Senior DevSecOps Manager

Yoh,-A-Day-

New York (NY)

Hybrid

USD 158,000 - 225,000

Full time

31 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical, Prescription, Dental & Vision
Health Savings Account (HSA)
401K Retirement Savings Plan
Direct Deposit & weekly pay
Certification and training

Job summary

Yoh, a Day & Zimmermann company, seeks a Senior DevSecOps Manager to lead security across DevOps, AI/ML workloads, and cloud environments. You will architect secure solutions, collaborate with engineering teams, and drive security across the SDLC, including AI model lifecycle.

The role emphasizes IaC, container security, AI security, and automation at scale, handling vast event processing and real-time decisioning in a hybrid NYC setting.

Qualifications

  • Bachelor's degree in Computer Science, Information Systems, or related field; or equivalent experience.
  • 5+ years leading security/DevSecOps teams; experience with AI security an asset.
  • Experience securing AI/ML pipelines, IaC, container security, and software SDLC security.

Responsibilities

  • Lead DevSecOps and security engineers across multiple teams and infra.
  • Implement AI security controls for model deployment environments and AI artifacts.
  • Define governance for AI security, RAG, MCP, and AI supply chain risk management.
  • Automate security scanning (SAST/DAST/SCA) in CI/CD pipelines and AI workloads.

Skills

DevSecOps leadership
Security engineering
Cloud security
AI/ML security
Team leadership
Incident response

Education

Bachelor's degree in Computer Science or related field

Tools

Terraform
Kubernetes
CI/CD tooling
SAST/DAST/SCA
IAM
AI model security tooling

Job description

Job Title: Senior DevSecOps Manager Type: Full Time Location: New York City, NY - Hybrid Salary: $160000- 225000

Our client is looking for a Senior Manager, DevSecOps to lead a group of engineers working across multiple teams integrating security into our DevOps, CI/CD, IaC pipelines, and AI/ML workloads, ensuring secure, compliant, and efficient software delivery across the organization.

As a DevSecOps Sr. Manager , you will oversee technical design and execution across multiple functional areas while providing strategic leadership on DevSecOps best practices, cloud-native security, AI/ML security, and automation. You will lead teams of 2-5+ DevSecOps and security engineers across multiple infrastructure areas, fostering a culture of security throughout the software development lifecycle (SDLC) and AI/ML pipelines.

This role requires balancing technical depth in areas such as Infrastructure-as-Code (IaC), container security, and AI security with strategic leadership to drive security initiatives across the organization. The ideal candidate will serve as a technical leader who can architect secure solutions for both traditional and AI workloads, develop their teams' capabilities, and work cross-functionally with engineering teams to embed security practices into every stage of development, deployment, and AI model lifecycle.

They operate at a massive scale, our backend handles over 100B+ events per day, we analyze and process those events in real-time while making decisions on the environment where the ad is running and all the user interactions during the Ad display lifecycle. We verify that all Ads are Fraud Free, Brand Safe, in the right Geo and highly likely to be viewed and engaged, all that in in under 10ms.

They are global, we have R&D centers in New York, Paris, London, Munich, Belgium, and more. If you like to solve big data challenges and want to help us build a better industry then your place is with us.

Responsibilities will include:
  • Manage and lead multiple DevSecOps teams, mentor and hire senior DevSecOps and security engineers, building high-performing teams focused on security excellence across traditional and AI workloads.
  • Secure AI/ML pipelines and infrastructure by implementing security controls for model deployment environments, ensuring protection against AI-specific threats such as prompt injection, data poisoning, and model extraction.
  • Establish AI security governance frameworks including policies for LLM usage, RAG (Retrieval Augmented Generation) systems security, MCP (Model Context Protocol) security, and AI supply chain risk management.
  • Implement automated security scanning for AI artifacts including model files, training datasets, and AI-generated code, integrating these checks into CI/CD pipelines alongside traditional SAST, DAST, and SCA tools.
  • Oversee security for AI workload identity and access management, ensuring proper authentication, authorization, and encryption for AI services, APIs, and vector databases used in RAG systems.
  • Lead AI security incident response for threats specific to AI/ML systems including adversarial attacks, model theft, data leakage through LLM outputs, and unauthorized AI service usage.
  • Ensure adherence to compliance standards such as SOC 2, ISO 27001, SOX, and MRC by automating compliance evidence collection, with special focus on AI governance and responsible AI principles.
  • Define and execute DevSecOps strategy aligned with business objectives, security requirements, and emerging AI security best practices across the organization.
  • Create architecture designs for security systems and services spanning multiple teams and infrastructure areas, including AI-specific security architectures.
  • Drive continuous improvement of security automation, AI security tooling, and processes across traditional and AI workloads.
  • Establish security metrics and KPIs to measure team effectiveness, security posture, and AI risk exposure.
  • Foster a culture of security awareness and AI security best practices across engineering, data science, and product teams.
  • Collaborate with senior/executive management regularly on security strategy, AI risk management, and cross-organizational security initiatives.
Who you are
Experience & Leadership:
  • 5-6+ years of experience in Cybersecurity/DevOps, or DevSecOps, with proven experience leading security teams of ~5+ engineers across multiple infrastructure areas.
  • Leads teams of two or more functional areas with authority over team processes, tools, and priorities; decisions may jeopardize business activities.
  • Regularly interacts with senior/executive management, communicating timeline, scope, and technical concerns to all stakeholders.
  • Leads Sev1/2 incidents for team's areas of responsibility and provides strategic direction during major security events.
  • Exercises supervision over costs, methods, and staffing with responsibility for resource utilization and budget for teams; may have subordinate supervisors or team leads.
  • Bachelor's degree in Computer Science, Information Systems, or equivalent experience in a related field.
DevSecOps Technical Expertise:
  • AI/ML Security: LLM security (prompt injection, jailbreaking, data leakage), model security, AI supply chain security, adversarial ML defense, RAG system security, vector database security, MCP security.
  • AI Governance & Compliance: Responsible AI frameworks, AI risk assessment, model governance, AI audit trails, privacy-preserving ML techniques.
  • AI Pipeline Security: Securing model training environments, ML pipeline security, model versioning and provenance, AI artifact scanning, AI workload isolation.
  • AI Identity & Access: AI service authentication, API security for AI endpoints, token management for LLM services, workload identity for AI inference.
  • Network Security: Firewalls, segmentation, intrusion detection/prevention systems, AI traffic analysis.
  • Encryption and Cryptography: TLS/SSL, certificate management, encryption at rest and in transit, secure model storage.
  • Identity and Access Management: IAM, Keycloak, Teleport, Workload Identity, AI service accounts.
  • Operating System Security: Hardening, patch management, compliance frameworks.
  • Application Security: Container security, Kubernetes security policies, SAST, DAST, SCA tools, AI-generated code scanning.
  • Threat Intelligence and Analysis: Vulnerability scanning, AI threat detection, adversarial attack detection.
  • Incident Response and Forensics: Security incident handling, AI-specific incident investigation, model forensics.
  • Risk Management and Compliance: SOC2, ISO 27001, SOX, AI governance frameworks, audit preparation and evidence collection.
  • Security Architecture and Design: Zero Trust principles, defense in depth strategies, AI security architecture patterns.
  • Automation and Scripting: Security automation, ACME, certbot, Python, Bash, AI security tooling automation.
  • Cloud Security: GCP, AWS, OCI security controls and best practices, AI service security configurations.
Platform & Tooling:
  • AI/ML Platforms: Vertex AI, SageMaker, Azure ML security configurations, LLM API security (OpenAI, Anthropic, Google AI), vector database security (Qdrant, Pinecone, Weaviate, ChromaDB).
  • AI Security Tools: AI red teaming tools, prompt injection detection, model scanning tools, AI observability and monitoring platforms, AI governance platforms.
  • AI Development Tools: LangChain security, LlamaIndex security, AI agent framework security, model registry security, MLflow security.
  • Cloud Platforms: GCP, AWS, OCI with expertise in cloud-native security controls, AI service configurations, and AI workload security.
  • CI/CD: GitHub Actions, GitLab CI, or Jenkins, and Harness with AI security integrations.
  • Container Orchestration: Kubernetes and Docker, with focus on container security and AI workload orchestration.
  • Infrastructure-as-Code (IaC): Terraform, Ansible, or Crossplane for both traditional and AI infrastructure.
Leadership & Management:
  • Creates architecture designs for systems and services spanning multiple teams and infrastructure areas.
  • Researches new technologies and evaluates for adoption, particularly in AI security domain.
  • Provides blueprints for new services and capabilities across teams.
  • Creates epics and prioritizes work across multiple teams with strong expertise in primary specialization and working knowledge of others.
  • Excellent communication and stakeholder management skills with ability to influence cross-functional teams and senior leadership.
  • Proven ability to balance technical execution with strategic planning, team development, and business objectives.

Estimated Min Rate: $157500.00

Estimated Max Rate: $225000.00

What’s In It for You?

We welcome you to be a part of the largest and legendary global staffing companies to meet your career aspirations. Yoh’s network of client companies has been employing professionals like you for over 65 years in the U.S., UK and Canada. Join Yoh’s extensive talent community that will provide you with access to Yoh’s vast network of opportunities and gain access to this exclusive opportunity available to you. Benefit eligibility is in accordance with applicable laws and client requirements. Benefits include:

  • Medical, Prescription, Dental & Vision Benefits (for employees working 20+ hours per week)
  • Health Savings Account (HSA) (for employees working 20+ hours per week)
  • Life & Disability Insurance (for employees working 20+ hours per week)
  • MetLife Voluntary Benefits
  • Employee Assistance Program (EAP)
  • 401K Retirement Savings Plan
  • Direct Deposit & weekly epayroll
  • Referral Bonus Programs
  • Certification and training opportunities

Yoh, a Day & Zimmermann company, is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

For California applicants, qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. All of the material job duties described in this posting are job duties for which a criminal history may have a direct, adverse, and negative relationship potentially resulting in the withdrawal of a conditional offer of employment.

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior DevSecOps Manager
Senior DevSecOps Manager

Yoh, A Day & Zimmermann Company • New York (NY)

On-site
USD 142,000 - 173,000
Medical benefits
401K Retirement Plan
Competitive PTO
Senior DevSecOps Manager
Senior DevSecOps Manager

Yoh Services LLC • New York (NY)

Hybrid
USD 160,000 - 225,000
Medical, Prescription, Dental & Vision
401K Retirement Savings Plan
Employee Assistance Program (EAP)
Sr. AI Engineer
Sr. AI Engineer

Yoh Services LLC • San Diego (CA)

On-site
USD 96,000 - 138,000
Medical benefits
Health Savings Account (HSA)
Life & Disability Insurance
+3
Senior Azure .NET Developer
Senior Azure .NET Developer

Yoh, A Day & Zimmermann Company • Irving (TX)

Hybrid
USD 98,000 - 150,000
Medical Benefits
Dental & Vision
401K Retirement Savings Plan
+1
Associate Cloud Engineer
Associate Cloud Engineer

Yoh, A Day & Zimmermann Company • Irving (TX)

Hybrid
USD 84,000 - 120,000
Medical benefits
HSA
401K Retirement Savings Plan
+5
Gen AI Technical Project Manager
Gen AI Technical Project Manager

Yoh Services LLC • Boston (MA)

On-site
USD 77,000 - 110,000
Medical, Prescription, Dental & Vision
Health Savings Account (HSA)
Life & Disability Insurance
+3
Head of Enterprise Monitoring and Observability
Head of Enterprise Monitoring and Observability

Yoh, A Day & Zimmermann Company • Holmdel Township (NJ)

On-site
USD 126,000 - 180,000
Medical benefits
Health Savings Account
401K Retirement
+3
Associate Cloud Engineer
Associate Cloud Engineer

Yoh Services LLC • Irving (TX)

Hybrid
USD 100,000 - 120,000
Medical, Prescription, Dental & Vision
Health Savings Account (HSA)
Life & Disability Insurance
+6
Senior Solution Architect, Cloud, DevSecOps & Platform Engineering
Senior Solution Architect, Cloud, DevSecOps & Platform Engineering

Yoh,-A-Day- • Irving (TX)

Hybrid
USD 112,000 - 170,000
Health Savings Account
Life & Disability Insurance
401K Retirement Savings Plan
+2
Business Analyst III - Hybrid in PA or Remote
Business Analyst III - Hybrid in PA or Remote

Yoh, A Day & Zimmermann Company • Audubon Township (IA)

Hybrid
Medical, Prescription, Dental & Vision Benefits
Health Savings Account (HSA)
Life & Disability Insurance
+2