DevSecOps Architect
Role: DevSecOps Architect Location: RemoteKey ResponsibilitiesLead the deployment and operationalization of Socket.dev across enterprise development environments.Implement software dependency security controls and open-source governance processes.Support Chainguard implementation and adoption of hardened container images.Migrate legacy container images to secure, hardened Chainguard images.Integrate security controls into CI/CD pipelines and developer workflows.Implement automated security checks, policy enforcement, and compliance controls.Secure Kubernetes, Docker, and other containerized environments.Implement container image scanning, signing, and provenance validation.Develop and maintain SBOM strategies and software supply chain governance.Partner with development and platform engineering teams to identify and remediate security risks.Provide technical guidance, documentation, standards, and operational runbooks.Support secure SDLC, vulnerability remediation, and software supply chain security initiatives.Required Qualifications10+ years of experience in DevOps, DevSecOps, Application Security, or Cloud Security.Hands-on experience with software supply chain security and dependency management.Strong understanding of CI/CD pipelines and secure development practices.Experience with GitHub, GitLab, Azure DevOps, or similar platforms.Strong experience with Kubernetes and containerized environments.Experience with Software Composition Analysis (SCA) and vulnerability remediation.Knowledge of SBOM, container image security, and open-source security.