DevSecOps Security Assessment Engineer

7 days ago


New York, United States SOFT Inc. Full time

SOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.


PLEASE NOTE THE FOLLOWING BEFORE APPLYING:


WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO.


WE CAN ONLY WORK WITH DIRECT APPLICANTS WHO ARE AUTHORIZED TO WORK IN THE US WITHOUT SPONSORSHIP


We are seeking a skilled Security Assessment Engineer to join our team. The ideal candidate will be instrumental in supporting the adoption of DevSecOps principles and automating assessment services to ensure continuous authorization to operate within our organization. This is a unique position that must be able to flex between security engineering, security control automation, development, and assessor roles in a NIST based risk management environment.


Key Responsibilities:

• Support DevSecOps initiatives by developing and implementing test-driven security within a CI/CD pipeline

• Create automation to support the NIST Risk Management Framework (SP800-37, SP800-53/53a).

• Develop and track Plan of Action and Milestones (POA&Ms) to address identified security vulnerabilities and compliance gaps.

• Able to document clear and repeatable process and train others to be able to perform automated assessment reviews.

• Develop and implement security assessment automation tools to support DevSecOps practices.

• Collaborate with development teams to integrate security assurance into the CI/CD pipeline.

• Conduct security assessments and risk analyses on new and existing software.

• Provide Subject Matter Expertise in the creation of security policies, standards.

• Develop and document procedures specific to the role.

• Work closely with compliance teams to ensure continuous monitoring and authorization.

• Assist in developing security training and awareness for technical staff.

• Stay current with evolving security landscape, industry trends, tools, and best practices.


Required Qualifications:

• Bachelor’s degree in Computer Science, Information Security, or a related field (preferred)

• Proven experience with security assessment tools and methodologies.

• Experience with wide range of programming languages, automation tools and scripting languages (e.g., Python, Ruby, Go, Bash/Shell, JavaScript/Node.js, Groovy, YAML/JSON, PowerShell, Java, Terraform).

• Understanding languages in the context of various DevSecOps tools and platforms like Docker, Kubernetes, Ansible, Chef, Puppet, Jenkins, GitLab CI, and cloud service providers (AWS, Azure, GCP).

• Experience with Policy as Code and Compliance as Code

• Knowledge of compliance frameworks and continuous authorization processes. Prefer NIST SP800-37, SP800-53/53a.

• Excellent communication skills and the ability to work collaboratively.

• Operational vulnerability analysis.

• Deep understanding of Dev/Sec/Ops processes and testing.

Preferred Qualifications:

• Certifications such as GCSA, CISSP, CEH, or OSCP.

• Experience in a policy and assurance or quasi-governmental environment.

• Familiarity with cloud service providers and associated security challenges.

The candidate must possess skills that include experience with:

Test design, performance testing, test architecture, configuration management, troubleshooting,

excellent verbal and written and communication skills both horizontally and vertically, performing manual testing with agility and interaction, be proficient in continuous delivery, Agile, and DevOps.



  • new york city, United States SOFT Inc. Full time

    SOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.PLEASE NOTE THE FOLLOWING BEFORE APPLYING: WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO. WE CAN ONLY WORK WITH DIRECT...


  • new york city, United States SOFT Inc. Full time

    SOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.PLEASE NOTE THE FOLLOWING BEFORE APPLYING: WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO. WE CAN ONLY WORK WITH DIRECT...

  • DevSecOps Engineer

    1 month ago


    New York, New York, United States Minutes to Seconds Pty Ltd Full time

    About the JobAt Minutes to Seconds, we're on a mission to match talented individuals with tailored job opportunities, driving success for both our candidates and clients. Our goal is to provide the perfect fit, revolutionizing business outcomes and catalyzing personal growth.We've partnered with top-notch businesses and professionals in Australia to achieve...

  • DevSecOps Engineer

    4 weeks ago


    New York, New York, United States Minutes to Seconds Pty Ltd Full time

    About the RoleAt Minutes to Seconds, we're on a mission to match talented individuals with tailored job opportunities, driving success and growth for both our candidates and clients. Our goal is to provide a seamless fit between people and jobs, revolutionizing business outcomes and individual achievements.We're seeking a highly skilled Senior DevSecOps...

  • DevSecOps Engineer

    1 month ago


    New York, New York, United States Minutes to Seconds Pty Ltd Full time

    About the JobAt Minutes to Seconds, we're dedicated to matching talented individuals with tailored job opportunities that foster success. Our expertise lies in pairing people with the right job roles, creating a perfect fit that drives business growth and individual development. We've partnered with top-notch individuals and businesses in Australia to...

  • DevSecOps Engineer

    4 weeks ago


    New York, New York, United States New York eHealth Collaborative Full time

    Job Title: DevSecOps EngineerAt New York eHealth Collaborative, we are seeking a highly skilled DevSecOps Engineer to join our team. As a DevSecOps Engineer, you will play a critical role in designing and implementing various CI/CD patterns while adhering to industry standards and policies.Key Responsibilities:Design and implement CI/CD pipelines with...

  • DevSecOps Engineer

    4 weeks ago


    New Orleans, Louisiana, United States iSeatz Full time

    Job SummaryiSeatz is seeking a highly skilled DevSecOps Engineer to join our team. As a DevSecOps Engineer, you will play a critical role in bridging the gap between development, operations, and security to ensure the rapid, safe, and secure delivery of code.Key ResponsibilitiesIntegrate security into CI/CD pipelines to ensure secure deployment practices and...

  • DevSecOps Engineer

    2 weeks ago


    New Haven, United States Talent Groups Full time

    **Our client is only able to work with W2 candidates at this time (US Citizen or Green Card Perm Residents)**Hybrid Details: Onsite as neededDuration: 12 months to startJob DescriptionThe DevSecOps Engineer, will oversee a variety of platform and product deployments. The DevSecOps Engineer will collaborate with developers, scrum teams and information...


  • New York, New York, United States Capgemini Government Solutions LLC Full time

    Job Title: Senior DevSecOps Security EngineerCapgemini Government Solutions LLC is seeking a highly motivated and experienced Senior DevSecOps Security Engineer to support our government clients.As a Senior DevSecOps Security Engineer, you will play a pivotal role in defining, maintaining, and implementing our security strategy. You will apply your deep...

  • DevSecOps Engineer

    3 weeks ago


    New Orleans, Louisiana, United States iSeatz Full time

    Job SummaryiSeatz is seeking a highly skilled DevSecOps Engineer to join our team. As a DevSecOps Engineer, you will play a critical role in bridging the gap between development, operations, and security to ensure the rapid, safe, and secure delivery of code.Key Responsibilities Integrate security into CI/CD pipelines to ensure secure deployment practices...

  • DevSecOps Engineer

    2 weeks ago


    New Haven, CT, United States Talent Groups Full time

    **Our client is only able to work with W2 candidates at this time (US Citizen or Green Card Perm Residents)**Hybrid Details: Onsite as neededDuration: 12 months to startJob DescriptionThe DevSecOps Engineer, will oversee a variety of platform and product deployments. The DevSecOps Engineer will collaborate with developers, scrum teams and information...


  • New York, New York, United States Capco Full time

    About the Role:We are seeking a highly skilled DevSecOps Transformation Lead to join our team at Capco. As a Principal Consultant for DevSecOps Excellence, you will play a key role in driving the development of a comprehensive DevSecOps strategy, focusing on automation, operational soundness, and alignment with best practices.Key Responsibilities:Lead the...


  • New York, New York, United States Capco Full time

    About the RoleAs a DevSecOps Principal Consultant at Capco, you will play a pivotal role in shaping the future of our clients' DevSecOps practices. With a strong track record of leading large-scale transformations in complex, regulated environments, you will bring your expertise to drive innovation and operational soundness.Key ResponsibilitiesDevelop a...

  • Security Engineer

    2 weeks ago


    New York, United States Motion Recruitment Full time

    Our client is looking for a Security Engineer to lead their security initiatives and protect sensitive company data. The role involves developing security tools, automating workflows, responding to incidents, and collaborating with engineering teams to ensure data security and governance. Ideal candidates will have, hands-on experience in DevOps/DevSecOps...


  • New York, New York, United States Bitcoin Devs Company Full time

    Job Title: Senior Security EngineerJob Description:The Senior Security Engineer plays a vital role in ensuring the security and integrity of Bitcoin Devs Company’s platform, systems, and applications. This position is crucial in protecting the organization from potential security threats and vulnerabilities, as well as implementing and maintaining best...


  • New York, New York, United States Intetics Full time

    Job Title: Senior Cloud Security EngineerDescription:Intetics Inc., a leading technology company, is seeking a skilled Senior Cloud Security Engineer to join its team. The ideal candidate will have a strong background in cloud security, with expertise in designing and building resilient cloud infrastructures, developing and assessing cloud security...


  • New York, New York, United States Avant Tech Full time

    Job Title: Security Solutions EngineerAt Avant Tech, we're seeking a highly motivated Security Solutions Engineer to join our team. As a key member of our Security team, you will be responsible for engineering automated security solutions that secure and harden internal platforms, reducing friction for developers in their daily development lifecycle.Key...

  • Security Engineer

    2 weeks ago


    New York, United States Avant Tech Full time

    Our client provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management. They enable their clients to achieve their strategic financial objectives by providing...


  • New York, United States Intuit Inc Full time

    Overview We are seeking a highly skilled Staff Security Engineer with over 10 years of overall experience, including 5+ years of coding experience, and a robust background in security reviews, threat modeling, and incident response. This role requires a unique combination of advanced software development skills and deep expertise in security to perform...


  • New York, New York, United States New Directions Staffing Full time

    Job Opportunity: Applications Security Sales EngineerWe are seeking a highly motivated and experienced Applications Security Sales Engineer to join our team at New Directions Staffing. As a key member of our sales team, you will be responsible for educating prospects and customers on SaaS-based applications security products.Key Responsibilities:Deliver...