Job Search and Career Advice Platform

Enable job alerts via email!

Senior DevSecOps Engineer

Ziphire.hr

Burnaby

On-site

CAD 100,000 - 130,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A dynamic technology firm in Metro Vancouver is seeking a Senior DevSecOps Developer to enhance secure, scalable, and resilient infrastructure. You will collaborate with engineering and security teams to integrate security best practices and manage DevSecOps pipelines. Ideal candidates will have over 5 years of experience with CI/CD pipelines and strong expertise in Kubernetes, cloud platforms, and automation tools. Competitive pay and meaningful benefits offered.

Benefits

Company ownership
Competitive pay
Meaningful benefits

Qualifications

  • 5+ years of experience with DevSecOps practices and CI/CD pipelines.
  • 3+ years managing Kubernetes clusters in production environments.
  • Demonstrated proficiency in DAST, IAST, and SAST tools.

Responsibilities

  • Serve as SME for security best practices within the DevOps team.
  • Integrate security controls throughout the software development lifecycle.
  • Manage application and code vulnerabilities through DAST, IAST, and SAST tools.

Skills

DevSecOps expertise
Kubernetes management
Security best practices
Infrastructure as Code
Cloud platforms (AWS, GCP, Azure)
Scripting (Python, Bash, Go)
Continuous Improvement
Security reporting

Education

Bachelor’s degree in Computer Science, Information Security, Engineering, or related field

Tools

Docker
Terraform
Helm
Ansible
DAST tools
IAST tools
SAST tools
Job description

Our client is seeking a skilled Senior DevSecOps Developer to join our technology team, focused on delivering secure, scalable, and resilient infrastructure solutions across the organization. In this role, you will collaborate closely with engineering and security teams to design, implement, and maintain DevSecOps pipelines and cloud-native platforms. You will integrate security best practices throughout the software development lifecycle, automate security controls, and ensure compliance with industry standards, with a strong emphasis on shifting security left. Your expertise will drive continuous improvement across CI/CD processes, policy as code, and application security, while leading the security of their mission‑critical systems.

What you'll do
  • Grow as the Subject Matter Expert (SME) for security best practices within the DevOps team
  • Promote a culture of security, automation, and continuous improvement by mentoring team members
  • Integrate and manage security controls and best practices across every stage of the software development lifecycle
  • Manage DAST, IAST, and SAST tools to identify and remediate application and code vulnerabilities
  • Automate security testing and compliance checks within DevOps workflows, including Docker image security scanning
  • Develop and enforce policy as code for Kubernetes environments to ensure consistent security and compliance
  • Implement and manage infrastructure as code (IaC) solutions for cloud and on‑premises environments
  • Collaborate with development, operations, and security teams to address vulnerabilities and improve overall security posture
  • Continuously evaluate and improve DevSecOps tools, processes, and standards
Requirements
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field
  • 5+ years of experience with DevSecOps practices, integrating security into CI/CD pipelines and the software development lifecycle
  • 3+ years of hands‑on experience deploying, managing, and securing Kubernetes clusters in production environments
  • Proven expertise with policy as code frameworks (e.g., OPA/Gatekeeper, Kyverno) for Kubernetes security and compliance
  • Demonstrated proficiency implementing and operating DAST, IAST, and SAST tools for application and code security
  • 5+ years of experience with Docker image security scanning and container vulnerability management
  • Strong background with infrastructure as code (IaC) tools such as Terraform, Helm, or Ansible
  • Expert-level experience with Linux; experience with cloud platforms (AWS, GCP, Azure) and their security best practices
  • Solid scripting and automation skills (e.g., Python, Bash, Go)
  • Experience creating executive-level security reports and KPIs
  • Excellent analytical, troubleshooting, and incident response abilities
  • Strong communication and collaboration skills, with a passion for mentoring and continuous improvement
  • Experience with eBPF and Cilium; Tetragon is a plus
Benefits

We believe in providing with company ownership, competitive pay, and a range of meaningful benefits is the start of creating a culture where people want to give the best they’ve got — not because they’re simply making money, but because they’ve fallen in love with our vision, mission, values, and team.

During the interview process, your Recruiter will review our total rewards (base, equity, bonus, perks, benefit, culture) offerings. The final offer is determined by your proficiencies within this level.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.