Location: hybrid role – 3 days onsite @ Irving, TX - F2F interview is required - – ( No – CPT, OPT, H1 transfer visa please)
Duration: Long-term contract
Title: Senior Full Stack + DevSecOps Platform Engineer
Important note:
The ideal candidate can code, build pipelines, integrate scanners, understand SBOM/CBOM findings, troubleshoot AWS and production issues, and design safe AI-assisted remediation workflows.
A pure Java full stack developer will not be enough for this role.
Minimum Qualifications
10+ years of software engineering experience.
3+ years of DevOps, DevSecOps, platform engineering, or security automation experience.
Strong Java/Spring Boot background.
Hands-on CI/CD and cloud experience.
Practical experience with security scanning and vulnerability remediation.
Strong communication skills and ability to work across security, platform, DevOps, and application teams.
Required Skills
Strong hands-on experience with Java/Spring Boot.
Experience with at least one additional language such as Node.js, Python, or Go.
Experience building REST APIs, microservices, batch jobs, and platform integrations.
Hands-on experience with Jenkins and/or GitLab CI/CD.
Strong understanding of SBOM, dependency scanning, transitive dependencies, CVEs, and container image scanning.
Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode.
Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher suites, encryption algorithms, hashing algorithms, signing algorithms, keystores, truststores, and secrets.
Ability to identify weak crypto such as MD5, SHA-1, DES/3DES, RC4, RSA-1024, TLS 1.0/TLS 1.1, and disabled certificate validation.
Hands-on AWS experience with services such as Lambda, API Gateway, S3, DynamoDB, IAM, ECS/EKS, CloudWatch, X-Ray, Secrets Manager, and KMS.
Experience with observability tools such as Splunk, ELK/Kibana, CloudWatch, and X-Ray.
Strong troubleshooting skills across application, pipeline, cloud, and security issues.
The candidate should understand how to use Claude or similar AI tools in a controlled engineering workflow