remote
DevSecOps Lead - BAE Systems USA
Security Engineer
Lead DevSecOps initiatives, integrating security into CI/CD pipelines, managing cloud infrastructure, and orchestrating containerized deployments across enterprise environments for defense systems.
About the role
Key Responsibilities
- Architect and maintain secure CI/CD pipelines that integrate automated testing, code analysis, and compliance checks across multiple environments.
- Design, provision, and manage cloud infrastructure (primarily AWS) and container orchestration platforms (Docker, Kubernetes) to support scalable, resilient deployments.
- Lead security assessments, vulnerability scanning, and penetration testing, ensuring findings are remediated through automated workflows.
- Mentor and coach engineering teams on DevSecOps best practices, fostering a culture of shared responsibility for security.
- Collaborate with product, QA, and compliance stakeholders to define security requirements and ensure adherence to industry standards.
Requirements
- 5+ years of experience in DevOps or DevSecOps roles within complex, regulated environments.
- Hands‑on expertise with AWS services, Docker, Kubernetes, and infrastructure‑as‑code tools such as Terraform.
- Strong scripting skills in Python and Bash, with a track record of automating security and deployment tasks.
- Proficiency with security tools (SAST, DAST, OWASP ZAP, Nessus) and experience implementing automated security gates.
- Excellent communication, leadership, and problem‑solving abilities, with a proven ability to influence cross‑functional teams.
Skills
cicdawsdockerkubernetesterraformpython