Jobs · Engineering · South Carolina

AWS DevSecOps Engineer

Entarian · North Charleston, SC · 1 mo ago
EngineeringFull-time

Key Responsibilities

  • Design, implement, and maintain DevSecOps pipelines supporting CI/CD, continuous monitoring, and automated security testing.
  • Embed SAST, DAST, SCA, and compliance checks directly into CI/CD tools (Jenkins, GitLab CI, AWS CodePipeline).
  • Create SOAR-style automated incident response playbooks and threat detection routines.
  • Manage and enhance CI/CD tools such as Jenkins, Git, Jira, Artifactory, and SonarQube.
  • Design secure, scalable AWS architectures using best practices and Infrastructure as Code (Terraform, CloudFormation).
  • Implement policy-as-code to detect and prevent cloud resource misconfigurations before deployment.
  • Build and maintain containerized workloads on ECS and EKS, including automated container vulnerability management.
  • Deploy, configure, and manage AWS-native network security tools: AWS WAF, AWS Network Firewall, Security Groups, and NACLs.
  • Maintain and operate virtualized NGFWs (Palo Alto, Fortinet, Check Point) running in AWS.
  • Monitor and analyze firewall logs, IDS/IPS alerts, VPC flow logs to identify and mitigate threats.
  • Manage firewalls, F5 BigIP, VPN, DNS, SFTP, and other TCP/IP-based services.
  • Manage AWS services including EC2, VPC, Lambda, S3, EFS, ECR/ECS, EKS, Route53, IAM, RDS, CloudTrail, and CloudWatch.
  • Develop and maintain infrastructure-as-code for provisioning, configuration, patching, and lifecycle management.
  • Conduct performance, availability, and security assessments across cloud and container environments.
  • Troubleshoot incidents, perform root cause analysis, and implement durable remediation.
  • Maintain system documentation, architecture diagrams, and security procedures.
  • Implement and enforce least-privilege principles using AWS IAM, SSO, and identity integrations.
  • Automate permission audits and cloud security posture monitoring.
  • Support compliance with frameworks such as SOC 2, HIPAA, PCI-DSS, and ISO 27001.

Minimum Qualifications

  • Bachelor’s degree in Engineering from an ABET accredited program, with 7+ years of IT professional experience.
  • 3+ years experience specifically in AWS Cloud Security, DevOps, or DevSecOps.
  • Hands-on experience with AWS firewalls, NGFWs, IDS/IPS, and advanced network security.
  • Strong automation mindset with a history of developing guardrails, auto-remediation, or security tooling.
  • Proficiency in Python, Bash, or Go.
  • Strong knowledge of AWS core services: EC2, VPC, RDS, Lambda, S3, CloudTrail, GuardDuty, Security Hub.
  • Experience overseeing the creation of hybrid software, web and hardware products from initial specifications to final rollout and maintenance.
  • Experience integrating various network operating systems, application programs and hardware devices through system specification, design, coding, testing and maintenance support.
  • Consider overall project design including cost, schedule, and social issues that may be associated with a project.

Desired Qualifications

  • Experience implementing SOAR platforms or building serverless auto-remediation using Lambda/Step Functions.
  • Experience securing Kubernetes/EKS workloads and container registries.
  • Experience automating compliance for SOC 2, HIPAA, PCI-DSS, or ISO 27001.

Similar jobs

Cloud DevSecOps Engineer

General Dynamics Information TechnologyChantilly, VA· 1 wk ago
$143k–$173k/yrapply on gdit.wd5.myworkdayjobs.com