DevSecOps Analyst
Duration: 6-month Contract-to-HireConversion: $100K with 12% bonusLocation: Hybrid, Charlotte, NC (2 days onsite)Schedule: Standard business hoursMust-Haves:2-4 years of DevSecOps, Application Security, DevOps, Cloud Security, or Security Operations experienceExperience administering GitHub Enterprise security capabilitiesExperience implementing or supporting CI/CD pipelinesExperience managing vulnerability remediation programs, findings backlogs, and SLA-driven remediation processesKnowledge of GitHub Advanced Security, Dependabot, CodeQL, secret scanning, and branch protectionFamiliarity with container security and Infrastructure as Code (IaC) scanningScripting experience with PowerShell, Python, or BashPlusses:Experience with Jira, ServiceNow, or Azure DevOpsSecurity Champions program participation/support experienceOWASP secure coding knowledge and developer training experienceExecutive reporting and security metrics experienceDay-to-Day:Triage and manage findings from SAST, DAST, SCA, secrets detection, IaC, container security, and repository security toolsReview pull requests, validate vulnerabilities, and partner with developers on remediation effortsMonitor CI/CD security gates and escalate blocked builds as neededManage security exceptions, remediation backlogs, SLAs, and closure validationProduce vulnerability and remediation metrics reportingAdminister GitHub Enterprise security features and repository governance controlsSupport GitHub Actions workflows and security-integrated CI/CD pipelinesMaintain security tooling, scanning policies, integrations, runbooks, and documentationSupport Security Champions initiatives and secure coding education effortsJob Description:Insight Global is seeking a DevSecOps Analyst for top industry clinet. This candidate will serve as a hands-on administrator within a mature DevSecOps program, partnering closely with security and development teams to drive application security initiatives. The ideal candidate will manage vulnerability findings, support GitHub Enterprise security administration, maintain CI/CD security controls, and help ensure secure software delivery practices across the organization. This role offers the opportunity to work at the intersection of cybersecurity, software development, and cloud technologies while influencing secure coding practices and supporting enterprise-wide security programs.