Назад
Company hidden
10 часов назад

Senior DevSecOps Engineer (AWS/Kubernetes)

188 000 - 242 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior DevSecOps Engineer (AWS/Kubernetes): Building security automation across CI/CD pipelines and secure golden paths for Go, Rails, and Vue.js services with an accent on software supply-chain security, cloud identity, and vulnerability remediation. Focus on implementing scanning and policy enforcement, eliminating long-lived credentials, and using AI-assisted review and auto-remediation to improve security across a 300+ engineer platform organization.

Location: New York, New York; position based in the New York City Office

Salary: $188,000–$242,000 per year

Company

hirify.global provides HR solutions that help businesses manage operational and workforce-related needs.

What you will do

  • Own security automation across GitHub Actions CI/CD pipelines, including SAST, SCA, secrets detection, and container scanning.
  • Build secure-by-default golden path templates for Go, Rails, and Vue services.
  • Harden the software supply chain through dependency management, artifact signing, SBOM generation, and provenance tracking.
  • Implement Terraform infrastructure-as-code scanning and Kubernetes policy enforcement.
  • Coordinate vulnerability remediation across Engineering and automate finding triage, deduplication, ownership, and tracking.
  • Develop secrets management, cloud security, AI-assisted code review, penetration-testing support, auto-remediation, developer education, and security metrics.

Requirements

  • 5+ years of professional experience in software engineering, infrastructure, or security engineering.
  • 3+ years focused on application security, security automation, or DevSecOps.
  • Hands-on experience integrating SAST, SCA, secrets detection, and container scanning into CI/CD pipelines; GitHub Actions is strongly preferred.
  • Proficiency with AWS security services, including IAM, GuardDuty, Security Hub, and CloudTrail.
  • Experience with Kubernetes, Terraform or similar infrastructure-as-code tooling, and policy-as-code enforcement.
  • Proficiency in Go, Python, or Ruby, plus strong written communication and documentation skills.

Culture & Benefits

  • Welcoming, casual, and supportive work environment.
  • Benefits and wellness program offerings.
  • Company retreats and opportunities to learn from leaders in the startup community.
  • Workplace focused on camaraderie, openness, grit, integrity, simplicity, collaboration, and inclusive practices.
  • Reasonable accommodations are available for candidates and employees who need them.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →