Overview
On Site
Compensation information provided in the description
Full Time
Skills
Information Technology
Information Systems
Business Transformation
SAP BASIS
Elasticsearch
Security Controls
COTS
ArcGIS
Security Policy
Security QA
Reporting
KPI
Investments
Physical Layer
Data Link Layer
Identity Management
Encryption
Network Security
Cyber Security
Computer Science
Information Security
IT Security
DevOps
Security Engineering
Continuous Delivery
Jenkins
GitLab
Continuous Integration
Orchestration
Terraform
Microsoft Azure
CISM
DevSecOps
Analytical Skill
Conflict Resolution
Problem Solving
Teamwork
Amazon Web Services
CISSP
Certified Ethical Hacker
Cloud Computing
Cloud Security
Regulatory Compliance
Geographic Information System
Scripting
Python
Windows PowerShell
Docker
Kubernetes
Software Development
Software Development Methodology
Soft Skills
Communication
Articulate
Collaboration
Roadmaps
eXist
SAFE
Energy
FAR
Law
Privacy
Job Details
Requisition ID # 164814
Job Category: Information Technology
Job Level: Individual Contributor
Business Unit: Information Technology
Work Type: Hybrid
Job Location: Oakland
Department Overview
Information Systems Technology Services is a unified organization comprised of various departments which collaborate effectively in order to deliver high quality technology solutions.
Position Summary
We are seeking an experienced and proactive DevSecOps Engineer to join our Cybersecurity Application Platform Security Team to secure our Geographic Information Systems (GIS) applications as a part of large business transformation effort - Elevate. The ideal candidate will have hands-on experience with cybersecurity platforms, with a deep understanding of cloud security (especially AWS), strong experience with DevSecOps practices, and an understanding of GIS applications to operate the environment securely, enhance security posture, secure CI/CD pipelines and continuously bake-in security and compliance
The ideal candidate will be passionate about security, have a proactive mindset, and be able to balance security requirements with business needs. They should be comfortable working in a fast-paced environment and be able to adapt to evolving security threats and technologies
This position is hybrid, working from your remote office and your assigned work location based on business need. The assigned work location will be within the PG&E Service Territory.
PG&E is providing the salary range that the company in good faith believes it might pay for this position at the time of the job posting. This compensation range is specific to the locality of the job. The actual salary paid to an individual will be based on multiple factors, including, but not limited to, specific skills, education, licenses or certifications, experience, market value, geographic location, and internal equity. Although we estimate the successful candidate hired into this role will be placed between the entry point and the middle of the range, the decision will be made on a case-by-case basis related to these factors.
This job is also eligible to participate in PG&E's discretionary incentive compensation programs.
A reasonable salary range is:
Bay Area Minimum: $132,000.00
Bay Area Maximum: $226,000.00
Job Responsibilities
Qualifications
Minimum:
Desired:
Preferred Technical Skills:
Soft Skills
#featuredjob
Purpose, Virtues and Stands
Our Purpose explains "why" we exist:
Our Virtues capture "who" we need to be:
Our Stands are "what" we will achieve together:
More About Our Company
EEO
Pacific Gas and Electric Company is an Affirmative Action and Equal Employment Opportunity employer that actively pursues and hires a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, sex, age, religion, physical or mental disability status, medical condition, protected veteran status, marital status, pregnancy, sexual orientation, gender, gender identity, gender expression, genetic information or any other factor that is not related to the job.
Employee Privacy Notice The California Consumer Privacy Act (CCPA) goes into effect on January 1, 2020. CCPA grants new and far-reaching privacy rights to all California residents. The law also entitles job applicants, employees and non-employee workers to be notified of what personal information PG&E collects and for what purpose. The Employee Privacy Notice can be accessed through the following link: Employee Privacy Notice
PG&E will consider qualified applicants with arrest and conviction records for employment in a manner consistent with all state and local laws.
Job Category: Information Technology
Job Level: Individual Contributor
Business Unit: Information Technology
Work Type: Hybrid
Job Location: Oakland
Department Overview
Information Systems Technology Services is a unified organization comprised of various departments which collaborate effectively in order to deliver high quality technology solutions.
Position Summary
We are seeking an experienced and proactive DevSecOps Engineer to join our Cybersecurity Application Platform Security Team to secure our Geographic Information Systems (GIS) applications as a part of large business transformation effort - Elevate. The ideal candidate will have hands-on experience with cybersecurity platforms, with a deep understanding of cloud security (especially AWS), strong experience with DevSecOps practices, and an understanding of GIS applications to operate the environment securely, enhance security posture, secure CI/CD pipelines and continuously bake-in security and compliance
The ideal candidate will be passionate about security, have a proactive mindset, and be able to balance security requirements with business needs. They should be comfortable working in a fast-paced environment and be able to adapt to evolving security threats and technologies
This position is hybrid, working from your remote office and your assigned work location based on business need. The assigned work location will be within the PG&E Service Territory.
PG&E is providing the salary range that the company in good faith believes it might pay for this position at the time of the job posting. This compensation range is specific to the locality of the job. The actual salary paid to an individual will be based on multiple factors, including, but not limited to, specific skills, education, licenses or certifications, experience, market value, geographic location, and internal equity. Although we estimate the successful candidate hired into this role will be placed between the entry point and the middle of the range, the decision will be made on a case-by-case basis related to these factors.
This job is also eligible to participate in PG&E's discretionary incentive compensation programs.
A reasonable salary range is:
Bay Area Minimum: $132,000.00
Bay Area Maximum: $226,000.00
Job Responsibilities
- Work with Elevate (GIS) teams to bake-in security controls part of design and implement secure AWS architectures for GIS applications
- Provide security best practices for implementing COTS software such as ArcGIS in AWS.
- Implement and maintain robust security measures & DevSecOps Framework (SHIELD) throughout every phase of development, from planning to deployment and maintenance across CI/CD pipeline. ('Secure by design', 'Secure by default')
- Implement security policy-as-code (PaC) & Compliance-as-Code (CaC) and integrates continuous security testing within CI/CD pipelines
- Report on DevSecOps specific security metrics, KPIs, KRIs to track progress and demonstrate the value of security investments aligning with IT, Cyber L1, L2s.
- Partner with SIOC team to perform code reviews and static analysis to identify security vulnerabilities
- Validate Identity and Access Management (IAM) policies and roles
- Secure data at rest and in transit using AWS encryption services
- Work with stakeholders to implement network security measures, including VPCs, security groups, and NACLs
- Stay updated on emerging threats, vulnerabilities, and security trends related to AWS, Azure and DevSecOps practices.
- Promote cybersecurity awareness among developers and stakeholders.
- Foster a security-first mindset across Elevate application platform teams, promoting shared responsibility for cybersecurity (lead by cyber, owned by all).
Qualifications
Minimum:
- Bachelor's degree in computer science, Information Security, or a related field (or equivalent experience).
- 8 years of experience in IT security, with at least 3 years focused on DevSecOps, DevOps or Security Engineering roles
Desired:
- Experience with CI/CD tools (e.g., Jenkins, GitLab CI, or AWS CodePipeline)
- Knowledge of container technologies and orchestration platforms (e.g., Docker, Kubernetes)
- Familiarity with infrastructure-as-code tools (e.g., Terraform, CloudFormation)
- Understanding of security standards and frameworks (e.g., NIST CSF)
- Excellent communication and collaboration skills
- Familiarity with the shared responsibility model in cloud environments (AWS, Azure) and hybrid cloud deployments.
- CISSP, CISM, or DevSecOps-specific credentials are a plus.
- Strong analytical and problem-solving skills with excellent communication and teamwork abilities.
- Relevant security certifications (e.g., AWS Certified Security - Specialty, CISSP, CEH)
- Experience with GIS-specific security challenges and solutions
- Knowledge of multi-cloud and hybrid cloud security architectures
- Familiarity with compliance requirements in the GIS industry
Preferred Technical Skills:
- Experience with scripting languages (e.g., Python, PowerShell) for automation of security tasks.
- Knowledge of container security (Docker, Kubernetes)
- Familiarity with secure software development lifecycle (SDLC) practices.
Soft Skills
- Excellent Communication Skills: Ability to clearly articulate security concepts to diverse audiences, including engineers, product managers, and executives.
- Collaboration & Influence: Proven ability to work cross-functionally with teams to align on security priorities and influence roadmaps.
#featuredjob
Purpose, Virtues and Stands
Our Purpose explains "why" we exist:
- Delivering for our hometowns
- Serving our planet
- Leading with love
Our Virtues capture "who" we need to be:
- Trustworthy
- Empathetic
- Curious
- Tenacious
- Nimble
- Owners
Our Stands are "what" we will achieve together:
- Everyone and everything is always safe
- Catastrophic wildfires shall stop
- It is enjoyable to work with and for PG&E
- Clean and resilient energy for all
- Our work shall create prosperity for all customers and investors
More About Our Company
EEO
Pacific Gas and Electric Company is an Affirmative Action and Equal Employment Opportunity employer that actively pursues and hires a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, sex, age, religion, physical or mental disability status, medical condition, protected veteran status, marital status, pregnancy, sexual orientation, gender, gender identity, gender expression, genetic information or any other factor that is not related to the job.
Employee Privacy Notice The California Consumer Privacy Act (CCPA) goes into effect on January 1, 2020. CCPA grants new and far-reaching privacy rights to all California residents. The law also entitles job applicants, employees and non-employee workers to be notified of what personal information PG&E collects and for what purpose. The Employee Privacy Notice can be accessed through the following link: Employee Privacy Notice
PG&E will consider qualified applicants with arrest and conviction records for employment in a manner consistent with all state and local laws.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.