Gallatin AI builds Navigator, an AI-native platform that provides predictive logistics, real-time data integration, simulations, and automated decision-support to plan, predict, and execute resupply workflows in contested military environments.
ABOUT GALLATIN At Gallatin, we are rebuilding defense logistics for the warfighters of the United States and allied forces. We take an AI-first approach to improve defense readiness through software products that streamline and modernize logistics operations from factory to foxhole and result in better decisions and outcomes. We believe that you won't change the world by phoning it in and as such we work in-office in one of our core engineering locations: El Segundo, CA; Austin, TX, Washington DC, San Francisco, CA ABOUT THE ROLE The Infrastructure team owns the platform that delivers Navigator to the warfighters who depend on it. Our charter spans Kubernetes clusters in commercial and government cloud, application streaming for thin-client users on classified networks, a unified artifact pipeline that signs and ships the same builds to every environment we operate, and air-gapped appliances at forward sites where Contested Logistics is a daily reality, not a slide. We're hiring an Infrastructure Engineer who builds security into the systems they operate rather than treating it as a separate workstream. You'll architect, build, and run the platform end to end — writing RFCs and PRDs, reviewing and writing production code alongside Product and Engineering teammates, and owning the outcome when it ships. The work cuts across cloud-native deployments, edge appliances, data platforms, and the application streaming layer that puts Navigator on classified environments. You'll partner with our Governance, Risk, and Compliance (GRC) leads and mission owners on STIGs, CVE remediation, audit prep, and the controls work that lets us operate in environments such as IL5, IL6, and JWICS. Success means a platform that stays up under real operational load, ships trusted artifacts to every profile we run, and passes audits without fire drills. This position requires the ability to obtain and maintain a security clearance. WHAT YOU'LL DO BUILD AND OPERATE THE PLATFORM - Design, develop, test, iterate, and deploy secure production systems across cloud-native and edge appliance deployments - Own end-to-end infrastructure outcomes for one or more critical programs or priority infrastructure initiatives - Harden the artifact pipeline so the same signed builds run in commercial cloud, single-tenant high-side, and air-gapped appliance deployments - Run production Kubernetes across commercial and government cloud — operators, networking, storage, and multi-cluster operations that hold up under operational load - Keep the platform reliable through proactive monitoring, logging, and alerting, and own the response when something breaks SECURITY AND COMPLIANCE AS A DAILY DISCIPLINE - Embed application and infrastructure security into the systems you build — identity, network segmentation, secrets management, and CVE remediation as part of the work, not a phase at the end - Partner with GRC and mission owners on STIG implementation, audit prep, and the controls work that keeps us operating in IL5, IL6, and JWICS environments - Maintain an audit-ready posture between formal assessment cycles, so authorization is a steady state rather than a fire drill COLLABORATE ACROSS DISCIPLINES - Embed with cross-functional teams and advise on infrastructure, security, and deployment best practices that hold up in production - Work closely with Product and Engineering on RFCs, PRDs, and production code — you contribute to the systems you operate - Contribute to engineering best practices: code reviews, documentation, and continuously improving CI/CD and DevSecOps workflows while keeping Developer Experience at the forefront WHAT WE’RE LOOKING FOR People request you by name because you bias toward action. You're a problem-solver by nature who genuinely cares about the mission and the outcome. You operate without hand-holding — you read a problem, weigh the tradeoffs, and move. Sometimes those tradeoffs have harsh consequences you pay for later, but you're resilient and you adapt. When the work crosses into expertise you don't have, you dig into the problem, pull in the right teammates, apply their feedback, and keep going. STRONG INFRASTRUCTURE FOUNDATION - 5+ years operating production infrastructure in DevOps/DevSecOps, Platform, SRE, Cloud, or Infrastructure roles - Deep production Kubernetes experience: operators, networking, storage, multi-cluster operations, and a feel for what breaks at scale - Expertise with major cloud providers (e.g., AWS, Azure), with strong instincts for designing across providers and deployment profiles - Experience packaging and shipping workloads into disconnected or air-gapped environments ENGINEERING DEPTH - Full-stack engineering experience when necessary — production experience designing, building, and operating services in a modern backend language (e.g., Go, Python, Rust, TypeScript) - Demonstrated ability to build working solutions from scratch, connect disparate applications together, and jump into existing codebases to add value SECURITY JUDGMENT - Strong application and infrastructure security fundamentals: identity, network segmentation, secrets management, common vulnerability classes, and sound security judgment under ambiguity - Comfortable building security into systems rather than bolting it on COMMUNICATION & GROWTH MINDSET - Clear, concise communicator across disciplines, whether designing system architecture, writing an RFC, or recording a weekly demo of recent work (a Gallatin tradition) - Always seeking to learn and stay current with industry trends and tools CLEARANCE - Ability to obtain a SECRET clearance BONUS POINTS - Active US SECRET or TOP SECRET security clearance - Government cloud expertise (AWS GovCloud, Azure Government) - FedRAMP, IL4/IL5, IL6, or JWICS environment exposure - Audit experience (FedRAMP, SOC 2, or equivalent) - Hands-on experience with Infrastructure-as-Code