As a DevSecOps Engineer, this professional will lead the integration of security into software development, continuous integration, continuous delivery (CI/CD), and cloud operations. They will design and maintain secure CI/CD pipelines, automate security controls ("shifting security left"), manage cloud infrastructure, and ensure system scalability, high availability, and compliance.
The DevSecOps Engineer will also mentor team members on secure coding and infrastructure practices, leading cross-functional alignment between engineering, security, and operations teams.
Responsibilities:
- Lead the design, implementation, and maintenance of secure CI/CD pipelines, automating security scanning (SAST, DAST, SCA) alongside build, test, and deployment processes.
- Architect, manage, and harden scalable, highly available, and compliant cloud infrastructure.
- Implement and manage container security and orchestration technologies (e.g., Docker, Kubernetes) to optimize deployment and runtime safety.
- Stay up to date with emerging industry trends, security standards, and best practices in DevSecOps, cloud security, and vulnerability management.
- Provide guidance, training, and mentorship to team members on secure development lifecycle (SDLC) practices and Infrastructure as Code (IaC) security.
Requirements:
- Bachelor’s degree in Computer Science, Cyber Security, Engineering, related field, or relevant equivalent experience.
- 7+ years of experience in DevOps, DevSecOps, or Infrastructure Engineering with a strong security focus.
- Extensive experience integrating automated security gates into CI/CD pipelines (e.g., GitHub Actions, GitLab CI, Jenkins).
- Expertise in scripting and automation languages (e.g., Python, Bash, Go).
- Expertise with major cloud platforms (AWS, Azure, or GCP) and cloud security tooling (e.g., IAM, Security Hub, GuardDuty).
- In-depth knowledge of infrastructure as code tools.
- Excellent communication, incident handling, and cross-team collaboration skills.
Shift-Left Security Integration:
- Implement automated static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and secrets detection into existing build pipelines to catch vulnerabilities early.
- Secrets & Identity Management: Design, deploy, and manage enterprise secrets management solutions (e.g., HashiCorp Vault, AWS Secrets Manager) and enforce strict Least Privilege Access via IAM policies and Zero Trust architecture.
- Vulnerability Management & Remediation: Establish continuous vulnerability assessment processes across cloud instances, container registries, and software dependencies; collaborate with development teams to triage and patch vulnerabilities based on risk priority.
- Security Monitoring & Incident Response Automation: Partner with Security Operations (SecOps) to build automated threat monitoring, anomaly detection, audit logging, and response capabilities across cloud environments and delivery pipelines.
Benefits- What we offer:
What we offer:
- Plenty of opportunities to grow your career
- Comprehensive medical, dental, and vision benefits
- 3 weeks of vacation plus 5 personal days to recharge
- Employee stock ownership, RRSP program, 401k + matching
- A chance to give back through community involvement
- Flexible work arrangements to suit your lifestyle
- Salary Range: $130,000 - 140,000
About us:
STChealth, founded in 1988, is dedicated to eradicating vaccine-preventable diseases through innovative technology and service solutions. With over 36 years of experience, the company has developed the first Immunization Information System (IIS) and now supports more than a quarter of all vaccinations reported nationwide. STChealth’s platform securely connects consumers, providers, and public health entities, facilitating real-time data exchange to enhance immunization rates and public health responses.
About Harris:
Harris provides mission critical software solutions for the Public Sector, Healthcare, Utilities and Private Sector verticals throughout North America, Europe, Asia and Australia.
Working for Harris is the perfect opportunity to fulfill your professional goals as well as achieve your personal dreams!
Our employees enjoy a casual work environment that offers comfort while providing superior service to our customers. We offer a comprehensive benefit package as well as other additional “Perks”!
- We empower our employees to make a difference
- We have an award-winning culture
- We offer opportunity to learn
- We are financially strong and we are owned by the largest software company in Canada (CSI)
- We have fun!
#LI-remote
Skills Required
- Bachelor’s degree in Computer Science, Cyber Security, Engineering, a related field, or equivalent relevant experience
- 7+ years of experience in DevOps, DevSecOps, or Infrastructure Engineering with a strong security focus
- Extensive experience integrating automated security gates into CI/CD pipelines using tools such as GitHub Actions, GitLab CI, or Jenkins
- Expertise in scripting and automation languages such as Python, Bash, or Go
- Expertise with AWS, Azure, or GCP and cloud security tooling such as IAM, Security Hub, or GuardDuty
- In-depth knowledge of infrastructure as code tools
- Excellent communication, incident handling, and cross-team collaboration skills
Harris healthcare Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Harris healthcare and has not been reviewed or approved by Harris healthcare.
-
Leave & Time Off Breadth — PTO and paid holidays are characterized as generous, with ample time off emphasized. This breadth of time-off options is highlighted alongside favorable impressions of vacation and sick leave.
-
Flexible Benefits — Remote-work flexibility and trust to work from home are emphasized, indicating adaptable arrangements for many roles. Flexibility is positioned as a tangible part of the overall package.
-
Healthcare Strength — Core coverage includes medical, dental, and vision, along with life and disability insurance and HSA/FSA options. Health plans are often characterized as good, contributing to a solid foundational offering.
Harris healthcare Insights
What We Do
For over 25 years, Harris Healthcare has been rising to the challenge of bringing together the most innovative and sustainable solutions for today’s ever-changing healthcare environment, in order to improve patient care and safety. Each one of our solutions brings organizational efficiencies on its own. Powerful synergies are achieved when multiple solutions are implemented together. The Harris Healthcare portfolio includes the following solutions: ♦ HARRIS Flex - an enterprise-level EHR solution that improves patient safety and clinical workflows. It includes a full complement of applications integrated in one single database, provides solid clinical decision support to your clinicians and helps standardize care while enforcing protocols and best practices at any Healthcare Organization. HARRIS Flex conveys the digital solution’s flexibility and strength. Healthcare organizations are continuously faced with new challenges and situations and require flexible EHR’s that can be rapidly adapted to their evolving clinical practice. Contrary to other EHR solutions which are inflexible and where customizations require costly support from the vendor, HARRIS Flex gives you the freedom to "flex" your EHR as you need it entirely on your own. The enhanced HARRIS Flex solution comes with new functionality including: ♦Flex Telehealth which enables virtual visits directly from within the EHR/EPR, and ♦Flex Clinical Insight which facilitates extraction and analysis of your EHR/EPR data to improve your processes and outcomes. ♦ SynergyCheck – a proactive interface monitoring solution watching over Clinical, Financial and other interfaces 24/7 to ensure data is flowing between systems








