remote
DevSecOps Engineer - Sphinx Defense
Security Engineer
DevSecOps Engineer responsible for designing, implementing, and automating secure, cloud‑native infrastructure and CI/CD pipelines using AWS, Kubernetes, Docker, Terraform, and Python while integrating security controls throughout the software development lifecycle.
About the role
Key Responsibilities
- Design, build, and maintain automated CI/CD pipelines that embed security testing and compliance checks.
- Implement and manage container orchestration platforms (Kubernetes) and container runtimes (Docker) in a multi‑cloud environment.
- Develop infrastructure‑as‑code using Terraform to provision and secure AWS resources.
- Integrate static and dynamic application security testing tools, secret management, and vulnerability scanning into the development workflow.
- Collaborate with development, security, and operations teams to define security standards, incident response processes, and continuous improvement practices.
Requirements
- 3+ years of hands‑on experience with AWS services, Kubernetes, Docker, and Terraform.
- Proficiency in scripting or programming languages such as Python for automation and tooling.
- Strong understanding of DevSecOps principles, including CI/CD pipeline security, SAST/DAST, and secret management.
- Experience with GitOps workflows, CI platforms (e.g., Jenkins, GitLab CI, GitHub Actions), and monitoring/alerting tools.
- Ability to work in a fast‑paced, collaborative environment and communicate security concepts to cross‑functional teams.
Skills
awskubernetesdockerterraformcicdpython