JOBSEARCHER

DevSecOps Engineer

Position Summary:Our partner is a healthcare organization operating mission-critical systems where security, reliability, and scale are non-negotiable. As they continue to innovate by embedding AI at the center of their services, they are adding a DevSecOps Engineer to support highly regulated environments. This work requires infrastructure that scales smoothly, code that is secure by design, and an approach where failure simply isn’t acceptable. The focus is on building and evolving AWS-based platforms using code, not clicks. This includes writing infrastructure as code, developing security automation, and embedding controls directly into delivery pipelines. You will partner closely with application engineers to ensure security is part of how software is built and deployed. The right person thinks like a developer first and understands how production systems behave at scale.Experience and Education:Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent practical experienceBackground as a software engineer, DevOps engineer, and DevSecOps engineer in production environmentsStrong hands-on coding experience in cloud or platform engineering contextsExperience designing and building AWS infrastructure using infrastructure as code (IaC)Demonstrated ability to embed security into development and deployment workflowsExperience supporting regulated systems such as healthcare, finance, or similarly high-trust environmentsSkills and Strengths:DevSecOpsAWSSoftware DevelopmentCloud SecurityTerraformInfrastructure as CodeTypeScriptNode.jsReactGitHub ActionsCI/CD PipelinesPolicy as CodeApplication SecuritySASTDASTSCAIAMAWS LambdaAPI GatewayPenetration TestingPrimary Job Responsibilities:Design and review AWS architectures with scalability and security as first principlesBuild and evolve cloud infrastructure to support new features and deploymentsWrite and maintain code that provisions, configures, and secures cloud infrastructureBuild and maintain CI/CD pipelines using GitHub ActionsEmbed security checks and controls directly into build and deployment workflowsDevelop security automation and policy-as-code using TypeScriptBuild and manage infrastructure using Terraform and infrastructure as code practicesPartner closely with application engineers to improve application securityReview infrastructure and application code with a security-first mindsetSupport production systems and help resolve reliability or security issuesLead DevSecOps practices through hands-on contribution rather than process aloneParticipate in security assessments, audits, and penetration testing activitiesContinuously improve the security posture of cloud platforms and delivery pipelinesEnsure systems meet the expectations of highly regulated, high-trust environments