Senior DevSecOps Engineer
Posted 90ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior DevSecOps Engineer securing cloud infrastructure across AWS, Azure, and GCP for impactful projects. Responsible for compliance, security best practices, and team collaboration.
Responsibilities:
- Design, implement, and maintain secure cloud solutions across AWS, Azure, and GCP to meet mission and compliance requirements.
- Assist in developing and maintaining essential security artifacts, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms).
- Analyze complex cloud and system architectures to identify security risks and recommend effective mitigation strategies.
- Apply and document security controls based on NIST 800-53 and NIST 800-171 standards.
- Collaborate with all functional areas of the team to embed security into CI/CD pipelines and automate security checks.
- Assist in cloud-based incident response and lead vulnerability remediation efforts.
- Provide expert guidance on cloud security best practices, including encryption, access controls, identity management, and data protection.
- Evaluate, recommend, and implement cloud-native and third-party security tools.
- Participate in design reviews, risk assessments, and change control processes to ensure the security of new systems and changes.
- Lead annual security assessments and ongoing monitoring activities to maintain a strong security posture.
- Advise Information System Owners (ISOs) on system security and compliance matters.
- Oversee security posture for cloud infrastructure and monitor tenant security control implementation.
- Support the development and maintenance of ISAs between tenants and Cloud Computing Services.
Requirements:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- AWS Associate-level certification is required. If not currently held, the candidate must successfully obtain this certification within 6 months of their start date.
- A minimum of 8 years of experience in information security, with significant experience in a cloud environment.
- Deep understanding of cybersecurity principles, intrusion detection, vulnerability assessment, and network architecture.
- Proven ability to work independently and provide guidance to junior team members.
- Excellent communication and advisory skills to consult with and advise other teams on security procedures and policies.
Benefits:
- Competitive medical, dental and vision benefits
- Life Insurance, Short & Long Term disability insurance
- Voluntary Accident, Critical Illness & Hospital Insurance
- 401(k) and Roth 401(k) retirement plans with a fixed 3% of salary employer contributions (paid regardless of employee participation)
- Health savings account with a company contribution
- Flexible spending accounts (medical, dependent care and transportation)
- Company-paid parental leave after one year of employment
- Flexible work schedules
- Paid employee assistance program
- 9 paid holidays
- 4 weeks + 1 day Paid Time Off per calendar year (prorated first year)
- Cell phone stipend



















