Forward Deployed Infrastructure Engineer
Job description
Forward Deployed Infrastructure Engineer at Spear Ai.
About the role
You are a forward-deployed engineer who will work directly on-site with customers to write code, integrate complex systems, and solve difficult problems in the field. You operate as part engineer and part technical advisor, carrying full accountability for ensuring that the mission succeeds through your technical execution and collaboration. This role requires a current or active U.S. Secret clearance, and it demands a hands-on approach to building and maintaining critical infrastructure. You will work within a growing defense contractor that values innovation alongside mission-critical delivery. The position empowers you to make a direct impact through a flat organizational structure that encourages collaboration with leadership. Whether supporting the Hardware, Software, or Services division, you will work alongside talented professionals committed to national security and operational excellence.
Key facts
What you'll do
- Design and implement robust cloud architecture tailored to demanding defense environments.
- Develop Infrastructure as Code using Pulumi to automate and standardize environment provisioning.
- Build and maintain GitLab CI/CD and DevSecOps pipelines that enforce security and reliability.
- Continuously deploy applications to AWS cloud and air-gapped environments without disruption.
- Monitor applications and services using OpenTelemetry, Sentry, and SigNoz for full observability.
- Enforce CMMC compliance policies and rules to meet strict regulatory requirements.
- Manage secrets and configuration with security and operational rigor in all deployments.
- Deploy, configure, and troubleshoot infrastructure within customer and air-gapped environments under tight constraints.
- Support RHEL/Linux-based platforms using Kubernetes, Podman, Docker, and Helm in highly available operational environments.
- Partner directly with customer engineering teams to integrate systems, run tests, and resolve infrastructure issues collaboratively.
- Travel to customer sites as needed to support deployments, upgrades, and critical mission execution.
- Implement automation scripts and tools using Bash, Python, Go, or TypeScript to reduce manual effort and errors.
- Collaborate with product and systems engineers to ensure infrastructure aligns with software requirements and constraints.
- Document all configurations, procedures, and decisions to ensure clarity and continuity for the team.
Requirements
- You hold a current or active U.S. Secret clearance, or you are able to obtain one.
- You have extensive experience with Infrastructure as Code, specifically using Pulumi or Terraform in production environments.
- You are an expert in Docker and Kubernetes, with a deep understanding of container orchestration principles.
- You have hands-on experience with Red Hat Enterprise Linux (RHEL), Linux system administration, and Podman in operational settings.
- You have deployed and managed containerized environments using Docker, Kubernetes, Helm, and Podman consistently and at scale.
- You are proficient in CI/CD and DevSecOps practices, with strong experience in GitLab CI/CD and GitHub Actions.
- You demonstrate advanced proficiency in AWS and/or other major cloud service platforms.
- You have experience scripting and automating tasks using Bash, Python, Go, or TypeScript to solve complex problems.
- You have a strong grasp of networking concepts and can troubleshoot connectivity and security issues effectively.
- You are familiar with cybersecurity compliance frameworks such as CMMC, PCI, or SOC and understand their practical implications.
- You have experience with Single Sign-on and Identity Providers like Authentik and Keycloak for secure access management.
- You have experience deploying infrastructure into air-gapped environments and understand the unique challenges they present.
- You have experience self-hosting services on bare metal servers and managing the full lifecycle of such deployments.
- You hold an active U.S. Secret clearance, as this role requires access to sensitive defense information.
Nice to have
- Experience supporting classified DoD or Navy environments and understanding their specific operational constraints.
- Experience deploying infrastructure into air-gapped environments beyond the basic requirements, with a proven track record.
Practical notes
This role is based in Manassas, Virginia and requires on-site presence. The engagement is full-time, and candidates must be eligible for a U.S. Secret clearance. Travel to customer sites will be required as needed to support deployments and mission execution. No additional hours, visa sponsorship, or application deadlines are specified in this description.