remote
DevSecOps Engineer - Boeing
Security Engineer
Lead secure DevOps practices, integrating security into CI/CD pipelines using Docker, Kubernetes, AWS, and Terraform to deliver compliant, high‑quality software for defense and commercial projects.
About the role
Key Responsibilities
- Design, implement, and maintain secure CI/CD pipelines that integrate automated security testing and compliance checks.
- Collaborate with development, security, and operations teams to embed security controls throughout the software lifecycle.
- Manage containerized workloads on Kubernetes, ensuring secure configuration, image scanning, and runtime protection.
- Provision and manage cloud infrastructure (AWS) using IaC tools such as Terraform, enforcing least‑privilege access and audit logging.
- Conduct vulnerability assessments, penetration testing, and threat modeling to identify and remediate risks.
- Develop and maintain security documentation, runbooks, and incident response procedures.
Requirements
- 5+ years of experience in DevOps/DevSecOps roles with a strong security focus.
- Proficiency with CI/CD tools (Jenkins, GitLab CI, GitHub Actions) and container orchestration (Kubernetes).
- Hands‑on experience with AWS services, Terraform, and security scanning tools (Snyk, Trivy, Aqua).
- Solid understanding of network security, identity & access management, and compliance frameworks (NIST, ISO 27001).
- Excellent problem‑solving skills and ability to communicate complex security concepts to technical and non‑technical stakeholders.
Skills
cicddockerkubernetesawsterraform