The Senior DevSecOps Engineer provides leadership in cloud security, compliance, and automation, implementing and managing security practices across the DevOps lifecycle.
Requirements
- Lead daily security and compliance efforts across cloud platforms (GCP, Azure, AWS).
- Manage vulnerability scanning, remediation, and reporting using tools like Tenable and NMAP.
- Oversee certificate management, identity and access management, and key management systems.
- Analyze security monitoring outputs and develop automated responses.
- Develop and maintain automated security frameworks using scripting languages (e.g., Bash, Python).
- Integrate security tools into CI/CD pipelines using APIs and plugins.
- Collaborate with DevOps, development, and engineering teams to implement DevSecOps practices.
- Mentor and lead team members in security concepts and best practices.
- Participate in Agile development processes, including user stories, continuous integration, and delivery.
- Ensure compliance with standards such as PCI-DSS, HIPAA, SOX, GDPR, and CCPA.
Benefits
- Paid time off
- 401k matching
- Health insurance
- Dental insurance
- Vision insurance
- Life insurance