DevSecOps Engineer

Reposted 4 Days Ago
Be an Early Applicant
Charlotte, NC, USA
In-Office
Expert/Leader
Security
The Role
Design and operate secure CI/CD pipelines and cloud infrastructure for Salesforce and cloud-native services. Embed automated security gates (SAST/DAST/SCA, IaC scanning), container hardening, and secrets detection. Own release engineering, Terraform IaC, container orchestration, incident response, tooling support, and collaborate with security and engineering teams to improve delivery, reduce alerts, and ensure secure deployments.
Summary Generated by Built In

Position Summary: 

CPI is looking for a DevSecOps Engineer to join our application engineering team This is not a traditional DevOps role.  This role must recognize and imbed security across the entire application delivery lifecycle.  This teammate drives efficiency into the engineering team’s work, while embedding controls, automation, and threat-aware thinking into every pipeline, deployment, and platform. 

 

You'll work at the intersection of Salesforce delivery, cloud infrastructure, and application security, partnering with engineers and security teammates to ship faster and safer. 

 
Key Responsibilities: 

  • Manage release engineering, branching strategies, automated deployments, metadata diffing, sandbox seeding, and rollback playbooks (Salesforce/GearSet are currently core applications) 
  • Design and operate secure CI/CD pipelines and cloud-native services  (Salesforce, AWS, Snowflake) 
  • Work in conjunction with other IT teammates to identify and resolve technical pipeline issues and escalate items while retaining ownership 
  • Embed automated security gates (SAST, DAST, SCA, IaC scanning), container image scanning, and secrets detection directly into developer workflows 
  • Support and extend AI and Snyk code quality gates 
  • Architect and maintain AWS infrastructure IaC (Terraform), with security baselines enforced via policy-as-code 
  • Containerize workloads with Docker, orchestrate via ECS/EKS (or AKS), and harden images against CVEs and supply-chain attacks (SBOMs, signing, provenance) 
  • Partner with security team for pipeline incident response and infrastructure security events and postmortems 
  • Continuously evaluate tool alerts and reduce alert fatigue through tuning and automation 
  • Support and troubleshoot all pipeline & IaC tools to ensure engineering adoption 
  • Contribute to scrum ceremonies as a technical voice on delivery, release readiness, and risk 

 

Core Experience 

  • 10+ years of professional software development experience across one or more of: Java, .NET/C#Python, Node.js, or Apex 
  • 5+ years in a DevOps, SRE, or Platform Engineering role, with at least the last 2 years explicitly focused on DevSecOps practices 
  • Demonstrated history of owning production systems end-to-end (design, deployment, monitoring, and incident response) 
  • Independent problem solver able to investigate, identify, evaluate, and drive practical solutions 

Salesforce Delivery 

  • Hands-on experience for Salesforce CI/CD: pipeline configuration, automated testing, problem analysis, and unit test coverage enforcement (GearSet preferred) 
  • Strong understanding of Salesforce metadata, sandbox strategy, and Apex test automation 
  • Experience integrating Salesforce deployments with Git-based source-of-truth workflows 

Cloud & Infrastructure 

  • AWS at depth: IAM, VPC design, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, WAF 
  • Docker and container orchestration (ECS, EKS, or Kubernetes) in production 
  • Infrastructure as Code: Terraform (preferred) with modular, reusable, policy-checked patterns. 
  • CI/CD platforms: GitHub Actions, GitLab CI, Jenkins, or CircleCI 

Security Tooling & Practices 

  • SAST/DAST/SCA tooling;  e.g. Snyk (preferrable)Checkmarx, SonarQube 
  • Container/image scanningSBOM generation, and policy-as-code 

Soft Skills 

  • Strong communication — you can explain a vulnerability to an executive and a regex to a junior engineer in the same afternoon 
  • Pragmatic risk thinker — you know when to block a deploy and when to file a ticket 
  • Collaborative; sensitive to "security as a department of no" 

Nice to Have 

  • Salesforce certifications (Platform Developer I/II) 
  • AWS certifications (Solutions Architect Professional, Security Specialty) 

Skills Required

  • 10+ years professional software development experience in Java, .NET/C#, Python, Node.js, or Apex
  • 5+ years in DevOps, SRE, or Platform Engineering with at least 2 years focused on DevSecOps practices
  • Hands-on Salesforce CI/CD experience including pipeline configuration, automated testing, metadata management, and sandbox strategy (GearSet preferred)
  • Experience owning production systems end-to-end (design, deployment, monitoring, incident response)
  • Deep AWS knowledge: IAM, VPC design, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, WAF
  • Infrastructure as Code authoring and maintenance (Terraform preferred) with policy-as-code enforcement
  • Containerization and orchestration experience: Docker and ECS, EKS, or Kubernetes/AKS in production
  • CI/CD platforms: GitHub Actions, GitLab CI, Jenkins, or CircleCI
  • Embed automated security gates: SAST, DAST, SCA tooling (Snyk, Checkmarx, SonarQube) and container/image scanning
  • Experience with SBOM generation, image signing, provenance, and supply-chain hardening
  • Ability to tune alerts, reduce alert fatigue, and perform pipeline incident response and postmortems
  • Strong communication, pragmatic risk judgement, and collaborative mindset
  • Salesforce Platform Developer I/II certification
  • AWS certifications (Solutions Architect Professional, Security Specialty)
  • Experience extending AI and Snyk code quality gates
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Charlotte, NC
653 Employees
Year Founded: 1991

What We Do

Protecting the southeast for over 25 years, CPI Security® offers wireless security systems, video monitoring & smart home solutions. Let CPI customize a solution for your home or business.

Similar Jobs

In-Office
8 Locations
40741 Employees
118K-162K Annually

Computer World Services Corp. Logo Computer World Services Corp.

Devsecops Engineer

Information Technology • Professional Services • Consulting • Defense
Hybrid
Morrisville, NC, USA
400 Employees
In-Office or Remote
3 Locations
18851 Employees
133K-167K Annually
In-Office
Triangle Trailer Park, Township of Jacksonville, NC, USA
136 Employees

Similar Companies Hiring

Closinglock Thumbnail
Software • Security • Real Estate • PropTech • Fintech • Financial Services • Cybersecurity
Austin, TX
100 Employees
Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account