Lead IT Security Engineer

Remote in San Francisco, CA, US • Posted 4 hours ago • Updated 27 minutes ago
Contract Independent
On-site
$87 - $92 /hr
Fitment

Dice Job Match Score™

🤯 Applying directly to the forehead...

Job Details

Skills

  • ("Lead IT Security Engineer" OR "Security Engineer") AND ("DevOps" OR "SRE" OR "Platform Engineering") AND ("CI/CD" OR "Jenkins" OR "GitHub Actions" OR "Azure DevOps") AND "DevSecOps" AND ("security c

Summary




Stefanini Group is hiring!

Stefanini is looking for a Lead IT Security Engineer - Remote.

For quick Apply, please reach out to Akash Gupta: /



W2 candidates only!



Responsibilities:

Position Overview:The Client - Common Data Platform (CDP) is seeking an experienced Security Engineer to drive the integration of security capabilities into our CI/CD pipelines and development workflows. This role is critical to our multi-year DevSecOps transformation initiative, which aims to modernize security practices across five development teams while supporting CDP's cloud migration and platform modernization goals.As a Security Engineer, you will work at the intersection of development, security, and operations to build automated security controls directly into our software delivery pipelines. You will partner closely with Application Security, Security Champions, and development teams to ensure security is embedded early in the development lifecycle without compromising delivery velocity.This is a hands-on technical role requiring deep expertise in CI/CD automation, containerization, infrastructure-as-code, and security tooling integration. You will be responsible for implementing build gates, automating security scans, developing custom integrations, and ensuring our GitLab-based pipelines provide consistent, measurable security controls across the entire CDP portfolio.



Key Areas of Work:Design, implement, and maintain security controls within GitLab CI/CD pipelinesDevelop pipeline automation scriptsDevelop and enforce container security policies aligned with Client standardsWork with Security Champions to provide technical support and training on pipeline security featuresDevelop reference architectures and example implementations for secure pipelinesSupport developers in understanding and resolving security findingsSupport pipeline assessment data collection through pipeline telemetryCoordinate with GRC teams on security control validation and evidence collectionMentor and guide team members in secure development practicesAdvocate for security throughout the SDLC



#LI-AG

#LI-REMOTE





Qualifications:Bachelor's degree in Computer Science, Information Technology, or related field (or equivalent experience)Ability to document technical processes, create runbooks, and develop training materialsSelf-starter with ability to work independently and manage multiple prioritiesTeam focus, flexible thinking, willingness to learn, desire to enable security to support the businessAbility to travel to San Francisco main office for final interview and/or onboarding



Technical Skills:5+ years of experience in DevOps, SRE, or Platform Engineering roles3+ years of hands-on experience with GitLab CI/CD (or similar platforms like Jenkins, GitHub Actions, Azure DevOps)Strong expertise in CI/CD pipeline design, implementation, and optimizationProficiency in scripting and automation using Python, Bash, or similar languagesDeep understanding of containerization technologies (Docker, Kubernetes, ECS)Experience with Infrastructure-as-Code tools (Terraform preferred)Practical knowledge of AWS cloud servicesExperience integrating security scanning tools into CI/CD pipelinesStrong understanding of Git workflows, branching strategies, and merge request processesExperience with configuration management and pipeline-as-code practices



Security Knowledge:Working knowledge of application security concepts and vulnerability types (OWASP Top 10)Familiarity with security scanning tools such as:SAST tools (Semgrep, SonarQube, Checkmarx, or similar)SCA tools (Sonatype, Snyk, Black Duck, or similar)Container scanning tools (Trivy, Prisma, Aqua, or similar)DAST tools (OWASP ZAP, Burp Suite, or similar)Understanding of secrets management best practices and toolsKnowledge of secure software development lifecycle (SSDLC) principlesFamiliarity securing a Data Lakehouse



Process and Collaboration:Experience working in Agile/Scrum environments with 2-week sprint cyclesStrong collaboration skills with ability to work across security, development, and operations teamsExperience supporting multiple development teams simultaneouslyTrack record of driving adoption of new tools and processesAbility to work on a geographically distributed team across multiple time zonesClear and accurate communication, excellent soft skills are a mustExperience mentoring and/or coaching others



Certifications (nice to have):AWS Certified DevOps Engineer or Solutions ArchitectSecurity Certifications from GIAC or other





Listed salary ranges may vary based on experience, qualifications, and local market. Also, some positions may include bonuses or other incentives.



Stefanini takes pride in hiring top talent and developing relationships with our future employees. Our talent acquisition teams will never make an offer of employment without having a phone conversation with you. Those face-to-face conversations will involve a description of the job for which you have applied. We also speak with you about the process including interviews and job offers.



About Stefanini Group:

The Stefanini Group is a global provider of offshore, onshore and near shore outsourcing, IT digital consulting, systems integration, application, and strategic staffing services to Fortune 1000 enterprises around the world. Our presence is in countries like the Americas, Europe, Africa, and Asia, and more than four hundred clients across a broad spectrum of markets, including financial services, manufacturing, telecommunications, chemical services, technology, public sector, and utilities. Stefanini is a CMM level 5, IT consulting company with a global presence. We are CMM Level 5 company.


Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10106616
  • Position Id: 63133
  • Posted 4 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote or San Francisco, California

Today

Easy Apply

Contract

$102 - $107 /hr

Remote or San Francisco, California

Today

Easy Apply

Contract

$95 - $100 /hr

Hybrid in Oakland, California

8d ago

Easy Apply

Contract, Third Party

$0+

Remote or San Francisco, California

Today

Full-time

USD 250,000.00 - 320,000.00 per year

Search all similar jobs