--- title: 'Senior Devops Engineer at Token Security' canonical: 'https://feeny.ai/job/senior-devops-engineer-token-security-israel-qn0tq0htmae3' type: 'job' last_seen: '2026-09-10' --- # Senior Devops Engineer at Token Security - **Company:** Token Security - **Location:** Israel - **Posted:** 2026-09-10 - **Last confirmed live:** 2026-09-10 - **Apply:** https://token-security-new.webflow.io/company/careers?gh_jid=4972669101 ## Job description ## About the Role Token Security, a leading platform for Agentic AI and Non-Human Identity (NHI) security, is looking for a DevOps engineer to own our infrastructure end to end. You would be our only one. There is no platform team to join and no one to hand you a ticket queue. There is plenty of work, and most of it is on this page. You will set the technical direction as we grow, report to the Head of Engineering, and work directly with every engineer on the team. We run on AWS and Kubernetes and deploy through GitOps. Our use of AI in engineering is growing quickly, and the infrastructure behind it has not caught up yet. Building that is a real part of this job. ## What You’ll Do - Own all of our infrastructure. Kubernetes, AWS, and the core services around them. The foundation was built properly and the team has kept it running between other priorities. You are not inheriting a mess. What it has not had is a full-time owner. Reliability, cost, security posture, and the roadmap all become yours. - Own CI/CD. Every service’s build and deploy pipeline, and the self-hosted runner infrastructure underneath. We ship fast and we are working on shipping faster. One of our engineers is automating more of it right now, and you will take that over and push it further. The interesting problem is adding the safety a growing company needs without turning deploys into something people dread. - Help us shape the infrastructure behind our AI development. Our engineers use coding agents every day and that use keeps growing. We do not have a clear path for the infrastructure behind it yet, and you will help us find one. One direction we are exploring is moving agents off laptops and into the cloud, with a sandbox environment per engineer so an agent keeps working after the laptop is closed. Deciding whether that is the right answer, and building what we choose, is part of this job. - Scale how we deploy to customers. Some customers need us to run inside their own environment. We already do this, but each deployment takes too much hands-on work. You will make it repeatable, faster, and secure, and give our engineers the tooling to support customers directly. - Own our observability. Metrics, logs, alerting, and dashboards. Decide what is worth waking someone for, and keep the cost of watching under control. - Own infrastructure security and support our compliance work. Hardening, IAM, secrets, and vulnerability management. You will help us keep our SOC 2 compliance, which customers require before they will work with us, and help answer their security reviews. We sell to security teams, so they ask hard questions. - Keep our data recoverable. Backups, restore testing, and a disaster recovery plan for RDS Postgres and ClickHouse that we have actually rehearsed. - Partner with engineers on solutions, not tickets. You are the person developers come to when they need infrastructure to do something new. ## What You’ll Bring - 6+ years in DevOps, infrastructure, or platform engineering. - Real production Kubernetes experience, preferably EKS. - Deep AWS knowledge. VPC, IAM, and networking, at a level where you can explain the trade-offs behind your design. - Infrastructure as code. Terraform or Terragrunt. - Ownership of CI/CD pipelines, GitHub Actions preferred. - Hands-on work with AI coding agents such as Claude Code or Codex, as part of your daily workflow. - A security-first mindset. You think about blast radius and least privilege by default, not after review. - Clear communication. You will work with every engineer here, and sometimes with our customers. You can explain a technical trade-off to someone who does not share your background. - Accountability. You will be the only person who owns Token’s infrastructure, and that is what you want. ## Nice to Have - GCP or Azure alongside AWS. - GitOps with ArgoCD, and writing Helm charts. - Python, or another language you use to build real internal tooling. Our services are Python. - ClickHouse, or another column store used for high volume log and event data. - RDS Postgres in production. Tuning, upgrades, and failover. - Experience building or operating security, identity, or compliance products. - Prior experience as an early or founding infrastructure hire. ## Our Stack EKS, Karpenter, KEDA, ArgoCD, Helm, Terragrunt, Crossplane, GitHub Actions with self-hosted runners, Datadog. Python services, with RDS Postgres as our main application database and ClickHouse for the large volumes of log and event data we ingest from customers. We will show you what we think is good about this setup and what we know is not. We would rather you see it clearly before you join than after. Is This You? This role fits if you want to own a system rather than a slice of one, you like working directly with engineers and customers, and you have strong opinions about infrastructure that you can defend. To be clear about what ownership means here: you own the technical decisions and the quality of the platform. Priorities we set together, based on what the company needs most at the time. It does not fit if you want a narrow, predefined scope, or an established platform team to learn from. ## Why Token Security Machine identities and AI agents now outnumber people in almost every company, and hardly any of them are governed the way human identities are. Token Security closes that gap, so organizations can adopt AI with confidence rather than with crossed fingers. As our only DevOps engineer you own the foundation the rest of it runs on. The decisions you make in your first year will still shape how we ship three years from now. Own it boldly is one of our three company values. This role is that value written as a job description. Offices in Tel Aviv and New York. Stock options for every employee, hybrid work, and a kitchen that is actually stocked. ## About Token Security ## Company Overview - **One-liner**: Token Security provides an AI-native, identity-first security platform to discover, govern, and protect AI agents and non-human identities across cloud, SaaS, and enterprise environments. - **Entity Type**: Private (Series A, raised $27M total) - **Headquarters**: Brooklyn, New York, United States (with a presence in Israel) - **Founded**: 2023 - **Founders**: Itamar Apelblat (CEO) and Ido Shlomo (CTO) ## Core Business - **Primary Industries**: Cybersecurity, Identity Security, Non-Human Identity (NHI) Security, AI Security - **Target Customers**: B2B – organizations building or adopting agentic AI, including security teams, DevOps, and platform engineering groups in enterprises and scale-ups. - **Mission or Purpose Statement**: “We are on a mission to secure the autonomous enterprise. As AI agents evolve from simple assistants to independent actors, Token Security provides the identity lifecycle and intent-based access management required to securely turn AI potential into a competitive advantage.” [token.security](https://www.token.security/company/about) ## Products & Services - **Token Security Platform**: End-to-end AI agent and non-human identity (NHI) security platform. Includes continuous discovery, context-aware visibility, lifecycle management (ownership, decommissioning), intent-based least-privilege enforcement, security posture management, identity threat detection & response (ITDR), and AI-driven automation & remediation. [token.security](https://www.token.security/) - **Token AI Agent**: Native conversational AI within the Token UI, enabling users to query and manage their identity security posture via natural language. [token.security](https://www.token.security/) - **Token MCP Server**: Allows integration with AI chat applications (e.g., Claude, ChatGPT, Gemini) and AI agent frameworks (e.g., Cursor) to interact with the platform programmatically. [token.security](https://www.token.security/) - **New Entitlements Inventory**: Helps customers understand and control access rights for non-human identities. [token.security](https://www.token.security/) ## Market Standing - **Valuation/Market Cap**: Not disclosed (latest funding round: Series A on Jan 28, 2025, at an undisclosed valuation) - **Key Metric**: Total Funding: $27M (Seed $7M in May 2024, Series A $20M in Jan 2025); Annual Revenue: ~$1M (estimated) - **Notable Investors/Partners**: Notable Capital, Crosspoint Capital, TLV Partners, SNR.vc, Silicon Valley CISO Investments (SVCI), AWS Startup Loft Accelerator [pitchbook.com](https://pitchbook.com/profiles/company/597198-97) [linkedin.com](https://www.linkedin.com/company/token-security) - **Growth Signals**: Headcount grew 25% YoY to ~46-48 employees; LinkedIn followers grew 65.6% YoY; strong engineering team with 34% in technical roles and alumni from Unit 8200, Microsoft, SailPoint; expanding across all departments (Israel and US) [linkedin.com](https://www.linkedin.com/company/token-security) ## Competitive Advantages - **Machine-first, AI-native architecture**: Built from the ground up for AI agents and non-human identities, not retrofitted from human-centric IAM tools. Treats agents as first-class identities with intent-aware policies. - **Unified identity graph**: Correlates AI agents, humans, secrets, permissions, and data to reveal blast radius and enable automated remediation at scale. - **End-to-end lifecycle governance**: Enforces ownership, intent, access, and governance from creation through retirement, including automated decommissioning of orphaned identities. - **Deep alignment with MCP and agentic ecosystems**: Provides a native MCP server and AI agent to integrate with popular AI assistants and frameworks, enabling real-time security operations. ## Strategic Focus - **Secure the autonomous enterprise**: Enable organizations to adopt agentic AI quickly without losing control or introducing security risks. - **Expand coverage and integrations**: Continuously discover new AI agents and NHI types across on-prem, hybrid, and cloud environments. - **Drive automation and remediation**: Use AI-driven workflows to detect permission drift, behavioral anomalies, and enforce least-privilege access dynamically. - **Scale the team and go-to-market**: With fresh Series A funding, Token is actively hiring across engineering, product, sales, and marketing to meet growing demand. ## Why Work Here - **Fast-growing startup**: Headcount growing 25%+ YoY, serving a critical emerging category (AI agent security) with strong investor backing. - **Impactful mission**: Work on one of the most pressing cybersecurity challenges of the AI era – identity security for autonomous agents. - **Engineering culture**: 34% of the team is in technical roles; founders come from elite Israeli intelligence unit (Unit 8200); team values “learning by doing, growing together, and celebrating wins.” [token.security](https://www.token.security/company/careers) - **Work environment**: Hybrid – offices in Brooklyn, NY and Israel; remote-friendly culture with a global team (62% Israel, 30% US). - **Notable perks**: Not explicitly listed, but the company emphasizes creativity, collaboration, and bold ideas; careers page mentions “real impact” and solving critical IAM challenges. [token.security](https://www.token.security/company/careers) ## Sources 1. [token.security](https://www.token.security/) 2. [token.security/company/about](https://www.token.security/company/about) 3. [token.security/company/careers](https://www.token.security/company/careers) 4. [linkedin.com/company/token-security](https://www.linkedin.com/company/token-security) 5. [pitchbook.com/profiles/company/597198-97](https://pitchbook.com/profiles/company/597198-97) ## Other roles at Token Security - [Senior Product Manager](https://feeny.ai/job/senior-product-manager-token-security-tel-aviv-fnz1ehe6f3vr) — Tel Aviv, Israel - [Channel Account Manager](https://feeny.ai/job/channel-account-manager-token-security-united-states-38n9y3fp8w79) — United States - [Senior Sales Engineer](https://feeny.ai/job/senior-sales-engineer-token-security-new-york-0zb4p4chz070) — New York, NY / New Jersey - [Go-to-Market Engineer](https://feeny.ai/job/go-to-market-engineer-token-security-new-york-yqv3j0fyy6v1) — New York, NY - [Senior Security Analyst](https://feeny.ai/job/senior-security-analyst-token-security-tel-aviv-937j7yt5e5zc) — Tel Aviv, Israel - [Content Marketing & AEO/GEO/SEO Manager](https://feeny.ai/job/content-marketing-aeo-geo-seo-manager-token-security-new-york-2ep6691j672g) — New York, NY - [Senior Software Engineer](https://feeny.ai/job/senior-software-engineer-token-security-tel-aviv-kkqkg2v3swqc) — Tel Aviv, Israel - [Senior Devops Engineer](https://feeny.ai/job/senior-devops-engineer-paytm-noida-sg1jtrera3c5) — Noida, India - [Senior Devops Engineer](https://feeny.ai/job/senior-devops-engineer-tomorrow-io-washington-district-of-columbia-z0b9hkb1zdmr) — Washington District of Columbia, United States - [Senior Devops Engineer](https://feeny.ai/job/senior-devops-engineer-nightfall-ai-bengaluru-hykz505r5amg) — Bengaluru, India