DevSecOps Engineer – Principal

Posted Sep 15

This is a fully remote position, open to applicants in United States.

📋 Description

• Assist in the design, implementation, operation, and upkeep of secure, scalable Cloud products and services within a Cloud-based framework.

• Guarantee the effectiveness, security, and automation of development and operational workflows.

• Act as a vital member of the team dedicated to supporting secure Cloud products and services.

• Execute and oversee DevSecOps tools, infrastructure, compliance measures, and CI/CD security integrations.


⛳️ Requirements

• A Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related discipline with over 9 years of experience in DevOps/DevSecOps engineering roles; or a Master's degree with 7 years of experience.

• Candidates must be U.S. Citizens.

• Candidates must be eligible to obtain a secret clearance.

• Expert-level skills in Kubernetes, encompassing cluster management, workload deployment, and security hardening; experience with EKS and Helm is required.

• Extensive practical experience with AWS services including EKS, ECS, EC2, Lambda, VPC, IAM, KMS, Secrets Manager, S3, RDS, CloudWatch, CloudTrail, and AWS Config; specific expertise in AWS GovCloud environments.

• Strong knowledge of Infrastructure as Code using Terraform for provisioning, management, and security scanning of infrastructure.

• Proven experience in implementing and managing CI/CD pipelines using GitLab CI/CD or GitHub Actions, along with a strong understanding of Git workflows and GitOps.

• Comprehensive knowledge of FedRAMP and FISMA compliance standards.

• Hands-on experience with the implementation of NIST 800-171 and 800-53 security controls, supporting authorization processes, and sustaining continuous monitoring programs.

• Experience in creating and maintaining security compliance documentation, such as System Security Plans (SSPs), Plan of Action and Milestones (POA&Ms), and security assessment artifacts.

• Proficiency with SIEM platforms like Splunk and AWS Security Hub.

• Familiarity with vulnerability scanning tools including Nessus and Tenable.io.

• Experience with SAST/DAST tools such as SonarQube and OWASP ZAP.

• Knowledge of secrets management using HashiCorp Vault and AWS Secrets Manager.

• Experience with cloud security posture management through Orca Security.

• Experience in integrating SAST/DAST, software composition analysis (SCA), container image scanning, and secrets detection into CI/CD workflows.

• Proficiency in scripting languages like Python.

• Experience with observability and monitoring tools such as Prometheus, Grafana, or the ELK Stack.

• Familiarity with zero-trust architecture principles and service mesh technologies like Istio or Linkerd.

• Relevant certifications such as CKA, CKS, AWS Certified Solutions Architect, AWS Certified Security Specialty, CISSP, or CompTIA Security+ are highly preferred.


🏝️ Benefits

• Remote work: 100% remote within the United States.

• Equal Opportunity Employer.

People also viewed

Shield AI1 day ago

Staff Engineer, State Estimation

US flagUnited States OnlyFull-timeFull-stack Engineer$200k – $300k/year
ApplyView job
Netflix1 day ago

Software Engineer L5, Open Connect Platform

US flagUnited States OnlyFull-timeFull-stack Engineer$388k – $558k/year
ApplyView job
Travoom1 day ago

Principal Full Stack Engineer – Travel & Ticketing

US flagTexas OnlyFull-timeFull-stack Engineer
ApplyView job
HeroSoftware GmbH - Shopify Apps1 day ago

Senior Full Stack Developer

DE flagGermany OnlyFull-timeFull-stack Engineer€50k – €80k/year
ApplyView job
EverCommerce1 day ago

Lead Software Engineer

US flagUnited States OnlyFull-timeFull-stack Engineer$170k – $195k/year
ApplyView job
GiveDirectly1 day ago

Senior Software Engineer – Fundraising

US flagUnited States, +2 more countriesFull-timeFull-stack Engineer$181.1k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers