{"schemaVersion":"jobsearcher.job.v1","id":"3b34cfd55b3042a28cb83d4d","url":"https://jobsearcher.com/jobs/3b34cfd55b3042a28cb83d4d","canonicalUrl":"https://jobsearcher.com/jobs/3b34cfd55b3042a28cb83d4d","title":"Senior DevSecOps Engineer","description":"We believe power is a promise - a shared commitment to be there for others when it matters most.\n\nFor more than 65 years, we've turned big ideas into solutions that help protect homes, strengthen businesses and build a more resilient, efficient, sustainable energy future.\n\nReady to Power a Smarter World with us?\n\nAs a Senior DevSecOps Engineer you will serve as a technical leader at the intersection of development, security and operations for our cloud team supporting the secure transmission, processing, and storage of data from IoT devices. In this role, you will ensure that all cloud services, networks and data pipelines are secure and compliant with industry standards. You will work closely with the development team, prioritizing a “Shift Left” culture by automating compliance and security scanning throughout the software development lifecycle, empowering developers to maintain high velocity without compromising on industry standards.\nSome areas of focus are -\nCloud Security Architecture:\nDesign and implement secure-by-default cloud infrastructure to handle data transmitted from IoT devices and between cloud services.\nDevelop secure mechanisms for data storage and processing, including encryption and secure authentication frameworks to support the confidentiality, integrity and availability of data.\nEnable the provisioning of secure cloud infrastructure through the development of infrastructure as code (Iac) modules which align with security best practices and industry regulations.\nSecure Cloud Communication and Data Handling:\nEnsure all data transmitted from IoT devices to the industrial cloud is encrypted and securely handled.\nImplement network-level security measures to protect cloud infrastructure from threats like man-in-the-middle attacks, DDoS, and unauthorized access.\nDevelop security protocols for managing data at rest and in transit across cloud services, ensuring compliance with industry standards.\nCloud Integration and Security Controls:\nOversee the integration of various cloud services to ensure secure data ingestion, storage, and processing.\nImplement and maintain secure access control mechanisms, ensuring only authorized systems and personnel can interact with cloud-based data.\nManage secure API connections and authentication methods between cloud systems and other enterprise services.\nCloud Security Compliance and Auditing:\nEnsure the industrial cloud infrastructure complies with security standards such as ISO 27001 and ongoing compliance through regular audits and assessments.\nConduct vulnerability assessments and security reviews of the cloud environment to identify and address potential risks.\nThreat Modeling and Vulnerability Management:\nPerform threat modeling and vulnerability assessments to identify potential attack vectors within the cloud infrastructure.\nImplement security monitoring and alerting systems to detect and respond to potential threats or unauthorized activities in real-time.\nCross-functional Collaboration:\nCollaborate with cloud engineers, network security teams, DevOps and other DevSecOps engineers to ensure security is integrated throughout the cloud infrastructure and software development lifecycles.\nProvide mentoring on secure cloud infrastructure design, development, and maintenance to align with security best practices and industry regulations.\nLead security awareness and training programs for teams involved in managing Generac’s industrial cloud infrastructure.\nMinimum Qualifications:\nB.S. in Computer Science, Cybersecurity, Engineering or equivalent years of work experience.\n5+ years of experience in cloud security, with a focus on securing cloud infrastructure for data processing and storage.\nPreferred Qualifications:\nStrong understanding of cloud security, identity management, secure communication protocols (e.g., TLS), and data encryption.\nProven experience working with public cloud platforms (e.g., AWS, Azure, Google Cloud) to secure cloud environments and services.\nExperience with SAST/DAST tools, container security and vulnerability management.\nKnowledge of ISO 27001 compliance requirements for cloud environments.\nExperience with infrastructure as code, preferably Terraform\nCertifications such as CISSP, CCSP, GCSA or cloud-specific security or automation certifications are highly desirable.\nGenerac is committed to fair and equitable compensation practices. The salary range for this role based in Colorado is $135,000 -185,000 USD. This compensation will ultimately be in line with the location in which the position is filled. Final compensation for this role will be determined by various factors such as a candidate’s relevant work experience, skills, certifications and geographic location. This role is eligible for variable compensation including short-term and long-term incentives.\n\nThis position includes a comprehensive benefit package that includes medical, dental and vision plans; life, long-term disability, flexible spending and health savings accounts, accrued paid time off, paid Holidays and 401(k) retirement benefits.\n#LI-BB1\nPhysical Demands: While performing the duties of this job, the employee is regularly required to talk and hear; and use hands to manipulate objects or controls. The employee is regularly required to stand and walk. On occasion, the incumbent may be required to stoop, bend, or reach above the shoulders. The employee must occasionally lift up to 25 pounds. Specific conditions of this job are typical of frequent and continuous computer-based work requiring periods of sitting, close vision, and the ability to adjust focus. Occasional travel.\n“We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.”","company":"Generac Power Systems","rawCompany":"generac power systems","city":"Denver","state":"CO","isRemote":false,"isActive":false,"createdAt":"2026-08-06T16:58:01.795Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"518210","title":"Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services","slug":"computing-infrastructure-providers-data-processing-web-hosting-and-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior DevSecOps Engineer","description":"We believe power is a promise - a shared commitment to be there for others when it matters most.\n\nFor more than 65 years, we've turned big ideas into solutions that help protect homes, strengthen businesses and build a more resilient, efficient, sustainable energy future.\n\nReady to Power a Smarter World with us?\n\nAs a Senior DevSecOps Engineer you will serve as a technical leader at the intersection of development, security and operations for our cloud team supporting the secure transmission, processing, and storage of data from IoT devices. In this role, you will ensure that all cloud services, networks and data pipelines are secure and compliant with industry standards. You will work closely with the development team, prioritizing a “Shift Left” culture by automating compliance and security scanning throughout the software development lifecycle, empowering developers to maintain high velocity without compromising on industry standards.\nSome areas of focus are -\nCloud Security Architecture:\nDesign and implement secure-by-default cloud infrastructure to handle data transmitted from IoT devices and between cloud services.\nDevelop secure mechanisms for data storage and processing, including encryption and secure authentication frameworks to support the confidentiality, integrity and availability of data.\nEnable the provisioning of secure cloud infrastructure through the development of infrastructure as code (Iac) modules which align with security best practices and industry regulations.\nSecure Cloud Communication and Data Handling:\nEnsure all data transmitted from IoT devices to the industrial cloud is encrypted and securely handled.\nImplement network-level security measures to protect cloud infrastructure from threats like man-in-the-middle attacks, DDoS, and unauthorized access.\nDevelop security protocols for managing data at rest and in transit across cloud services, ensuring compliance with industry standards.\nCloud Integration and Security Controls:\nOversee the integration of various cloud services to ensure secure data ingestion, storage, and processing.\nImplement and maintain secure access control mechanisms, ensuring only authorized systems and personnel can interact with cloud-based data.\nManage secure API connections and authentication methods between cloud systems and other enterprise services.\nCloud Security Compliance and Auditing:\nEnsure the industrial cloud infrastructure complies with security standards such as ISO 27001 and ongoing compliance through regular audits and assessments.\nConduct vulnerability assessments and security reviews of the cloud environment to identify and address potential risks.\nThreat Modeling and Vulnerability Management:\nPerform threat modeling and vulnerability assessments to identify potential attack vectors within the cloud infrastructure.\nImplement security monitoring and alerting systems to detect and respond to potential threats or unauthorized activities in real-time.\nCross-functional Collaboration:\nCollaborate with cloud engineers, network security teams, DevOps and other DevSecOps engineers to ensure security is integrated throughout the cloud infrastructure and software development lifecycles.\nProvide mentoring on secure cloud infrastructure design, development, and maintenance to align with security best practices and industry regulations.\nLead security awareness and training programs for teams involved in managing Generac’s industrial cloud infrastructure.\nMinimum Qualifications:\nB.S. in Computer Science, Cybersecurity, Engineering or equivalent years of work experience.\n5+ years of experience in cloud security, with a focus on securing cloud infrastructure for data processing and storage.\nPreferred Qualifications:\nStrong understanding of cloud security, identity management, secure communication protocols (e.g., TLS), and data encryption.\nProven experience working with public cloud platforms (e.g., AWS, Azure, Google Cloud) to secure cloud environments and services.\nExperience with SAST/DAST tools, container security and vulnerability management.\nKnowledge of ISO 27001 compliance requirements for cloud environments.\nExperience with infrastructure as code, preferably Terraform\nCertifications such as CISSP, CCSP, GCSA or cloud-specific security or automation certifications are highly desirable.\nGenerac is committed to fair and equitable compensation practices. The salary range for this role based in Colorado is $135,000 -185,000 USD. This compensation will ultimately be in line with the location in which the position is filled. Final compensation for this role will be determined by various factors such as a candidate’s relevant work experience, skills, certifications and geographic location. This role is eligible for variable compensation including short-term and long-term incentives.\n\nThis position includes a comprehensive benefit package that includes medical, dental and vision plans; life, long-term disability, flexible spending and health savings accounts, accrued paid time off, paid Holidays and 401(k) retirement benefits.\n#LI-BB1\nPhysical Demands: While performing the duties of this job, the employee is regularly required to talk and hear; and use hands to manipulate objects or controls. The employee is regularly required to stand and walk. On occasion, the incumbent may be required to stoop, bend, or reach above the shoulders. The employee must occasionally lift up to 25 pounds. Specific conditions of this job are typical of frequent and continuous computer-based work requiring periods of sitting, close vision, and the ability to adjust focus. Occasional travel.\n“We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.”","datePosted":"2026-08-06T16:58:01.795Z","dateModified":"2026-08-06T16:58:01.795Z","hiringOrganization":{"@type":"Organization","name":"Generac Power Systems","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Denver","addressRegion":"CO","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"3b34cfd55b3042a28cb83d4d"},"url":"https://jobsearcher.com/jobs/3b34cfd55b3042a28cb83d4d"}}