JOBSEARCHER

Lead DevSecOps

ARCHIVED

We can't find an active application page for this role right now. It may reopen or be listed elsewhere. Use Next Steps to search for an active apply link and similar live jobs.

Senior DevSecOps EngineerAbout the RoleWe are seeking a Senior DevSecOps Engineer to support a growing R&D organization by designing, implementing, and maintaining secure development and deployment environments. This role will partner closely with engineering and cross-functional teams to improve software delivery processes, strengthen security practices, and drive operational excellence across the product development lifecycle.Key ResponsibilitiesLead DevSecOps initiatives focused on secure cloud infrastructure, CI/CD pipeline management, and automated security integration.Implement and maintain security and compliance practices, including vulnerability scanning, dependency analysis, SBOM management, threat modeling, and secure coding standards.Collaborate with software and firmware teams to improve development workflows, release processes, automated testing, and security integration.Automate infrastructure provisioning and configuration using infrastructure-as-code and configuration management tools.Manage and maintain binary repositories and artifact storage systems.Develop monitoring and logging capabilities to ensure reliability and performance of build and deployment systems.Oversee vulnerability management processes, including investigation and remediation of security findings and incidents.Troubleshoot issues related to development, testing, release management, and security operations.Analyze engineering metrics, identify bottlenecks, and recommend continuous improvement strategies.Support compliance with internal cybersecurity requirements and applicable industry regulations.Evaluate and introduce new DevOps and security tools, including vendor coordination and license management.Contribute to hiring efforts by helping define technical interview standards and assessing candidates.Mentor engineers and promote secure development practices, collaboration, and continuous learning.Continuously improve processes related to efficiency, quality, and security.Required QualificationsBachelor’s degree in Computer Science, Engineering, or a related technical field.5+ years of engineering experience, including at least 2 years in a DevSecOps or security-focused DevOps role.Experience with software or embedded systems development.Hands-on experience integrating security tools such as SAST, DAST, SCA, and SBOM solutions into CI/CD pipelines.Experience managing artifact or binary repositories.Proficiency with major cloud platforms such as AWS, Azure, or GCP.Experience with infrastructure-as-code and configuration management tools.Strong scripting and automation skills using languages such as Python, Bash, or PowerShell.Familiarity with build systems and CI/CD platforms.Experience with containerization technologies such as Docker or Kubernetes.Knowledge of monitoring and observability tools.Strong understanding of cybersecurity principles, vulnerability management, and DevSecOps best practices.Excellent troubleshooting, communication, and collaboration skills.Experience participating in technical interviews and candidate evaluations.Preferred QualificationsExperience working in Agile, DevOps, or DevSecOps environments.Familiarity with Git-based development workflows and developer collaboration tools.Previous technical leadership or team lead experience.Knowledge of software composition analysis and open-source compliance practices.Familiarity with DORA metrics and engineering performance measurement.Relevant cybersecurity certifications (e.g., CISSP, Security+, cloud security certifications).Experience with SBOM standards and software supply chain security practices.Familiarity with cybersecurity and regulatory standards related to product security.Experience conducting threat modeling and risk assessments.Vendor management and cross-functional collaboration experience.Experience working in multidisciplinary engineering environments.Work EnvironmentHybrid work arrangement with a mix of onsite and remote work.Primarily office, lab, or technical development environment.Extended computer use required.Occasional lifting of lightweight equipment may be necessary.Reasonable accommodations may be provided to support individuals with disabilities.