{"schemaVersion":"jobsearcher.job.v1","id":"90796c3bbec65267027ecdaf","url":"https://jobsearcher.com/jobs/90796c3bbec65267027ecdaf","canonicalUrl":"https://jobsearcher.com/jobs/90796c3bbec65267027ecdaf","title":"DevSecOps Engineer","description":"Job Description\nHelp TAB provide access to financial success for everyone by embedding security into every phase of the software development lifecycle. This position represents an evolution of our Application Security function, with a strategic shift toward proactively partnering with our DevOps team to implement security practices earlier in the development process (shift-left). As a DevSecOps Engineer, you will champion secure-by-design principles, support CI/CD security integration, and ensure compliance with regulatory expectations in a banking environment.\nEssential Duties and Responsibilities:\nEmbed security controls and testing into CI/CD pipelines and cloud infrastructure, ensuring security is early, automated, and scalable across the development lifecycle.\nWork closely with DevOps, developers, and product teams to guide secure architecture decisions, conduct threat modeling, and support secure coding practices.\nEvaluate, implement, and manage security tools such as SAST, DAST, SCA, and secrets detection within DevOps workflows. Drive automation to reduce manual security work.\nIdentify, triage, and work with teams to remediate vulnerabilities in applications and infrastructure using tools and techniques aligned with regulatory and risk management requirements.\nLead initiatives that promote security best practices during planning, design, and code review stages of development.\nCollaborate with DevOps on container security, infrastructure-as-code scanning, and secure deployment practices in cloud and hybrid environments.\nDeliver secure coding training, maintain good working relationships with development teams, and advocate for security-first culture across technology teams.\nEnsure alignment with banking regulations and internal security policies and provide evidence or technical insight during audits or regulatory reviews.\nOther duties as assigned.\nRequired education and experience:\n3+ years of experience in application security, DevSecOps, or related roles.\nHands-on experience with SAST, DAST, SCA, and container and code scanning tools.\nExperience working with infrastructure-as-code (e.g., Terraform, CloudFormation) and AWS cloud.\nAct with integrity, take pride in your work, seek to excel, be curious, adaptable and communicate well.\nPreferred education and experience:\nExperience in a regulated industry such as banking or financial services.\nCertifications such as CISSP, GWAPT, GCSA, CSSLP, or similar.\nExperience with Kubernetes and container orchestration security.\nExposure to compliance frameworks (e.g., FFIEC, NIST, PCI-DSS, ISO 27001, GLBA).\nCompetencies:\nStrong knowledge of CI/CD pipelines and integration of security tooling (e.g., GitHub Actions, GitHub advanced security).\nFamiliarity with secure software development practices and OWASP Top 10.\nAbility to communicate complex security topics clearly to both technical and non-technical stakeholders.\nCritical thinking skills and the ability to solve problems as they arise.\nTAB Bank Offers:\nOnsite Gym\nTuition Reimbursement\nPaid Holidays\nGym Reimbursement\nCollege Scholarships for Employees and Families\n401(k)\nPaid Time Off (PTO)\nEmployee Assistance Program (EAP)\nI Made the Grade\nHoliday Club Program\nMedical, Dental, Vision, Life and AD&D, Voluntary Disability, Flex Spending & Dependent Care\nTAB Bank will not sponsor applicants for work visas.\nEqual Opportunity Employer\nThis employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.","company":"Tab Bank","rawCompany":"tab bank","city":"Ogden","state":"UT","isRemote":false,"isActive":false,"createdAt":"2026-06-02T03:09:15.728Z","occupations":[{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"Job Description\nHelp TAB provide access to financial success for everyone by embedding security into every phase of the software development lifecycle. This position represents an evolution of our Application Security function, with a strategic shift toward proactively partnering with our DevOps team to implement security practices earlier in the development process (shift-left). As a DevSecOps Engineer, you will champion secure-by-design principles, support CI/CD security integration, and ensure compliance with regulatory expectations in a banking environment.\nEssential Duties and Responsibilities:\nEmbed security controls and testing into CI/CD pipelines and cloud infrastructure, ensuring security is early, automated, and scalable across the development lifecycle.\nWork closely with DevOps, developers, and product teams to guide secure architecture decisions, conduct threat modeling, and support secure coding practices.\nEvaluate, implement, and manage security tools such as SAST, DAST, SCA, and secrets detection within DevOps workflows. Drive automation to reduce manual security work.\nIdentify, triage, and work with teams to remediate vulnerabilities in applications and infrastructure using tools and techniques aligned with regulatory and risk management requirements.\nLead initiatives that promote security best practices during planning, design, and code review stages of development.\nCollaborate with DevOps on container security, infrastructure-as-code scanning, and secure deployment practices in cloud and hybrid environments.\nDeliver secure coding training, maintain good working relationships with development teams, and advocate for security-first culture across technology teams.\nEnsure alignment with banking regulations and internal security policies and provide evidence or technical insight during audits or regulatory reviews.\nOther duties as assigned.\nRequired education and experience:\n3+ years of experience in application security, DevSecOps, or related roles.\nHands-on experience with SAST, DAST, SCA, and container and code scanning tools.\nExperience working with infrastructure-as-code (e.g., Terraform, CloudFormation) and AWS cloud.\nAct with integrity, take pride in your work, seek to excel, be curious, adaptable and communicate well.\nPreferred education and experience:\nExperience in a regulated industry such as banking or financial services.\nCertifications such as CISSP, GWAPT, GCSA, CSSLP, or similar.\nExperience with Kubernetes and container orchestration security.\nExposure to compliance frameworks (e.g., FFIEC, NIST, PCI-DSS, ISO 27001, GLBA).\nCompetencies:\nStrong knowledge of CI/CD pipelines and integration of security tooling (e.g., GitHub Actions, GitHub advanced security).\nFamiliarity with secure software development practices and OWASP Top 10.\nAbility to communicate complex security topics clearly to both technical and non-technical stakeholders.\nCritical thinking skills and the ability to solve problems as they arise.\nTAB Bank Offers:\nOnsite Gym\nTuition Reimbursement\nPaid Holidays\nGym Reimbursement\nCollege Scholarships for Employees and Families\n401(k)\nPaid Time Off (PTO)\nEmployee Assistance Program (EAP)\nI Made the Grade\nHoliday Club Program\nMedical, Dental, Vision, Life and AD&D, Voluntary Disability, Flex Spending & Dependent Care\nTAB Bank will not sponsor applicants for work visas.\nEqual Opportunity Employer\nThis employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.","datePosted":"2026-06-02T03:09:15.728Z","dateModified":"2026-06-02T03:09:15.728Z","hiringOrganization":{"@type":"Organization","name":"Tab Bank","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Ogden","addressRegion":"UT","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"90796c3bbec65267027ecdaf"},"url":"https://jobsearcher.com/jobs/90796c3bbec65267027ecdaf"}}