cover image
U.S. Bank

DevSecOps Security Engineer

Hybrid

Minneapolis, United states

$ 115,500 /year

Full Time

29-01-2026

Share this job:

Skills

Communication Python Risk Management Encryption Cloud Security GitLab CI/CD Jenkins Problem-solving Architecture Azure AWS SDLC GCP CI/CD Pipelines Gitlab CI Terraform

Job Specifications

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.

Job Description

We are seeking a Security Engineer with strong DevSecOps experience to embed security into our delivery pipelines and cloud environments. This role focuses heavily on automation, Infrastructure‑as‑Code, pipeline security, and cloud-native security practices. You will partner closely with engineering, cloud, and product teams to ensure secure, scalable, and frictionless delivery across the enterprise.

Responsibilities

Design, implement, and support security controls within CI/CD pipelines, ensuring automated, repeatable, and scalable security checks.
Integrate security tooling and automation into Jenkins, GitLab CI, and other pipeline technologies.
Develop and maintain Terraform modules and Infrastructure‑as‑Code patterns that embed security from the ground up.
Build security automation using Python, enabling faster, safer deployments and reducing reliance on manual reviews.
Provide architecture and advisory support on Containers vs. Virtual Machines vs. Serverless models, including security impact and tradeoffs.
Implement cloud-native security patterns across AWS, Azure, or GCP environments.
Contribute to enterprise security frameworks, standards, and patterns to advance DevSecOps adoption.
Identify emerging risks, help teams understand impacts, and define mitigation strategies.
Support compliance, secure design, vendor risk assessments, and policy development.
Collaborate cross-functionally with engineering, operations, and product teams to promote secure-by-design principles.

Basic Qualifications

Bachelor’s degree in a related field or equivalent experience.
3–5 years of experience in Information Security, Cloud Security, or Security Engineering.
Hands‑on experience with CI/CD pipelines and integrating security into automated delivery workflows.
Practical experience with Terraform, Python, and one or more CI/CD platforms (Jenkins, GitLab).

Preferred Skills & Experience

Strong understanding of DevSecOps principles, secure SDLC, and automation-driven security.
Experience embedding security scanners (SAST, SCA, container scanning) directly into pipelines.
Hands-on cloud security experience in AWS, Azure, or GCP.
Deep knowledge of securing containers, serverless workloads, and virtual machines.
Understanding of IT architecture, infrastructure, and risk management.
Knowledge of data security and privacy principles, including encryption, identity, secrets management, and least‑privilege design.
Experience implementing security controls aligned to regulatory frameworks (PCI, SOX, GDPR, etc.).
Ability to create clear technical documentation and communicate security concepts to both technical and non-technical audiences.
Relevant certifications (CISSP, cloud security certifications, Terraform, etc.) are a plus.

Preferred Soft Skills

Strong written and verbal communication skills.
Ability to simplify complex concepts and influence engineering teams effectively.
Demonstrated problem-solving mindset and focus on continuous improvement.
Ability to prioritize work and manage competing demands in a fast-paced environment.
Collaborative working style with cross-functional teams.

Location Expectations

This role requires working from a U.S. Bank location three (3) or more days per week as part of a hybrid work model.

Why Join Us

You will play a critical role in shaping how security is integrated into engineering workflows across the enterprise. If you thrive in fast-paced environments, enjoy building automation, and want to influence modern cloud and DevSecOps security practices, we encourage you to apply.

If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.

Benefits:

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:

Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of

About the Company

At U.S. Bank, we help millions of clients achieve their goals with a balance of best-in-class technology and human expertise tailored to individual needs. As the fifth-largest commercial bank in the United States, we've built a reputation for strength and stability across a diversified mix of businesses, including commercial and institutional banking, business banking, payments, wealth management and consumer banking. We've been named one of the World's Most Ethical Companies(r) by the Ethisphere Institute and the most admir... Know more