DevSecOps Engineer
Core
Lead the integration of security across the software development lifecycle (SDLC) by designing secure CI/CD pipelines, securing cloud-native architectures, and performing threat modeling.
Role type
Senior Security Engineer (DevSecOps)
Builds
Secure CI/CD pipelines, cloud-native architectures, and automated security workflows for financial software.
Domain
Financial services / Cloud Security / DevSecOps
Deliverable
production ML models | infrastructure
Required skills
CI/CD pipeline automation, AWS cloud security, Infrastructure as Code (Terraform), container security, application security tooling, Python/JavaScript scripting, threat modeling, compliance frameworks (PCI, ISO 27001)
Preferred skills
Generative AI security standards, CNAPP/CSPM tool operationalization, incident response
Technologies
GitHub Actions, Jenkins, GitLab CI, Azure DevOps, AWS (IAM, VPC, ECS/EKS, Lambda, S3, API Gateway), Wiz, Prisma Cloud, Terraform, CloudFormation, Docker, Kubernetes, OWASP
Responsibilities
Embed security controls and scanners into CI/CD pipelines; Secure cloud-native architectures across AWS; Define and maintain security policies for containerized and serverless workloads; Build real-time monitoring and automated remediation for AWS resources; Perform deep-dive threat modeling exercises on applications and designs; Develop security standards for Generative AI; Secure Infrastructure as Code templates and manage cloud primitives.
Seniority
Senior, hands-on IC