PitchMeAI
Onebrief

Staff Infrastructure Engineer

Onebrief · NAMER

  • Hybrid
  • Full-time
  • $150,000 / year
  • NAMER
Tailored resumekeyword-matched to this role.
Hiring managerwe find who's hiring.
Intro emaildrafted to reach them directly.

Job highlights

  • Build secure production systems across cloud and edge.
  • Architect and run end-to-end infrastructure platform.
  • Collaborate on security and deployment best practices.
  • Harden artifact pipeline for diverse environments.
  • Requires ability to obtain SECRET clearance.

About the role

About Onebrief

Onebrief is collaboration and AI-powered workflow software designed specifically for military staffs. By transforming this work, Onebrief makes the staff as a whole superhuman - meaning faster, smarter, and more efficient. We take ownership, seek excellence, and play to win with the seriousness and camaraderie of an Olympic team. Onebrief operates as an all-remote company, though many of our employees work alongside our customers at military commands around the world. Founded in 2019 by a group of experienced planners, today, Onebrief’s team spans veterans from all forces and global organizations, and technologists from leading-edge software companies. We’ve raised $320m+ from top-tier investors, including Battery Ventures, General Catalyst, Sapphire Ventures, Insight Partners, and Human Capital, and today, Onebrief is valued at $2.15B. With this continued growth, Onebrief is able to make an impact where it matters most.

About The Role

Onebrief's infrastructure team owns the platform that delivers our software to military staffs. Our charter spans Kubernetes clusters in commercial and government cloud, application streaming for thin-client users on classified networks, a unified artifact pipeline that signs and ships the same builds to every environment we operate, and air-gapped appliances at forward sites. We're hiring an Infrastructure Engineer who builds security into the systems they operate rather than treating it as a separate workstream. You'll architect, build, and run the platform end to end. This includes RFCs, PRDs, and reviewing and writing production code alongside Product and Engineering teammates. The work cuts across cloud-native deployments, edge appliances, data platforms, and the application streaming layer that puts Onebrief on classified environments. You'll partner with Governance, Risk, and Compliance (GRC) and mission owners on STIGs, CVE remediation, audit prep, and the controls work that lets us operate in environments such as IL5, IL6, and JWICS. Success means a platform that stays up under real operational load, ships trusted artifacts to every profile we run, and passes audits without fire drills.

About You

People by-name request you because you bias towards action. You are a problem-solver by nature who genuinely cares about the mission and the outcome. You operate without hand-holding. You read a problem, weigh tradeoffs, and move. Sometimes the tradeoffs have harsh consequences that you pay for later, but you are resilient and adapt. When the work crosses into expertise you don't have, you dig into the problem, pull in the right teammates, apply their feedback, and continue.

What You'll Do

  • Design, develop, test, iterate, and deploy secure production systems across cloud-native and edge appliance deployments
  • Embed with cross-functional teams and advise on infrastructure, security, and deployment best practices that hold up in production
  • Own end-to-end infrastructure outcomes for one or more critical programs or priority infrastructure initiatives
  • Harden the artifact pipeline so the same signed builds run in cloud, single-tenant high-side, and air-gapped appliance deployments

What We Look For

You'll do well in this role if you bring:
  • 5+ years operating production infrastructure in DevOps/DevSecOps, Platform, SRE, Cloud, or Infrastructure roles
  • Full-stack engineering experience when necessary, e.g., production experience designing, building, and operating services in a modern backend language (e.g., Go, Python, Rust, TypeScript)
  • Deep production Kubernetes experience: operators, networking, storage, multi-cluster operations, and a feel for what breaks at scale
  • Expertise with major cloud providers (e.g., Amazon AWS, Microsoft Azure), with strong instincts for designing across providers and profiles
  • Strong application and infrastructure security fundamentals: identity, network segmentation, secrets management, common vulnerability classes, and sound security judgment under ambiguity
  • Demonstrated ability to build working solutions from scratch, connect disparate applications together, and jump into existing code bases to add value
  • Experience packaging and shipping workloads into disconnected or air-gapped environments
  • Ability to obtain a SECRET clearance

Nice to have qualifications:

  • Active US SECRET or TOP SECRET security clearance
  • Government cloud expertise (AWS GovCloud, Azure Government)
  • FedRAMP, IL4/IL5, IL6, or JWICS environment exposure
  • Audit experience (FedRAMP, SOC 2, or equivalent)
  • Big data and distributed data experience
  • Prior experience supporting defense, intelligence, or other regulated industries

Key skills/competency

  • Staff Infrastructure Engineer
  • DevOps
  • DevSecOps
  • Platform Engineering
  • Site Reliability Engineering (SRE)
  • Cloud Engineering
  • Kubernetes
  • AWS
  • Azure
  • Security Fundamentals

Skills & topics

  • Infrastructure Engineer
  • DevOps
  • DevSecOps
  • Platform Engineering
  • SRE
  • Cloud Engineering
  • Kubernetes
  • AWS
  • Azure
  • Security
  • Remote
  • Go
  • Python
  • Rust
  • TypeScript
  • Air-gapped environments
  • SECRET clearance

How to get hired

  • Research Onebrief's mission: Understand their AI-powered workflow software for military staffs and their commitment to making teams 'superhuman'.
  • Tailor your resume: Highlight your 5+ years in DevOps/DevSecOps, Kubernetes, cloud providers (AWS/Azure), and security fundamentals.
  • Showcase your problem-solving skills: Emphasize your bias for action, ability to weigh tradeoffs, and resilience in your application and interviews.
  • Prepare for technical discussions: Be ready to discuss your experience with Kubernetes, cloud infrastructure, and security best practices, especially in regulated environments.

Technical preparation

Master Kubernetes operators and multi-cluster management.,Deepen expertise in AWS and Azure cloud services.,Strengthen security fundamentals: IAM, network segmentation.,Practice building for air-gapped or disconnected systems.

Behavioral questions

Describe a complex infrastructure problem you solved autonomously.,How do you weigh tradeoffs in system design decisions?,Share an example of adapting to new technical challenges.,How do you integrate security into your development process?

Frequently asked questions

What are the key technical skills required for the Staff Infrastructure Engineer role at Onebrief?
The Staff Infrastructure Engineer role at Onebrief requires significant experience with production infrastructure in DevOps/DevSecOps, Platform, SRE, or Cloud roles. Key technical skills include deep production Kubernetes experience (operators, networking, storage, multi-cluster), expertise with major cloud providers (AWS, Azure), strong application and infrastructure security fundamentals, and experience with disconnected or air-gapped environments. Full-stack engineering experience with languages like Go, Python, Rust, or TypeScript is also valued.
Does Onebrief offer remote work for the Staff Infrastructure Engineer position?
Yes, Onebrief operates as an all-remote company. While many employees work alongside customers globally, the Staff Infrastructure Engineer role is designed to be remote-friendly.
What is the importance of security for the Staff Infrastructure Engineer at Onebrief?
Security is paramount. The role requires building security into systems from the ground up, not as an afterthought. This includes partnering with GRC on STIGs, CVE remediation, and audit prep to operate in environments like IL5, IL6, and JWICS.
What kind of clearance is needed for the Staff Infrastructure Engineer role?
A crucial requirement for the Staff Infrastructure Engineer role is the ability to obtain a SECRET clearance. Active US SECRET or TOP SECRET clearances are considered a plus.
How does Onebrief handle deployments in sensitive or air-gapped environments?
Onebrief's infrastructure team manages deployments across various environments, including commercial and government clouds, and importantly, air-gapped appliances at forward sites. The artifact pipeline is designed to ensure the same signed builds run across all these diverse profiles, including high-side and disconnected scenarios.
What makes Onebrief's mission unique for an Infrastructure Engineer?
Onebrief's mission is to transform military staff workflows using collaboration and AI, making them 'superhuman.' As a Staff Infrastructure Engineer, you'll be critical in building and securing the platform that enables this transformation, working with cutting-edge technology in a highly impactful domain.
What kind of experience is valued in the 'About You' section for Onebrief roles?
Onebrief values candidates who demonstrate a bias for action, are natural problem-solvers who care about the mission, operate autonomously, weigh tradeoffs effectively, and are resilient and adaptable when facing challenges or learning new expertise.

Similar roles

Open positions we recommend based on this role.