{"schemaVersion":"jobsearcher.job.v1","id":"c4d684362e2f80237003dda4","url":"https://jobsearcher.com/jobs/c4d684362e2f80237003dda4","canonicalUrl":"https://jobsearcher.com/jobs/c4d684362e2f80237003dda4","title":"DevSecOps Engineer","description":"DevSecOps Engineer\nCharlotte, NC (Hybrid) Local\nW2\nNo opt/cpt/H1\nCandidate with employer please do not apply\nKey Responsibilities:\nDesign, build, and maintain CI/CD pipelines using GitHub Actions (reusable/caller workflow pattern) and Harness CD (rolling, canary, and blue-green deployment strategies).\nImplement event-driven deployment triggers (e.g., Kafka EDA bus integration between CI and CD).\nChampion shift-left security by embedding SAST, SCA, secret scanning, and code quality gates at PR time, ensuring vulnerabilities are caught before merge, not after deployment.\nIntegrate and manage Checkmarx (SAST), Black Duck (SCA/license compliance), SonarQube (code quality/security hotspots), and GitHub Secret Scanning into CI pipelines as hard-gate merge checks.\nPerform container image scanning using Prisma Cloud and Artifactory Xray; triage and remediate OS-level and application-layer CVEs.\nImplement and enforce artifact signing (GPG) and integrity verification as part of the release pipeline.\nManage vulnerability lifecycle from scan ingestion through ServiceNow AVR (Application Vulnerability Repository) to remediation closure.\nPartner with cross functional teams to improve system reliability, performance, and deployment workflows.\nCollaborate with AppSec and SOC teams on findings from Splunk Enterprise Security rules and AppDynamics threat detection (OWASP attack patterns).\nDeploy, manage, and troubleshoot workloads on OpenShift Container Platform (OCP) across multi-data-center environments (DEV, UAT, PROD, DR).\nAuthor and maintain Helm charts with environment-specific value overlays, including templates for Deployments, StatefulSets, Services, Ingress/Routes, HPA, PodDisruptionBudgets, and NetworkPolicies.\nManage Istio service mesh configurations for canary traffic shifting and mTLS enforcement.\nAutomate TLS/mTLS certificate lifecycle using Venafi + cert-manager with auto-renewal policies.\nBuild and maintain monitoring stacks using Splunk, Prometheus, Grafana, and AppDynamics for APM, error tracking, and performance baselines.\nTroubleshoot application issues, resolve incidents, and manage ticket requests across Jira projects in a timely manner.\nDevelop and maintain automation scripts using Python, Bash/Shell, PowerShell, or Perl.\nContribute to Agile ceremonies and participate in continuous improvement initiatives.\nRequired Qualifications:\n10+ years of overall IT experience, including 5+ years as a DevOps/DevSecOps Engineer.\nStrong hands-on experience with GitHub Actions, building reusable workflows, composite actions, and matrix strategies for multi-language CI pipelines.\nHands-on experience with Harness CD or equivalent enterprise CD platform (pipeline-as-code, environment promotion, approval gates, rollback strategies).\nProduction experience operating OpenShift Container Platform (OCP) or Kubernetes, including Helm chart authoring, namespace administration, RBAC, SCC enforcement, and troubleshooting pod/node issues.\nDeep understanding of shift-left security tooling: SAST (Checkmarx or equivalent), SCA (Black Duck/Snyk), secret scanning, and container image scanning (Prisma Cloud/Trivy/Xray).\nProficiency in at least two scripting languages: Python, Bash/Shell, PowerShell, or Perl.\nExperience with Java-based environments (Spring Boot, Gradle) and SQL-driven systems (Oracle preferred).\nHands-on experience with HashiCorp Vault or equivalent secrets management platform.\nDemonstrated ability to troubleshoot complex, multi-tier application issues across containers, networking, databases, and middleware.\nStrong understanding of GitFlow branching strategies, pull request workflows, mandatory peer review, and code coverage enforcement.\nStrong communication skills and experience working in an Agile development environment.\nPreferred Qualifications\nExperience in financial services, banking, or other regulated industries (PCI-DSS, SOX, AML/KYC compliance awareness).\nExposure to AI/ML technologies or Python based automation.\nFamiliarity with JFrog Artifactory for artifact management, internal registry proxying, and Xray policy enforcement.\nHands-on experience with Splunk (log analysis, ES correlation rules) or Grafana/Prometheus for observability.\nExperience contributing to governance-as-code frameworks or platform engineering teams.\nFamiliarity with CI/CD pipelines, cloud platforms, or containerization tools\nJob Type: Contract\nPay: $60.00 - $70.00 per hour\nWork Location: Hybrid remote in Charlotte, NC 28202","company":"Tech Interacts","rawCompany":"tech interacts","city":"Charlotte","state":"NC","isRemote":false,"isActive":false,"createdAt":"2026-07-16T17:09:31.603Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"DevSecOps Engineer\nCharlotte, NC (Hybrid) Local\nW2\nNo opt/cpt/H1\nCandidate with employer please do not apply\nKey Responsibilities:\nDesign, build, and maintain CI/CD pipelines using GitHub Actions (reusable/caller workflow pattern) and Harness CD (rolling, canary, and blue-green deployment strategies).\nImplement event-driven deployment triggers (e.g., Kafka EDA bus integration between CI and CD).\nChampion shift-left security by embedding SAST, SCA, secret scanning, and code quality gates at PR time, ensuring vulnerabilities are caught before merge, not after deployment.\nIntegrate and manage Checkmarx (SAST), Black Duck (SCA/license compliance), SonarQube (code quality/security hotspots), and GitHub Secret Scanning into CI pipelines as hard-gate merge checks.\nPerform container image scanning using Prisma Cloud and Artifactory Xray; triage and remediate OS-level and application-layer CVEs.\nImplement and enforce artifact signing (GPG) and integrity verification as part of the release pipeline.\nManage vulnerability lifecycle from scan ingestion through ServiceNow AVR (Application Vulnerability Repository) to remediation closure.\nPartner with cross functional teams to improve system reliability, performance, and deployment workflows.\nCollaborate with AppSec and SOC teams on findings from Splunk Enterprise Security rules and AppDynamics threat detection (OWASP attack patterns).\nDeploy, manage, and troubleshoot workloads on OpenShift Container Platform (OCP) across multi-data-center environments (DEV, UAT, PROD, DR).\nAuthor and maintain Helm charts with environment-specific value overlays, including templates for Deployments, StatefulSets, Services, Ingress/Routes, HPA, PodDisruptionBudgets, and NetworkPolicies.\nManage Istio service mesh configurations for canary traffic shifting and mTLS enforcement.\nAutomate TLS/mTLS certificate lifecycle using Venafi + cert-manager with auto-renewal policies.\nBuild and maintain monitoring stacks using Splunk, Prometheus, Grafana, and AppDynamics for APM, error tracking, and performance baselines.\nTroubleshoot application issues, resolve incidents, and manage ticket requests across Jira projects in a timely manner.\nDevelop and maintain automation scripts using Python, Bash/Shell, PowerShell, or Perl.\nContribute to Agile ceremonies and participate in continuous improvement initiatives.\nRequired Qualifications:\n10+ years of overall IT experience, including 5+ years as a DevOps/DevSecOps Engineer.\nStrong hands-on experience with GitHub Actions, building reusable workflows, composite actions, and matrix strategies for multi-language CI pipelines.\nHands-on experience with Harness CD or equivalent enterprise CD platform (pipeline-as-code, environment promotion, approval gates, rollback strategies).\nProduction experience operating OpenShift Container Platform (OCP) or Kubernetes, including Helm chart authoring, namespace administration, RBAC, SCC enforcement, and troubleshooting pod/node issues.\nDeep understanding of shift-left security tooling: SAST (Checkmarx or equivalent), SCA (Black Duck/Snyk), secret scanning, and container image scanning (Prisma Cloud/Trivy/Xray).\nProficiency in at least two scripting languages: Python, Bash/Shell, PowerShell, or Perl.\nExperience with Java-based environments (Spring Boot, Gradle) and SQL-driven systems (Oracle preferred).\nHands-on experience with HashiCorp Vault or equivalent secrets management platform.\nDemonstrated ability to troubleshoot complex, multi-tier application issues across containers, networking, databases, and middleware.\nStrong understanding of GitFlow branching strategies, pull request workflows, mandatory peer review, and code coverage enforcement.\nStrong communication skills and experience working in an Agile development environment.\nPreferred Qualifications\nExperience in financial services, banking, or other regulated industries (PCI-DSS, SOX, AML/KYC compliance awareness).\nExposure to AI/ML technologies or Python based automation.\nFamiliarity with JFrog Artifactory for artifact management, internal registry proxying, and Xray policy enforcement.\nHands-on experience with Splunk (log analysis, ES correlation rules) or Grafana/Prometheus for observability.\nExperience contributing to governance-as-code frameworks or platform engineering teams.\nFamiliarity with CI/CD pipelines, cloud platforms, or containerization tools\nJob Type: Contract\nPay: $60.00 - $70.00 per hour\nWork Location: Hybrid remote in Charlotte, NC 28202","datePosted":"2026-07-16T17:09:31.603Z","dateModified":"2026-07-16T17:09:31.603Z","hiringOrganization":{"@type":"Organization","name":"Tech Interacts","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Charlotte","addressRegion":"NC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"c4d684362e2f80237003dda4"},"url":"https://jobsearcher.com/jobs/c4d684362e2f80237003dda4"}}