DevSecOps Engineer

Reposted 9 Days Ago
Hiring Remotely in USA
Remote
88-91 Annually
Senior level
Information Technology
The Role
The role focuses on integrating security automation tools into CI/CD pipelines, collaborating with development teams, and mentoring on secure coding practices.
Summary Generated by Built In

Join New Era Technology, where People First is at the heart of everything we do. With a global team of over 4,500 professionals, we’re committed to creating a workplace where everyone feels valued, empowered, and inspired to grow. Our mission is to securely connect people, places, and information with end-to-end technology solutions at scale.
At New Era, you’ll join a team-oriented culture that prioritizes your personal and professional development. Work alongside industry-certified experts, access continuous training, and enjoy competitive benefits. Driven by values like Community, Integrity, Agility, and Commitment, we nurture our people to deliver exceptional customer service.
If you want to make an impact in a supportive, growth-oriented environment, New Era is the place for you. Apply today and help us shape the future of work—together.

Position Summary

We are seeking a DevSecOps Engineer to support a large-scale application security program with deep engineering expertise in designing, implementing, and maintaining scalable security automation solutions. Focus will be on integrating static (SAST), dynamic (DAST), and software composition analysis (SCA) tools into CI/CD pipelines to enable secure development practices across diverse software environments. The role involves close collaboration with development, security, and DevOps teams to embed security controls within the software development lifecycle, leveraging tools such as Checkmarx, Fortify, Burp Suite, OWASP ZAP, Snyk, and WhiteSource. Additional value add skills include scripting custom integrations via Python, Go, or Java, developing APIs to extend automation capabilities, and configuring security scanning in cloud-native and containerized environments (e.g., AWS, Azure, Kubernetes). Strong working knowledge of infrastructure as code (Terraform, Ansible), CI/CD platforms (Jenkins, GitHub Actions, GitLab CI), and secure coding practices is essential. The engineer will also provide actionable insights from tool results, support incident response, and mentor teams on secure development lifecycle (SDL) best practices across multiple business units.

Key Responsibilities

    • Design / build / implement and maintain scalable automation tools and pipelines for application security, including static (SAST), dynamic (DAST), and software composition analysis (SCA) scanning.
    • Collaborate with developers, security engineers, and DevOps teams to integrate security automation seamlessly into CI/CD workflows.
    • Identify opportunities for improving security tool coverage, efficiency, and performance.
    • Develop custom scripts, plugins, or APIs to extend the capabilities of security testing and remediation automation.
    • Monitor and analyze security automation tool results, generate actionable insights, and support incident response and remediation efforts.
    • Stay up to date on the latest security automation trends, technologies, and best practices, and advocate for continuous improvement in tooling and processes.
    • Provide mentorship and guidance to other engineers on secure coding and secure development lifecycle practices.

Required Qualifications

    • 8+ years of software engineering experience with a focus on security automation or application security.
    • Proficiency in Python, Ruby, Go, Java, or similar programming languages.
    • Strong understanding of application security principles, vulnerabilities (e.g., OWASP Top Ten), and remediation techniques.
    • Hands-on experience implementing and configuring security scanning tools such as SAST (e.g., Checkmarx, Fortify), DAST (e.g., Burp Suite, OWASP ZAP), and SCA (e.g., Snyk, WhiteSource).
    • Familiarity with CI/CD pipelines (e.g., Jenkins, GitHub Actions, GitLab CI) and infrastructure as code tools (e.g., Terraform, Ansible) is a plus.
    • Solid understanding of software development lifecycle (SDLC) processes and how to integrate security automation seamlessly.
    • Excellent problem-solving skills and ability to work independently and as part of a team.

Preferred Qualifications

    • Experience with cloud-native security automation (e.g., in AWS, Azure, or GCP environments).
    • Familiarity with container security (e.g., Docker, Kubernetes) and related security scanning solutions.
    • Knowledge of threat modeling and security risk assessments.

Below is the pay range of this position for considered candidates based on qualifications and experience.

Pay Range
$88$91 USD

New Era Technology, Inc., and its subsidiaries (“New Era” “we”, “us”, or “our”) in its operating regions worldwide are committed to respecting your privacy and recognize the need for appropriate protection and management of any Personal Data that you may provide us. In this, we are also committed to providing you with a positive experience on our websites and while using our products, services and solutions (“Solutions”).
View our Privacy Policy here https://www.neweratech.com/us/privacy-policy/

Top Skills

Ansible
AWS
Azure
Burp Suite
Checkmarx
Fortify
Github Actions
Gitlab Ci
Go
Java
Jenkins
Kubernetes
Owasp Zap
Python
Ruby
Snyk
Terraform
Whitesource
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
1,535 Employees

What We Do

New Era Technology is a global managed technology service provider. New Era serves as a trusted adviser to more than 14,500 customers worldwide. Customers rely on New Era’s seamless blend of solutions that securely connect people, places, and information in a rapidly changing digital world. New Era has offices in the Americas, the United Kingdom, APAC, and Europe.

New Era provides solutions and services to diverse industries including Global Enterprise, Banking & Finance, Smart Buildings & IoT, Healthcare, Education, and Government.

Solutions and Services:
• Collaboration & Unified Communications
• Data Networking
• Digital Transformation
• SecureBlu Security Services
• CloudBlu Cloud Services
• Physical Security & Life Safety
• Managed Services
• Professional Services

Similar Jobs

ServiceNow Logo ServiceNow

Devsecops Engineer

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
San Diego, CA, USA
57-57

AlertMedia Logo AlertMedia

Devsecops Engineer

Cloud • Information Technology • Security • Social Impact • Software
Easy Apply
Remote or Hybrid
2 Locations

EVOTEK Logo EVOTEK

Devsecops Engineer

Information Technology • Software
In-Office or Remote
San Diego, CA, USA
100K-180K Annually

AutogenAI Logo AutogenAI

Devsecops Engineer

Artificial Intelligence
Remote
United States
150K-200K

Similar Companies Hiring

Axle Health Thumbnail
Logistics • Information Technology • Healthtech • Artificial Intelligence
Santa Monica, CA
17 Employees
Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account