Overview
Skills
Job Details
Job Details
DevSecops
San Antonio, TX
Long term contract
We are seeking a DevSecOps Engineer to join our technology team and integrate security practices into every stage of the software development lifecycle. The ideal candidate will have strong experience in DevOps automation, cloud infrastructure, CI/CD pipelines, and application security. You ll work closely with developers, operations, and security teams to ensure our systems are secure, scalable, and resilient.
Key Responsibilities
Design, implement, and maintain secure CI/CD pipelines to automate build, test, and deployment processes.
Integrate security controls, tools, and practices into DevOps workflows (SAST, DAST, SCA, secrets management, container scanning).
Collaborate with development and operations teams to identify and remediate vulnerabilities throughout the SDLC.
Manage and monitor cloud infrastructure (AWS / Azure / Google Cloud Platform) using Infrastructure as Code (Terraform, CloudFormation, etc.).
Implement and enforce best practices for identity and access management, network security, and compliance
Support incident response, security assessments, and threat modeling activities.
Stay current with emerging DevSecOps tools, vulnerabilities, and industry best practices.
Required Skills and Qualifications
Bachelor s degree in Computer Science, Information Security, or related field (or equivalent experience).
3+ years of hands-on experience in DevOps / Cloud Security / Application Security.
Strong knowledge of CI/CD tools (Jenkins, GitLab CI, GitHub Actions, Azure DevOps, etc.).
Proficiency with cloud platforms (AWS, Azure, or Google Cloud Platform) and container orchestration (Docker, Kubernetes).
Experience with IaC tools such as Terraform or CloudFormation.
Knowledge of security scanning tools (SonarQube, Trivy, Aqua, Snyk, Checkmarx, etc.).
Solid understanding of networking, encryption, authentication, and authorization principles.
Scripting skills in Python, Bash, or PowerShell for automation.
Familiarity with monitoring and logging solutions (Prometheus, ELK, Splunk, etc.