Senior DevSecOps Engineer
RemoteUnited States
Job Summary
Build and maintain security tooling in CI/CD pipelines, including SAST, DAST, secret scanning, and container image analysis. Implement policy-as-code gates, branch protections, and infrastructure baselines for AWS VPCs, IAM, and perimeter controls. Operate vulnerability scanning stacks across GitHub, AWS Inspector, Microsoft Defender, and CrowdStrike Falcon to triage findings and automate remediation workflows. Configure endpoint protection policies and develop hardening baselines for servers and developer workstations. Apply AWS AI services and Claude to scale vulnerability triage and generate remediation guidance. Partner with engineering teams to establish secure design reviews and self-service tooling, producing coverage metrics for audit purposes.
Required Qualifications
- 5–7 years in DevSecOps, application security, cloud security, or platform engineering, with hands-on build and automation responsibility
- Bachelor's degree or equivalent experience in Computer Science, Engineering, or related field
- Strong hands-on experience with AWS, GitHub Actions, Microsoft Defender, and CrowdStrike Falcon
- Proficiency in scripting and automation (Python, Bash, or similar) and infrastructure-as-code (Terraform, CloudFormation, or similar)
- Working knowledge of containers and orchestration, including securing container build and runtime
- Expertise in vulnerability management tooling and application threat modeling
- Proficiency using AI tools (AWS AI services, Claude) to improve engineering workflows
- Excellent documentation and communication skills, with the ability to influence engineering teams without direct authority
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.