
DevSecOps Engineer
Posted Jul 28

Posted Jul 28
This is a fully remote position, open to applicants in United States, +4 more states.
• Lead the advancement of the organization’s DevSecOps capabilities by establishing security initiatives, setting long-term objectives, and fostering a security-centric engineering culture.
• Collaborate with the DevOps team to enhance the security and resilience of Kubernetes (EKS), Istio, Service Mesh, and associated cloud-native infrastructure.
• Assist engineering teams during service transitions by integrating security best practices into operational workflows and facilitating effective knowledge transfer.
• Create and sustain policy-as-code frameworks and infrastructure validation tools utilizing technologies such as OPA and other compliance automation solutions.
• Enhance the security of infrastructure provisioning and deployment processes across Terraform, Ansible, and other Infrastructure-as-Code methodologies.
• Incorporate, maintain, and optimize security testing and scanning capabilities throughout the software development and release lifecycle.
• Develop automation for security monitoring, compliance assessments, and operational controls to boost efficiency and minimize manual tasks.
• Strong practical knowledge of contemporary DevOps principles and secure CI/CD pipeline architecture.
• Direct experience with Kubernetes or other enterprise-level container orchestration systems.
• Demonstrated experience with Infrastructure-as-Code and configuration management tools such as Terraform, Ansible, Chef, or similar technologies.
• Solid experience in managing production infrastructure, including web servers, databases, and related services.
• Sound understanding of networking concepts, including TCP/IP, routing principles, and the OSI model.
• Experience in securing distributed systems and microservices architectures.
• Proficient with Git or other source code version control systems.
• Practical experience in securing cloud environments, ideally AWS, although experience with GCP or other major cloud platforms is also beneficial.
• Ability to evaluate infrastructure security posture, identify vulnerabilities, and apply suitable remediation strategies.
• Experience in implementing identity and access management controls alongside security automation practices.
• Hands-on knowledge of secrets management platforms (such as Vault) and Privileged Access Management (PAM) solutions.
• Experience in integrating SAST, DAST, dependency scanning, container scanning, or similar security tools into CI/CD workflows.
• Good understanding of Secure Software Development Lifecycle (SSDLC) principles and familiarity with security maturity frameworks such as OWASP SAMM v2.
• English proficiency: Upper-intermediate or higher.
• 24 days of annual leave in addition to paid sick leave.
• Private health insurance along with a sports and wellbeing allowance.
• Recognition gifts for significant life events.
• Learning and development budget for courses, certifications, and conferences.
• Regular team events and company gatherings.
• Clear pathways for career advancement within a rapidly growing organization.
• Company-supported language learning opportunities.
TEKsystems
TEKsystems
Level Data
Level Data
Get handpicked remote jobs straight to your inbox weekly.