DevSecOps Engineer
1 month ago
New York eHealth Collaborative is seeking a skilled DevSecOps Engineer to join our team. As a DevSecOps Engineer, you will be responsible for designing and implementing various CICD patterns while adhering to industry standards and policies.
You will work closely with the Engineering and DevOps teams to design and automate security controls as part of their CI/CD pipelines. Your responsibilities will include scanning and tracking the remediation of vulnerabilities in code, containers, and infrastructure as code, implementing automation to perform security compliance testing into the development lifecycle, and developing and reporting Key Risk Indicators (KRIs) within the SSDLC processes.
You will also be responsible for proactively monitoring network traffic and utilization to discover and prevent systematic and performance issues to optimize the DevOps landscape. Additionally, you will write Infrastructure as Code (IaC) using industry-standard tools and services, set up and maintain CI/CD pipelines with application teams, and work on finding alternative solutions as needed in our cloud environment.
The ideal candidate will have a Bachelor's Degree in Computer Engineering, Computer Science, or a related field, and 4+ years of hands-on security engineer and operations experience securing cloud environments and developing automation workflows. You will also have practical experience in implementing security checks within a Secure SDLC Pipeline, hands-on experience with CI/CD tools such as Jenkins, Git, Bitbucket, and CloudFormation, and scripting experience with one or more scripting languages such as PowerShell, Python, Perl, and YAML.
You will be able to work within a security framework such as NIST, HITRUST, and ISO, and be capable of interacting internally with team members and externally with vendors in a professional and collaborative way. Experience in deploying and maintaining monitoring tools and services, certification in AWS cloud, DevOps, or related technology, and CISM, CISSP, or other security certifications are a huge plus.
New York eHealth Collaborative is an Equal Opportunity Employer, and we are dedicated to building a diverse, inclusive, and authentic workplace. If you are excited about this role but your past experience doesn't align perfectly with everything listed in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles.