DevSecOps Engineer

4 weeks ago


New York, New York, United States Knotch Full time

About Knotch

Knotch is a Content Intelligence Platform that enables brands to drive business growth through content. We build products for people who use content to drive performance. We also offer Strategic Consulting services which enable brands to achieve new levels of efficiency and effectiveness through ongoing and ad hoc support. Knotch gives marketers a holistic view of content's performance and provides insights and actions that drive performance and increase efficiency.

As our DevSecOps Engineer you'll be a key individual contributor with a focus on our Application, Infrastructure, and Data Security/Privacy efforts. You will bring a wide range of experience in the security domains of Security Operations, Risk, Compliance and Identity Management and the tools and philosophical approaches associated with each. You will be a subject matter expert on all aspects of development, operations and security. You will also act as a change agent within the department and company by continually implementing industry standards and best practices across teams. You'd best contribute to security architecture and business strategic planning by providing objective feedback, insight, and recommendations for Knotch. You'd also be responsible for leading investigations for incident response and reviewing system logs.

Your first 90 days

In your first 30 days... (i) Understanding of what we do and how we do it; (ii) Review current state of affairs on security; (iii) Understanding of gaps in security for SOC2 and other relevant frameworks
In your first 60 days...(i) Taking ownership of SOC2 compliance (ii) Begin setting up best practices
In your first 90 days... (i) Complete ownership of everything security (ii) Becoming the default escalation point for all security matters

How you will add value at Knotch

Design, build and implement enterprise-class security systems with engineering
Lead planning, implementation, and testing of security systems, policies, procedures and standards
Wear multiple hats as DevOps/SRE working with engineers (onshore and offshore) as needed
Provide advice and assistance to management concerning information security, privacy, and related matters
Proactively identify, assess, manage, and mitigate potential threats to security
Ensure that security policies and directives are consistently applied
Evaluate information security systems, methods, and practices
Develop and implement programs for employee security awareness
Architect cloud security solutions using the AWS ecosystem
Lead secure software development discussions with clients and their infosec teams/questionnaires
Ensure data on our information system is protected to prevent unauthorized access
Design solutions that balance security and business requirements
Lead technical teams through the investigation, RCA, remediation and documentation of security incidents
Effectively work with engineers, product managers, and other stakeholders. Collaboration is the name of the game
Act as a point of escalation to individual contributors and our leadership team
Deliver dashboards and reports to a wide audience demonstrating our current program state and adherence to framework standards
Provide guidance on data privacy regulations, including NIST standards, GDPR, CCPA, and others while implementing processes to ensure effective data protection controls
Stay current with industry trends, attacks, mitigation measures, and application security standards
Respond to client and vendor security assessments
Train engineering teams and others at Knotch on security best practices

You will successful if you bring:

5+ years prior DevOps, SRE or security engineering experience in a SaaS/PaaS/IaaS environment
A history of developing policies, standards, and best practices that you've developed from ground up in collaboration with other engineering, product and legal team members
A self-starter mentality with the ability to lead and work with cross-functional teams
Communication skills, empathy and expertise to instill confidence with external clients on data privacy and systems security
A pragmatic approach to balancing security, user, and business requirements
Knowledge of industry standard control frameworks (e.g. NIST, SOC2 etc.)
Knowledge of what it takes to be GDPR/CCPA/SOC2 compliant
The mindset to work in a dynamic, fast paced environment, prioritizing and delivering on evolving timelines
Dependability traits and show a sense of urgency about getting results
Excellent documentation skills and a care for tracking context and purpose

Bonus points if you have:

Relevant certifications (e.g. CISSP, CISM, CCSP)

Benefits & Perks:

Benefits include medical, dental and vision insurance eligibility, a 401(k) plan, unlimited PTO plus 10+ company-paid holidays, a daily company break, and a wellness allowance, just to name a few

Equal Opportunity Employer:

Knotch is an equal opportunity employer. We strive to provide equal opportunities in all of our processes, including our hiring and employee experience. We pride ourselves on our three values: transparency, relentlessness, and inclusiveness. We commit to daily work towards leading with empathy, reducing bias through periodic training, and engaging with and uplifting communities of marginalized groups. We condemn all forms of racism and discrimination on the basis of race, religion, ethnicity, nationality, gender identity, sexual orientation, age, marital status, pregnancy or parenthood status, veteran status, disability status or any other identifier. We encourage all employees, clients, investors, candidates, vendors, and friends of Knotch to show up as their authentic self and deliver honest feedback (directly or anonymously) so that we may always seek to improve as an organization that is dedicated to diversity, equity, inclusion, and belonging. Share your thoughts with us, and you will be heard.
Knotch focuses on Digital Media, Advertising, Analytics, Big Data, and Brand Marketing. Their company has offices in New York City and New York. They have a mid-size team that's between employees. To date, Knotch has raised $34.3M of funding; their latest round was closed on January 2019.
You can view their website at or find them on Twitter, Facebook, and LinkedIn.

  • New York, New York, United States Flashbots Full time

    Flashbots is a research and development organization working on mitigating the negative externalities of Maximal Extractable Value (MEV) and avoiding the existential risks MEV could cause to stateful blockchains like Ethereum. Our primary focus is to enable a permissionless, transparent, and sustainable ecosystem for MEV, via a three-pronged...


  • New York, New York, United States Women Impact Tech, LLC Full time

    Within Pharmaceutical Digital, the Biopharma, Patient & CDI (BPC) group builds solutions for external customers throughout the product lifecycle.Within BPC, the Platform DevOps team are accountable for the platforms at Pharmaceutical that allow the creation, configuration, launch, and support of all externally facing digital (web, mobile, omni-channel, &...

  • DevSecOps Engineer

    4 weeks ago


    New York, New York, United States Motion Recruitment Full time

    A cutting edge healthcare company is looking to expand their growing team in New Jersey The ideal candidate will be able to provide guidance on what their teams should be using in terms of Docker/Kubernetes, etc. Looking for a Python development background and the ability to work with React, etc. Requirements:5-7 years of experience in security and...


  • New York, New York, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity A well-known Financial Services Company is looking for a Information Security Engineer in New York, NY (Hybrid).Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package Our client has been around for...

  • Application Lead

    1 month ago


    New York, New York, United States QData Full time

    Experience in the following Identifying and remediating application vulnerabilities. Cybersecurity and privacy principles and organizational requirements (relevant to confidentiality integrity availability authentication non-repudiation). Knowledge on system and application security threats and vulnerabilities (e.g. buffer overflow mobile code cross-site...


  • New York, New York, United States Paradigm Full time

    The roleAs a core member of our infrastructure team, you will build and maintain major features, through inception, design, implementation and launch, working closely with product and engineering disciplines across the company. You will spend the majority of your time on cross-functional self-contained feature teams focused on delivering value to the...

  • Azure DevOps Engineer

    4 weeks ago


    New York, New York, United States Mitchell Martin Inc Full time

    Our client, a financial services company, is seeking an Azure DevOps EngineerLocation: New York, NY / Remote Position Type: Full TimePosition Purpose: To support this growing business, we are embarking upon major tech initiatives by which we will revamp the front to back and post transaction technology landscape of our business in coming 2 years. This...

  • NYC Only

    2 days ago


    New York, New York, United States Motion Recruitment Full time

    A financial startup in NYC is looking for a Principle Cybersecurity Engineer to help develop their cybersecurity program. The company has been going since 2021, and offers a rewards program for renters in NYC by partnering with various financial companies. Motion Recruitment recently placed their CISO, who is now looking for a high level cybersecurity...

  • Application Lead

    4 weeks ago


    New York, New York, United States QData Full time

    Primary Skills 7+ years of experience as Application Lead using stack of various .NET Framework and programming languages like C# C++ VB.NET.Experience in the following Identifying and remediating application vulnerabilities. Cybersecurity and privacy principles and organizational requirements (relevant to confidentiality integrity availability...

  • Application Lead

    1 month ago


    New York, New York, United States QData Full time

    Primary Skills 7+ years of experience as Application Lead using stack of various .NET Framework and programming languages like C# C++ VB.NET.Experience Identifying and remediating application vulnerabilities. Cybersecurity and privacy principles and organizational requirements (relevant to confidentiality integrity availability authentication...

  • Application Lead-zOS

    1 month ago


    New York, New York, United States QData Full time

    Primary Skills Candidates should have overall 10+ years of IT experience. Should have experience as Application Lead using COBOL JCL PL/1 Assembler MQ CICS DB2 IMS-DB SQL.Experience in the following Identifying and remediating application vulnerabilities. Cybersecurity and privacy principles and organizational requirements (relevant to confidentiality...


  • New York, New York, United States QData Full time

    Primary Skills Candidates should have overall 10 years of IT experience. Should have experience as Application Lead using Java/J2EE technology under these platforms WebLogic WebSphere JBOSS Tomcat JRE. Frameworks Spring STRUTS UI framework Angular JavaScript.Experience Identifying and remediating application vulnerabilities. Cybersecurity and privacy...

  • Application Lead

    4 weeks ago


    New York, New York, United States QData Full time

    Primary Skills Candidates should have overall 10 years of IT experience. Should have experience as Application Lead using Java/J2EE technology under these platforms WebLogic WebSphere JBOSS Tomcat JRE. Frameworks Spring STRUTS UI framework Angular JavaScript.Experience in the following Identifying and remediating application vulnerabilities. Cybersecurity...


  • New York, New York, United States Freddie Mac Full time

    At Freddie Mac, you will do important work to build a better housing finance system and you'll be part of a team helping to make homeownership and rental housing more accessible and affordable across the nation. Employees, contingent workers and visitors are no longer required to show proof of vaccination to be on-site. Effective January 2023, Freddie Mac's...

  • Senior IAM Engineer

    7 days ago


    New York, New York, United States Cognizant Technology Solutions Full time

    senior IAM Engineer Location : Newark , N J onsite with flexibility of ( 3 Days WFH & 2 days In office a week ). Your Team & Role As a Senior IAM Platform Engineer working in a Global CIAM Team, you will partner with Product Owners, Tech leads, Software Developers, Software Engineers, and Delivery professionals to provide the integrations of applications...

  • DevSecOps Engineer

    1 day ago


    New York, United States Wallero Full time

    DevSecOps EngineerNew York, NY6+ Months Highly motivated self-starter with excellent interpersonal and problem-solving skillsBachelor s degree or equivalent work experienceGood oral and written communication skills7+ years of relevant industry work experienceExperience of the full lifecycle of design, implementation and running of enterprise software...

  • Security Engineer

    1 day ago


    New York, United States Wallero Full time

    Title: Security EngineerPosition: ContractPRIMARY LOCATION: New YorkNote: Only who are willing work on our W2Description:Highly motivated self-starter with excellent interpersonal and problem-solving skillsBachelor s degree or equivalent work experienceGood oral and written communication skills7+ years of relevant industry work experienceExperience of the...

  • DevSecOps Engineer

    2 weeks ago


    New York, United States Teledyne Technologies Full time

    Please note, we are not able to offer sponsorship for this position. This position can work from the Teledyne office in Huntsville, AL or Stillwater, OK. Job Summary: Teledyne Technologies is seeking a DevSecOps Engineer. This role involves designing and implementing secure and scalable infrastructure using DevOps and Infrastructure as Code (IaC) approaches,...


  • New York, United States Epic Systems Corporation (Wisconsin) Full time

    Job Title: DevSecOps Systems Engineer --Active Secret clearance Work Location: Dulles, VA—Onsite DevSecOps Systems Engineer to support the Continuous Integration and Continuous Deployment (CI/CD) activities with AWS experience to support the design, development, and deployment of advanced cyber security capabilities. The DevSecOps team is responsible for...


  • New York, United States Motion Recruitment Partners, LLC Full time

    We're partnered with a NYC based FinTech start up that offers a state of the art trading platform for thousands of customers. Due to their success and growth, they are looking for an Azure DevSecOps Engineer to join their platform and SRE team. You will play a crucial role in designing and maintaining their Azure cloud infrastructure and lead DevSecOps...


  • New York, United States Flashbots Full time

    Flashbots is a research and development organization working on mitigating the negative externalities of Maximal Extractable Value (MEV) and avoiding the existential risks MEV could cause to stateful blockchains like Ethereum. Our primary focus is to enable a permissionless, transparent, and sustainable ecosystem for MEV, via a three-pronged...


  • New York, United States QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Quanteam is an independent Financial Markets consulting company based in France, the UK, the USA, Canada, and Morocco. Our team of 1.000 employees supports Corporate and Investment Banks, Asset Management Companies, Insurance, and Corporate for their projects in financial engineering, quantitative research, regulatory implementation, SI transformation, and...


  • New York, United States QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Quanteam is an independent Financial Markets consulting company based in France, the UK, the USA, Canada, and Morocco. Our team of 1.000 employees supports Corporate and Investment Banks, Asset Management Companies, Insurance, and Corporate for their projects in financial engineering, quantitative research, regulatory implementation, SI transformation, and...


  • New York, United States QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Quanteam is an independent Financial Markets consulting company based in France, the UK, the USA, Canada, and Morocco. Our team of 1.000 employees supports Corporate and Investment Banks, Asset Management Companies, Insurance, and Corporate for their projects in financial engineering, quantitative research, regulatory implementation, SI transformation, and...


  • New York, United States QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Quanteam is an independent Financial Markets consulting company based in France, the UK, the USA, Canada, and Morocco. Our team of 1.000 employees supports Corporate and Investment Banks, Asset Management Companies, Insurance, and Corporate for their projects in financial engineering, quantitative research, regulatory implementation, SI transformation, and...


  • New York, United States QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Quanteam is an independent Financial Markets consulting company based in France, the UK, the USA, Canada, and Morocco. Our team of 1.000 employees supports Corporate and Investment Banks, Asset Management Companies, Insurance, and Corporate for their projects in financial engineering, quantitative research, regulatory implementation, SI transformation, and...


  • New York, United States Motion Recruitment Full time

    We’re partnered with a NYC based FinTech start up that offers a state of the art trading platform for thousands of customers. Due to their success and growth, they are looking for an Azure DevSecOps Engineer to join their platform and SRE team. You will play a crucial role in designing and maintaining their Azure cloud infrastructure and lead DevSecOps...


  • New York, United States Genius Sports Full time

    Genius Sports is one of the largest, fastest-growing and innovative sports technology companies in the world. We power the global ecosystem connecting sports, gaming and media. We enable leagues to take control of their official data to create immersive fan experiences. As a global sports technology company, we operate on five continents and employ around...


  • New York, United States Advanced Technology Search Full time

    We are working on behalf of a leading maker of Air Defense Radar Systems. They provide RF, sensors and Software as part of a System that is sold to the Defense market. Due to strong growth, they are looking for a Senior to Principal level Radar Software Engineer ; who will develop software that runs a radar subsystem. We need a Technical degree, preferably...


  • New York, United States Motion Recruitment Full time

    A startup in the HealthTech space is looking to bring on a Security Engineer to build out their Security program! This is a great opportunity for an engineer to lead efforts in building out a program focusing on automation, DevSecOps, application security, and endpoint security. They are looking for a hands-on engineer with previous coding experience, at any...


  • New York, United States Motion Recruitment Partners, LLC Full time

    A startup in the HealthTech space is looking to bring on a Security Engineer to build out their Security program! This is a great opportunity for an engineer to lead efforts in building out a program focusing on automation, DevSecOps, application security, and endpoint security. They are looking for a hands-on engineer with previous coding experience, at any...

  • Product Engineer

    2 days ago


    New York, United States DTG Consulting Solutions Full time

    ONLY W2 CANDIDATES We are seeking Product Engineers with a hands-on coding capability, focusing on technical leadership and effective communication with business stakeholders. This role requires a deep understanding of Python, underwriting models such as Moody’s, and experience with core banking systems like Fidelity Information Services (FIS) or FISERV,...

  • NYC Only

    1 day ago


    New York, United States Motion Recruitment Partners, LLC Full time

    A financial startup in NYC is looking for a Principle Cybersecurity Engineer to help develop their cybersecurity program. The company has been going since 2021, and offers a rewards program for renters in NYC by partnering with various financial companies. Motion Recruitment recently placed their CISO, who is now looking for a high level cybersecurity...


  • New York, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Engineer in New York, NY (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package! Our client has been around...

  • Product Engineer

    5 days ago


    New York, United States DTG Consulting Solutions, Inc. Full time

    ONLY W2 CANDIDATESWe are seeking Product Engineers with a hands-on coding capability, focusing on technical leadership and effective communication with business stakeholders. This role requires a deep understanding of Python, underwriting models such as Moody’s, and experience with core banking systems like Fidelity Information Services (FIS) or FISERV,...