AWS DevSecOps Engineer
Entarian · North Charleston, SC · 1 mo ago
EngineeringFull-time
Key Responsibilities
- Design, implement, and maintain DevSecOps pipelines supporting CI/CD, continuous monitoring, and automated security testing.
- Embed SAST, DAST, SCA, and compliance checks directly into CI/CD tools (Jenkins, GitLab CI, AWS CodePipeline).
- Create SOAR-style automated incident response playbooks and threat detection routines.
- Manage and enhance CI/CD tools such as Jenkins, Git, Jira, Artifactory, and SonarQube.
- Design secure, scalable AWS architectures using best practices and Infrastructure as Code (Terraform, CloudFormation).
- Implement policy-as-code to detect and prevent cloud resource misconfigurations before deployment.
- Build and maintain containerized workloads on ECS and EKS, including automated container vulnerability management.
- Deploy, configure, and manage AWS-native network security tools: AWS WAF, AWS Network Firewall, Security Groups, and NACLs.
- Maintain and operate virtualized NGFWs (Palo Alto, Fortinet, Check Point) running in AWS.
- Monitor and analyze firewall logs, IDS/IPS alerts, VPC flow logs to identify and mitigate threats.
- Manage firewalls, F5 BigIP, VPN, DNS, SFTP, and other TCP/IP-based services.
- Manage AWS services including EC2, VPC, Lambda, S3, EFS, ECR/ECS, EKS, Route53, IAM, RDS, CloudTrail, and CloudWatch.
- Develop and maintain infrastructure-as-code for provisioning, configuration, patching, and lifecycle management.
- Conduct performance, availability, and security assessments across cloud and container environments.
- Troubleshoot incidents, perform root cause analysis, and implement durable remediation.
- Maintain system documentation, architecture diagrams, and security procedures.
- Implement and enforce least-privilege principles using AWS IAM, SSO, and identity integrations.
- Automate permission audits and cloud security posture monitoring.
- Support compliance with frameworks such as SOC 2, HIPAA, PCI-DSS, and ISO 27001.
Minimum Qualifications
- Bachelor’s degree in Engineering from an ABET accredited program, with 7+ years of IT professional experience.
- 3+ years experience specifically in AWS Cloud Security, DevOps, or DevSecOps.
- Hands-on experience with AWS firewalls, NGFWs, IDS/IPS, and advanced network security.
- Strong automation mindset with a history of developing guardrails, auto-remediation, or security tooling.
- Proficiency in Python, Bash, or Go.
- Strong knowledge of AWS core services: EC2, VPC, RDS, Lambda, S3, CloudTrail, GuardDuty, Security Hub.
- Experience overseeing the creation of hybrid software, web and hardware products from initial specifications to final rollout and maintenance.
- Experience integrating various network operating systems, application programs and hardware devices through system specification, design, coding, testing and maintenance support.
- Consider overall project design including cost, schedule, and social issues that may be associated with a project.
Desired Qualifications
- Experience implementing SOAR platforms or building serverless auto-remediation using Lambda/Step Functions.
- Experience securing Kubernetes/EKS workloads and container registries.
- Experience automating compliance for SOC 2, HIPAA, PCI-DSS, or ISO 27001.