
Senior DevSecOps Engineer
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in Colorado.
• Collaborate with the DevOps team to incorporate SAST, DAST, and SCA security scanning into CI/CD pipelines and promote remediation prior to production.
• Set up, adjust, and strengthen WAF rules across various web applications.
• Develop and sustain EDR, DLP, vulnerability scanning, and remediation, as well as SIEM/XDR tools across servers and endpoints.
• Oversee the management of secrets and credentials within build pipelines, including vault-based storage, rotation, and least-privilege service accounts.
• Implement PCI, SOC2, and ISO technical controls, encompassing SAQ completion, quarterly ASV scans, and disaster recovery execution.
• Fortify containerized and cloud-native environments, including image scanning and configuration of Kubernetes.
• Organize penetration testing initiatives and ensure remediation aligns with SLA timelines.
• Conduct security awareness training sessions and oversee AI usage, which includes approved tools, code-generation governance, and supply-chain monitoring.
• Proven experience in security engineering or DevSecOps with direct involvement in pipeline and infrastructure-level security.
• Proficiency in configuring IAM and SSO platforms like Okta and Auth0, along with Azure conditional access.
• Experience in embedding security throughout CI/CD workflows using security and dependency scanning, secrets management, and policy-as-code.
• Demonstrated success in hardening containerized and cloud-native environments, including Kubernetes and image scanning.
• Familiarity with executing PCI, SOC2, or similar compliance technical controls, which includes scans, SAQs, and evidence collection.
• Background in administering centralized cybersecurity solutions, endpoint security, and data loss prevention.
• Experience in organizing or assisting with security awareness and training initiatives.
• Exposure to governance of AI tooling, including MCP inventories, code-generation release gating, or supply-chain oversight.
• Excellent communication skills tailored for both technical and non-technical audiences.
• Cooperative experience in assisting engineers to implement security best practices.
• Ability to empower delivery teams to work efficiently and remove obstacles.
• A growth-oriented mindset.
• Reliable, high-speed internet connection for remote work.
• Annual Bonus Program with eligibility for a $12,000 bonus.
• Comprehensive medical, dental, and vision coverage options with substantial employer contributions.
• $500 employer HSA contribution for HSA-compatible plans.
• Flexibility to choose your work location - remote, in-office, or a combination of both.
• Resources available to support mental health and emotional well-being.
• 12 weeks of fully paid parental leave for all new parents, including those through adoption, surrogacy, and foster care.
• 401(k) plan with 4% company matching.
• Trust-based (flexible) PTO policy.
• $900/year wellness allowance.
• Company-sponsored subscriptions, training, and support for professional and personal AI usage.
• Flexible working arrangements.
• Paid leave for recovery from miscarriage or stillbirth.
• HSA and wellness allowance contributions can be utilized for childcare, eldercare, adoption fees, and fertility treatments such as IVF.
CVS Health
Devoteam
Aspirion
Goodgame Studios
Get handpicked remote jobs straight to your inbox weekly.