Назад
Company hidden
3 дня назад

DevSecOps Security Engineer (AWS)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
DevSecOps Security Engineer (AWS): Embedding security controls into cloud and on-premise application delivery with an accent on CI/CD security, AWS protection, infrastructure as code, and container hardening. Focus on automating secure deployments, monitoring threats and compliance gaps, and supporting incident response across the SDLC.

Location: San Antonio, Texas, United States

Company

hirify.global is a security-focused, highly regulated organization delivering cloud and on-premise applications.

What you will do

  • Design and maintain security controls in GitHub and Azure DevOps CI/CD pipelines.
  • Integrate SAST, SCA, DAST, container, secrets, image scanning, and signing tools.
  • Secure AWS environments, including EC2, S3, Lambda, IAM, GuardDuty, Inspector, CloudWatch, OIDC, KMS, and secrets management.
  • Build Infrastructure-as-Code solutions with Terraform, CloudFormation, or AWS CDK and secure Docker, Kubernetes, and ECS environments.
  • Implement logging, monitoring, alerting, vulnerability management, remediation, and security metrics for cloud workloads.
  • Participate in incident response, audits, compliance activities, secure code and release reviews, and security architecture guidance.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
  • At least five years of experience in DevSecOps, cloud security, or security engineering.
  • Strong AWS security, CI/CD, automation, Infrastructure-as-Code, Docker, and Kubernetes experience.
  • Knowledge of IAM, OIDC, secrets management, KMS, Git workflows, OWASP Top 10, and application security principles.
  • Proficiency in Python, Bash, or Go and experience with security tools such as Mend, SonarQube, Prowler, Trivy, OWASP ZAP, or Burp Suite.
  • AWS Certified Developer – Associate is required at hire; AWS Certified DevOps Engineer – Professional must be obtained within six months.

Nice to have

  • AWS Certified Security – Specialty, AWS Certified SysOps Administrator – Associate, or AWS Certified Solutions Architect – Associate.
  • CISSP, CCSP, or GIAC certification.
  • SIEM/SOAR experience, financial or regulated-environment experience, and exposure to offensive security or AI/ML security risks.

Culture & Benefits

  • Work/life balance and employee engagement activities.
  • Career growth, Leadership Academy, and Mentor Program.
  • Continuing education and career certification opportunities.
  • Healthcare coverage options, traditional and Roth 401(k) plans, and a wellness program.
  • Pre-employment drug testing is required; tobacco users are not hired where permitted by law.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →