DevSecOps Engineer

Quality It Resourcing — Canada · Posted ~1 hour ago

Mid Contract

Skills

DevSecOps CI/CD Security testing Cloud-native platforms Containerization Infrastructure management Jenkins Containers SAST DAST

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A DevSecOps engineering role focused on integrating security into software delivery, improving automated pipelines, modernizing deployment processes, and maintaining reliable infrastructure in a collaborative environment.

Highlights

One-year engineering engagement with potential extension, benefits package, and an opportunity to improve secure software delivery practices across development teams.

Description

Job Title: DevSecOps Engineer Duration: 1-year term (extension possible) Salary + vacation + health benefits For this role, candidates must complete the Karat coding assessment Key Responsibilities Promote a DevSecOps Culture: Foster collaboration, open communication, and shared responsibility across development, security, and operations teams.Integrate Security Early (Shift Left): Collaborate with security teams to embed automated security testing (SAST, DAST, dependency scanning, and container scanning) into CI/CD pipelines.Design Resilient Delivery Pipelines: Architect and optimize automated build, test, and deployment pipelines that emphasize fast feedback loops, repeatability, and minimal manual intervention.Lead CI/CD Migrations: Drive the migration of legacy build and deployment pipelines (e.g., Jenkins, UrbanCode uDeploy, Lightspeed Classic) to modern, cloud-native, containerized CI/CD platforms.Infrastructure Maintenance & Capacity Planning: Manage, maintain, and monitor infrastructure health. Perform proactive capacity planning, resource forecasting, and scaling to ensure optimal performance and cost efficiency.Implement Infrastructure as Code (IaC)Tekton, Harness, UrbanCode Deploy, TeamCity, Jenkins, OpenShift, Kubernetes, Helm, SonarQube, SAST/DAST tools, HashiCorp Vault.