Senior DevSecOps Security Engineer, Cisco Intersight
Overview
In this role you act as a senior security partner for Intersight DevSecOps, guiding security improvements across engineering and delivery workflows. You translate mandates and audit requirements into concrete controls and remediation priorities, while collaborating with cross-functional teams to balance security with usability and speed. You help drive vulnerability management, security automation, and secure delivery enhancements at scale. This is a mission-driven role focused on safe, rapid product delivery in a cloud-native environment.
Compensation / Benefitsmedical, dental, and vision insurance401(k) with matchingpaid parental leavepaid time off and holidaysrestricted stock units (RSUs)volunteer days
ResponsibilitiesAssess and guide security posture improvements for Intersight applications and delivery workflowsTranslate Cisco security mandates and audit requirements into actionable guidance and remediation prioritiesReview features and architecture changes with cross-functional teams to identify gaps and mitigationsGuide vulnerability management and remediation across scans, tests, and incident response with SLA trackingClarify requirements for Build Environment Security and guide evidence collection and remediation prioritiesDefine and contribute to security automation, reporting, and tooling to improve visibility and reduce manual work
Key requirementsBachelor's degree and 8 years of hands-on experience in security automation, hardening, vulnerability remediation, or related DevSecOps capabilities3+ years' experience conducting security reviews, architecture reviews, threat or risk assessments, and translating findings into remediation plansProficiency in a major programming language, preferably Python, for automationExperience with vulnerability triage, automated scans, penetration tests, and SLA-based remediation workflowsExperience with corporate security mandates, secure development lifecycle, product security standards, or audit processesStrong written and verbal communicationCross-functional collaborationAbility to translate technical risks for non-technical audiencesPython automationSecurity automation and hardeningVulnerability management and remediation workflows