Senior Dev Sec Ops Engineer - Level 3/Remote
Apetan Consulting LLC · United States · 1 wk ago
RemoteRemoteInformation TechnologyFull-time
About the role
A Senior DevSecOps Engineer Level 3 will provide advanced technical expertise in integrating security into software development and deployment processes, focusing on CI/CD security, cloud security, automation, vulnerability management, and secure engineering practices across enterprise environments.
Responsibilities
- Design, implement, and maintain secure CI/CD pipelines and DevSecOps processes.
- Integrate security controls such as SAST, DAST, SCA, secrets scanning, container scanning, and IaC security into pipelines.
- Identify, investigate, and remediate complex security vulnerabilities across applications and infrastructure.
- Implement security automation and security-as-code practices.
- Secure cloud infrastructure, containers, Kubernetes, APIs, and deployment environments.
- Work closely with development, cloud, infrastructure, and cybersecurity teams to embed security throughout the SDLC.
- Develop and maintain security policies, standards, pipeline templates, and reusable security controls.
- Monitor security findings and drive remediation based on risk and business priorities.
- Troubleshoot complex CI/CD, deployment, security tooling, and integration issues.
- Support incident response and investigation related to application, cloud, and DevOps environments.
- Perform security reviews and threat modeling for applications and deployment architectures.
- Mentor junior DevSecOps engineers and provide Level 3 escalation support for complex technical issues.
- Evaluate and recommend DevSecOps tools and technologies.
Requirements
- 7–10+ years of experience in DevOps, Cybersecurity, Cloud Security, or DevSecOps.
- Strong hands-on experience with CI/CD tools such as Jenkins, GitLab CI, GitHub Actions, Azure DevOps, or similar.
- Experience with Docker, Kubernetes, Terraform/Infrastructure as Code, and cloud platforms.
- Strong knowledge of application security and DevSecOps tools including SAST, DAST, SCA, secrets management, container and IaC scanning.
- Good understanding of Linux, scripting, Git, APIs, networking, and cloud security.
- Experience with AWS, Azure, and/or GCP security.
- Strong troubleshooting, automation, and problem-solving skills.
- Understanding of security frameworks and secure SDLC practices.