Senior Software Security Engineer / DevSecOps

GTN Technical Staffing

Dallas (TX)

On-site

USD 140,000 - 195,000

Full time

31 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

GTN Technical Staffing’s client seeks a Senior Security Software Engineer to build software, automation, and security capabilities for HPC and cloud environments.

The role spans software engineering, platform security, vulnerability management, cloud security, and DevSecOps, with responsibilities to embed security into infrastructure and software delivery at scale.

Qualifications

  • 6+ years of experience in software/security engineering or related areas.
  • Experience building internal tools, services, APIs, automation, or distributed systems.
  • Hands-on experience with vulnerability management and remediation at scale.
  • Experience with security platforms and CI/CD security tooling.

Responsibilities

  • Design and build software and automation for vulnerability detection, remediation, and reporting.
  • Develop internal security tools, services, APIs, and integrations to improve security visibility.
  • Build event-driven and API-based integrations across security systems.
  • Integrate security controls into CI/CD pipelines and IaC workflows.
  • Improve security visibility across distributed production environments.

Skills

Security engineering
DevSecOps
Automation
Cloud security
Vulnerability management
API design

Education

Bachelor's degree in CS or related

Tools

Tenable
Qualys
Wiz
Prisma Cloud
CrowdStrike
Lacework

Job description

Compensation: Competitive Base Salary + Performance Bonus


Overview

Our client is seeking a hands-on Senior Security Software Engineer to build software, automation, and security capabilities that protect the platforms, infrastructure, and software delivery systems supporting a large-scale HPC and cloud environment.


This role sits at the intersection of software engineering, platform security, vulnerability management, cloud security, and DevSecOps. The successful candidate will build internal security tooling, automate vulnerability detection and remediation, improve real-time security visibility, and work directly with engineering teams to embed security into how infrastructure and software are developed and operated.


This is not a traditional SOC or governance role. It is designed for a strong engineer who can write production-quality code, integrate security platforms, and build scalable security solutions across complex cloud and infrastructure environments.


Key Responsibilities

Security Software & Automation


  • Design and build software and automation for vulnerability detection, remediation, reporting, and security posture management.

  • Develop internal security tools, services, APIs, and integrations that improve security visibility and engineering accountability.

  • Build event-driven and API-based integrations across vulnerability, endpoint, cloud, and platform security systems.

  • Use Python, Go, Java, Bash, or similar languages to automate security workflows at scale.

  • Improve reliability, scalability, and maintainability of security engineering platforms.


Vulnerability Management & Platform Security


  • Build and mature vulnerability management capabilities across cloud, Linux, containers, Kubernetes, infrastructure, and software delivery environments.

  • Identify, assess, prioritize, and drive remediation of vulnerabilities based on exploitability, asset criticality, and business impact.

  • Develop scalable workflows for ownership, tracking, SLA management, and remediation.

  • Perform security assessments, threat modeling, and attack-surface analysis.

  • Partner with engineering teams to reduce recurring security issues and improve secure-by-default configurations.


DevSecOps & Software Supply Chain


  • Integrate security controls into CI/CD pipelines and Infrastructure-as-Code workflows.

  • Implement automated scanning, policy enforcement, and security validation during build and deployment.

  • Support dependency scanning, container image security, artifact integrity, and software supply chain protections.

  • Improve SSDLC practices without creating unnecessary friction for engineering teams.

  • Support SBOM, signing, provenance, and related supply chain security initiatives.

  • Secure environments across AWS, Azure, Kubernetes, Linux, and containerized infrastructure.

  • Support runtime security, secrets management, identity, secure configuration, and platform hardening.

  • Improve security visibility across distributed production environments.

  • Partner closely with Platform Engineering, DevOps, and infrastructure teams on secure architecture.


Detection, Incident Response & Reliability


  • Build and tune security monitoring and detection capabilities across platform environments.

  • Investigate security-related production issues and support incident response, root-cause analysis, and remediation.

  • Improve signal quality and reduce unnecessary alert noise.

  • Build reporting around security SLAs, remediation timelines, and platform risk.

  • Use postmortems and incident findings to drive long-term engineering improvements.


Required Qualifications


  • 6+ years of experience in software engineering, security engineering, platform engineering, DevSecOps, application security, or related areas.

  • Experience building internal tools, services, APIs, automation, or distributed systems.

  • Hands-on experience with vulnerability management and remediation at scale.

  • Experience with tools such as Tenable, Qualys, Wiz, Prisma Cloud, CrowdStrike, Lacework, or similar platforms.

  • Strong understanding of Linux, cloud infrastructure, containers, and modern platform environments.

  • Experience with AWS and/or Azure.

  • Familiarity with Kubernetes and containerized infrastructure.

  • Experience integrating security controls into CI/CD pipelines and Infrastructure-as-Code workflows.

  • Strong understanding of APIs, automation, and event-driven architectures.

  • Understanding of CVSS, exploitability, vulnerability prioritization, and risk-based remediation.

  • Strong troubleshooting, communication, and technical problem-solving skills.


Preferred Experience


  • Background as a software engineer or backend engineer with meaningful security engineering experience.

  • Experience building security platforms or automation used across large engineering organizations.

  • Kubernetes security and runtime detection.

  • Falco, eBPF-based security tooling, or similar technologies.

  • Software supply chain security including SLSA, SBOMs, artifact signing, and Sigstore.

  • Application and API security experience.

  • Experience supporting FedRAMP, SOC 2, PCI, or similar compliance environments.

  • Background in HPC, AI infrastructure, cloud platforms, or large-scale distributed systems.

  • Experience working alongside incident response, detection engineering, threat intelligence, or SOC teams.


Ideal Candidate

The ideal candidate is a software engineer first who has developed deep security expertise.


This person should be comfortable writing production-quality code, building internal platforms and automation, integrating security tooling, and partnering directly with infrastructure and software engineering teams.


The strongest candidates may come from backend engineering, platform engineering, security software engineering, DevSecOps, cloud security, or vulnerability engineering backgrounds, provided they have experience building security capabilities at scale.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer / Senior Penetration Tester
Senior Security Engineer / Senior Penetration Tester

Strategic Resources International Inc • San Jose (CA)

On-site
USD 150,000 - 190,000
Senior Platform Security Engineer
Senior Platform Security Engineer

NMC2 • Dallas (TX), Northern (KY)

Hybrid
USD 150,000 - 230,000
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Senior Data Security Engineer
Senior Data Security Engineer

I.T. Solutions, Inc. • United States

On-site
USD 160,000 - 220,000
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

inspiracareers • Oak Brook (IL)

Hybrid
USD 160,000 - 190,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Remote Senior Cybersecurity Engineer - Build & Own Controls
Remote Senior Cybersecurity Engineer - Build & Own Controls

Think Consulting • Columbus (OH)

On-site
USD 140,000 - 190,000
Security Engineer
Security Engineer

xbowcareers • United States

Remote
USD 140,000 - 210,000
Competitive salary
Equity or incentive plan
401k plan
Staff Platform Engineer, Security
Staff Platform Engineer, Security

Engg • Denver (CO), Long Beach (CA), San Francisco (CA)

On-site
USD 160,000 - 250,000
Senior Security Engineer
Senior Security Engineer

Atlas Search • New York (NY)

On-site
USD 180,000 - 240,000