NewCore is a security-first identity platform built for the agentic era, designed to secure, enable, and govern both human and agent identities within a single, scalable architecture. The platform has been rebuilt from the ground up by cybersecurity veterans and Unit 8200 alumni, bringing deep expertise in security and distributed systems. Backed by leading investors including Cyberstarts, Index Ventures, and Evolution Equity Partners, NewCore is focused on delivering robust, enterprise-ready identity solutions. Team members join a fast-growing company where security, innovation, and technical excellence are core values.
Our platform runs as dozens of Python and Go microservices on Kubernetes (EKS), deployed via GitOps with ArgoCD and Helm, with everything defined as code: Terraform for cloud resources, Crossplane for in-cluster infrastructure, GitHub Actions for CI/CD.
We are growing very fast and looking for a DevOps engineer who takes ownership end to end.
Here, "done" doesn't mean handing a ticket to another team - it means diving into whatever domain the task touches: writing a Helm chart, debugging an autoscaler provisioning storm, fixing the CI workflow, and sometimes writing application-level code in Python or Go to close the loop. New domains pop up constantly (event streaming, edge/CDN, analytics databases, AI infrastructure), and we expect you to learn them as you go.
What you'll do
- Own and evolve our AWS infrastructure across production, staging, per-developer, and ephemeral PR environments - EKS, RDS, MSK (Kafka), ClickHouse, Redis, CloudFront/WAF, KMS, IAM
- Develop our GitOps delivery pipeline: ArgoCD applications, Helm charts, blue/green deployment strategy, progressive rollout and promotion safety
- Extend and harden CI/CD in GitHub Actions - build pipelines (Bazel), ephemeral PR preview environments, deployment gates, release and hotfix flows
- Manage infrastructure as code with Terraform and Crossplane, keeping environments reproducible and drift-free
- Improve observability and reliability: metrics, tracing, logging (OpenTelemetry, Prometheus, Grafana), alerting, incident response, and postmortems
- Keep production safe through layered verification: unit and integration tests, E2E suites, smoke tests, and synthetic checks that constantly monitor production - plus internal tooling we build ourselves, like automated risk assessment, backwards-compatibility checks, and test-flakiness reporting
- Drive cost, capacity, and autoscaling work (Karpenter, KEDA, right-sizing, cost-anomaly detection)
- Take tasks end to end - including reading and writing service-level code when the fix lives in the application, not the infrastructure
- Hands-on production experience with at least one major cloud provider (AWS / GCP / Azure)
- Strong Kubernetes experience — you've operated real production clusters, not just deployed to one
- GitOps in practice: ArgoCD (or equivalent), Helm, declarative delivery
- Terraform — modules, state management, multi-environment layouts
- CI/CD at scale: monorepo builds, ephemeral preview environments, and deployment pipelines where safety is engineered in — progressive rollouts, automated verification gates, fast safe rollback
- Observability: metrics, tracing, and logging with tools like OpenTelemetry and Prometheus/Grafana
- Scripting/coding ability (Python, Go, or similar) and willingness to work inside application code when needed
- End-to-end ownership mindset: comfortable entering unfamiliar domains, debugging across layers
Nice to have
- Deep AWS experience (EKS, IAM, MSK, RDS, CloudFront/WAF, KMS)
- Crossplane or other Kubernetes-native infrastructure provisioning
- Background as a software developer
- Data infrastructure: PostgreSQL, Kafka, ClickHouse, Redis, Temporal
- Security-minded infrastructure: secrets management (Vault/ExternalSecrets), network policy, WAF/CDN hardening, least-privilege IAM
Apply
Trouble with the form? Apply on Comeet
Not the right role?
We're always looking for exceptional people who want to help shape a category from day one.