DevSecOps Lead/Architect

UsefulBI

Alameda (CA)

Hybrid

USD 180,000 - 240,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Onsite work 4 days/week
Exposure to regulatory compliance

Job summary

UsefulBI is seeking a Senior Staff Engineer – DevSecOps to lead the design and implementation of cloud security and DevSecOps practices across AWS and Azure environments.

Responsible for securing cloud infrastructure, embedding security into CI/CD pipelines, guiding incident response, and ensuring compliance with SOX, FDA, GDPR and other standards.

Qualifications

  • Requires nine-plus years of relevant experience with a Bachelor's degree or seven-plus with a Master's.
  • Experience designing and securing cloud environments in AWS and Azure.
  • Hands-on with DevSecOps, IaC, IAM, VPCs, KMS, Zero Trust, and Secure SDLC.

Responsibilities

  • Design and implement secure cloud architectures across AWS and Azure.
  • Architect secure cloud infrastructure using IaC and guardrails.
  • Implement cloud security controls including IAM, VPCs, Security Groups, and KMS.

Skills

DevSecOps
Cloud Security
CI/CD Pipelines
GitHub Actions
Infrastructure as Code
IAM
VPC
Security Groups
KMS
Zero Trust Architecture
Security Incident Response
SAST
DAST
SCA
Dependency Scanning
Secure SDLC
Jira / JSM
Agile
Regulatory Compliance

Education

Bachelor's degree + 9+ years of experience
Master's degree + 7+ years of experience

Tools

GitHub
Terraform
CI/CD
Pipelines
Kubernetes
AWS
Azure
KMS

Job description

JOB DESCRIPTION
Job Summary:

We are seeking a Senior Staff Engineer – DevSecOps to lead the design, implementation, and continuous improvement of cloud security and DevSecOps practices across AWS and Azure environments. This role will be responsible for securing cloud infrastructure, embedding security into CI/CD pipelines, leading incident response, and driving security best practices across the organization while ensuring compliance with regulatory standards.

Key Responsibilities:
  • Design and implement secure cloud architectures across AWS and Azure following security best practices.
  • Architect secure cloud infrastructure using guardrails and golden path patterns with Infrastructure as Code (IaC).
  • Implement and manage cloud security controls including IAM, VPCs, Security Groups, KMS, Zero Trust, and network security.
  • Integrate security into CI/CD pipelines, including SAST, DAST, SCA, and dependency scanning using GitHub.
  • Lead investigations and response to complex cybersecurity incidents, including malware, unauthorized access, and security breaches.
  • Analyze security events and logs to proactively identify threats and strengthen the organization\'s security posture.
  • Conduct vulnerability assessments and recommend remediation strategies.
  • Collaborate with engineering, infrastructure, and security teams to implement DevSecOps best practices.
  • Ensure compliance with SOX, FDA, GxP, GDPR, and other applicable regulatory requirements.
  • Drive security awareness initiatives and provide technical guidance to internal stakeholders.
  • Work in Agile environments using Jira/JSM to support security initiatives.
Required Qualifications:
  • Bachelor\'s degree with 9+ years of experience, Master\'s degree with 7+ years of experience, or equivalent experience.
  • Strong experience designing and securing cloud environments in AWS and Azure.
  • Hands-on experience with:
    • DevSecOps
    • CI/CD Pipelines
    • GitHub Actions/Pipelines
    • Infrastructure as Code (IaC)
    • IAM
    • VPC
    • Security Groups
    • Key Management Services (KMS)
    • Zero Trust Architecture
    • Network Security
    • Secure SDLC
  • Experience integrating SAST, DAST, SCA, and dependency scanning into development pipelines.
  • Experience with cybersecurity operations, vulnerability management, threat detection, and incident response.
  • Knowledge of cloud, infrastructure, system, and application security.
  • Experience administering enterprise IT systems.
  • Experience working in Agile environments using Jira/JSM.
  • Strong understanding of PII, PHI, and sensitive data protection.
  • Excellent analytical, communication, and problem-solving skills.
Preferred Qualifications:
  • Candidates are expected to work onsite at least 4 days per week; availability for 5 days onsite is preferred.
  • Experience in highly regulated industries such as Biotech, Pharmaceutical, or Life Sciences.
  • Knowledge of SOX, GxP, FDA, GDPR, and CPRA compliance requirements.
  • Technical leadership experience.
  • AWS Certified Security – Specialty certification.
  • CISSP, CISM, CEH, OSCP, GIAC, or equivalent security certifications.
Required Technical Skills:
  • AWS
  • Microsoft Azure
  • DevSecOps
  • Infrastructure as Code (IaC)
  • GitHub / GitHub Actions
  • CI/CD
  • IAM
  • VPC
  • Zero Trust
  • Security Groups
  • AWS KMS / Key Management Services
  • SAST
  • DAST
  • SCA
  • Dependency Scanning
  • Secure SDLC
  • Network Security
  • Incident Response
  • Vulnerability Management
  • Cloud Security
  • Jira / JSM
  • Agile
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior DevSecOps Engineer
Senior DevSecOps Engineer

Vytalize Health • Kansas (OH)

On-site
USD 120,000 - 160,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

West Search Partners, LLC • Longmont (CO)

On-site
USD 100,000 - 140,000
DevSecOps Lead
DevSecOps Lead

Jobtailor • Town of Florida (NY)

On-site
USD 180,000 - 230,000
DevOps Engineer
DevOps Engineer

Compunnel, Inc. • Merrimack (NH)

On-site
USD 120,000 - 150,000
Jr DevSecOps Engineer
Jr DevSecOps Engineer

The Phoenix Group • Arlington (VA)

On-site
USD 120,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

The Phoenix Group® • Arlington (VA)

On-site
USD 120,000 - 180,000
Systems Architect
Systems Architect

Compunnel, Inc. • Irving (TX)

On-site
USD 140,000 - 190,000
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Senior DevSecOps Engineer – Cloud Infrastructure Security
Senior DevSecOps Engineer – Cloud Infrastructure Security

Partnerverse • Saint Cloud (MN)

On-site
USD 140,000 - 190,000
Sr. IT Application Solutions Architect/ Sr DevSecOps Engineer
Sr. IT Application Solutions Architect/ Sr DevSecOps Engineer

Govserviceshub • Washington

On-site
USD 140,000 - 180,000