Senior DevSecOps Security Engineer
Senior DevSecOps Security Engineer
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Senior DevSecOps Security Engineer in the United States.
This role provides a high-impact opportunity to secure web and mobile applications used by millions, integrating advanced application and cloud security technologies across development pipelines. You will focus on anti-bot, anti-fraud, and other modern defenses while embedding security directly into the CI/CD process and SSDLC. This position requires close collaboration with development, product, and infrastructure teams to build practical, scalable security solutions, and to mentor colleagues in best practices. You will lead innovation in security tooling, evaluate emerging technologies, and proactively defend against evolving threats, ensuring organizational resilience. The ideal candidate is technically fluent, detail-oriented, and experienced in DevSecOps, cloud security, and automation in fast-paced environments.
Accountabilities:
- Deploy and manage anti-bot, anti-fraud, and advanced application/API security technologies for web and mobile platforms.
- Analyze traffic patterns to identify suspicious behavior and mitigate potential security risks.
- Integrate security practices into CI/CD pipelines, including automated testing, vulnerability scanning, and compliance checks.
- Optimize InfoSec deployment pipelines using tools such as DAST/SAST, WAF/RASP, EDR/HIDS/FIM, and other security platforms.
- Conduct threat modeling exercises and educate development teams on secure coding and SSDLC best practices.
- Evaluate, recommend, and implement new security tools, driving proof-of-concept projects into production.
- Participate in an on-call rotation to respond to escalated security incidents and maintain platform safety.
Requirements:
- Bachelor’s or Master’s degree in Computer Science, Software Engineering, Cybersecurity, or a related technical field.
- 4+ years of experience in DevSecOps, security engineering, or software engineering with a security focus.
- Proficiency in one or more programming languages (e.g., Java, Node.js, Go, Python).
- Experience with API security (REST, GraphQL) and tools such as Postman or Insomnia.
- Familiarity with DevOps tools including Kubernetes, Terraform, and GitHub Actions.
- Experience implementing SSDLC frameworks (Agile, BSIMM, OWASP) is a plus.
- Relevant certifications in DevSecOps, Cloud Security, or Incident Response are advantageous.
- Strong analytical, problem-solving, and communication skills; ability to explain technical concepts to diverse audiences.
- Proven ability to maintain confidentiality and execute tasks with high accuracy and thoroughness.
Benefits:
- Competitive base salary: $150,000 – $185,000 + bonus.
- Health, dental, and vision coverage.
- Paid time off, holidays, and parental leave.
- 401(k) with company contribution.
- Access to training, professional development, and tuition reimbursement.
- Life and disability insurance (short-term and long-term).
- Employee Assistance Programs (EAP) and wellness initiatives.
- Unique perks including event tickets, company discounts, and development opportunities.
