{"schemaVersion":"jobsearcher.job.v1","id":"d109f5c58cdcddf3c4e2cf9a","url":"https://jobsearcher.com/jobs/d109f5c58cdcddf3c4e2cf9a","canonicalUrl":"https://jobsearcher.com/jobs/d109f5c58cdcddf3c4e2cf9a","title":"DevSecOps Engineer","description":"Remote300 Colonial Center ParkwayLake MaryFLUS\nContract (6 months)\nPublished 1 month ago\nSecurity Architecture Reviews\nApplication Security\nAI - Assisted Development\nSDLC\nAt BNY, our culture allows us to run our company better and enables you to grow and succeed. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world’s investible assets. Every day, our teams harness cutting-edge AI and breakthrough technologies to collaborate with clients, driving transformative solutions that redefine industries and uplift communities worldwide.\nRecognized as a top destination for innovators and champions of inclusion, BNY is where bold ideas meet advanced technology and exceptional talent. Together, we power the future of finance – and this is what #LifeAtBNY is all about. Join us and be part of something extraordinary.\nJob Summary:\nWe are seeking an DevSecOps Engineer to support enterprise application development teams by integrating security best practices throughout the Software Development Lifecycle (SDLC). This role is focused on application security architecture reviews, secure coding practices, vulnerability management, threat modeling, and collaboration with development teams to ensure applications are secure, compliant, and fit for purpose.\nThis role is a remote role that is also open to candidates who are interested in coming onsite located in Lake Mary, FL, Pittsburgh, PA, or New York, NY.\nKey Responsibilities:\nApplication Security Consulting: Serve as a Subject Matter Expert (SME) for application security initiatives, providing guidance and recommendations to development teams throughout the SDLC\nSecurity Architecture Reviews: Conduct security assessments and architecture reviews for new applications, platforms, and technology solutions to ensure compliance with security standards and best practices\nSecure Development Practices: Establish and promote secure coding guidelines, vulnerability management processes, and application security standards across development teams\nVulnerability Assessment & Remediation: Identify security vulnerabilities through code reviews, security testing, and assessment activities while partnering with development teams on remediation strategies\nCode Review & Security Testing: Perform static, dynamic, and manual source code reviews, secure code analysis, and application security assessments\nThreat Modeling: Conduct threat modeling exercises during application design and development phases to identify and mitigate potential security risks\nDevSecOps Integration: Partner with engineering teams to integrate security controls, automated testing, and security tooling into CI/CD and DevOps pipelines\nSecurity Tool Enablement: Support developers in utilizing security scanning tools, vulnerability management platforms, and secure development technologies\nRisk Management: Track security findings, technical debt, remediation activities, and compliance requirements while ensuring timely resolution of security issues\nClient & Stakeholder Engagement: Collaborate with internal stakeholders and external clients to communicate security requirements, recommendations, and risk mitigation strategies\nAI Security Evaluation: Assist with security reviews of AI-enabled platforms and evaluate opportunities for leveraging AI development tools within secure software development practices\nContinuous Improvement: Stay current on emerging security threats, attack vectors, application security trends, and evolving industry best practices\nQualifications:\n3+ years of experience in Application Security, Security Engineering, Security Architecture, Software Development, or a related cybersecurity role\nBachelor's degree in Computer Science, Cybersecurity, Information Security, or a related field\nExperience performing application security assessments, including penetration testing, secure code reviews, and vulnerability analysis\nStrong understanding of secure software development lifecycle (SSDLC) principles and secure coding best practices\nExperience identifying and remediating common application vulnerabilities, including OWASP Top 10 risks\nAbility to partner with development teams, conduct security architecture reviews, and provide guidance on secure application design\nFamiliarity with programming languages such as Java, Python, or C/C++\nStrong communication, presentation, and stakeholder management skills\nExposure to AI-assisted development tools or AI-enabled applications\nPreferred Experience:\nExperience supporting DevSecOps practices and integrating security into CI/CD pipelines\nExperience working in large enterprise or regulated environments\nBackground as a software developer who transitioned into application security\nWhy Join Us:\nThis role offers a unique opportunity to serve as a security leader embedded within enterprise software development teams, helping shape secure application design and development practices across the organization. You'll work closely with developers, architects, security professionals, and business stakeholders to drive security improvements, influence engineering decisions, and strengthen application security posture at scale.\nAt BNY, our culture speaks for itself, check out the latest BNY news at:\nBNY Newsroom\nBNY LinkedIn\nHere’s a few of our recent awards:\nAmerica’s Most Innovative Companies, Fortune, 2025\nWorld’s Most Admired Companies, Fortune 2025\n“Most Just Companies”, Just Capital and CNBC, 2025\nPay Rate Range\nMin Pay Rate$58.4\nMax Pay Rate$73\nCurrencyUSD\nUnithourly\nUSD58.473HOUR\nAdditional Notes\nApplications will be accepted on an ongoing basis.\nThis posting is for a contract assignment with Tundra Technical Solutions to provide services to Bank of New York (BNY). Please note that this is not a full-time employment opportunity. Candidates selected for this role will be engaged as contractors for the specified duration of the project. For any inquiries regarding the terms of the contract or engagement, please contact Tundra Technical Solutions directly.\nBenefits Information\nOptional benefits offering include medical, dental, vision and retirement benefits via Tundra Technical Solutions.","company":"BNY","rawCompany":"bny","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-03T14:50:39.939Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"Remote300 Colonial Center ParkwayLake MaryFLUS\nContract (6 months)\nPublished 1 month ago\nSecurity Architecture Reviews\nApplication Security\nAI - Assisted Development\nSDLC\nAt BNY, our culture allows us to run our company better and enables you to grow and succeed. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world’s investible assets. Every day, our teams harness cutting-edge AI and breakthrough technologies to collaborate with clients, driving transformative solutions that redefine industries and uplift communities worldwide.\nRecognized as a top destination for innovators and champions of inclusion, BNY is where bold ideas meet advanced technology and exceptional talent. Together, we power the future of finance – and this is what #LifeAtBNY is all about. Join us and be part of something extraordinary.\nJob Summary:\nWe are seeking an DevSecOps Engineer to support enterprise application development teams by integrating security best practices throughout the Software Development Lifecycle (SDLC). This role is focused on application security architecture reviews, secure coding practices, vulnerability management, threat modeling, and collaboration with development teams to ensure applications are secure, compliant, and fit for purpose.\nThis role is a remote role that is also open to candidates who are interested in coming onsite located in Lake Mary, FL, Pittsburgh, PA, or New York, NY.\nKey Responsibilities:\nApplication Security Consulting: Serve as a Subject Matter Expert (SME) for application security initiatives, providing guidance and recommendations to development teams throughout the SDLC\nSecurity Architecture Reviews: Conduct security assessments and architecture reviews for new applications, platforms, and technology solutions to ensure compliance with security standards and best practices\nSecure Development Practices: Establish and promote secure coding guidelines, vulnerability management processes, and application security standards across development teams\nVulnerability Assessment & Remediation: Identify security vulnerabilities through code reviews, security testing, and assessment activities while partnering with development teams on remediation strategies\nCode Review & Security Testing: Perform static, dynamic, and manual source code reviews, secure code analysis, and application security assessments\nThreat Modeling: Conduct threat modeling exercises during application design and development phases to identify and mitigate potential security risks\nDevSecOps Integration: Partner with engineering teams to integrate security controls, automated testing, and security tooling into CI/CD and DevOps pipelines\nSecurity Tool Enablement: Support developers in utilizing security scanning tools, vulnerability management platforms, and secure development technologies\nRisk Management: Track security findings, technical debt, remediation activities, and compliance requirements while ensuring timely resolution of security issues\nClient & Stakeholder Engagement: Collaborate with internal stakeholders and external clients to communicate security requirements, recommendations, and risk mitigation strategies\nAI Security Evaluation: Assist with security reviews of AI-enabled platforms and evaluate opportunities for leveraging AI development tools within secure software development practices\nContinuous Improvement: Stay current on emerging security threats, attack vectors, application security trends, and evolving industry best practices\nQualifications:\n3+ years of experience in Application Security, Security Engineering, Security Architecture, Software Development, or a related cybersecurity role\nBachelor's degree in Computer Science, Cybersecurity, Information Security, or a related field\nExperience performing application security assessments, including penetration testing, secure code reviews, and vulnerability analysis\nStrong understanding of secure software development lifecycle (SSDLC) principles and secure coding best practices\nExperience identifying and remediating common application vulnerabilities, including OWASP Top 10 risks\nAbility to partner with development teams, conduct security architecture reviews, and provide guidance on secure application design\nFamiliarity with programming languages such as Java, Python, or C/C++\nStrong communication, presentation, and stakeholder management skills\nExposure to AI-assisted development tools or AI-enabled applications\nPreferred Experience:\nExperience supporting DevSecOps practices and integrating security into CI/CD pipelines\nExperience working in large enterprise or regulated environments\nBackground as a software developer who transitioned into application security\nWhy Join Us:\nThis role offers a unique opportunity to serve as a security leader embedded within enterprise software development teams, helping shape secure application design and development practices across the organization. You'll work closely with developers, architects, security professionals, and business stakeholders to drive security improvements, influence engineering decisions, and strengthen application security posture at scale.\nAt BNY, our culture speaks for itself, check out the latest BNY news at:\nBNY Newsroom\nBNY LinkedIn\nHere’s a few of our recent awards:\nAmerica’s Most Innovative Companies, Fortune, 2025\nWorld’s Most Admired Companies, Fortune 2025\n“Most Just Companies”, Just Capital and CNBC, 2025\nPay Rate Range\nMin Pay Rate$58.4\nMax Pay Rate$73\nCurrencyUSD\nUnithourly\nUSD58.473HOUR\nAdditional Notes\nApplications will be accepted on an ongoing basis.\nThis posting is for a contract assignment with Tundra Technical Solutions to provide services to Bank of New York (BNY). Please note that this is not a full-time employment opportunity. Candidates selected for this role will be engaged as contractors for the specified duration of the project. For any inquiries regarding the terms of the contract or engagement, please contact Tundra Technical Solutions directly.\nBenefits Information\nOptional benefits offering include medical, dental, vision and retirement benefits via Tundra Technical Solutions.","datePosted":"2026-08-03T14:50:39.939Z","dateModified":"2026-08-03T14:50:39.939Z","hiringOrganization":{"@type":"Organization","name":"BNY","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"d109f5c58cdcddf3c4e2cf9a"},"url":"https://jobsearcher.com/jobs/d109f5c58cdcddf3c4e2cf9a"}}