DevSecOps Engineer (Cloud Security)
Мэтч & Сопровод
Покажет вашу совместимость и напишет письмо
Описание вакансии
Location: Hybrid on-site role in Torrance, California, United States, primarily in the office and laboratory, with periodic work on the manufacturing floor. Standard hours are Monday through Friday during core business hours, with occasional after-hours deployment, maintenance, and incident-response windows. Access to export-controlled technical data requires U.S. Person status.
Salary: $115,843–$180,977 USD annually, depending on level.
Company
Divergent builds integrated engineering and manufacturing systems for automotive, aerospace, defense, and other demanding industries.
What you will do
- Design and maintain CI/CD pipelines with automated static analysis, software composition analysis, secrets detection, image scanning, and infrastructure-as-code policy checks.
- Provision and secure Azure and AWS infrastructure using infrastructure as code and policy-as-code controls.
- Harden Docker and Kubernetes workloads, including admission control, runtime policies, network segmentation, and least-privilege identities.
- Manage secrets, federated authentication, short-lived credentials, vulnerability remediation, and software supply chain controls such as artifact signing and SBOM generation.
- Build security observability through detections, dashboards, alerting, and cloud security posture automation, and participate in incident response.
- Support compliance evidence collection and raise engineering security standards through reusable templates, code review, documentation, and mentoring.
Requirements
- Must be a U.S. Person under ITAR, such as a U.S. citizen, lawful permanent resident, or other protected individual.
- 5–10 years of experience in DevOps, platform, SRE, security, or software engineering, including at least 3 years securing CI/CD pipelines or cloud infrastructure.
- Bachelor’s degree in a relevant technical field or equivalent demonstrated experience.
- Production experience with Azure or AWS, including identity, networking, and logging services.
- Hands-on experience with modern CI/CD systems, Terraform or comparable infrastructure-as-code tools, Docker, Kubernetes, Git workflows, and branch protection.
- Automation experience with Python, Go, Bash, or PowerShell, plus application security tooling such as Black Duck or Rapid7 and knowledge of core security concepts, OAuth 2.0, OIDC, SAML, and OWASP Top 10.
Nice to have
- Experience with ITAR/EAR, CMMC, NIST SP 800-171, aerospace, automotive, advanced manufacturing, or operational technology.
- Experience with SBOM, artifact signing, SLSA, policy-as-code, Kubernetes security, secrets platforms, SIEM, threat modeling, and observability tooling.
- Relevant security or cloud certifications and contributions to internal developer platforms or open-source security tooling.
Culture & Benefits
- Collaborative, high-performing, mission-driven environment focused on integrating people and technology in manufacturing.
- Paid vacation, sick time, company holidays, year-end shutdown, and paid parental leave.
- HMO and Premium PPO health plans, company-sponsored life insurance, and short- and long-term disability coverage.
- Learning and development reimbursement, equity plan, and discretionary results-based incentive bonus opportunities.
- Shared on-call rotation for pipeline and infrastructure incidents; occasional manufacturing-floor work requires personal protective equipment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →