DevSecOps Engineer- D365
Position Summary
We are seeking a highly skilled DevSecOps Engineer with Microsoft Dynamics 365 (D365) experience to design, implement, and support secure CI/CD pipelines, cloud-native development practices, and security controls across D365 environments. The ideal candidate will have a strong background in DevOps, cloud infrastructure, application security, and Microsoft technologies, with hands-on experience supporting Dynamics 365 Finance & Operations, Customer Engagement (CRM), Power Platform, and Azure services. This role will partner closely with application developers, infrastructure teams, cybersecurity teams, architects, and business stakeholders to ensure secure, scalable, and reliable deployment of D365 solutions.
Key Responsibilities
DevSecOps & Automation
- Design, develop, and maintain CI/CD pipelines for Dynamics 365 and Power Platform solutions using Azure DevOps and Git-based repositories.
- Implement Infrastructure as Code (IaC) using Terraform, ARM templates, or Bicep.
- Automate build, release, testing, and deployment processes across development, test, and production environments.
- Establish DevOps best practices including branching strategies, release management, and automated deployment workflows.
Application Security
- Integrate security controls into the software development lifecycle (SDLC).
- Conduct vulnerability assessments, code reviews, dependency scanning, and security testing.
- Implement tools and processes for SAST, DAST, SCA, and secrets management.
- Collaborate with cybersecurity teams to remediate security findings and strengthen application security posture.
- Ensure compliance with organizational security standards, SOX, PCI-DSS, NIST, CIS, and Microsoft security best practices.
Dynamics 365 Administration & Development Support
- Support deployment and lifecycle management of Dynamics 365 Finance & Operations and/or Customer Engagement environments.
- Manage D365 release cycles, solution packaging, and environment promotions.
- Configure and support integrations between D365, Azure services, Power Platform, and enterprise applications.
- Troubleshoot deployment, performance, and security issues within D365 environments.
Cloud & Infrastructure Operations
- Deploy and maintain Azure cloud resources supporting D365 ecosystems.
- Monitor application health, system performance, availability, and security events.
- Implement logging, monitoring, alerting, and observability solutions using Azure Monitor, Application Insights, and Microsoft Sentinel.
- Support disaster recovery, backup, and business continuity initiatives.
Collaboration & Governance
- Work closely with developers, solution architects, security teams, and project managers.
- Participate in architecture reviews and security assessments.
- Develop technical documentation, operational procedures, and deployment standards.
- Mentor development teams on DevSecOps practices and secure coding techniques.
Required Qualifications
Education
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or related field.
- Equivalent combination of education and relevant experience will be considered.
Experience
- 5+ years of experience in DevOps, DevSecOps, or Cloud Engineering roles.
- 3+ years of experience supporting Microsoft Dynamics 365 environments.
- Hands-on experience with Azure DevOps CI/CD pipelines.
- Experience integrating security tools and controls within DevOps workflows.
- Experience supporting cloud-native applications and Azure environments.
Technical Skills
- Microsoft Dynamics 365 Finance & Operations and/or Customer Engagement (CRM)
- Azure DevOps
- Git, GitHub, GitHub Actions
- Azure Cloud Services
- Power Platform
- PowerShell scripting
- YAML pipeline development
- Terraform, ARM Templates, or Bicep
- Azure Key Vault
- Azure Monitor and Application Insights
- Microsoft Entra ID (Azure AD)
- REST APIs and integration technologies
- Containerization (Docker, Kubernetes preferred)
Security Experience
- Secure SDLC implementation
- Static and Dynamic Application Security Testing (SAST/DAST)
- Vulnerability Management
- Identity and Access Management (IAM)
- Secrets Management
- Security Compliance Frameworks (NIST, CIS, SOX, PCI-DSS)
Preferred Qualifications
- Microsoft Certified: DevOps Engineer Expert
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Azure Security Engineer Associate
- Microsoft Dynamics 365 Functional or Technical Certifications
- Certified Kubernetes Administrator (CKA)
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
Benefits
Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide.