DevSecOps Engineer
Core
Embed application security controls into CI/CD pipelines, conduct code reviews, and perform threat modeling to secure applications and APIs.
Role type
Senior DevSecOps Engineer (Application Security)
Builds
Secure CI/CD pipelines, automated security controls, and developer workflows for application and API platforms
Domain
Retail / Wholesale / Application Security
Deliverable
production ML models | product features | infrastructure
Required skills
Application security (SDLC), CI/CD integrations, code review, threat modeling, OWASP Top 10, SAMM, ASVS, FIRST principles, Java, C++, Python, JavaScript, LLMs, AI, agentic coding platforms
Preferred skills
Mentoring security teams, raising security awareness, familiarity with monolithic and microservice architectures
Responsibilities
Embed security controls in CI/CD pipelines, investigate and remediate security findings, conduct targeted code reviews, implement security automations, perform threat modeling, define best practices with the security community
Seniority
Senior, hands-on IC
