Sr. Dev SecOps Engineer

Mondo

Danboro (PA)

Hybrid

USD 140,000 - 160,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental
Vision
401K
PTO
Tuition reimbursement

Job summary

Mondo in Danboro, PA seeks a Senior DevSecOps Engineer to design and implement automated security controls integrated into CI/CD pipelines, enabling fast deployments with strong security coverage.

You will harden AWS security across customer-facing and internal systems, build policy-as-code automation, own vulnerability management, and collaborate with Infra, AI, and IS teams. This is a permanent, hybrid role starting ASAP.

Qualifications

  • 5-8 years of experience in cloud security, DevSecOps, or security engineering.
  • Deep expertise in AWS security services including IAM, Security Hub, GuardDuty, Config, KMS, VPC design, and CloudTrail.
  • Proven experience integrating automated security tooling (SAST, SCA, DAST) into modern CI/CD pipelines without degrading deployment velocity.
  • Hands-on experience with infrastructure-as-code and policy-as-code using Terraform or AWS CDK.
  • Strong scripting and automation skills in Python, Go, or Bash, with the ability to build custom security tools and integrate systems programmatically.
  • Experience securing containerized workloads including Docker, Kubernetes, and ECS/EKS deployments.
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical field.

Responsibilities

  • Design and implement automated security scanning (SAST, SCA, DAST) embedded into CI/CD pipelines.
  • Continuously assess, harden, and elevate the security posture of AWS cloud infrastructure.
  • Build event-driven, policy-as-code automation to detect and auto-remediate security issues in near real-time.
  • Define the security architecture for AI-powered applications, including data access controls and auditability.
  • Own the end-to-end vulnerability management lifecycle with automated remediation of vulnerabilities and misconfigurations.
  • Collaborate with infrastructure, AI engineering, and IS teams to integrate threat response across the tech stack.
  • Define and lead security incident response playbooks, root-cause analyses, and post-incident reviews.

Skills

Cloud security
DevSecOps
Automation
Scripting
Security architecture

Education

Bachelor's degree in CS/IS/Engineering
AWS Security Specialty
CISSP
CCSP

Tools

AWS
Terraform
AWS CDK
Docker
Kubernetes
CI/CD tooling
Python
Go
Bash
SAST/DAST/SCA

Job description

Job Title: Senior DevSecOps Engineer

Location-Type: Hybrid - Danboro, PA

Start Date: ASAP

Duration: Permanent

Compensation Range: $140,000 - $160,000/yr

Benefits: Health, Dental, Vision, 401K, PTO, Tuition Reimbursement

Visa Sponsorship: Not eligible for visa sponsorship

Job Summary
  • Design and implement automated security scanning (SAST, SCA, DAST) embedded directly into CI/CD pipelines to maintain high deployment velocity without sacrificing security coverage
  • Continuously assess, harden, and elevate the security posture of the client's AWS cloud infrastructure across customer-facing and internal enterprise systems
  • Build event-driven, policy-as-code automation to detect and auto-remediate common security issues in near real-time, replacing manual audit processes
  • Define the security architecture for AI-powered applications, including data access controls, model governance, prompt safety, and auditability for agentic systems
  • Own the end-to-end vulnerability management lifecycle, including triage, prioritization, tracking, and automated remediation of vulnerabilities and cloud misconfigurations
  • Collaborate with infrastructure, AI engineering, and IS teams to integrate threat response practices across the full technology stack
  • Define and lead security incident response playbooks, root-cause analyses, and post-incident reviews to drive systemic improvements
Minimum Requirements
  • 5-8 years of experience in cloud security, DevSecOps, or security engineering
  • Deep expertise in AWS security services, including IAM, Security Hub, GuardDuty, Config, KMS, VPC design, and CloudTrail
  • Proven experience integrating automated security tooling (SAST, SCA, DAST) into modern CI/CD pipelines without degrading deployment velocity
  • Hands-on experience with infrastructure-as-code and policy-as-code using Terraform or AWS CDK
  • Strong scripting and automation skills in Python, Go, or Bash, with the ability to build custom security tools and integrate systems programmatically
  • Experience securing containerized workloads including Docker, Kubernetes, and ECS/EKS deployments
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical field
Preferred Qualifications
  • Experience defining security architecture for AI/LLM-powered systems, including prompt injection protections, model access controls, output validation, and auditability for agentic applications
  • Hands-on experience operationalizing CrowdStrike and Zscaler in an enterprise environment
  • Familiarity with Model Context Protocol (MCP) and emerging security considerations for tool-use in agentic AI systems
  • Relevant certifications: AWS Security Specialty, CISSP, CCSP, or equivalent
  • Experience contributing to or leading security programs in support of SOC 2, ISO 27001, or similar compliance frameworks
  • Background working in a global organization with multi-region cloud deployments
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior DevSecOps Engineer
Senior DevSecOps Engineer

Soni • New York (NY)

On-site
USD 140,000 - 175,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Vytalize Health • Kansas (OH)

On-site
USD 120,000 - 160,000
DevSecOps Lead/Architect
DevSecOps Lead/Architect

UsefulBI • Alameda (CA)

On-site
USD 180,000 - 240,000
Onsite work 4 days/week
Exposure to regulatory compliance
Senior Security Engineer
Senior Security Engineer

Covenant HR • Boston (MA)

On-site
USD 140,000 - 170,000
Full benefits provided
Relocation assistance
ME00631-Senior DevSecOps Engineer Lead (Hybrid)
ME00631-Senior DevSecOps Engineer Lead (Hybrid)

Momentum Engineering, Inc • Washington

On-site
USD 130,000 - 170,000
11 paid holidays
3 weeks PTO
Medical plan
+4
Junior DevSecOps Engineer
Junior DevSecOps Engineer

Inadev-Corporatio • Reston (VA)

On-site
USD 70,000 - 100,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
DevSecOps Engineer
DevSecOps Engineer

Phizenix Inc. • Reston (VA)

On-site
USD 120,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

Talentify • Lewisville (TX)

On-site
USD 120,000 - 180,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

The Phoenix Group • Arlington (VA)

On-site
USD 120,000 - 190,000