We are seeking a DevSecOps Engineer to join our clients team and enhance the security of software supply chains. This role focuses on custom Software Bill of Materials generation a critical tool for tracking components ensuring compliance and mitigating vulnerabilities. With SBOMs now mandatory for US government software suppliers this work sets industry standards.
As part of the Software Development Life Cycle team you will integrate thirdparty tooling with inhouse systems to strengthen software security. The team leads efforts in composition analysis vulnerability detection and component traceability ensuring robust protection throughout the development process.
What You Will Do:
- Design and build systems to secure the entire software supply chain.
- Develop and integrate systems for thirdparty vulnerability detection across libraries OS components and containers.
- Work with GitLab CI/CD pipelines and build attestation to ensure security at every stage of development.
- Collaborate with infrastructure and security teams to drive improvements in software security.
- Partner with developers to embed security solutions into their workflows
Skills and Experience We Are Looking For:
- Three or more years of experience as a Software Engineer Developer DevOps or similar role.
- Proficiency in at least one of the following: Golang Java Python.
- General knowledge of Linux Docker Kubernetes Terraform (preferred) AWS.
- Understanding of networking fundamentals (TCP UDP ICMP ARP DNS TLS HTTP SSH etc.).
- Experience with DevOps and Infrastructure as Code (IaC).
- Strong background in developing and managing large distributed systems with a focus on performance availability and scalability.
Why Join This Opportunity
- Work in a global diverse and highly collaborative team.
- Develop cuttingedge security solutions for software supply chains.
- Contribute to missioncritical systems impacting technology at scale.
Ready to make an impact Apply today.