Azure DevOps Engineer
Sonatype
Software Engineering
United States · Remote
At Sonatype, we empower developers with best-in-class tools to build secure, high-quality software at scale. Our mission is to create a world where software is always secure and developers can innovate without fear. Trusted by thousands of organizations, including Fortune 500 companies, we are pioneers in software supply chain management, open-source security, and DevSecOps.
We are looking for an Azure DevOps Engineer to help us shape the future of secure software development. If you love solving complex problems, working with cloud-native platforms, and mentoring engineering teams, we would love to hear from you.
As an Azure DevOps Engineer, you will play a critical role in designing, automating, and scaling Sonatype's engineering platform and delivery systems on Azure. You will lead infrastructure and CI/CD modernization, improve reliability and security, and guide teams on platform engineering and DevOps best practices.
Why This Role Matters
This role helps create the engineering foundation that enables teams to ship securely, reliably, and quickly. You will influence how Sonatype scales its platform capabilities, improves developer experience, and advances its DevSecOps maturity on Azure.
You will work at the intersection of infrastructure, automation, security, and developer enablement, making a direct impact on product velocity and operational excellence.
Key Responsibilities
Design, implement, and evolve Azure-based infrastructure using Infrastructure as Code with Terraform, Bicep, or ARM templates.
Build and maintain scalable CI/CD pipelines using Azure DevOps Pipelines for application, infrastructure, and platform workloads.
Administer and optimize Azure DevOps services, including Azure Repos, Pipelines, Artifacts, Boards, and service connections.
Partner with engineering teams to improve build, release, and deployment workflows across microservices and cloud-native applications
Implement robust observability across systems using Azure Monitor, Log Analytics, Application Insights, and related monitoring tooling.
Strengthen platform security by integrating secrets management, policy enforcement, vulnerability scanning, and least-privilege access controls.
Manage and optimize containerized environments using Kubernetes, Helm, and Azure Kubernetes Service (AKS).
Drive reliability engineering practice, including incident responses, root cause analysis, SLO thinking, and automated remediation, where appropriate.
- Standardize reusable templates, modules, and platform patterns that improve developer productivity and consistency.
Mentor engineers and provide technical leadership on Azure architecture, deployment automation, release governance, and DevSecOps practices.
What We Are Looking For
- Strong experience with Azure DevOps and CI/CD pipeline design for multiple application stacks and deployment patterns.
- Deep hands-on expertise with Microsoft Azure, including compute, networking, identity, storage, monitoring, and security services
- Experience with Infrastructure as Code using Terraform, Bicep, ARM, or equivalent automation frameworks.
- Proficiency with containers and orchestration platforms such as Docker and Kubernetes, preferably with AKS experience.
- Experience with scripting and automation using Python, Bash, PowerShell, or similar languages.
- Solid understanding of source control workflows, package management, artifact promotion, and release strategies.
- Experience implementing observability, logging, alerting, and operational dashboards for production systems.
- Strong understanding of cloud security, IAM, secrets management, compliance controls, and secure software delivery practices.
- Excellent collaboration and communication skills, with the ability to influence technical direction across teams.
What Would Be Nice to Have
Experience with GitHub, SonarQube, Nexus Repository, or software supply chain security tooling.
Familiarity with multi-cloud environments and migration patterns from AWS or on-premises platforms
Exposure to policy-as-code, platform engineering, developer portals, or internal developer platform concepts.
Experience supporting regulated or enterprise-scale environments with strong governance requirements.
Things That We Are Proud Of
- 2025 Visionary in Gartner® Magic Quadrant™ for Application Security Testing!
- 2025 AI Compliance Solution of the Year - AI Breakthrough Awards
- 2025 DEVIES Award to our SBOM Manager for a new product for its innovation and impact in developer technology
- 2024 Industry Leader in Forrester-Wave for Software Composition Analysis (2024 Q4 report)
- Constellation AST Shortlist: Sonatype has been listed on the Constellation ShortList™ for Application Security Testing for 2024
- Data Breakthrough Awards: Sonatype was announced as a 2024 winner in the "Open Source Data Solution of the Year."
- SD Times: Best in Show Security
- Fast Company Best Workplaces for Innovators 2024
- The Herd Top 100 Private Software Companies 2024.
- Diversity & Inclusion Working Groups
- Parental Leave Policy
- Paid Volunteer Time Off (VTO)
