RoleCall

DevSecOps Engineer

orioninnovation·

ansibleawsazureclouddockerfluxgoogle-cloud-platformjavajenkinskubernetesmicroservicesmysqlnosqlopen-sourceoraclepythonsqlterraformvmware

Orion Innovation is a premier, award-winning, global business and technology services firm.  Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity.  We work with a wide range of clients across many industries including financial services, professional services, telecommunications and media, consumer products, automotive, industrial automation, professional sports and entertainment, life sciences, ecommerce, and education.

 

Job Description: Job Title: DevSecOps Engineer IV:

 

Description:

DevSecOps Engineer to strengthen our software development lifecycle by embedding security practices into every stage of delivery. This role will work across development, operations, and security teams to ensure applications and infrastructure are secure, compliant, and resilient, while maintaining speed and efficiency in deployment.

The ideal candidate will be responsible for streamlining our development and operational processes, ensuring efficient deployment and management of applications in cloud environments. This role requires a strong understanding of cloud computing, IT infrastructure, and software development practices. You will work closely with development teams to implement CI/CD pipelines, manage cloud resources, and enhance system performance.

 

Key Responsibilities:

•             10 years’ experience in the performance of Release management in DEV/SIT/CAT/PROD environments for major/minor releases, patches and upgrades

•             Ability to Create/ manage/support Continuous Integration/Continuous Delivery (CI/CD) pipeline;

•             10 years’ experience in the support of and to provide code promotion and monitoring; and Support data fixes as required.

•             3 years’ experience with Copilot and /or any AI-enabled tasks to convert manual tasks into automated workflows

•             Demonstrated expertise in AI technologies, methodologies, frameworks, tools, and enterprise AI implementation practices.

•             Integrate existing automation frameworks with AI-based solutions to improve coverage, reliability, and efficiency.

•             Ensure all AI scripts and programs are fully executable on postal-issued laptops within approved security and environment constraints.

•             5 years’ experience in the design, implementing, and maintaining secure CI/CD pipelines with automated security checks.

•             Knowledge of Integration application security testing tools (SAST, DAST, SCA) into development workflows.

•             Ability to collaborate with developers to enforce secure coding practices

•             3 year’s Expertise Secure Coding Standards enforced during development

•             Static and Dynamic Application Security Testing (SAST/DAST), integrated into pipelines.

•             Automate compliance checks, code analysis in CI/CD Pipelines.

•             Hands on experience with Jenkins, GitLab CI/CD, Azure DevOps, or CircleCI to embed security checks.

•             Deep knowledge of AWS, Azure, or GCP security services and configurations.

•             Experience securing Docker and Kubernetes workloads.

•             Proficiency in languages like Python, Java, to automate security tasks

•             Familiarity with Terraform, Ansible, or CloudFormation, with emphasis on secure configurations.

•             Collaborate with software developers and IT staff to oversee code releases and deployments.

•             Design and implement scalable cloud architecture using platforms such as AWS, Google Cloud Platform, or Azure.

•             Manage containerization technologies such as Docker and orchestration tools like Kubernetes.

•             Utilize Infrastructure as Code (IaC) tools like Ansible for automated provisioning of infrastructure.

•             Ensure system reliability through monitoring, logging, and alerting using tools like Jenkins and Git.

•             Develop RESTful APIs and microservices to facilitate communication between applications.

•             Maintain databases including MySQL, PostgreSQL, Oracle, and Microsoft SQL Server.

•             Participate in Agile development processes to improve software delivery cycles.

•             Troubleshoot issues across the application stack from front-end to back-end services.

•             Manage and secure cloud environments (AWS, Azure, GCP) and containerized workloads (Docker, Kubernetes)

•             Implement Infrastructure as Code (IaC) with secure configurations using Terraform, Ansible, or CloudFormation.

•             Monitor and respond to security incidents, leveraging SIEM tools and observability platforms.

•             Ensure compliance with industry standards and regulations (ISO 27001, NIST, GDPR, HIPAA, PCI DSS).

•             Provide training and guidance to teams on DevSecOps best practices.

 

Qualifications:

• Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).

• Proven experience in DevOps, Security Engineering, or Cloud Security.

• Strong knowledge of CI/CD tools (Jenkins, GitLab CI/CD, Azure DevOps).

• Hands on experience with cloud platforms (AWS, Azure, GCP).

• Proficiency in programming/scripting languages (Python, Java).

• Familiarity with containerization and orchestration (Docker, Kubernetes).

• Experience with security automation tools and vulnerability management.

• Experience with AWS & Azure & the development of tools and processes to drive DevSecOps maturity by automating builds, regression testing, monitoring, and pushing releases across environments • Experience with troubleshooting, triaging, and resolving issues in CI/CD pipeline failures or latency • Experience with developing enterprise cloud-native platforms using Kubernetes, Docker, or CI/CD tools, including GitHub Actions or GitLab CI/CD • Experience with employing an Infrastructure as Code (IaC) approach to managing cloud environments.

• Experience with creating and improving automation scripts across multiple technical stacks using Python, • Experience with troubleshooting and resolving issues related to both open source and commercial tools in public cloud environments • Experience in working with GitOps tools (Flux, ArgoCD) • CKAD or CKA Certification • AWS Certification, including Solutions Architect, DevOps Engineer, Networking, or Security • Security Engineering or Cyber Engineering Certification, including Security+ • Proficiency in scripting languages • Experience with virtualization technologies including VMware and OpenStack.

• Familiarity with service-oriented architecture (SOA) principles and web services (SaaS, PaaS).

• Knowledge of NoSQL databases as well as SQL-based systems.

• Understanding of DevOps methodologies including CI/CD practices.

• Experience with configuration management tools.

 

Preferred Certifications:

• Certified DevSecOps Professional (CDP) • Certified Kubernetes Security Specialist (CKS) • AWS/Azure/GCP Security Certifications

 

Additional Required Skills/Experience:

o A minimum of thirteen (13) to twenty (20) years’ relevant experience.

o A degree from an accredited College/University in the applicable field of services is required. If the individual's degree is not in the applicable field, then four additional years of related experience is required.

 

 

 

Orion is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, citizenship status, disability status, genetic information, protected veteran status, or any other characteristic protected by law.

Candidate Privacy Policy

Orion Systems Integrators, LLC and its subsidiaries and its affiliates (collectively, “Orion,” “we” or “us”) are committed to protecting your privacy. This Candidate Privacy Policy (orioninc.com) (“Notice”) explains:

  • What information we collect during our application and recruitment process and why we collect it;
  • How we handle that information; and
  • How to access and update that information.

Your use of Orion services is governed by any applicable terms in this notice and our general Privacy Policy.

 

DevSecOps Engineer at orioninnovation · RoleCall