
DevSecOps Engineer – Principal
Posted Sep 15

Posted Sep 15
This is a fully remote position, open to applicants in United States.
• Assist in the design, implementation, operation, and upkeep of secure, scalable Cloud products and services within a Cloud-based framework.
• Guarantee the effectiveness, security, and automation of development and operational workflows.
• Act as a vital member of the team dedicated to supporting secure Cloud products and services.
• Execute and oversee DevSecOps tools, infrastructure, compliance measures, and CI/CD security integrations.
• A Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related discipline with over 9 years of experience in DevOps/DevSecOps engineering roles; or a Master's degree with 7 years of experience.
• Candidates must be U.S. Citizens.
• Candidates must be eligible to obtain a secret clearance.
• Expert-level skills in Kubernetes, encompassing cluster management, workload deployment, and security hardening; experience with EKS and Helm is required.
• Extensive practical experience with AWS services including EKS, ECS, EC2, Lambda, VPC, IAM, KMS, Secrets Manager, S3, RDS, CloudWatch, CloudTrail, and AWS Config; specific expertise in AWS GovCloud environments.
• Strong knowledge of Infrastructure as Code using Terraform for provisioning, management, and security scanning of infrastructure.
• Proven experience in implementing and managing CI/CD pipelines using GitLab CI/CD or GitHub Actions, along with a strong understanding of Git workflows and GitOps.
• Comprehensive knowledge of FedRAMP and FISMA compliance standards.
• Hands-on experience with the implementation of NIST 800-171 and 800-53 security controls, supporting authorization processes, and sustaining continuous monitoring programs.
• Experience in creating and maintaining security compliance documentation, such as System Security Plans (SSPs), Plan of Action and Milestones (POA&Ms), and security assessment artifacts.
• Proficiency with SIEM platforms like Splunk and AWS Security Hub.
• Familiarity with vulnerability scanning tools including Nessus and Tenable.io.
• Experience with SAST/DAST tools such as SonarQube and OWASP ZAP.
• Knowledge of secrets management using HashiCorp Vault and AWS Secrets Manager.
• Experience with cloud security posture management through Orca Security.
• Experience in integrating SAST/DAST, software composition analysis (SCA), container image scanning, and secrets detection into CI/CD workflows.
• Proficiency in scripting languages like Python.
• Experience with observability and monitoring tools such as Prometheus, Grafana, or the ELK Stack.
• Familiarity with zero-trust architecture principles and service mesh technologies like Istio or Linkerd.
• Relevant certifications such as CKA, CKS, AWS Certified Solutions Architect, AWS Certified Security Specialty, CISSP, or CompTIA Security+ are highly preferred.
• Remote work: 100% remote within the United States.
• Equal Opportunity Employer.
Shield AI
Netflix
Travoom
HeroSoftware GmbH - Shopify Apps
Get handpicked remote jobs straight to your inbox weekly.