Full-Time

Forward Deployed Infrastructure Engineer

Lumbra

Lumbra

11-50 employees

Orchestrates autonomous AI agents for intelligence

No salary listed

No H1B Sponsorship

Arlington County, Arlington, VA, USA

In Person

On-site in Arlington, Virginia.

US Top Secret Clearance Required

Category
DevOps & Infrastructure (1)
Required Skills
Kubernetes
DevOps
Helm

Get referred to Lumbra

See people who can refer or advise you

Requirements
  • Active U.S. security clearance at the TS/SCI level.
  • Deep experience operating air-gapped deployment pipelines and disconnected environments where software cannot be pulled from the internet.
  • Strong Helm skills and the ability to translate configurations across deployment environments.
  • Comfort operating stateful workloads on bare Kubernetes in constrained environments.
  • Experience operating Rancher, ArgoCD, and Harbor in disconnected environments.
  • Rigorous security practices and familiarity with classified handling procedures.
  • Fundamental understanding of public key infrastructure, including certificate and trust-chain management.
  • Experience with rootless, hardened container tooling and OCI-compliant builds using Podman and Buildah.
  • Deep Kubernetes internals knowledge and the ability to troubleshoot independently without external access.
  • Ability to profile and optimize resource utilization, pod scheduling, storage I/O, and network throughput on fixed hardware.
  • Ability to write clear technical documentation for classified operational contexts.
Responsibilities
  • Own the air-gapped deployment pipeline end to end, including transferring source code, charts, and configuration to disconnected environments and building and deploying container images onsite.
  • Author and maintain onsite Helm configurations for managed on-prem cloud services and Kubernetes-native alternatives on standalone clusters.
  • Deploy and operate databases, caching, workflow orchestration, identity, and object storage services on bare Kubernetes without managed cloud backends.
  • Own the onsite cluster management and delivery toolchain using Rancher, ArgoCD, and Harbor.
  • Manage the secrets lifecycle in classified environments, generating credentials fresh onsite without transferring secrets on physical media.
  • Own PKI and certificate management, including CA hierarchies, certificate issuance and rotation, mutual TLS between services, and trust-chain validation.
  • Build and maintain OCI-compliant container build pipelines using Podman and Buildah.
  • Troubleshoot Kubernetes issues such as crashed pods, failed migrations, certificate errors, and storage problems in environments with no external access.
  • Profile and optimize system performance in constrained environments.
  • Ensure deployment parity between cloud and onsite environments by validating health checks, resource limits, and service configurations.
  • Own the onsite monitoring architecture for system health, resource utilization, and service status.
  • Author database operations tooling for migrations, backup and restore, and schema management using Kubernetes Job templates.
  • Write deployment procedures, runbooks, and troubleshooting guides that onsite operators can follow independently.
Desired Qualifications
  • Experience operating Kubernetes across classified environments such as on-premises cloud, standalone clusters, or SCIF environments at IL4, IL5, or IL6.
  • Experience with Rancher, ArgoCD, and Harbor in air-gapped or restricted environments.
  • Prior experience with Podman and Buildah for rootless container builds in restricted environments.
  • Experience deploying identity providers such as Keycloak without cloud backends.
  • Background in workflow orchestration operations using Temporal or similar systems, including schema bootstrapping and upgrades without internet access.
  • Familiarity with DoD-hardened base images or Security Technical Implementation Guide compliance.
  • Experience authoring Security Technical Implementation Guides, System Security Plans, or Authority to Operate documentation for classified deployments.
  • Prior experience with cross-domain solutions or data transfer procedures between classification levels.

Lumbra builds agentic frameworks and an orchestration layer that connects multiple AI tools for the U.S. Intelligence Community, enabling autonomous AI agents to collaborate at machine speed across different security classifications. Its platform provides a common control layer to coordinate diverse tools and securely execute cross-tool workflows. The team combines former intelligence operators with MIT-educated engineers, delivering domain-specific, security-conscious orchestration through a direct B2G approach with partners like the CIA and JSOC. Its goal is to speed up and unify intelligence processing by letting autonomous agents work together across tools and classification boundaries.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

Washington DC, District of Columbia

Founded

2025

Get referred to Lumbra

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Costanoa disclosed seed funding on March 16, 2026, validating investor appetite.
  • Lumbra listed active 2026 engagements with the U.S. Intelligence Community and DoD.
  • Careers posted May 2026 show aggressive hiring for core platform and cleared engineers.

What critics are saying

  • Lumbra depends on IC procurement cycles; one failed pilot kills expansion quickly.
  • Cleared hiring in Arlington and NYC constrains growth if security vetting slows.
  • Anthropic and Google dependencies expose Lumbra to platform shifts and pricing pressure.

What makes Lumbra unique

  • Lumbra targets CIA, JSOC, and MIT-grade workflows, not generic enterprise AI.
  • Nebula unifies agents across classification boundaries, a hard moat in intelligence operations.
  • Seed investor Costanoa backs model-agnostic orchestration, not another point-solution app.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Unlimited Paid Time Off

Paid Holidays

Parental Leave

401(k) Retirement Plan

Commuter Benefits

Gym Membership

Growth & Insights

Headcount

6 month growth

-4%

1 year growth

-4%

2 year growth

-4%