onsite
Senior Staff Engineer - DevSecOps - Exelixis
Security Engineer
Lead the design, implementation, and continuous improvement of cloud security architecture and DevSecOps practices, driving cross‑functional initiatives to protect digital assets and ensure regulatory compliance.
About the role
Key Responsibilities
- Design and implement secure, scalable architectures for cloud environments (AWS, Azure) that meet industry standards and regulatory requirements.
- Integrate security controls into CI/CD pipelines and infrastructure‑as‑code workflows using tools such as Terraform, Kubernetes, and automated scanning solutions.
- Lead cross‑functional teams to embed security best practices across development, operations, and incident response processes.
- Develop and maintain security monitoring, threat detection, and response capabilities for cloud workloads.
- Provide technical guidance, mentorship, and training to engineering teams on DevSecOps principles and secure coding practices.
Requirements
- 10+ years of experience in cloud security, DevSecOps, or related engineering roles.
- Deep expertise with AWS and/or Azure services, Kubernetes, Terraform, and CI/CD tooling (e.g., Jenkins, GitLab, GitHub Actions).
- Proficiency in scripting or programming languages such as Python for automation and security tooling.
- Strong knowledge of security frameworks and compliance standards (ISO 27001, SOC 2, NIST, etc.).
- Demonstrated ability to lead technical initiatives, influence stakeholders, and mentor senior engineers.
Skills
awsazurekubernetesterraformcicdpython