DevSecOps Engineer
Core
Embed security into the software delivery lifecycle by building hardened CI/CD pipelines, managing cloud infrastructure as code, and securing container/Kubernetes workloads for a digital manufacturing platform.
Role type
Senior DevSecOps Engineer
Builds
Automated CI/CD pipelines with security gates, policy-as-code guardrails, and secure cloud infrastructure
Domain
Manufacturing / Cloud Security / DevSecOps
Required skills
CI/CD pipeline automation, Infrastructure as Code (Terraform/Bicep), Container and Kubernetes hardening, Secrets management, Vulnerability triage, Software supply chain security, Cloud security posture management, Python/Go/Bash scripting, SAST/SCA tool integration, Policy-as-code
Preferred skills
Experience with Blackduck or Rapid7, Knowledge of security frameworks and audit evidence generation
Technologies
Azure, AWS, GitHub Actions, GitLab CI, Jenkins, Terraform, Bicep, CloudFormation, Pulumi, Docker, Kubernetes, Python, Go, Bash, PowerShell, Blackduck, Rapid7
Responsibilities
Design and maintain CI/CD pipelines with automated security gates; Provision and manage cloud infrastructure as code; Harden container and Kubernetes workloads; Own secrets management and pipeline authentication; Triage and prioritize vulnerability findings; Build and maintain software supply chain controls; Instrument delivery environments for security observability; Automate cloud security posture assessment; Support control mapping and audit evidence collection; Raise the security baseline of other engineers through mentoring and tooling.