Brooksource is building a Cyber Threat Intelligence program that aims to redefine how intelligence at scale works inside a modern enterprise. They are seeking a Site Reliability Engineer who will focus on building a reliable and secure sensor platform while applying security best practices and improving observability.
Responsibilities:
- Build and refine Docker containers for our internal CTI sensors
- Use Ansible to make deployments consistent, automated, and repeatable across distributed Linux systems
- Own and evolve our GitLab CI/CD pipelines: builds, registries, deployment workflows, and everything in between
- Review the current state of the platform and quickly identify what needs to happen next to make it stable, scalable, and production-ready
- Improve observability, uptime, and the general 'it just works' experience of our sensor infrastructure
- Help guide the evolution toward orchestration (Nomad, Kubernetes, etc.)
- Apply security best practices across OS, containers, Kubernetes, cloud, and network layers
- Lead ongoing hardening: patching, configuration baselines, secrets management, and enforcing least privilege
- Work closely with CTI and Security Engineering to ensure the platform is secure by default, not secure by cleanup
- Integrate security controls directly into CI/CD (SAST, DAST, dependency scanning, container scanning)
- Improve IAM roles, service accounts, and access boundaries so the platform stays tight without getting in the way
Requirements:
- Strong experience building and optimizing Docker images
- Solid Ansible skills for automated deployments and config management
- Hands-on GitLab CI/CD experience
- Linux systems knowledge and networking fundamentals
- Practical experience with infrastructure hardening
- Ability to look at an evolving environment and confidently say: 'Here's what we do next.'
- Comfortable working in a security-forward environment with CTI analysts and engineers
- Experience with Kubernetes, Nomad, or other orchestrators
- Observability tooling (Prometheus, Grafana, ELK/EFK)
- Familiarity with secrets management tools
- Experience with sensors, agents, or distributed telemetry systems
- Python or Go scripting experience