Mandolin-posted 7 months ago
San Francisco, CA
11-50 employees

Mandolin is building the 'last-mile' delivery infrastructure that gets cutting-edge biologics, cell, and gene therapies to patients faster. Our AI-powered knowledge-worker platform already serves leading infusion clinics, with payers and pharma next in line. We’re backed by Greylock, SignalFire, Maverick, and founders of famous companies like Yahoo, and led by repeat and exited founders with a team hailing from some of the most technically impressive companies. We are preparing for a broad public launch and need a DevSecOps leader who can build and operate a rock-solid cloud foundation while ensuring enterprise-grade reliability, security, and developer productivity.

  • Design & own cloud infrastructure on GCP.
  • Establish autoscaling policies, HA networking, and cost-efficient environments across staging and prod.
  • Implement comprehensive security controls including centralized secrets management and rotation.
  • Define zero-trust IAM policies and integrate continuous vulnerability scanning into CI/CD.
  • Deploy and maintain metrics, tracing, and log pipelines (Prometheus, Grafana, Cloud Logging, etc.), plus actionable SLOs and alerting.
  • Provide dev-containers, local-env scripts, and clear runbooks for new engineers.
  • Own IaC (Pulumi), automated compliance checks, and incident-response playbooks.
  • Review architectural changes for security impact and partner with backend teams on scalability initiatives.
  • Optionally hire or mentor a junior engineer once the foundation is solid.
  • 8+ years building and securing production cloud infrastructure, with deep GCP knowledge (Cloud Run, Cloud Build, IAM).
  • Expert with container orchestration and autoscaling strategies.
  • Proven record deploying centralized secrets management and automated rotation.
  • Ownership of observability stacks and incident-response pipelines.
  • Strong application-security background (OWASP, API gateway/WAF, dependency & image scanning).
  • Mastery of IaC (Terraform, Pulumi, or equivalent) and CI/CD (GitHub Actions, Cloud Build, GitLab CI, etc.).
  • Comfortable operating in a fast, results-oriented, and scaling startup environment.
  • Experience with workflow orchestration platforms (Temporal, Cadence, Airflow).
  • Prior work in HIPAA, SOC 2, or similarly regulated environments.
  • Exposure to edge-security patterns (zero-trust networking, service-mesh, mTLS).
  • Background building internal developer platforms or golden-path tooling.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service