IT Infrastructure Manager & DevSecOps at Wahoo Fitness
Atlanta, GA 30342, USA -
Full Time


Start Date

Immediate

Expiry Date

29 Oct, 25

Salary

0.0

Posted On

29 Jul, 25

Experience

2 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Oauth, Microservices, Endurance, Security, Sports, Connected Devices, Web Applications, Communication Skills, Software, Node.Js, Distributed Teams, Cloud Services, Cissp, Mobile Application Development, Computer Science, Infrastructure, Supply, Kibana, Javascript

Industry

Information Technology/IT

Description

Department: Software Engineering
Location: Atlanta, Georgia
Reports to: Vice President of Software Development
We are seeking an experienced IT Infrastructure and Cybersecurity / Site Reliability Manager to lead our infrastructure team as well as security and reliability initiatives for our global fitness technology ecosystem. This role combines technical leadership with people management, overseeing a team of 2-3 Site Reliability Engineers while also driving and ensuring security leading practices across all our development processes and product lifecycles. You’ll collaborate and partner closely with software development leaders across the business to build secure, fault-tolerant systems that support millions of Wahooligan customers worldwide, while serving as a key advisor to business stakeholders on security matters affecting our connected fitness devices, mobile applications, and cloud services.

Key Responsibilities

  • Strategic Leadership & Wahooligan Experience
  • Serve as primary liaison between engineering teams and business stakeholders on security and reliability matters affecting athlete experience
  • Translate technical concepts into business-friendly language for leadership decisions regarding data protection and system reliability
  • Participate in architectural reviews for new product launches (bikes, trainers, computers, apps) and provide security guidance
  • Develop security awareness training programs tailored to our fitness technology development teams
  • Lead security incident response and post-incident reviews, ensuring minimal impact to athlete training and device functionality
  • Establish security governance frameworks supporting our global operations and compliance with international data protection regulations
  • Infrastructure & Automation
  • Oversee the lifecycle of infrastructure-as-code repositories (IaC) in GitHub supporting our global device fleet and mobile applications
  • Automate system provisioning, deployments, and monitoring setups for JavaScript-based applications and microservices powering our fitness ecosystem
  • Oversee deployment pipelines and workflows for our mobile apps (Wahoo, SYSTM, ELEMNT Companion) and cloud services
  • Oversee security controls within Kubernetes deployments supporting real-time device data processing and workout analytics
  • Ensure proper access controls, identity management, and secrets management across AWS infrastructure supporting global operations
  • Design security automation frameworks leveraging AWS native security services to protect athlete data and device communications
  • Provide general management and oversight of internal IT infrastructure including ERP integrations with Salesforce and NetSuite
  • Oversee configuration, maintenance, and operational management of business-critical systems and enterprise applications
  • Cybersecurity & Athlete Data Protection
  • Implement security best practices across AWS infrastructure and CI/CD pipelines supporting our mobile apps, device firmware, and cloud services
  • Develop comprehensive security strategies for our REST APIs serving customer workout data, device telemetry, and third-party integrations with 110+ fitness app partners
  • Conduct security audits, threat modeling, and risk assessments specific to connected fitness devices and athlete personal data
  • Partner with development leaders to embed security practices into GitOps workflows for rapid, secure deployment of app updates and device firmware
  • Respond to vulnerabilities and implement remediation strategies across our hardware/software ecosystem
  • Champion secure coding practices and policies across engineering teams, ensuring athlete data privacy and applicable regulatory compliance
  • Oversee security for third-party app integrations and API partnerships (Strava, Zwift, TrainingPeaks, etc)
  • Site Reliability & Observability
  • Lead, mentor, and scale a team of 2-3 SREs responsible for uptime, performance, and incident response across our global fitness ecosystem
  • Build, deploy, and manage secure infrastructure using Kubernetes and AWS to support our KICKR, ELEMNT, and SYSTM product lines
  • Design and maintain observability pipelines using Grafana, Kibana, and CloudWatch for real-time monitoring of fitness device connectivity and app performance
  • Own the on-call rotation via PagerDuty and drive continuous improvements in incident management for our mission-critical fitness applications
  • Collaborate with development teams to build fault-tolerant, observable, and secure systems that handle millions of workout sessions and device connections
  • Establish team goals, performance metrics, and continuous improvement processes focused on athlete experience and data reliability

Required Qualifications

  • Technical Expertise
  • 7+ years of experience in SRE, DevOps, or infrastructure engineering roles, with 2+ years in a leadership role
  • Strong expertise in AWS cloud services and security controls (IAM, GuardDuty, CloudTrail, etc) supporting global, high-availability systems
  • Proficiency in Kubernetes security, container orchestration, and cluster management for microservices architectures
  • Hands-on experience with Grafana, Kibana, PagerDuty, and monitoring/alerting frameworks for real-time system observability
  • Proven track record of implementing and managing cloud security practices for consumer-facing applications and IoT device ecosystems
  • Proficiency in JavaScript (Node.js or frontend frameworks) and GitOps workflows supporting mobile and web applications
  • Experience with infrastructure as code (Terraform, CloudFormation) and GitHub repositories for automated deployment pipelines
  • Understanding of modern application architectures (containers, microservices, serverless)
  • Leadership & Security Knowledge
  • Experience managing and developing engineering teams in fast-paced technology environments
  • Deep understanding of API security principles, OAuth, JWT, and common API vulnerabilities relevant to fitness app ecosystems
  • Knowledge of threat modeling, risk assessment, and security architecture for cloud-native applications and connected devices
  • Experience with security testing tools and methodologies (SAST, DAST, container scanning) for mobile applications and IoT systems
  • Understanding of data protection regulations (GDPR, CCPA) and privacy requirements for personal fitness and health data
  • Strong communication skills for both technical and business audiences, with experience in global distributed teams
  • Excellent problem-solving skills with a proactive mindset focused on athlete experience and data protection
  • Operations & Process Management
  • Experience with incident management, on-call processes, and post-incident reviews for consumer-facing applications
  • Knowledge of observability best practices and system reliability engineering for high-traffic mobile and web applications
  • Understanding of CI/CD security integration and pipeline automation for rapid deployment cycles
  • Experience with GitOps workflows and supply chain security considerations for software and firmware development
  • Education, Certifications and Other Relevant Experience
  • Bachelor’s degree in Computer Science, Engineering, or related field
  • Security certifications (CISSP, CISM, GSEC, AWS Security Specialty)
  • Experience in consumer technology, fitness/health tech, or IoT device ecosystems
  • Background in mobile application development or connected device security
  • Experience with security compliance audits and assessments (SOC 2, ISO 27001)
  • Knowledge of emerging security technologies and threat landscapes affecting consumer technology
  • Experience with container security scanning and Kubernetes security tooling
  • Familiarity with API gateway security, rate limiting, and third-party integration security
  • Personal passion for fitness, cycling, running, or endurance sports

Why Join Wahoo?

  • Shape the security culture and reliability practices for a global fitness technology leader
  • Competitive salary and comprehensive benefits package
  • Professional development and certification support
  • Collaborative, innovative work environment with passionate mission-driven team
  • Employee fitness benefits and access to Wahoo products
  • Flexible work arrangements supporting our global team
  • Culture focused on building the better athlete in all of us
  • Work in a fast-paced environment where your contributions are valued and visible
  • Enjoy a supportive culture that encourages growth, creativity, and fun!

Application Process: How to Make Your Application Standout

  • Please submit your resume along with a cover letter detailing your experience in leading SRE teams and implementing security practices in consumer technology environments.
  • Include specific examples of how you’ve successfully managed technical teams, improved system reliability, and worked with business stakeholders on security initiatives.
  • Bonus points for sharing your fitness journey or experience with Wahoo products!
Responsibilities
  • Strategic Leadership & Wahooligan Experience
  • Serve as primary liaison between engineering teams and business stakeholders on security and reliability matters affecting athlete experience
  • Translate technical concepts into business-friendly language for leadership decisions regarding data protection and system reliability
  • Participate in architectural reviews for new product launches (bikes, trainers, computers, apps) and provide security guidance
  • Develop security awareness training programs tailored to our fitness technology development teams
  • Lead security incident response and post-incident reviews, ensuring minimal impact to athlete training and device functionality
  • Establish security governance frameworks supporting our global operations and compliance with international data protection regulations
  • Infrastructure & Automation
  • Oversee the lifecycle of infrastructure-as-code repositories (IaC) in GitHub supporting our global device fleet and mobile applications
  • Automate system provisioning, deployments, and monitoring setups for JavaScript-based applications and microservices powering our fitness ecosystem
  • Oversee deployment pipelines and workflows for our mobile apps (Wahoo, SYSTM, ELEMNT Companion) and cloud services
  • Oversee security controls within Kubernetes deployments supporting real-time device data processing and workout analytics
  • Ensure proper access controls, identity management, and secrets management across AWS infrastructure supporting global operations
  • Design security automation frameworks leveraging AWS native security services to protect athlete data and device communications
  • Provide general management and oversight of internal IT infrastructure including ERP integrations with Salesforce and NetSuite
  • Oversee configuration, maintenance, and operational management of business-critical systems and enterprise applications
  • Cybersecurity & Athlete Data Protection
  • Implement security best practices across AWS infrastructure and CI/CD pipelines supporting our mobile apps, device firmware, and cloud services
  • Develop comprehensive security strategies for our REST APIs serving customer workout data, device telemetry, and third-party integrations with 110+ fitness app partners
  • Conduct security audits, threat modeling, and risk assessments specific to connected fitness devices and athlete personal data
  • Partner with development leaders to embed security practices into GitOps workflows for rapid, secure deployment of app updates and device firmware
  • Respond to vulnerabilities and implement remediation strategies across our hardware/software ecosystem
  • Champion secure coding practices and policies across engineering teams, ensuring athlete data privacy and applicable regulatory compliance
  • Oversee security for third-party app integrations and API partnerships (Strava, Zwift, TrainingPeaks, etc)
  • Site Reliability & Observability
  • Lead, mentor, and scale a team of 2-3 SREs responsible for uptime, performance, and incident response across our global fitness ecosystem
  • Build, deploy, and manage secure infrastructure using Kubernetes and AWS to support our KICKR, ELEMNT, and SYSTM product lines
  • Design and maintain observability pipelines using Grafana, Kibana, and CloudWatch for real-time monitoring of fitness device connectivity and app performance
  • Own the on-call rotation via PagerDuty and drive continuous improvements in incident management for our mission-critical fitness applications
  • Collaborate with development teams to build fault-tolerant, observable, and secure systems that handle millions of workout sessions and device connections
  • Establish team goals, performance metrics, and continuous improvement processes focused on athlete experience and data reliabilit
Loading...