Senior DevSecOps Architect: Secure by Design & Automate

McKesson’s Corporate

Cork

Hybrid

EUR 83,000 - 138,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

McKesson seeks an experienced cybersecurity engineering leader to own application security and DevSecOps across cloud, on-prem, and hybrid platforms. You will implement scalable security controls in CI/CD, drive adoption of security tools, and shepherd software supply chain security through Xray, Black Duck, and Sonatype.

This role requires mentoring teams, establishing security standards, and improving developer experience while reducing risk.

Qualifications

  • 10+ years of progressive experience in cybersecurity engineering, application security, DevSecOps, cloud security, or related security engineering disciplines.
  • Experience implementing and operating enterprise-scale security tools such as GitHub Advanced Security, SonarQube, and/or OWASP ZAP.
  • Experience with software supply chain security and open-source risk management tools such as JFrog Xray/Curation, Black Duck, Sonatype, or FOSSA.
  • Proficiency in scripting and automation using Python, Bash, JavaScript, or similar languages.
  • Experience designing and securing CI/CD pipelines using GitHub Actions, Jenkins, GitLab CI, Azure DevOps, or comparable platforms.
  • Hands-on experience securing cloud environments (AWS, Azure, and/or GCP).
  • Experience with containerization and orchestration technologies including Docker and Kubernetes.

Responsibilities

  • Lead enterprise application security and DevSecOps initiatives across cloud, on-premises, and hybrid environments.
  • Design and implement scalable security controls embedded within CI/CD pipelines and developer platforms.
  • Drive adoption and operationalization of security tools including GitHub Advanced Security, OWASP ZAP, Veracode, and SonarQube.
  • Lead software supply chain security programs using tools such as JFrog Xray/Curation, Black Duck, Sonatype, and FOSSA.
  • Develop automation and security integrations using Python, Bash, JavaScript, or similar scripting languages.
  • Partner with engineering and platform teams to establish secure-by-design practices for applications, APIs, containers, and cloud workloads.
  • Provide technical leadership during security incidents, vulnerability management efforts, and remediation activities.
  • Mentor engineers and influence enterprise security architecture, standards, and roadmaps.
  • Develop and maintain security standards and controls for Kubernetes, containers, Infrastructure as Code (Terraform), and cloud-native application platforms.
  • Build and operationalize security automation, policy-as-code, and self-service security capabilities that improve developer experience while reducing organizational risk.

Skills

DevSecOps
Cloud security
Application security
Scripting
CI/CD security

Education

Bachelor's degree in Computer Science/Cybersecurity/IT/Engineering

Tools

GitHub Advanced Security
SonarQube
OWASP ZAP
JFrog Xray
Black Duck
Sonatype
FOSSA
Terraform
Kubernetes
Docker
Jenkins
GitHub Actions

Job description

McKesson seeks an experienced cybersecurity engineering leader to own application security and DevSecOps across cloud, on-prem, and hybrid platforms. You will implement scalable security controls in CI/CD, drive adoption of security tools, and shepherd software supply chain security through Xray, Black Duck, and Sonatype.

This role requires mentoring teams, establishing security standards, and improving developer experience while reducing risk.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior DevSecOps Lead - Secure by Design in Cloud & CI/CD
Senior DevSecOps Lead - Secure by Design in Cloud & CI/CD

Mckesson Corporation • Cork

On-site
EUR 83,000 - 138,000
Total Rewards benefits
Senior Cyber Risk & Operations Leader
Senior Cyber Risk & Operations Leader

Emploive • Cork

Remote
EUR 62,000 - 103,000
Cyber Risk & Vulnerability Operations Leader
Cyber Risk & Vulnerability Operations Leader

McKesson’s Corporate • Cork

On-site
EUR 62,000 - 103,000
Cybersecurity Risk & Governance Leader
Cybersecurity Risk & Governance Leader

Mckesson Corporation • Cork

On-site
EUR 62,000 - 103,000
Total Rewards package
Lead DevSecOps Engineer
Lead DevSecOps Engineer

Mckesson Corporation • Cork

On-site
EUR 83,000 - 138,000
Total Rewards benefits
Senior Salesforce Platform Architect - Enterprise Security
Senior Salesforce Platform Architect - Enterprise Security

McKesson • Cork

Hybrid
EUR 84,000 - 140,000
Cybersecurity Risk Operations Lead – (Enterprise Applications)
Cybersecurity Risk Operations Lead – (Enterprise Applications)

McKesson’s Corporate • Cork

On-site
EUR 62,000 - 103,000
Senior Cloud Security Engineer - Cloud & Hybrid Infra
Senior Cloud Security Engineer - Cloud & Hybrid Infra

McKesson Corporation • Ireland

Hybrid
EUR 40,900 - 68,100
Lead DevSecOps Engineer
Lead DevSecOps Engineer

McKesson’s Corporate • Cork

Hybrid
EUR 83,000 - 138,000
Vendor Cyber Risk Lead — Third-Party Security
Vendor Cyber Risk Lead — Third-Party Security

McKesson’s Corporate • Cork

Hybrid
EUR 73,000 - 121,000