Cloud DevSecOps Engineer
Regions Bank · Atlanta, GA · 2 days ago
On-siteEngineering$150k/yrFull-time
About the role
The Cloud DevSecOps Engineer contributes to the advancement of cloud strategy at Regions. The role involves developing, communicating, and implementing robust and secure cloud CI/CD pipelines, working closely with stakeholders to create fully automated pipelines supporting DevSecOps best practices.
Responsibilities
- Partners with other engineers and IT staff to orchestrate code builds, quality and security analyses, deployments, and automated testing through CI/CD release candidacy pipelines.
- Articulates business needs and translates them into technology solutions.
- Designs and develops fully autonomous CI/CD pipelines which facilitate cloud deployments, including automation of all infrastructure, services, and application build and deployment.
- Ensures that all parts of the pipeline follow good software engineering practices, including automated tests and infrastructure tests.
- Researches new technologies that will improve efficiency and effectiveness.
- Implements highly scalable CI/CD platforms to support high change volumes and fast feedback.
- Completes project work and contributes to the technical direction of various objectives.
- Automates operational activities and tasks.
- Responds to performance issues identified by alerts and reported incidents related to CI/CD platforms.
- Buils tools which reduce errors and improve our overall customer experiences.
- Aids in troubleshooting of production issues and ensures pipeline and infrastructure produce clear documentation and metrics enabling Root Cause Analysis.
- Develops and tests Ansible Playbooks, Terraform Scripts, Packer Scripts, and establishes immutable infrastructure to eliminate patches.
- Works with Enterprise Architecture, Information Security (InfoSec), Software Delivery, and Quality Assurance to enable the organization to move to the cloud using complete automation.
- Acts as a resource for colleagues with less experience.
- Ensures compliance with risk management programs, rules, and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices.
Requirements
- High School Diploma or GED and ten (10) years of related post-secondary education and/or experience in Information Security or Information Technology.
- Six (6) years of relevant DevSecOps experience.
- AWS DevOps certification or Azure DevOps certification.
- Experience in building/deploying cloud native applications – OpenShift, Azure Kubernetes Service (AKS).
- Experience in observing real-time metrics in the pipeline and deployment strategies – Blue/Green, Canary Deployment.
- Experience with either AWS or Azure cloud technologies.
- Experience with interfacing with secrets management solutions like Hashicorp Vault.
- Familiarity with implementing Chaos engineering principles in the pipeline to determine weak links and suggest solutions.
- Familiarity with testing tools used to facilitate automation and integration of the tools into CI/CD pipelines.
- Must be comfortable developing pipelines as code using YAML specs, Ansible Playbooks.
Skills and Competencies
- Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance.
- Excellent communication skills and willingness to mentor developers and other team members in the art of DevSecOps.
- Excellent knowledge of Cloud infrastructure, networking, services, and cloud architectural patterns; specifically, compute using virtual machines, managed infrastructure, containers, serverless, as well as database services, security services, and application services.
- Proficient in Python programming language.
- Working Knowledge of Jenkins, Azure DevOps, Ansible, Terraform, Packer, Git, ServiceNow.
- Experience building self-serviced, reusable DevSecOps Patterns.
- Experience setting up self-service Day 0/Day 1 automation within Internal Developer Portal.