self-service tooling.
  • Hands-on experience using AI coding assistants or agentic development tooling (e.g., GitHub Copilot, Claude, Cursor, Amazon Q) as part of a professional development workflow.
  • Experience supporting microservice architectures and high-velocity development teams in production.
  • Experience with site reliability engineering practices, including SLI/SLO definition, capacity planning, incident response, and toil reduction through automation.
  • Experience with Linux internals including commands and shell scripting.
  • Experience with TypeScript and/or Python and at least one additional language (e.g., Go, TypeScript, Java, C++).
  • Experience with monitoring and observability tooling (e.g., Prometheus, Grafana, CloudWatch, OpenTelemetry, Elastic Stack).
  • Solid knowledge of networking fundamentals including DNS, TCP/IP, load balancing, TLS, and cloud network segmentation.
  • Working knowledge of databases and SQL including NoSQL.
  • Solid knowledge of cloud security best practices, identity and access management, and secure software delivery.
  • Experience participating in on-call support, leading incident response, and performing root cause analysis.
  • Ability to independently determine appropriate methods and approaches on new problems with general guidance.
  • Ability to learn fast, multitask and drive tasks to completion.
  • Ability to present technical concepts and recommendations to peers, customers, and leadership.
  • Ability to earn trust, maintain positive and professional relationships, and strengthen our culture of inclusion.
  • Must have can do attitude and be problem solver.
  • Must be a U.S. citizen or national, U.S. permanent resident (current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.

Preferred Qualifications:

  • Experience building an internal developer platform, developer portal, or golden path program (e.g., Backstage, Port, or equivalent).
  • Experience with Kubernetes platform extension patterns, including custom controllers, operators, or CRDs.
  • Experience with GitOps workflows and tooling (e.g., Argo CD, Flux).
  • Experience with Helm, Kustomize, or similar Kubernetes packaging and configuration management tools.
  • Experience testing infrastructure code (e.g., Pulumi unit/integration tests, Terratest, contract or compliance testing of modules).
  • Experience with policy-as-code, drift detection, and compliance scanning (e.g., OPA/Gatekeeper, Sentinel, Checkov, tfsec).
  • Experience with multi-account AWS strategy, landing zones, AWS Organizations, and Control Tower.
  • Experience building AI or LLM-based automation for operations, such as automated triage, summarization, or remediation workflows.
  • Experience with MCP servers, agent frameworks, or building internal tooling that exposes platform capabilities to AI agents.
  • Experience with secure DevSecOps tooling (SAST/DAST, SBOM, container and dependency vulnerability scanning) and compliance frameworks (e.g., NIST 800-53/171, CIS Benchmarks).
  • Experience with secrets management tooling (e.g., HashiCorp Vault, AWS Secrets Manager) and workload identity federation.
  • Experience with event-driven or streaming platforms (e.g., Kafka, Amazon MSK).
  • Experience with cloud cost optimization and FinOps practices, including tenant-level cost attribution.
  • Experience with chaos engineering, disaster recovery, or resiliency testing.
  • Experience establishing platform standards or golden paths adopted across multiple development teams.
  • Experience in aerospace, propulsion, manufacturing, or other high-reliability engineering environments.
  • Relevant certifications (e.g., AWS Solutions Architect Professional, AWS DevOps Engineer Professional, CKA/CKAD).
  • Ability to generate innovative reusable solutions.


 

Base Pay Range for:

WA applicants is $164,652.00 - $230,512.80

Other site ranges may differ


Culture Statement

Don’t meet all desired requirements? Studies have shown that some people are less likely to apply to jobs unless they meet every single desired qualification. At Blue Origin, we are dedicated to building an authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every desired qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles.


Export Control Regulations

Applicants for employment at Blue Origin must be a U.S. citizen or national, U.S. permanent resident (i.e. current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.


Background Check

  • Required for all positions: Blue’s Standard Background Check
  • Required for Certain Job Profiles:  Defense Biometric Identification System (DBIDS) background check if at any time the role requires one to be on a military installation
  • Required for Certain Job Profiles: Drivers who operate Commercial Motor Vehicles with a Gross Vehicle Weight (GVW), Gross Vehicle Weight Rating (GVWR) or combination of power unit and trailer that meets or exceeds 10,001 lbs. and/or transports placardable amounts of hazardous materials by ground in any vehicle on a public road while in commerce, may be subject to additional Federal Motor Carrier Safety Regulations including: Driver Qualification Files, Medical Certification (obtained before onboarding), Road Test, Hours of Service, Drug and Alcohol Testing, vehicle inspection requirements, CDL requirements (if applicable) and hazardous materials transportation/shipping training.
  • Required for certain Job Profiles: Ability to obtain and maintain Merchant Mariner Credential, which includes pre-employment and random drug testing as well as DOT physical

Benefits

  • Benefits include:  Medical, dental, vision, basic and supplemental life insurance, paid parental leave, short and long-term disability, 401(k) with a company match of up to 5%, and an Education Support Program.
  • Stock Options for all regular employees (working at least 20 hours/week)
  • Paid Time Off:  Up to four (4) weeks per year based on weekly scheduled hours, and up to 14 company-paid holidays.
  • Dependent on role type and job level, employees may be eligible for benefits and bonuses based on the company's intent to reward individual contributions and enable them to share in the company's results, or other factors at the company's sole discretion. Bonus amounts and eligibility are not guaranteed and subject to change and cancellation. Please check with your recruiter for more details.

Equal Employment Opportunity

Blue Origin is proud to be an Equal Opportunity/Affirmative Action Employer and is committed to attracting, retaining, and developing a highly qualified and dedicated work force. Blue Origin hires and promotes people on the basis of their qualifications, performance, and abilities. We support the establishment and maintenance of a workplace that fosters trust, equality, and teamwork. We provide all qualified applicants for employment and employees with equal opportunities for hire, promotion, and other terms and conditions of employment, regardless of their race, color, religion, sex, sexual orientation, gender identity, national origin/ethnicity, age, physical or mental disability, genetic factors, military/veteran status, or any other status or characteristic protected by federal, state, and/or local law. Blue Origin will consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state, and local laws, including the Washington Fair Chance Act, the California Fair Chance Act, the Los Angeles Fair Chance in Hiring Ordinance, and other applicable laws. For more information on “Know Your Rights,” please see here.


Affirmative Action and Disability Accommodation

Applicants wishing to receive information on Blue Origin’s Affirmative Action Plans, or applicants requiring a reasonable accommodation in order to participate in the application and/or interview process, please contact us at [email protected]. Please note this is a publicly managed inbox. Please do not include any personal medical information in your request.


Optimize Your Resume for This Job

Get a match score and see exactly which keywords you're missing

Optimize Resume

Job Details

Category
Software
Employment Type
Full Time
Location
Greater Seattle Area
Kent, WA
Posted
Compensation
$164,652 - $230,512.8 per year

About Blue Origin

Blue Origin is an aerospace company that focuses on lowering the cost of spaceflight and helping to explore the solar system.

Found this role interesting?

Infrastructure DevOps Software Engineer III
Blue Origin
Apply