Software Development👥 1001 employees📍 New Hartford, NY, USEst. 1968
At PAR Technology, our relentless drive for innovation and unwavering commitment to customer success are at the heart of everything we do. We lead the restaurant and retail industries by ensuring tha…
📋 Job Overview
PAR Technology Corporation (NYSE: PAR) has been a leader in restaurant technology for over four decades, empowering brands worldwide to create lasting connections with their guests. Our innovative solutions and commitment to excellence provide comprehensive software and hardware that enable seamless experiences and drive growth for over 100,000 restaurants in more than 110 countries. Embracing our \"Better Together\" ethos, we offer Unified Customer Experience solutions, combining point-of-sale, digital ordering, loyalty and back-office software solutions as well as industry-leading hardware and drive-thru offerings.
🏢 About PAR Technology
PAR Technology is seeking a hands-on Senior DevOps Engineer to embed security into every stage of how we build, ship, and operate software. Sitting at the intersection of platform engineering and security, this role owns the tooling, automation, and guardrails that enable product teams to move quickly without compromising the trust of the restaurant and retail brands that rely on PAR.
🎯 The Role
You will design secure CI/CD pipelines and cloud infrastructure, identify and remediate risk before it reaches production, and help raise the security and reliability bar across the engineering organization.
✅ Key Responsibilities
Design, build, and operate secure CI/CD pipelines with integrated SAST, DAST, SCA, secrets scanning, and container image scanning, making the secure path the easy path for product teams.
Harden and automate AWS and/or Azure infrastructure using infrastructure-as-code, with security policies enforced through OPA, Sentinel, or native policy engines.
Own container and orchestration security across Docker and Kubernetes, including image provenance, runtime protection, network policies, and admission controls.
Implement and tune cloud security posture management, vulnerability management, and threat detection capabilities, and partner with engineering teams to drive findings through remediation.
Build and maintain secure secrets management, identity, workload identity, service mesh mTLS, and least-privilege access patterns.
Lead threat modeling and secure design reviews for new services and architectures, partnering with product engineering early in the development lifecycle.
Respond to security events and lead post-incident analysis, improving detection, alerting, and runbooks after each incident.
Design and manage cloud networking, including VPC/VNet architecture, subnetting, routing, NAT, peering, transit gateways, private endpoints, and hybrid connectivity.
Operate edge and traffic-layer security, including load balancers, API gateways, WAF
📌 Required Qualifications
6-12 years of experience across DevOps, platform engineering, security engineering, or a related field, including at least 3 years focused on DevSecOps or application/cloud security in production environments.
Deep hands-on experience with CI/CD platforms such as GitHub Actions, GitLab CI, Jenkins, or Azure DevOps, including embedding security tooling into delivery pipelines.
Strong cloud engineering experience with AWS and/or Azure, including IAM, networking, encryption, logging, and monitoring services.
Production experience with Kubernetes and containers, including securing clusters and workloads at scale.
Proficiency with infrastructure-as-code tools such as Terraform or CloudFormation and at least one scripting or programming language such as Python, Go, or Bash.
Solid networking fundamentals, including TCP/IP, DNS, HTTP/HTTPS, TLS, routing, firewalls, security groups/NACLs, segmentation, and troubleshooting tools such as tcpdump, dig, and Wireshark.
Hands-on cloud networking experience with VPC/VNet design, load balancing, ingress controllers, private connectivity, service mesh technologies, and zero-trust network patterns.
Experience operating observability platforms such as Prometheus, Grafana, ELK/OpenSearch, or Datadog and using telemetry to improve reliability and security outcomes.
Working knowledge of application security, including the OWASP Top 10, dependency and software supply-chain risk, secrets hygiene, and secure SDLC practices.
Experience with security scanning and monitoring tools such as Snyk, Trivy, SonarQube, Wiz, Prisma Cloud, Falco, or equivalent platforms.
Clear, pragmatic communication skills with the ability to explain risk and trade-offs to engineers and leaders and influence without direct authority.
⭐ Desirable Experience
Security certifications such as CISSP, CKS, OSCP, AWS Certified Security - Specialty, Azure security certifications, or GIAC; networking certifications such as CCNA or AWS Certified Advanced Networking - Specialty.
Experience with multi-region, highly available architectures, disaster recovery, and chaos engineering practices.
Experience in payments, fintech, retail, or another PCI DSS-regulated environment.
Exposure to zero-trust architectures, SIEM/SOAR platforms, or internal security platforms and paved-road tooling.
Contributions to open-source security tooling or active participation in the security community.
🎁 Benefits
The base salary range for this position is commensurate with work location, experience, skills, certifications, education, and prior accomplishments. The position may be eligible for additional compensation, including a bonus, commission and/or equity, as applicable.
Please let PAR Technology know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.