{"schemaVersion":"jobsearcher.job.v1","id":"8ec0e17b45bcd00a9d1a3226","url":"https://jobsearcher.com/jobs/8ec0e17b45bcd00a9d1a3226","canonicalUrl":"https://jobsearcher.com/jobs/8ec0e17b45bcd00a9d1a3226","title":"DevSecOps Engineer","description":"Overview\nThe DevSecOps Engineer is responsible for embedding automated security guardrails, vulnerability scanning, and compliance controls directly into our cloud platform and CI/CD pipelines. By managing security tooling platforms (SAST/DAST/SCA), automating vulnerability triage, and building secure multi-cloud integration patterns (including AWS to Google Gemini Enterprise Plus), this role ensures our core cloud infrastructure remains scalable, secure, and friction-free. This position operates as a mid-to-senior technical resource, accelerating software delivery while reducing administrative security overhead across teams.\n\nResponsibilities\nImplement, configure, and maintain automated security scanning platforms (SAST, DAST, SCA, container scanning) across our development pipelines.\nTriage security scan findings and automate remediation workflows to streamline vulnerability management across teams.\nPartner with Architecture and Engineering to establish secure multi-cloud guardrails, including AWS-to-GCP identity federation, KMS key management, and API gateway access controls for AI platform integrations.\nEnforce Infrastructure as Code (IaC) security automation (such as Terraform, Checkov, and Trivy) to embed policy-as-code across environments.\nServe as a Subject Matter Expert (SME) for cloud security tooling, CI/CD automation, and multi-cloud access patterns, providing technical guidance across the organization.\nProactively tune security tools to reduce false positives and eliminate operational noise for software delivery teams.\nServe as a secondary point of escalation for security and platform incidents, rather than participating in the primary on-call rotation.\nCoordinate technical resolution during security events and contribute to post-mortem analysis to prevent recurrence.\n\nEssential Skills and Experience\n3 to 5+ years of experience in DevSecOps, cloud security, or platform security engineering.\nMulti-cloud experience across public cloud platforms, with deep expertise in AWS and working experience in GCP (Google Cloud Platform).\nDeep experience with AWS core security infrastructure (IAM, KMS, Secrets Manager, VPC, EKS/ECS).\nStrong proficiency in Terraform or AWS CDK to enforce infrastructure guardrails as code across cloud environments.\nHands-on experience integrating security testing tools (SAST/DAST/SCA/Container scanning) into CI/CD pipelines (GitHub Actions, AWS CodeBuild, or Jenkins).\nExperience establishing identity flows, OAuth configurations, and Workload/Workforce Identity Federation across multi-cloud environments (AWS and GCP).\nHands-on experience with container security, image scanning repositories (ECR, Trivy), and containerized application runtime security.\nProficiency in CloudWatch, SIEM log monitoring, and security findings triage.\n\nPreferred Skills and Experience\nProfessional or Associate cloud or security certifications (such as AWS Certified Security Specialty, GCP Professional Cloud Security Engineer, CISSP, AWS SysOps Administrator, or DevOps Engineer).\nHands-on experience implementing cross-cloud integration patterns between AWS workloads and GCP enterprise services (such as Google Gemini Enterprise Plus).\nHigh proficiency in scripting languages (Python, Go, Bash, or PowerShell) to automate security workflows and vulnerability triage.\nDirect experience with container orchestration platforms (AWS ECS/Fargate or EKS) and microservice security.\nFamiliarity with database security controls and encrypted connectivity in cloud environments (Postgres, MySQL, DynamoDB).\n\nKey Competencies and Attributes\nProactive Problem Solver: Does not wait for tickets; actively identifies platform bottlenecks, security risks, and scanner noise, proposing and implementing automated solutions independently.\nDeveloper-Centric Mindset: Views the developer as a customer, focusing on creating frictionless security controls and actionable feedback loops for engineering teams.\nCross-Functional Collaborator: Able to navigate and work effectively across multiple departments (Security, Dev, Ops, Architecture), bridging technical gaps to ensure successful integrations.\nAutomation-Driven: Constantly seeks opportunities to replace manual security administration with automated scripts, policy-as-code, and self-service tools.\nAdaptable: Comfortable with the rapid pace of cloud-native and AI developments, quickly mastering new cloud provider features to enhance platform security.\n\nWork Arrangement\nBased at ampliFI’s Naperville, IL Corporate office, this hybrid role requires onsite reporting Tuesday-Thursday weekly.\nNational remote opportunities require residency in one of the following states AZ, CO, FL, GA, IL, IN, MA, MT, NC, NE, NH, NJ, NY, OH, PA, SC, TX, UT, VA, or WI.\n\nPhysical Requirements\nThis role involves sitting or standing for extended periods, using computers, phones, and other office equipment. Visual acuity and manual dexterity are needed for reading documents and handling materials. Occasional lifting of items up to 20 lbs. and frequent phone communication is required.\n\nOther Duties\nDuties, responsibilities, and activities are not all encompassing and may change at any time with or without notice. To perform this job successfully, an individual must be able to satisfactorily carry out each essential duty. Reasonable accommodation may be made to enable qualified individuals with disabilities to perform essential job functions\n\nThe compensation range listed below represents the potential salary for this role at the time of posting. However, the final salary may be higher or lower than the stated range, and this range may be adjusted in the future. An employee’s placement within the salary range will depend on various factors, including but not limited to relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, shift, travel requirements, sales or revenue-based metrics, any applicable collective bargaining agreements, and the needs of the business or organization. The salary range for this role is $90,000 to $100,000 per year.\n\nAbout ampliFI\nAt ampliFI Integrity guides every decision, Curiosity drives innovation, and Advocacy ensures we always put our clients and teammates first. We foster a supportive, fun workplace where your contributions are valued, and your growth is encouraged.\n\nampliFI provides fully outsourced, customized credit and debit card loyalty programs exclusively focused on banks and credit unions nationwide. For nearly two decades, we have delivered compelling rewards programs, unique earn and burn opportunities and card-linked programs to leverage merchant funded offers. Here at ampliFI, we are always looking for more great people to be a part of the relentless pursuit of excellence in everything we do.\n\nBenefits and Perks\n\nCompetitive pay plus 401(k) with employer match\nMedical, dental, vision, and life insurance\nVoluntary café plans, including voluntary life, accident, hospital, critical care, and parking/transit options\nTuition Reimbursement\nPaid time off, company holidays, and parental leave\nEmployee Assistance Program\nHybrid work environment with flexible hours\nOnsite perks including gym access and snacks\nEmployee recognition programs celebrating milestones and achievements\nGrowth opportunities within a supportive, team-oriented environment\n\nampliFI Loyalty Solutions embraces diversity and equal opportunity. We are committed to building a team that represents a variety of backgrounds, perspectives, and skills because we believe that the more inclusive we are, the greater impact we can make together.","company":"Amplifi Loyalty Solutions","rawCompany":"amplifi loyalty solutions","city":"Naperville","state":"IL","isRemote":false,"isActive":false,"createdAt":"2026-09-10T09:42:44.574Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"Overview\nThe DevSecOps Engineer is responsible for embedding automated security guardrails, vulnerability scanning, and compliance controls directly into our cloud platform and CI/CD pipelines. By managing security tooling platforms (SAST/DAST/SCA), automating vulnerability triage, and building secure multi-cloud integration patterns (including AWS to Google Gemini Enterprise Plus), this role ensures our core cloud infrastructure remains scalable, secure, and friction-free. This position operates as a mid-to-senior technical resource, accelerating software delivery while reducing administrative security overhead across teams.\n\nResponsibilities\nImplement, configure, and maintain automated security scanning platforms (SAST, DAST, SCA, container scanning) across our development pipelines.\nTriage security scan findings and automate remediation workflows to streamline vulnerability management across teams.\nPartner with Architecture and Engineering to establish secure multi-cloud guardrails, including AWS-to-GCP identity federation, KMS key management, and API gateway access controls for AI platform integrations.\nEnforce Infrastructure as Code (IaC) security automation (such as Terraform, Checkov, and Trivy) to embed policy-as-code across environments.\nServe as a Subject Matter Expert (SME) for cloud security tooling, CI/CD automation, and multi-cloud access patterns, providing technical guidance across the organization.\nProactively tune security tools to reduce false positives and eliminate operational noise for software delivery teams.\nServe as a secondary point of escalation for security and platform incidents, rather than participating in the primary on-call rotation.\nCoordinate technical resolution during security events and contribute to post-mortem analysis to prevent recurrence.\n\nEssential Skills and Experience\n3 to 5+ years of experience in DevSecOps, cloud security, or platform security engineering.\nMulti-cloud experience across public cloud platforms, with deep expertise in AWS and working experience in GCP (Google Cloud Platform).\nDeep experience with AWS core security infrastructure (IAM, KMS, Secrets Manager, VPC, EKS/ECS).\nStrong proficiency in Terraform or AWS CDK to enforce infrastructure guardrails as code across cloud environments.\nHands-on experience integrating security testing tools (SAST/DAST/SCA/Container scanning) into CI/CD pipelines (GitHub Actions, AWS CodeBuild, or Jenkins).\nExperience establishing identity flows, OAuth configurations, and Workload/Workforce Identity Federation across multi-cloud environments (AWS and GCP).\nHands-on experience with container security, image scanning repositories (ECR, Trivy), and containerized application runtime security.\nProficiency in CloudWatch, SIEM log monitoring, and security findings triage.\n\nPreferred Skills and Experience\nProfessional or Associate cloud or security certifications (such as AWS Certified Security Specialty, GCP Professional Cloud Security Engineer, CISSP, AWS SysOps Administrator, or DevOps Engineer).\nHands-on experience implementing cross-cloud integration patterns between AWS workloads and GCP enterprise services (such as Google Gemini Enterprise Plus).\nHigh proficiency in scripting languages (Python, Go, Bash, or PowerShell) to automate security workflows and vulnerability triage.\nDirect experience with container orchestration platforms (AWS ECS/Fargate or EKS) and microservice security.\nFamiliarity with database security controls and encrypted connectivity in cloud environments (Postgres, MySQL, DynamoDB).\n\nKey Competencies and Attributes\nProactive Problem Solver: Does not wait for tickets; actively identifies platform bottlenecks, security risks, and scanner noise, proposing and implementing automated solutions independently.\nDeveloper-Centric Mindset: Views the developer as a customer, focusing on creating frictionless security controls and actionable feedback loops for engineering teams.\nCross-Functional Collaborator: Able to navigate and work effectively across multiple departments (Security, Dev, Ops, Architecture), bridging technical gaps to ensure successful integrations.\nAutomation-Driven: Constantly seeks opportunities to replace manual security administration with automated scripts, policy-as-code, and self-service tools.\nAdaptable: Comfortable with the rapid pace of cloud-native and AI developments, quickly mastering new cloud provider features to enhance platform security.\n\nWork Arrangement\nBased at ampliFI’s Naperville, IL Corporate office, this hybrid role requires onsite reporting Tuesday-Thursday weekly.\nNational remote opportunities require residency in one of the following states AZ, CO, FL, GA, IL, IN, MA, MT, NC, NE, NH, NJ, NY, OH, PA, SC, TX, UT, VA, or WI.\n\nPhysical Requirements\nThis role involves sitting or standing for extended periods, using computers, phones, and other office equipment. Visual acuity and manual dexterity are needed for reading documents and handling materials. Occasional lifting of items up to 20 lbs. and frequent phone communication is required.\n\nOther Duties\nDuties, responsibilities, and activities are not all encompassing and may change at any time with or without notice. To perform this job successfully, an individual must be able to satisfactorily carry out each essential duty. Reasonable accommodation may be made to enable qualified individuals with disabilities to perform essential job functions\n\nThe compensation range listed below represents the potential salary for this role at the time of posting. However, the final salary may be higher or lower than the stated range, and this range may be adjusted in the future. An employee’s placement within the salary range will depend on various factors, including but not limited to relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, shift, travel requirements, sales or revenue-based metrics, any applicable collective bargaining agreements, and the needs of the business or organization. The salary range for this role is $90,000 to $100,000 per year.\n\nAbout ampliFI\nAt ampliFI Integrity guides every decision, Curiosity drives innovation, and Advocacy ensures we always put our clients and teammates first. We foster a supportive, fun workplace where your contributions are valued, and your growth is encouraged.\n\nampliFI provides fully outsourced, customized credit and debit card loyalty programs exclusively focused on banks and credit unions nationwide. For nearly two decades, we have delivered compelling rewards programs, unique earn and burn opportunities and card-linked programs to leverage merchant funded offers. Here at ampliFI, we are always looking for more great people to be a part of the relentless pursuit of excellence in everything we do.\n\nBenefits and Perks\n\nCompetitive pay plus 401(k) with employer match\nMedical, dental, vision, and life insurance\nVoluntary café plans, including voluntary life, accident, hospital, critical care, and parking/transit options\nTuition Reimbursement\nPaid time off, company holidays, and parental leave\nEmployee Assistance Program\nHybrid work environment with flexible hours\nOnsite perks including gym access and snacks\nEmployee recognition programs celebrating milestones and achievements\nGrowth opportunities within a supportive, team-oriented environment\n\nampliFI Loyalty Solutions embraces diversity and equal opportunity. We are committed to building a team that represents a variety of backgrounds, perspectives, and skills because we believe that the more inclusive we are, the greater impact we can make together.","datePosted":"2026-09-10T09:42:44.574Z","dateModified":"2026-09-10T09:42:44.574Z","hiringOrganization":{"@type":"Organization","name":"Amplifi Loyalty Solutions","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Naperville","addressRegion":"IL","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"8ec0e17b45bcd00a9d1a3226"},"url":"https://jobsearcher.com/jobs/8ec0e17b45bcd00a9d1a3226"}}