Job Title: Senior DevSecOps Engineer - Hybrid
Duration (Contract): 1 12 Months
Client Location: Mechanicsburg PA 17050
Location Preference: Hybrid
Job Description:
As a Senior DevSecOps Engineer you will design and implement security by default automation for cloud delivery environments focusing on preventive controls compliance automation and secure infrastructure patterns. You will build reusable infrastructure and pipeline templates integrate security scanning and compliance checks into CI/CD workflows and support secure adoption across teams while aligning solutions to CJIS and NIST security frameworks.
Key Responsibilities:
- Design and maintain secure by default infrastructure templates using AWS CDK and CloudFormation.
- Implement automated security and compliance checks aligned to CJIS and NIST 800 53 controls.
- Integrate SAST SCA container IaC and secret scanning into CI/CD pipelines.
- Develop reusable CI/CD templates with enforcement gates and exception handling.
- Configure AWS Config rules Security Hub standards and GuardDuty integrations.
- Produce audit ready compliance evidence and reporting artifacts.
- Harden and evolve templates as compliance requirements change.
- Coach engineering teams on adoption of secure DevSecOps patterns.
- Identify gaps requiring escalation for enterprise level enforcement.
Required Skills Experiences Education and Competencies:
- 5 years of hands on experience in AWS DevSecOps and security automation.
- Strong expertise with AWS CDK and CloudFormation with working knowledge of Terraform.
- Experience authoring CI/CD pipelines in GitHub Actions and Azure DevOps.
- Proficiency in Python and Bash with PowerShell for Windows automation.
- Ability to read and integrate Java and C# codebases for security scanning.
- Practical knowledge of CJIS and NIST 800 53 control families and compliance automation.
- Strong analytical documentation and problem solving skills.
- Excellent communication skills and ability to collaborate across technical teams.
The hourly range for roles of this nature are $40.00 to $80.00/hr. Rates are heavily dependent on skills experience location and industry.
cyberThink is an Equal Opportunity Employer.
Job Title: Senior DevSecOps Engineer - Hybrid Duration (Contract): 1 12 Months Client Location: Mechanicsburg PA 17050 Location Preference: Hybrid Job Description: As a Senior DevSecOps Engineer you will design and implement security by default automation for cloud delivery environments focusi...
Job Title: Senior DevSecOps Engineer - Hybrid
Duration (Contract): 1 12 Months
Client Location: Mechanicsburg PA 17050
Location Preference: Hybrid
Job Description:
As a Senior DevSecOps Engineer you will design and implement security by default automation for cloud delivery environments focusing on preventive controls compliance automation and secure infrastructure patterns. You will build reusable infrastructure and pipeline templates integrate security scanning and compliance checks into CI/CD workflows and support secure adoption across teams while aligning solutions to CJIS and NIST security frameworks.
Key Responsibilities:
- Design and maintain secure by default infrastructure templates using AWS CDK and CloudFormation.
- Implement automated security and compliance checks aligned to CJIS and NIST 800 53 controls.
- Integrate SAST SCA container IaC and secret scanning into CI/CD pipelines.
- Develop reusable CI/CD templates with enforcement gates and exception handling.
- Configure AWS Config rules Security Hub standards and GuardDuty integrations.
- Produce audit ready compliance evidence and reporting artifacts.
- Harden and evolve templates as compliance requirements change.
- Coach engineering teams on adoption of secure DevSecOps patterns.
- Identify gaps requiring escalation for enterprise level enforcement.
Required Skills Experiences Education and Competencies:
- 5 years of hands on experience in AWS DevSecOps and security automation.
- Strong expertise with AWS CDK and CloudFormation with working knowledge of Terraform.
- Experience authoring CI/CD pipelines in GitHub Actions and Azure DevOps.
- Proficiency in Python and Bash with PowerShell for Windows automation.
- Ability to read and integrate Java and C# codebases for security scanning.
- Practical knowledge of CJIS and NIST 800 53 control families and compliance automation.
- Strong analytical documentation and problem solving skills.
- Excellent communication skills and ability to collaborate across technical teams.
The hourly range for roles of this nature are $40.00 to $80.00/hr. Rates are heavily dependent on skills experience location and industry.
cyberThink is an Equal Opportunity Employer.
View more
View less