DevSecOps Engineer — Full-Time (Contract)

Please login or register as jobseeker to apply for this job.

TYPE OF WORK

Full Time

WAGE / SALARY

2500

HOURS PER WEEK

37

DATE UPDATED

Jul 24, 2026

JOB OVERVIEW

DevSecOps Engineer — Full-Time (Contract)

Join a fast-growing team building modern, data-driven platforms for enterprise and government clients. We're looking for a DevSecOps Engineer to help implement and maintain secure cloud infrastructure and CI/CD pipelines for our products.

About the Role
You'll work with our team to implement security best practices in our cloud environments and delivery workflows. You'll help automate deployments, implement security controls, and ensure our infrastructure meets compliance requirements. This is a growth-oriented position where you'll expand your skills while contributing to high-impact projects.

Position Details
Type: Full-Time Remote (Contract)
Salary: USD 2,500/month
Hours: 40 hours/week
Schedule: Must overlap with Pacific Time (PST)
Team: Collaborative team of 4 developers

Key Responsibilities
Cloud Security Implementation
Configure and maintain secure cloud environments (IAM, network security, secrets management)
Implement identity and access management best practices
Set up monitoring and alerting for security events
Work with managed services (databases, compute, storage, networking)
CI/CD Pipeline Development
Build and maintain CI/CD pipelines in GitHub Actions, GitLab CI, or Jenkins
Integrate security scanning tools (SAST, dependency scanning, container scanning)
Implement automated testing and deployment processes
Ensure proper environment separation and promotion workflows
Infrastructure as Code
Develop and maintain infrastructure using Terraform, CloudFormation, or similar IaC tools
Create reusable modules for common infrastructure patterns
Document infrastructure decisions and maintain runbooks
Implement GitOps practices for infrastructure management
Security Operations
Monitor and respond to security alerts
Perform regular vulnerability assessments and coordinate remediation
Maintain security documentation and assist with compliance audits
Participate in i ---------- response procedures
Implement security baselines and hardening standards

Team Collaboration
Work with developers to implement secure coding practices
Provide guidance on cloud security best practices
Contribute to architecture discussions from a security perspective
Support development teams with secure deployment patterns

Required Experience
Must Have:
3+ years of experience in DevOps/DevSecOps role
Hands-on experience with at least one major cloud platform (AWS, Azure, GCP)
Proficiency with Infrastructure as Code (Terraform, CloudFormation, Pulumi, or similar)
Experience building CI/CD pipelines with modern tools
Understanding of container security and Docker
Experience with Linux system administration
Basic knowledge of security scanning tools (any SAST/DAST tools)
Experience with Git and version control best practices
Technical Skills:
Scripting abilities in Python, Bash, or similar languages
Understanding of networking concepts (subnets, firewalls, load balancers, VPCs/VNets)
Familiarity with secrets management and certificate handling
Experience with configuration management and automation
Basic understanding of compliance requirements (awareness of frameworks like SOC2, NIST, or HIPAA)
Knowledge of Zero Trust principles and implementation

Nice to Have
Multi-cloud experience
Kubernetes experience (EKS, AKS, GKE)
Experience with specific security tools (Trivy, Checkov, GitLeaks, Snyk)
Familiarity with government compliance frameworks (FedRAMP, NIST 800-53)
Previous experience in SaaS environments
Cloud security certifications (AWS Security, Azure Security, GCP Security)
Experience with observability platforms (Datadog, New Relic, Prometheus/Grafana)
Knowledge of policy-as-code tools (OPA, Sentinel)

Our Tech Stack
Azure | Azure DevOps | GitHub Actions | Terraform/Bicep | Docker | GCP | BigQuery | AWS | GitLab
Python (FastAPI, Flask) | Node.js | React | PostgreSQL | Databricks

What You’ll Love About This Role
Competitive pay: USD 2,500/month
Fully remote with flexible hours (PST overlap required)
High-impact autonomy and visibility
Complex, real-world projects for enterprise & government clients
Collaborate with a Type-A, high-performance engineering team
Long-term growth as the company scales

Who You Are
Systems thinker who automates everything and defaults to secure configurations.
Comfortable owning architecture, compliance guardrails, and i ---------- playbooks.
Excellent communicator who can coach peers and influence with documentation and examples.
Detail-oriented, reliability-obsessed, and pragmatic about risk.

Not a Fit If
You prefer a narrow role or avoid security ownership.
You’re juggling multiple full-time roles or need heavy supervision.

How to Apply
Please include:
Resume highlighting DevSecOps in the cloud experience
GitHub or portfolio with:
IaC samples (Terraform/Bicep) featuring modules, remote state, and policies
CI/CD YAMLs with security gates (SAST/DAST/SCA, IaC scan, image scan, SBOM, signed artifacts)
App code showing secure API patterns (auth, input validation, secrets, logging)
Short cover letter (2–3 paragraphs) including:
Your most impactful DevSecOps initiative (before/after metrics welcome)
A deployment/security challenge you solved and how you measured success
Confirmation of PST overlap availability

Applications without a GitHub or portfolio will not be considered.

VIEW OTHER JOB POSTS FROM:
SHARE THIS POST
facebook linkedin