Summary
✨ AI‑Generated
A DevSecOps engineering role focused on embedding security into modern software delivery. You will build secure CI/CD pipelines, automate infrastructure, assess vulnerabilities, manage security tooling, strengthen cloud and container security, and coordinate remediation across development, security, cloud, and operations teams.
Highlights
Security-focused engineering role spanning the entire software lifecycle, with hands-on work in secure CI/CD, infrastructure automation, vulnerability management, application security, cloud security, and container security.
Description
ResponsibilitiesIntegrate security controls and best practices throughout the software development and deployment lifecycle.
Develop and improve CI/CD pipelines to support secure, efficient, and reliable application releases.
Automate infrastructure provisioning, configuration, and security processes using infrastructure-as-code and scripting tools.
Evaluate vulnerabilities across applications, cloud environments, containers, and infrastructure, and recommend appropriate remediation measures.
Implement and manage application security tools such as SAST, DAST, SCA, secrets management, and vulnerability scanning solutions.
Collaborate with development, security, cloud, and operations teams to embed security into engineering processes and workflows.
Strengthen cloud and container security by applying appropriate access controls, configurations, monitoring, and security standards.
Review security findings, assess associated risks, and coordinate remediation activities with relevant technical teams.
Support the development of DevSecOps standards, security guardrails, technical documentation, and operational procedures.
Promote continuous improvement of security automation, engineering practices, and DevSecOps capabilities across technology environments.
RequirementsBachelor’s degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline.
3-5 years of relevant experience in DevOps, DevSecOps, cloud engineering, application security, cybersecurity, or a related technical field.
Strong knowledge of CI/CD, infrastructure-as-code, version control, scripting or automation, container technologies, and cloud platforms such as AWS, Azure, or GCP.
Practical understanding of application and infrastructure security, including vulnerability management, secure coding practices, security testing, access controls, and cloud security principles.
Strong analytical, problem-solving, communication, and stakeholder management skills, with the ability to work effectively across development, security, and operations teams.
Clarence Khoh
R1552376