ComPsych Logo

ComPsych

Senior DevSecOps Engineer

Posted 4 Hours Ago
Remote
Hiring Remotely in United States
150K-200K Annually
Senior level
Remote
Hiring Remotely in United States
150K-200K Annually
Senior level
Designs and owns CI/CD, cloud infrastructure, deployment automation, security gates, and observability across multiple application teams. Establishes shared DevSecOps standards, validates AI-generated pipelines and infrastructure, supports production operations and on-call response, and guides teams on secure, reliable software delivery. The role requires production experience with AWS or Azure, Kubernetes, containers, serverless, infrastructure as code, modern programming languages, security automation, compliance, and application monitoring.
The summary above was generated by AI
About ComPsych

ComPsychⓇ is the worldwide leader in organizational mental health, well-being, and absence management, dedicated to igniting human potential in workplaces across the globe. For over 40 years, we have combined the best in technology with unmatched human expertise to help individuals and their organizations thrive. Our GuidanceResourcesⓇ and AbsenceResourcesⓇ solutions deliver end-to-end mental health, well-being, work-life, health navigation, and absence support to more than 75,000 customers worldwide,  touching more than 160 million lives across 200 countries. Visit compsych.com to find out why 40% of the Fortune 500 choose ComPsych for their mental health and absence management needs.

About the Role

We're modernizing how ComPsych builds and ships applications — moving to the cloud, standardizing CI/CD, and giving our Software Engineering teams the ability to build, deploy, and own their products end to end. You'll be part of our DevSecOps team, working alongside your peers there and across multiple application teams to bring consistent, high-quality CI/CD, infrastructure, and deployment practices to the products we ship.

We're looking for a Senior DevSecOps Engineer who already works this way and wants to help shape how our engineering organization delivers software. This is a high-leverage role: your time goes toward infrastructure design and technical direction across the teams you support, directing AI to build pipelines and automation and validating what it produces before it ships.

What You'll Do

AI changes what your time goes toward. You're still accountable for the full delivery lifecycle across the application teams you support — design, pipelines, security, and production — but your hands-on role in each shifts.

  • Own CI/CD and infrastructure design across the teams you support. Architecture, deployment strategy (blue/green, canary, feature flags), and the specs that direct AI-built pipelines, infrastructure code, and automation — coding yourself when it counts.
  • Decide what needs verification and prove it does the job. Pipeline tests, policy-as-code, and security gates are a design decision, not a default — you validate that they actually prove what they claim.
  • Build shared standards with the rest of DevSecOps, not one-off fixes per team. Work with your DevSecOps peers on the common patterns, tooling, and practices that make every team you support faster and safer, and contribute your own experience back into what the group builds.
  • Own application observability and unblock teams in production. Instrument the services you support, tie alerting to product SLOs, and help engineers across teams debug and resolve issues quickly when something breaks.
  • Keep judgment and accountability human. Reviews, deployment calls, on-call response, and what an incident teaches you stay yours, regardless of who or what wrote the code.
  • Raise the bar for how the teams you support work with AI, coaching engineers on specifying, delegating, and validating rather than treating DevSecOps as someone else's problem.
What We're Looking For
  • You already work this way. Agentic AI is your primary surface for planning and building CI/CD and infrastructure — you write specs it can execute against and catch what it gets subtly wrong, not just what fails a test.
  • You've built and operated production CI/CD and cloud infrastructure at real scale (AWS or Azure), including carrying on-call load, so you know what good looks like independent of who, or what, writes the code.
  • You treat testing, security, and observability as designed-in requirements, not something a separate function catches later. In a system that carries behavioral health data, “it works” and “it's safe” are the same bar.
  • You work effectively across multiple application teams and with your DevSecOps peers, building practices that generalize rather than solving the same problem differently each time — judgment AI doesn't replace.
  • You have hands-on depth building application CI/CD and deployment automation: containers and Kubernetes for application workloads (Helm or similar), serverless functions, and one or more IaC tools (Terraform, CloudFormation, or ARM) used in production, plus fluency in at least one modern language (for example, Python or Java).
  • You build security in, shift-left by default. SAST/DAST/SCA and secrets scanning in the pipeline, least-privilege IAM, and encryption in transit and at rest are the norm, built within the compliance frameworks we operate under, including HIPAA/HITRUST and SOC 2.
Compensation and Benefits
  • Full benefits package, including Paid Time Off (PTO), medical, dental, vision, 401(k) with match, robust EAP, wellness program, and much more
  • The salary range for this position is $150,000 - $200,000 (USD). The base salary range represents the anticipated low end and high end of the range for this position. The actual compensation will be influenced by a wide range of factors including, but not limited to previous experience, education, pay market/geography, and scheduled hours. 

EEO


ComPsych is an equal opportunity employer.  All applicants will be considered for employment regardless of race, color, age, genetics, religion, gender, sexual orientation, gender identity, national origin, disability or protected veteran status and any other characteristic protected by federal, state or local laws. ComPsych Corporation maintains a drug free workplace.


ComPsych Corporation and its affiliates is committed to the responsible and transparent handling of your personal data. Information collected during the recruitment process will be used to assess your application and, where applicable, to prepare and administer an offer of employment. Your personal data will be processed in accordance with the privacy laws applicable in your country or jurisdiction of residence, which may include the California Consumer Privacy Act (CCPA), the EU General Data Protection Regulation (GDPR), Canada's Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial privacy legislation, and other applicable national or local privacy laws. For full details on what personal data we collect, how we use it, your rights as an Applicant, and how to contact us with privacy-related questions, please review the relevant Applicant Data Privacy Notices: US Applicant Data Privacy Notice & Canada Data Privacy Notice. 

Similar Jobs

8 Hours Ago
Remote
United States
135K-216K Annually
Senior level
135K-216K Annually
Senior level
Aerospace • Information Technology • Security • Cybersecurity • Defense
Leads DevSecOps and cloud transformation across AWS Commercial and GovCloud environments. Designs secure GitLab CI/CD pipelines, automates Kubernetes and Terraform infrastructure, implements GitOps and developer self-service, and enforces IAM, compliance, vulnerability management, and security controls. Operates OpenShift and EKS platforms, leads observability and critical incident response, drives reliability improvements, develops engineering roadmaps, and mentors technical teams supporting FedRAMP and DoD environments.
Top Skills: Amazon CloudwatchAmazon EbsAmazon EksAmazon S3AnsibleAnsible TowerAqua SecurityAWSAws Ec2Aws GovcloudAws IamAws KmsAws Secrets ManagerAws VpcCisDastDatadogDynatraceElastic Load BalancingFedrampFismaGitlab Ci/CdGitopsJenkinsKubernetesOpensearchOpenshiftOpentelemetryRosaRoute 53SastScaSplunkSpring BootStigTerraform
29 Days Ago
Remote or Hybrid
USA
Senior level
Senior level
Software
Lead DevSecOps role focused on embedding application security into the SDLC: implement SAST/DAST/SCA and secrets management, secure Azure deployments, integrate security into CI/CD, manage vulnerabilities and compliance, mentor teams, and automate secure infrastructure with IaC (Terraform).
Top Skills: Api SecurityAquaAzureAzure DevopsAzure Key VaultAzure Security CenterBlack DuckBurp SuiteCheckmarxCi/CdDastGithub Advanced SecurityHashicorp VaultMendMicroservicesOwasp ZapPrisma CloudSastScaSecrets ManagementSemgrepSnykSonarqubeTerraformVeracodeWiz
9 Days Ago
In-Office or Remote
Senior level
Senior level
Information Technology • Consulting
Embeds application security into the SDLC through DevSecOps processes, security assessments, repository scanning, vulnerability triage, remediation validation, and secure code review. Uses tools such as Burp Suite, CodeQL, SAST, SCA, and secret scanning across applications, APIs, cloud workloads, and infrastructure. Develops security metrics and executive dashboards, coaches development teams, participates in Agile ceremonies, and promotes secure coding and responsible AI-assisted security practices.
Top Skills: AgileApi Security Top 10APIsBurp SuiteCi/CdCloud SecurityCodeqlDependency AnalysisGithub Advanced SecurityIdentity And Access ManagementJavaOwasp Top 10PythonSastScaScrumSecret Scanning

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account