
Staff Engineer – DevSecOps
Posted Sep 11

Posted Sep 11
This is a fully remote position, open to applicants in California.
• Safeguard the organization’s AI infrastructure, data, and systems against cybersecurity threats.
• Develop AI-assisted development tools such as coding copilots or agentic coding tools.
• Create, implement, and continuously enhance security solutions, AI guardrails, and protocols.
• Recognize weaknesses and vulnerabilities and apply both traditional and AI-focused solutions.
• Collaborate with teams on technology initiatives to enhance the security of applications, cloud, and AI infrastructure.
• Investigate and respond to security events and incidents effectively.
• Establish threat-containment procedures, document findings, and escalate issues as necessary.
• Monitor and analyze security logs and events from a variety of sources.
• Keep abreast of threat landscapes, emerging trends, and AI and cybersecurity solutions.
• Offer cybersecurity expertise to internal staff, vendors, and partners.
• Adhere to industry and Exelixis best practices within a SOX- and FDA-regulated environment.
• Perform additional duties as assigned and comply with policies and standards.
• No supervisory responsibilities.
• Bachelor’s degree in a related field and 7 years of relevant experience; or a Master’s degree in a related field and 5 years of relevant experience; or a suitable combination of education and experience.
• Preferred certifications include CISSP, CISM, CEH, OSCP, GIAC, or similar cybersecurity credentials.
• Proficient in the operation and implementation of cybersecurity tools.
• Skilled in designing, implementing, and managing security controls within cloud platforms.
• Experienced with IAM, VPC, Zero Trust principles, IaC, IaaS, Security Groups, Key Management Services, SDLC, CI/CD pipelines, and Network Security.
• Background in IT Security or related infrastructure management within an enterprise environment.
• Proven experience in investigating and responding to cyber events and incidents.
• Demonstrated ability to enhance organizational security awareness and resilience.
• Familiarity with cloud, system, and application security.
• Experience in administering IT systems.
• Competent in Agile environments and using ticketing systems such as JIRA and JSM.
• Strong foundational knowledge of general IT applications and infrastructure.
• Advanced skills in CLI and scripting languages, particularly Python and PowerShell.
• Advanced understanding of AWS.
• In-depth knowledge of IaC, SDLC, and CI/CD pipelines.
• Comprehensive knowledge of cybersecurity technologies and concepts.
• Capability to work with confidential data with minimal supervision.
• Ability to adjust to frequent changes in priorities and respond to ad-hoc requests.
• Willingness for occasional travel of up to 5%.
• 401k plan with generous company contributions.
• Group medical, dental, and vision coverage.
• Life and disability insurance.
• Flexible spending accounts.
• Discretionary annual bonus program.
• Opportunity to purchase company stock.
• Long-term incentives.
• 15 accrued vacation days in the first year.
• 17 paid holidays, including a company-wide winter shutdown in December.
• Up to 10 sick days throughout the calendar year.
• Necessary equipment, including dual monitors and ergonomic chairs.
• On-call availability for critical escalations.
Shield AI
Netflix
Travoom
HeroSoftware GmbH - Shopify Apps
Get handpicked remote jobs straight to your inbox weekly.