DevSecOps Security Assessment Engineer
2 months ago
SOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.
PLEASE NOTE THE FOLLOWING BEFORE APPLYING:
WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO.
WE CAN ONLY WORK WITH DIRECT APPLICANTS WHO ARE AUTHORIZED TO WORK IN THE US WITHOUT SPONSORSHIP
We are seeking a skilled Security Assessment Engineer to join our team. The ideal candidate will be instrumental in supporting the adoption of DevSecOps principles and automating assessment services to ensure continuous authorization to operate within our organization. This is a unique position that must be able to flex between security engineering, security control automation, development, and assessor roles in a NIST based risk management environment.
Key Responsibilities:
• Support DevSecOps initiatives by developing and implementing test-driven security within a CI/CD pipeline
• Create automation to support the NIST Risk Management Framework (SP800-37, SP800-53/53a).
• Develop and track Plan of Action and Milestones (POA&Ms) to address identified security vulnerabilities and compliance gaps.
• Able to document clear and repeatable process and train others to be able to perform automated assessment reviews.
• Develop and implement security assessment automation tools to support DevSecOps practices.
• Collaborate with development teams to integrate security assurance into the CI/CD pipeline.
• Conduct security assessments and risk analyses on new and existing software.
• Provide Subject Matter Expertise in the creation of security policies, standards.
• Develop and document procedures specific to the role.
• Work closely with compliance teams to ensure continuous monitoring and authorization.
• Assist in developing security training and awareness for technical staff.
• Stay current with evolving security landscape, industry trends, tools, and best practices.
Required Qualifications:
• Bachelor’s degree in Computer Science, Information Security, or a related field (preferred)
• Proven experience with security assessment tools and methodologies.
• Experience with wide range of programming languages, automation tools and scripting languages (e.g., Python, Ruby, Go, Bash/Shell, JavaScript/Node.js, Groovy, YAML/JSON, PowerShell, Java, Terraform).
• Understanding languages in the context of various DevSecOps tools and platforms like Docker, Kubernetes, Ansible, Chef, Puppet, Jenkins, GitLab CI, and cloud service providers (AWS, Azure, GCP).
• Experience with Policy as Code and Compliance as Code
• Knowledge of compliance frameworks and continuous authorization processes. Prefer NIST SP800-37, SP800-53/53a.
• Excellent communication skills and the ability to work collaboratively.
• Operational vulnerability analysis.
• Deep understanding of Dev/Sec/Ops processes and testing.
Preferred Qualifications:
• Certifications such as GCSA, CISSP, CEH, or OSCP.
• Experience in a policy and assurance or quasi-governmental environment.
• Familiarity with cloud service providers and associated security challenges.
The candidate must possess skills that include experience with:
Test design, performance testing, test architecture, configuration management, troubleshooting,
excellent verbal and written and communication skills both horizontally and vertically, performing manual testing with agility and interaction, be proficient in continuous delivery, Agile, and DevOps.
-
DevSecOps Security Assessment Engineer
2 months ago
new york city, United States SOFT Inc. Full timeSOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.PLEASE NOTE THE FOLLOWING BEFORE APPLYING: WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO. WE CAN ONLY WORK WITH DIRECT...
-
DevSecOps Security Assessment Engineer
4 weeks ago
New York, United States SOFT Full timeSOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.PLEASE NOTE THE FOLLOWING BEFORE APPLYING: WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO. WE CAN ONLY WORK WITH DIRECT...
-
DevSecOps Security Assessment Engineer
2 months ago
New York, United States SOFT Inc. Full timeSOFT's client located in Remotely is looking for a Security Assessment Engineer - DevSecOps for a long term contract assignment.PLEASE NOTE THE FOLLOWING BEFORE APPLYING: WE ARE NOT ACCEPTING ANY 3RD PARTY SOLICITATIONS FOR THIS OR ANY OF OUR JOB POSTINGS OR REQUISITIONS. ANY SUCH INQUIRIES WILL NOT BE CONSIDERED OR RESPONDED TO. WE CAN ONLY WORK WITH DIRECT...
-
DevSecOps Engineer
4 weeks ago
New York, United States Yoh Full timeDevSecOps Engineer Category: Cybersecurity Employment Type: Direct Hire Reference: BH-330466 DevSecOps Engineer The Role We are transforming the digital payments landscape. To do that, we deliver world class safety, security and privacy for our customers. This is a chance to help us leapfrog beyond our competition. This role reports to our Director of...
-
Cloud Security Engineer
2 weeks ago
Texas City, Texas, United States Diverse Lynx Full timeAbout the Job:Diverse Lynx LLC is seeking a skilled Cloud Security Engineer - DevSecOps to join our team. This is a remote contract position that requires strong experience in integrating security tools within CI/CD pipelines. The ideal candidate will have a background in DevSecOps practices, including the integration of security tools within CI/CD...
-
DevSecOps Engineering
3 weeks ago
Texas City, United States Diverse Lynx Full timeDevSecOps Engineering Remote Contract We are seeking a skilled and experienced DevSecOps Engineer. The ideal candidate will have a strong background in DevSecOps practices, including the integration of security tools within CI/CD pipelines. A programming background and familiarity with AWS are highly desirable. Key Responsibilities: Integrate Security Tools:...
-
DevSecOps Engineer
2 weeks ago
Jersey City, New Jersey, United States Georgia IT Inc Full timeJob Title: DevSecOps Engineer">About Georgia IT Inc:Georgia IT Inc is a leading technology firm that provides innovative solutions to its clients. As a DevSecOps Engineer, you will be responsible for designing and implementing secure cloud infrastructure for our clients.Job Description:We are seeking a highly skilled DevSecOps Engineer to join our team. The...
-
DevSecOps Lead Engineer
2 weeks ago
New York, New York, United States Intuit Inc Full timeAbout UsWe are Intuit Inc., a leading provider of financial management solutions. Our team is passionate about delivering high-quality products that meet the evolving needs of our customers.Job DescriptionWe are seeking a talented engineer to join our DevSecOps team as a DevSecOps Lead Engineer. This role requires a strong background in software development,...
-
New York, United States Motion Recruitment Full timeNew York, NYHybridFull Time$165k - $210kA leading cloud provider specializing in high-performance computing is seeking a Senior DevSecOps/Infrastructure Security Engineer to join its Infrastructure Security team. This full-time, hybrid role offers competitive compensation and the opportunity to work on cutting-edge Kubernetes security solutions at...
-
New York, NY, United States Motion Recruitment Full timeNew York, NYHybridFull Time$165k - $210kA leading cloud provider specializing in high-performance computing is seeking a Senior DevSecOps/Infrastructure Security Engineer to join its Infrastructure Security team. This full-time, hybrid role offers competitive compensation and the opportunity to work on cutting-edge Kubernetes security solutions at...
-
New York, United States Motion Recruitment Full timeA leading cloud provider specializing in high-performance computing is seeking a Senior DevSecOps/Infrastructure Security Engineer to join its Infrastructure Security team. This full-time, hybrid role offers competitive compensation and the opportunity to work on cutting-edge Kubernetes security solutions at scale. Required Skills & Experience 3+ years...
-
Senior DevSecOps Engineer
3 weeks ago
New York, United States SumerSports Full timeJob DescriptionJob DescriptionAbout SumerSports:SumerSports is a leading football intelligence technology company that specializes in providing an innovative suite of products for football fans and NFL clubs. We are a collection of executives, engineers, data scientists, and visionaries from NFL clubs, technology startups, finance, and academia. Position...
-
DevSecOps Specialist
6 days ago
Jersey City, New Jersey, United States Aloden, Inc. Full timeJob Description:We are seeking a highly skilled DevSecOps Specialist to join our team at Aloden, Inc. in the NY/NJ area. The ideal candidate will have a deep understanding of DevSecOps, Site Reliability Engineering, and Cloud Security, with a focus on designing and implementing secure software development practices and tools. The estimated salary for this...
-
Blockchain DevSecOps Engineer
4 weeks ago
New York, United States Motion Recruitment Full timeOur client, a leading company in the Web3 and blockchain technology industry, is seeking Blockchain DevSecOps Engineer to join their team. This hybrid role in New York City offers competitive compensation, generous benefits, and the opportunity to work with cutting edge technologies. Required Skills & Experience 5+ years of experience Bachelor's Degree ...
-
DevSecOps Specialist
2 weeks ago
New York, New York, United States Motion Recruitment Full timeAbout the Role:Motion Recruitment is seeking a highly skilled Blockchain DevSecOps Engineer to join our team in New York City.The successful candidate will have the opportunity to work with cutting-edge technologies and contribute to the growth of our company.Job Summary:We are looking for a talented individual with 5+ years of experience in blockchain...
-
Security Engineer
2 months ago
New York, United States Motion Recruitment Full timeOur client is looking for a Security Engineer to lead their security initiatives and protect sensitive company data. The role involves developing security tools, automating workflows, responding to incidents, and collaborating with engineering teams to ensure data security and governance. Ideal candidates will have, hands-on experience in DevOps/DevSecOps...
-
Blockchain Security Engineer
2 weeks ago
New York, New York, United States Motion Recruitment Full timeCompany Overview:Motion Recruitment is a leading company in the Web3 and blockchain technology industry.We are seeking a Blockchain DevSecOps Engineer to join our team in New York City.The successful candidate will have the opportunity to work with cutting-edge technologies and contribute to the growth of our company.Salary:$150,000 - $200,000 per year,...
-
DevSecOps Engineering Lead, NA Technology
6 months ago
Jersey City, NJ, United States Chubb Full timeDo you thrive in fast-paced environments, leading teams to adopt secure and efficient software development practices? Are you passionate about building DevSecOps pipelines that deliver measurable value? If so, we want to hear from you!You might know Chubb as the world’s largest publicly traded P&C insurer, but we also built a market-leading insurtech from...
-
Software Security Engineer
6 days ago
Jersey City, New Jersey, United States Aloden, Inc. Full timeJob Title: Software Security EngineerLocation: NY/NJ (App Sec project hub locations)We are seeking a skilled Software Security Engineer to join our team at Aloden, Inc. in the NY/NJ area. The ideal candidate will have a deep understanding of application security and extensive experience in DevSecOps, Site Reliability Engineering, and Cloud Security.The...
-
Security Engineer
6 days ago
New York, United States Collabera Full timeDescription Home Search Jobs Job Description Security Engineer Remote: New York, New York, US Salary: $86.00 Per Hour Job Code: 357095 End Date: 2025-01-23 Days Left: 29 days, 2 hours left Apply About the Role: EIS AppSec has implemented a baseline threat modeling program to satisfy minimum requirements. The strategic direction is to expand threat...