Rockstar is recruiting for a modern enterprise accounting platform that eliminates the pain of financial operations through powerful integrations, intuitive design, and AI-driven automation. By consolidating processes into a single, easy-to-use platform and automating repetitive tasks, the client frees accounting teams to focus on strategic, high-impact work—achieving more with fewer resources.
The client's team is led by top engineers and finance professionals from companies like Robinhood, Bolt, EY, Facebook, Twitter, Netflix, Amazon, Google, Airbnb, Rubrik, and more. Together, they are using their extensive industry experience to transform the way businesses manage their finances.
The client is backed by leading Silicon Valley investors. They raised the largest seed round in their category, with support from top-tier VCs such as Kleiner Perkins and Audacious Ventures. This funding has allowed them to launch a fully operational product and onboard several major customers.
Your Role
- Implement and manage DevSecOps practices across the entire Software Development Lifecycle (SDLC), ensuring a "shift-left" approach to security.
- Comfortable with Kubernetes and other container orchestration platforms.
- Design and harden CI/CD pipelines (e.g., GitHub Actions) by implementing minimal permissions and leveraging OIDC with Workload Identity Federation for cloud deployments.
- Integrate and enforce security checks, including SAST, dependency scanning, and secret scanning (e.g., using tools like Trufflehog or GitGuardian), to fail builds on high-severity issues.
- Secure cloud infrastructure (GCP) by implementing the principle of least privilege for IAM, configuring VPC firewalls to restrict traffic, and using Google Secret Manager.
- Manage encryption and key rotation using Cloud KMS, ensuring all secrets are handled securely and not stored in code or plaintext.
- Oversee container and artifact hardening, including using multi-stage builds, scanning images for vulnerabilities, and signing artifacts (e.g., Cosign) for supply chain integrity.
- Ensure application code follows secure coding best practices, including input validation, output encoding to prevent XSS, and secure authentication/session management via Descope integration.
- Monitor CI/CD pipelines and production environments (using GCP and Datadog) for anomalies, security-relevant events, and audit logs to meet compliance requirements.
- Maintain documentation and controls necessary to align with compliance frameworks, including SOC 2, SOC 1, and ISO 42001 for AI governance.
- Assist in developer infrastructure work, including deployment automation and internal tooling, in a full-stack environment.
Your Qualifications
- 4+ years of experience in DevSecOps, Security Engineering, or a related role focused on CI/CD pipeline security.
- Bachelor’s degree in any engineering discipline; Computer Science is preferred but not mandatory.
- Proven experience securing cloud environments, preferably Google Cloud Platform (GCP), with familiarity in IAM, Secret Manager, VPC controls, and Cloud KMS.
- Strong practical experience with hardening continuous integration/continuous deployment (CI/CD) systems (e.g., GitHub Actions, Jenkins, or similar).
- Proficiency in security practices for application development (SAST, DAST, secret scanning) and a deep understanding of common security anti-patterns.
- Proficient in languages like Golang, Typescript, Python, or similar programming languages used for automation and development.
- Familiarity with compliance standards like SOC 2, PCI DSS, or ISO 42001 and experience generating evidence for auditors.
- Can handle the high intensity and fast pace of a startup environment.
- Strong verbal and written communication skills.
The client is an equal opportunity employer. They do not discriminate based on race, color, ethnicity, ancestry, national origin, religion, sex, gender, gender identity, gender expression, sexual orientation, age, disability, veteran status, genetic information, marital status or any legally protected status.
Other open roles at Rockstar(6)
Rockstar is rebuilding the infrastructure for employability by collapsing the cost of hiring. For decades, the high cost of recruiting meant that only companies with big brands or deep pockets could easily and reliably find the talent needed to build winning teams. By blending GenAI with human judgment, we're cutting the cost of recruiting by over 90%, suddenly making it easy for every employer to get in the game. When every company can compete, the market changes. Candidates have more options and employers can win on what actually matters. At Rockstar, we're laying the foundation for an employment system that works—one where it’s easy for wonderful companies to build winning teams, and where every single person has the opportunity to build an extraordinary career. Learn more at www.tryrockstar.com
Key team members

Jasjit Singh

pankaj panchal

Angela Deldoc

John Nicole Tabora
Jobr aggregates jobs directly from company career portals — no middlemen. Our team applies on your behalf with AI-tailored resumes, reviewed by a human before submission.