Senior DevSecOps Engineer
Core
Lead DevSecOps maturity initiatives and integrate security tools into CI/CD pipelines to secure the software development lifecycle.
Role type
Senior DevSecOps Engineer (Technical Reference & Lead)
Builds
Secure CI/CD pipelines, security tool integrations, and organizational security standards
Domain
Software Development / Cybersecurity / DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
CI/CD pipeline security integration, vulnerability triage and remediation, security maturity assessment (BSIMM, OWASP), secure software development practices, technical mentorship, security policy alignment, automation scripting
Preferred skills
Threat modeling, secure design reviews, Application Security KPI definition, regulatory compliance alignment
Technologies
GitLab, Azure DevOps, CloudBees, Python, Bash, PowerShell, SAST, SCA, DAST, IAST, Secrets Management, IaC Scanning
Responsibilities
Lead DevSecOps maturity assessments against frameworks like BSIMM and OWASP DSOMM; Design and coordinate security control integration into CI/CD pipelines; Establish vulnerability triage and remediation processes with defined SLAs; Provide technical mentorship to security, development, and DevSecOps teams; Develop and maintain security standards, guidelines, and operational runbooks; Monitor and report on Application Security KPIs and maturity indicators.
Seniority
Senior, hands-on IC with leadership responsibilities