- Company Name
- Vertex Elite LLC
- Job Title
- DevSecOps Engineer
- Job Description
-
**Job title:** DevSecOps Engineer
**Role Summary:**
Design, implement, and maintain secure CI/CD pipelines. Integrate security controls into development workflows, automate vulnerability detection, and ensure compliance across cloud and on‑prem environments. Act as the bridge between development, security, and operations teams.
**Expectations:**
- Deliver robust, production‑ready pipelines that embed security checks from code commit to deployment.
- Maintain continuous monitoring of security posture and respond promptly to incidents.
- Ensure adherence to industry standards (ISO 27001, NIST, CIS).
- Collaborate with cross‑functional teams to embed security best practices.
**Key Responsibilities:**
- Build and maintain CI/CD pipelines using Jenkins, GitLab CI, or equivalent.
- Write and maintain Groovy scripts for pipeline automation and orchestration.
- Harden build environments, container images, and deployment workflows.
- Integrate static, dynamic, and dependency‑scan tools (SAST, DAST, SBOM).
- Automate infrastructure as code with Terraform, CloudFormation, or similar.
- Monitor security dashboards, alert on vulnerabilities, and remediate findings.
- Conduct regular security reviews, penetration testing, and network hardening.
- Document security processes and provide training to developers and ops staff.
**Required Skills:**
- Proficient in Groovy, Bash, and/or Python scripting.
- Extensive experience with CI/CD tooling (Jenkins, GitLab CI/CD, CircleCI).
- Strong knowledge of containerization (Docker, Kubernetes) and cloud services (AWS, Azure, GCP).
- Familiarity with security tooling: SAST/DAST, SBOM, vulnerability scanners, secret management (Vault, AWS Secrets Manager).
- Experience with infrastructure‑as‑code (Terraform, CloudFormation).
- Understanding of DevSecOps principles, threat modeling, and secure coding practices.
- Ability to analyze logs, metrics, and security alerts.
- Excellent problem‑solving and communication skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent professional experience.
- Relevant certifications (e.g., AWS Certified DevOps Engineer, Certified Kubernetes Security Specialist, OSCP, or equivalent) preferred but not mandatory.