DevSecOps Engineer (Logistics)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
DevSecOps Engineer (Logistics): Implementing and supporting secure SDLC and integrating security practices into CI/CD pipelines with an accent on vulnerability management, security auditing, and cloud infrastructure security. Focus on automating security tasks, remediating insecure coding practices, and ensuring compliance with industry standards.
Location: Remote (US-based)
Company
, a UPS company, is a leading logistics and delivery platform providing last-mile delivery solutions across the United States.
What you will do
- Collaborate cross-functionally with InfoSec, SRE, and Engineering teams to secure cloud infrastructure and Kubernetes deployments.
- Patch, mitigate, and manage vulnerabilities in the DevOps space according to InfoSec standards.
- Implement security checks and automation within CI/CD pipelines to ensure secure code deployment.
- Conduct SAST/DAST, dynamic and static code testing, and pre-deployment security quality assurance.
- Develop automation scripts for vulnerability scanning, patch management, and incident response.
- Create Secure SDLC training and conduct pre-project risk assessments with compliance teams.
Requirements
- Bachelor's Degree in Computer Science/Engineering or related work experience.
- 3+ years of DevOps or development experience in an enterprise environment.
- 1+ years of experience in security, risk, or compliance.
- Proficiency with IaC tools such as Terraform and Crossplane.
- Experience with CI/CD tools (e.g., Bitbucket, GitLab, GitHub, Circle CI, Argo CD, Azure DevOps).
- Must be eligible for US-based employment (as indicated by 401k and US health insurance benefits).
Nice to have
- Relevant Security and DevOps certifications.
Culture & Benefits
- 100% covered health insurance premiums.
- 401k plan with company match.
- Tuition and student loan repayment assistance.
- Flexible work schedule with unlimited PTO and monthly 3-day weekends.
- Monthly WFH stipend and paid sabbatical leave for tenured team members.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →