Enable job alerts via email!

Principal DevSecOps Engineer (Remote)

BioSpace

Salt Lake City (UT)

Remote

USD 120,000 - 160,000

Full time

5 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading company to become a Principal DevSecOps Engineer, where you'll contribute to application security within an innovative team. This role emphasizes expertise in software development, security engineering, and integration of security tools, all while offering flexible remote working options across the U.S.

Qualifications

  • 8+ years experience with Bachelor's, 7+ with Master's, or 3+ with PhD.
  • 5+ years in application security and software development.
  • 3+ years with application security tooling (SAST/DAST/IAST/SCA).

Responsibilities

  • Implement and maintain Application Security Testing tools to identify vulnerabilities.
  • Integrate security tooling with CI/CD pipelines.
  • Develop reports on security findings and remediation efforts.

Skills

Application Security
Software Development
Secure Coding Practices
DevSecOps Practices
Cloud Environments
Communication Skills

Education

Bachelor's Degree
Master's Degree
PhD

Tools

SAST
DAST
IAST
SCA
Python

Job description

Join to apply for the Principal DevSecOps Engineer (Remote) role at BioSpace

6 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Company Description
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas: immunology, oncology, neuroscience, and eye care, including products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on X, Facebook, Instagram, YouTube, LinkedIn, and TikTok.

Job Description
Become a key player in our Information Security team as a Principal DevSecOps Engineer. You will leverage your expertise in application security, security engineering, and software development to support and enhance our inline code testing and reporting processes. This role involves implementing and administering application security tooling, integrating into CI/CD pipelines, and supporting development teams using these products and their findings.

This position can be virtual anywhere in the U.S.

Responsibilities
  1. Implement and maintain Application Security Testing (AST) tools (SAST, DAST, IAST, SCA, etc.) to identify vulnerabilities during the software development lifecycle.
  2. Implement and maintain Application Security Posture Management (ASPM) tools to centralize findings and integrate into development processes.
  3. Support users by resolving false positives, guiding on remediation, and evaluating security exceptions.
  4. Integrate security tooling with CI/CD pipelines.
  5. Develop reports on security findings and remediation efforts.
  6. Demonstrate proficiency across technologies related to application security, software design, containerization, and cloud environments.
Qualifications

Required:

  • Bachelor's Degree and 8 years experience OR Master's Degree and 7 years experience OR PhD and 3 years experience
  • 5+ years in application security and software development
  • 3+ years supporting application security tooling such as SAST/DAST/IAST/SCA
  • Knowledge of secure coding practices, especially in Java and Node.js
  • Experience with CI/CD security testing integration
  • Understanding of vulnerabilities like OWASP Top 10, CWE, etc.
  • Experience with DevSecOps practices in cloud environments (AWS, Azure)
  • Developing Infrastructure as Code using TerraForm and/or CloudFormation
  • Strong communication skills for technical and non-technical audiences
  • Ability to innovate and support junior engineers

Preferred:

  • Tooling for consolidating security findings
  • Experience with Snyk and Endor Labs
  • Cloud Security Posture Management integration
  • Scripting in Python
  • Pipeline logging and insights
  • Collaboration with risk management teams
Additional Information

Details on pay, benefits, and legal disclosures are provided in the original description. The role is open to applicants in locations with pay disclosure laws, and the salary range is indicative, subject to change based on location and other factors.

AbbVie is an equal opportunity employer. For more info, visit here. Applicants seeking accommodations can find details here.

Job Details
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Engineering and Information Technology
  • Industries: Internet News
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Principal DevSecOps Engineer (Remote)

AbbVie Inc

Salt Lake City

Remote

USD 120,000 - 150,000

17 days ago

Principal DevSecOps Engineer (Remote)

BioSpace

Tampa

Remote

USD 120,000 - 160,000

4 days ago
Be an early applicant

Principal DevSecOps Engineer (Remote)

Allergan

Lincoln

Remote

USD 121,000 - 230,000

6 days ago
Be an early applicant

Principal DevSecOps Engineer (Remote)

Allergan

Greenlawn

Remote

USD 121,000 - 230,000

6 days ago
Be an early applicant

[Hiring] Principal DevSecOps Engineer @Second Front Systems

Second Front Systems

Remote

USD 120,000 - 160,000

17 days ago

Principal DevSecOps Engineer (Remote)

AbbVie Inc

Austin

Remote

USD 130,000 - 180,000

17 days ago

Principal DevSecOps Engineer (Remote)

AbbVie Inc

Tampa

Remote

USD 120,000 - 180,000

17 days ago

Principal DevSecOps Engineer - (Remote)

Lensa

Bedford

Remote

USD 120,000 - 160,000

20 days ago

Lead DevSecOps Engineer (GCP)

ZipRecruiter

Arlington

Remote

USD 130,000 - 180,000

24 days ago