Senior DevSecOps Engineer (Hybrid)

blaseek

Manila

On-site

PHP 1,800,000 - 2,400,000

Full time

3 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

blaseek is seeking a Senior/Lead DevSecOps Engineer to serve as a hands-on technical leader embedding a security-first mindset across the software development lifecycle. The role blends security, development, and operations to drive DevSecOps adoption and implement automated controls in regulated environments.

The successful candidate will design, implement, and automate security controls protecting critical apps and infrastructure while preserving development agility.

Qualifications

  • Experience leading DevSecOps initiatives across engineering teams.
  • Proficient in securing CI/CD pipelines and IaC security.
  • Familiar with secrets management and automated security tooling.

Responsibilities

  • Define and implement DevSecOps strategy across engineering groups.
  • Design secure CI/CD pipelines with integrated testing tools.
  • Enforce security standards in IaC with Terraform/CloudFormation.
  • Manage secrets infrastructure and automated remediation workflows.
  • Automate vulnerability scanning, patching, and compliance checks.
  • Lead regulatory alignment and risk assessment activities.
  • Mentor engineers on secure coding and tooling.
  • Provide incident response support and SOC collaboration.

Skills

DevSecOps leadership
Secure CI/CD
Threat modeling
Collaboration
Mentorship
Incident response
Security governance

Tools

Terraform
CloudFormation
HashiCorp Vault
AWS Secrets Manager
Azure Secrets Manager
SIEM

Job description

Role Overview

The Senior / Lead DevSecOps Engineer is a hands-on technical leader responsible for embedding a security-first mindset throughout the software development lifecycle. This role blends deep expertise in security, development, and operations to drive adoption of DevSecOps practices across engineering teams.

The successful candidate will design, implement, and automate security controls that protect critical applications and infrastructure while ensuring development agility. Experience working in regulated industries, particularly banking or financial services, is a strong advantage.

Key Responsibilities
  • DevSecOps Strategy and Implementation
  • Secure CI/CD Pipelines: Design, build, and maintain automated, secure CI/CD pipelines with integrated security testing and validation tools.
  • Infrastructure as Code (IaC) Security: Define and enforce security standards in IaC using tools like Terraform or CloudFormation. Implement automated scanning and compliance validation.
  • Secrets Management: Deploy and manage secure systems for secrets, keys, and credentials (e.g., HashiCorp Vault, AWS/Azure Secrets Manager).
  • Security Automation: Automate security-related processes such as configuration management, vulnerability scanning, patching, and compliance verification.
  • Security Governance and Compliance
  • Regulatory Alignment: Ensure all practices and systems comply with relevant standards such as PCI DSS, SOC 2, NIST, GDPR, and internal audit or risk frameworks.
  • Threat Modeling and Risk Assessment: Lead proactive threat modeling early in the SDLC to identify and mitigate potential vulnerabilities.
  • Continuous Monitoring: Implement and maintain continuous monitoring, logging, and alerting using SIEM and related tools to detect and respond to threats in real time.
  • Collaboration, Mentorship, and Incident Support
  • Cross-Functional Collaboration: Work closely with Development, Operations, and Security teams to ensure a shared understanding of security ownership.
  • Mentorship: Coach and train engineers on secure coding practices, DevSecOps principles, and integrated security tooling.
  • Incident Response: Support the SOC during security incidents, providing deep technical expertise for containment, root cause analysis, and automated remediation.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Lead
DevSecOps Lead

NCS Group • Taguig

On-site
PHP 1,500,000 - 2,300,000
DevSecOps Specialist
DevSecOps Specialist

Maya • Metro Manila

On-site
PHP 900,000 - 1,300,000
DevSecOps Engineer
DevSecOps Engineer

Dencom Consultancy & Manpower Services • Manila

On-site
Senior DevSecOps Lead — Cloud Security & CI/CD Architect
Senior DevSecOps Lead — Cloud Security & CI/CD Architect

NCS Group • Taguig

On-site
PHP 1,500,000 - 2,300,000
Application Security Engineer / Application Security Lead
Application Security Engineer / Application Security Lead

Recruitify_HR • Taguig

Hybrid
PHP 800,000 - 1,000,000
Lead DevSecOps Engineer: Secure CI/CD & IaC
Lead DevSecOps Engineer: Secure CI/CD & IaC

blaseek • Manila

On-site
PHP 1,800,000 - 2,400,000
Senior DevOps Engineer
Senior DevOps Engineer

Amihansolutions • Manila

Hybrid
PHP 781,200 - 1,004,400
HMO insurance from the first working day
Vacation and sick leave credits from the first working day
Company-issued laptop
+3
Remote Senior DevSecOps Engineer: Cloud & Security Leader
Remote Senior DevSecOps Engineer: Cloud & Security Leader

Full Scale • Cebu City

On-site
PHP 1,800,000 - 2,600,000
Fully remote work setup
Work from the Philippines
High impact role with ownership
+1
Software Developer, DevSecOps
Software Developer, DevSecOps

Dencom Consultancy & Manpower Services • Mandaluyong

On-site
PHP 1,000,000 - 1,500,000
Application Security Engineer, Application Security Lead (DevSecOps / Azure DevOps)
Application Security Engineer, Application Security Lead (DevSecOps / Azure DevOps)

Recruitify_HR • Quezon City

Hybrid