Application Security / DevSecOps Engineer

Remote • Posted 9 hours ago • Updated 9 hours ago
Contract W2
Contract Independent
Remote
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

🛠️ Calibrating flux capacitors...

Job Details

Skills

  • Python
  • AWS
  • Security Scanning
  • Snyk
  • Wiz
  • SonarQube
  • Containers
  • DevSecOps

Summary

Role: Application Security / DevSecOps Engineer (Python, AWS)
Location: Remote


Key Skills:
AppSec | DevSecOps | Python | AWS | Security Scanning | Snyk | Wiz | SonarQube | Containers


Overview

We are seeking a highly technical Application Security / DevSecOps Engineer with deep experience securing modern cloud-native applications and containerized workloads. This role will focus on integrating security throughout the software development lifecycle (SDLC) while working closely with engineering and DevOps teams to identify, remediate, and prevent vulnerabilities across AWS environments.

The ideal consultant will be a strong Python developer with hands-on expertise in security scanning platforms such as Snyk, SonarQube, and Wiz, and will have experience securing containerized workloads running in cloud environments.


Responsibilities

Application Security & DevSecOps

  • Embed security best practices into the CI/CD pipeline and software development lifecycle.

  • Implement and manage application security scanning across code, dependencies, and containers.

  • Perform SAST, SCA, and vulnerability analysis to identify and remediate security risks.

  • Partner with engineering teams to prioritize and remediate vulnerabilities.

Security Scanning & Tooling

  • Implement and manage security scanning tools including:

    • Snyk (SCA & SAST)

    • SonarQube

    • Wiz

  • Automate scanning and policy enforcement within CI/CD pipelines.

  • Develop reporting dashboards and remediation workflows.

Cloud & Container Security

  • Secure containerized workloads running on AWS.

  • Implement security best practices for Kubernetes, Docker, and serverless workloads.

  • Monitor cloud security posture and address vulnerabilities across infrastructure and applications.

Development & Automation

  • Build and maintain security automation using Python.

  • Create scripts and tooling to automate vulnerability remediation, scanning, and reporting.

  • Integrate security checks into build pipelines and deployment workflows.

Collaboration

  • Work closely with DevOps, platform engineering, and application development teams.

  • Provide guidance on secure coding practices and threat mitigation strategies.

  • Assist in defining security architecture for new cloud-native applications.


Required Skills

Technical Skills

  • Strong Python development experience.

  • Application security experience in modern DevOps environments.

  • Hands-on experience with Snyk (SCA & SAST).

  • Experience with SonarQube and Wiz security platforms.

  • AWS cloud security experience.

  • Container security (Docker, Kubernetes).

  • CI/CD security integration (GitHub Actions, Jenkins, GitLab, etc.).

Security Expertise

  • SAST, SCA, and vulnerability management

  • Secure Software Development Lifecycle (SSDLC)

  • Dependency and open-source security scanning

  • Cloud Security Posture Management


Nice to Have

  • Experience with IaC security (Terraform, CloudFormation).

  • Knowledge of threat modeling and penetration testing.

  • Experience implementing DevSecOps programs.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10474459
  • Position Id: JB-J93PI44U
  • Posted 9 hours ago

Company Info

About Kanshe Infotech

Kanshe Infotech, which focuses primarily on providing timely, high-quality, and cost-effective application development and consulting services.

Today, the core of many businesses is software and application development, thus providing end-to-end solutions and services with quality assurance will help our clients stand out from the competition. We bring great on-premises solutions to every project along with our strict adherence to best practises, dedication to timely delivery, and engineering expertise.

We work hard to consistently deliver the best solutions to our potential clients since we feel that staying current with technology is what defines the success of a business.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs