Orion Innovation Logo

Orion Innovation

DevSecOps Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in US
Expert/Leader
Remote
Hiring Remotely in US
Expert/Leader
Design, implement, and maintain secure CI/CD pipelines and cloud-native infrastructure. Integrate SAST/DAST/SCA and automated compliance checks, secure container and Kubernetes workloads, automate security tasks with Python/Java, and collaborate with development and operations teams to embed security across the software delivery lifecycle. Lead incident monitoring, remediation, and DevSecOps maturity efforts across AWS/Azure/GCP environments.
The summary above was generated by AI

Orion Innovation is a premier, award-winning, global business and technology services firm.  Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity.  We work with a wide range of clients across many industries including financial services, professional services, telecommunications and media, consumer products, automotive, industrial automation, professional sports and entertainment, life sciences, ecommerce, and education.


Job Description: Job Title: DevSecOps Engineer IV:


Description:

DevSecOps Engineer to strengthen our software development lifecycle by embedding security practices into every stage of delivery. This role will work across development, operations, and security teams to ensure applications and infrastructure are secure, compliant, and resilient, while maintaining speed and efficiency in deployment.

The ideal candidate will be responsible for streamlining our development and operational processes, ensuring efficient deployment and management of applications in cloud environments. This role requires a strong understanding of cloud computing, IT infrastructure, and software development practices. You will work closely with development teams to implement CI/CD pipelines, manage cloud resources, and enhance system performance.


Key Responsibilities:

•             10 years’ experience in the performance of Release management in DEV/SIT/CAT/PROD environments for major/minor releases, patches and upgrades

•             Ability to Create/ manage/support Continuous Integration/Continuous Delivery (CI/CD) pipeline;

•             10 years’ experience in the support of and to provide code promotion and monitoring; and Support data fixes as required.

•             3 years’ experience with Copilot and /or any AI-enabled tasks to convert manual tasks into automated workflows

•             Demonstrated expertise in AI technologies, methodologies, frameworks, tools, and enterprise AI implementation practices.

•             Integrate existing automation frameworks with AI-based solutions to improve coverage, reliability, and efficiency.

•             Ensure all AI scripts and programs are fully executable on postal-issued laptops within approved security and environment constraints.

•             5 years’ experience in the design, implementing, and maintaining secure CI/CD pipelines with automated security checks.

•             Knowledge of Integration application security testing tools (SAST, DAST, SCA) into development workflows.

•             Ability to collaborate with developers to enforce secure coding practices

•             3 year’s Expertise Secure Coding Standards enforced during development

•             Static and Dynamic Application Security Testing (SAST/DAST), integrated into pipelines.

•             Automate compliance checks, code analysis in CI/CD Pipelines.

•             Hands on experience with Jenkins, GitLab CI/CD, Azure DevOps, or CircleCI to embed security checks.

•             Deep knowledge of AWS, Azure, or GCP security services and configurations.

•             Experience securing Docker and Kubernetes workloads.

•             Proficiency in languages like Python, Java, to automate security tasks

•             Familiarity with Terraform, Ansible, or CloudFormation, with emphasis on secure configurations.

•             Collaborate with software developers and IT staff to oversee code releases and deployments.

•             Design and implement scalable cloud architecture using platforms such as AWS, Google Cloud Platform, or Azure.

•             Manage containerization technologies such as Docker and orchestration tools like Kubernetes.

•             Utilize Infrastructure as Code (IaC) tools like Ansible for automated provisioning of infrastructure.

•             Ensure system reliability through monitoring, logging, and alerting using tools like Jenkins and Git.

•             Develop RESTful APIs and microservices to facilitate communication between applications.

•             Maintain databases including MySQL, PostgreSQL, Oracle, and Microsoft SQL Server.

•             Participate in Agile development processes to improve software delivery cycles.

•             Troubleshoot issues across the application stack from front-end to back-end services.

•             Manage and secure cloud environments (AWS, Azure, GCP) and containerized workloads (Docker, Kubernetes)

•             Implement Infrastructure as Code (IaC) with secure configurations using Terraform, Ansible, or CloudFormation.

•             Monitor and respond to security incidents, leveraging SIEM tools and observability platforms.

•             Ensure compliance with industry standards and regulations (ISO 27001, NIST, GDPR, HIPAA, PCI DSS).

•             Provide training and guidance to teams on DevSecOps best practices.


Qualifications:

• Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).

• Proven experience in DevOps, Security Engineering, or Cloud Security.

• Strong knowledge of CI/CD tools (Jenkins, GitLab CI/CD, Azure DevOps).

• Hands on experience with cloud platforms (AWS, Azure, GCP).

• Proficiency in programming/scripting languages (Python, Java).

• Familiarity with containerization and orchestration (Docker, Kubernetes).

• Experience with security automation tools and vulnerability management.

• Experience with AWS & Azure & the development of tools and processes to drive DevSecOps maturity by automating builds, regression testing, monitoring, and pushing releases across environments • Experience with troubleshooting, triaging, and resolving issues in CI/CD pipeline failures or latency • Experience with developing enterprise cloud-native platforms using Kubernetes, Docker, or CI/CD tools, including GitHub Actions or GitLab CI/CD • Experience with employing an Infrastructure as Code (IaC) approach to managing cloud environments.

• Experience with creating and improving automation scripts across multiple technical stacks using Python, • Experience with troubleshooting and resolving issues related to both open source and commercial tools in public cloud environments • Experience in working with GitOps tools (Flux, ArgoCD) • CKAD or CKA Certification • AWS Certification, including Solutions Architect, DevOps Engineer, Networking, or Security • Security Engineering or Cyber Engineering Certification, including Security+ • Proficiency in scripting languages • Experience with virtualization technologies including VMware and OpenStack.

• Familiarity with service-oriented architecture (SOA) principles and web services (SaaS, PaaS).

• Knowledge of NoSQL databases as well as SQL-based systems.

• Understanding of DevOps methodologies including CI/CD practices.

• Experience with configuration management tools.


Preferred Certifications:

• Certified DevSecOps Professional (CDP) • Certified Kubernetes Security Specialist (CKS) • AWS/Azure/GCP Security Certifications


Additional Required Skills/Experience:

o A minimum of thirteen (13) to twenty (20) years’ relevant experience.

o A degree from an accredited College/University in the applicable field of services is required. If the individual's degree is not in the applicable field, then four additional years of related experience is required.




Orion is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, citizenship status, disability status, genetic information, protected veteran status, or any other characteristic protected by law.

Candidate Privacy Policy

Orion Systems Integrators, LLC and its subsidiaries and its affiliates (collectively, “Orion,” “we” or “us”) are committed to protecting your privacy. This Candidate Privacy Policy (orioninc.com) (“Notice”) explains:

  • What information we collect during our application and recruitment process and why we collect it;
  • How we handle that information; and
  • How to access and update that information.

Your use of Orion services is governed by any applicable terms in this notice and our general Privacy Policy.


Similar Jobs

8 Days Ago
Easy Apply
Remote
United States
Easy Apply
130K-225K Annually
Senior level
130K-225K Annually
Senior level
Artificial Intelligence • Consumer Web • Digital Media • Fintech • Marketing Tech • Software • Financial Services
Lead and build the DevSecOps function: implement SOC 2 controls, automate compliance and evidence pipelines, own cloud security posture, CI/CD security gates, vulnerability management, and AI-assisted auto-remediation to embed security as code across the developer lifecycle.
Top Skills: Ai/LlmAspmCi/CdContainer ScanningCspmDrataIac ScanningIamInfrastructure-As-CodeKey ManagementLoggingMulti-CloudPrisma CloudSastSbomScaSecret ScanningSIEMSnykSoc 2TerraformVantaWiz
2 Days Ago
Remote
United States
113K-138K Annually
Senior level
113K-138K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
Senior DevSecOps engineer responsible for designing and maintaining Terraform IaC, building and standardizing CI/CD pipelines, enforcing policy-as-code and pipeline safety, mentoring junior engineers, participating in on-call incident response, and collaborating with security and architecture teams to ensure secure, reliable cloud deployments.
Top Skills: AWSBashCloudwatchCodepipelineConftestDatadogDockerEcsGitGitlab CiGrafanaJenkinsKubernetesOpaPrometheusPythonSentinelTerraformTerraform CloudTerraform Enterprise
2 Days Ago
In-Office or Remote
140K-170K Annually
Expert/Leader
140K-170K Annually
Expert/Leader
Aerospace • Information Technology • Cybersecurity • Defense
Design, build, and maintain cloud-native DevSecOps CI/CD pipelines in AWS using GitLab; secure container environments (ECS/EKS); interpret cybersecurity guidelines to remediate vulnerabilities; onboard and train customers; perform GitLab upgrades; research and recommend pipeline improvements; document systems and mentor junior teammates.
Top Skills: Amazon EcsAmazon EksAWSCi/CdContainerizationDevsecopsGitGitlabGitlab-Ci.Yaml

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account