We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Staff DevOps Engineer

Identity Digital
vision insurance, parental leave, paid holidays, sick time, tuition reimbursement, 401(k)
United States, Washington, Bellevue
10500 Northeast 8th Street (Show on map)
Aug 14, 2026

Summary / Objective

Identity Digital is building DNS-native identity infrastructure for AI agents and other non-human identities: a durable, governance-backed domain name that serves as an agent's foundational identity. Our managed service is evaluation-ready today, and we are taking it to enterprise general availability. The platform underneath it needs an owner.

You will join a small team early, own the infrastructure architecture, build the platform, and then build the operational practice around it. Success in the first six months is a production platform ready for enterprise customers, with clear reliability targets, tested recovery, and a delivery pipeline the whole team trusts. Success in the first year is an operational practice for on-call, incidents, capacity, and cost that holds up while the engineering team doubles.

What You'll Do



  • Own the technical direction for our cloud infrastructure: the architecture across services, build-versus-buy decisions, and the standards other engineers build against
  • Design, build, and operate the cloud-native platform behind our multi-tenant managed service, including tenant isolation, capacity planning, and disaster recovery
  • Own production readiness for enterprise launch: SLOs and error budgets, runbooks, failover testing, and business continuity
  • Run DNS as production infrastructure: zone operations, DNSSEC, registrar and provider integrations, and failover across providers. DNS is the product here, not plumbing
  • Operate the signing and certificate infrastructure behind agent identity in partnership with security engineering: key custody, rotation, signing-path availability, and certificate lifecycle at scale
  • Build the delivery pipeline for an AI-assisted engineering team, where CI is the enforcement boundary: policy-as-code, required checks, and the guardrails that make machine-authored contributions safe to merge
  • Ship releases with integrity for everything we publish: signed artifacts, provenance, and supply-chain controls for our open-source SDKs and tools
  • Instrument the platform with logging, metrics, and tracing so problems are found before customers notice them
  • Automate the infrastructure side of audit readiness: audit logging and retention, access reviews, and evidence collection that runs itself
  • Keep cloud spend visible and healthy as usage grows, including unit economics per tenant and per workload
  • Multiply the team: review designs across engineering, mentor engineers on operational practice, and help set the hiring bar as we grow
  • Stand up the on-call practice, act as incident commander when production breaks, and drive a blameless postmortem culture
  • Actively model and promote Identity Digital's core values through day-to-day interactions, behaviors, and decision-making
  • Other duties as assigned


Who You Are / What You Bring



  • 10+ years in DevOps, site reliability, or platform engineering, including work at principal or staff scope: setting direction across teams rather than executing inside one
  • Bachelor's degree in a relevant field or equivalent experience
  • Deep experience with cloud-native architectures and services (AWS/GCP preferred).
  • Strong proficiency with Kubernetes, Terraform, and modern infrastructure-as-code practice
  • Hands-on experience with CI/CD systems (GitHub Actions, GitLab CI, ArgoCD, or similar)
  • Strong scripting or programming skills in Python, Go, or TypeScript/JavaScript.
  • Experience building observability stacks (Prometheus, Grafana, ELK/EFK, OpenTelemetry)
  • Working depth in DNS operations: zone management, DNSSEC, and how registrars, resolvers, and authoritative providers behave in production
  • Solid understanding of PKI, secrets management, and certificate workflows, including how these systems fail under attack
  • Experience running multi-tenant SaaS and distributed systems in production, including incident command
  • A track record of raising the operational bar of the teams around you through standards, design review, and mentoring
  • Ability to travel as needed
  • Ability to work effectively across time zones on a distributed team


Preferred Qualifications



  • Experience operating signing infrastructure or a certificate authority at scale: HSM or KMS key custody, key ceremonies, rotation without downtime
  • Supply-chain security in practice: SLSA, sigstore/cosign, reproducible builds, and provenance for published artifacts
  • Familiarity with agentic AI systems and their operational surface: machine-scale request patterns, short-lived credentials, egress control, and the OWASP Agentic and NHI Top 10
  • Infrastructure-side experience with SOC 2 or a comparable audit program, especially control automation and evidence collection
  • Experience taking a product from prototype to general availability on a small team
  • Contributions to open-source infrastructure or operations tooling


Travel / Schedule Expectations



  • Remote (US) with occasional travel for team gatherings and industry events. This role participates in on-call for production systems; you will build the rotation you join.


Physical Requirements



  • Prolonged periods of sitting at a desk and working on a computer
  • Must be able to lift up to 15 pounds at times


Salary Range

The U.S. base salary range for this full-time position is $175,000 - $220,000 (flexibility based on experience) plus benefits as described below. In addition, the successful candidate will be eligible to receive other compensation from time to time in the form of discretionary and/or nondiscretionary bonuses and long-term incentive plan. Actual compensation will be influenced by a candidate's qualifications, internal employee equity considerations, and location. We will not ask for information about a candidate's current or past compensation for purposes of developing an offer of employment.

US team members (and their spouses, domestic partners, and/or dependent children) are covered by generously subsidized medical, dental, and vision insurance which includes company contributions to a Health Savings Accounts. Team members are also covered by company-paid life and disability insurance and have the option of participating in employee-paid supplemental life, accidental death and dismemberment, critical illness, and accident insurance. In addition, team members can enroll in the company's 401(k) plan with up to a 5% match. You receive 15 days of paid vacation yearly, increasing to 20 days after one year. Additionally, you get 5 days of paid sick leave, 13 paid holidays, and 20 weeks of paid parental leave for birthing parents, 12 weeks for others. Also, there's an opportunity for tuition reimbursement for qualifying expenses.

Note: Benefits programs are subject to eligibility requirements and may vary in certain locations.

A few things to know about us

Identity Digital is an Equal Opportunity Employer and does not discriminate based on race, color, religion, sex, age, national origin, veteran status, marital status, sexual orientation, gender identity, disability or any other category prohibited by local, state or federal law. This policy applies to all aspects of employment, including recruitment, placement, promotion, transfer, demotion, compensation, benefits, social and recreational activities, and termination.

Background Check Statement

At the time of an offer, you will be required to complete a background check. Any offer is contingent upon a satisfactory background check.

Sponsorship Statement

Please note that work sponsorship for this position may not be available now or in the future. While we strive to support our candidates, not all roles will qualify. Eligibility will be reviewed on a case-by-case basis.

Accommodation Statement

We are committed to the full inclusion of all qualified individuals. As part of this commitment, Identity Digital will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, please contact our Recruiting Team at careers@identity.digital.

Applied = 0

(web-77cf7d65c7-lg9kd)