DevSecOps Engineer
Torch Technologies, Inc
- Huntsville, AL
- Permanent
- Full-time
- Works in development cycles in integration/continuous development.
- Designs and implements security control process automation
- Implement automation for cloud resources using DevSecOps best practices
- Develop Continuous Integration/Continuous Delivery (CI/CD) process, tools and deployment strategies
- Build and deploy containers and containerization technologies
- Work in a high-performance environment using Agile Software Development processes to support system design, architecture, application development, integration, deployment, and maintenance.
- Create, develop, and implement solutions to address infrastructure and security requirements.
- Identify the needs for building automation, designing, and implementing CI/CD solutions.
- Enable and lead Agile management and collaboration, leveraging tools such as Jira, Confluence, and GitLab
- Build or maintain CI/CD building blocks and shared libraries proactively for application and development teams to enable quicker build and deployment
- Bachelor's Degree in Computer Science, Engineering
- 5 years applicable experience
- Active Secret Clearance
- General understanding of DevSecOps practices
- Experience working with cloud technologies and platforms such as Microsoft Azure
- Experience with Agile practices and principles to deliver high quality products and services
- Ability to write or review software code (Java, Python, etc.)
- Experience with CI/D pipelines (GitLab CI, GitHub Actions, Jenkins, etc.)
- Experience with **application security tools** (SAST, DAST, vulnerability scanning)
- Familiarity with security compliance frameworks (NIST 800-53, FedRAMP, DoD IL5, etc.)
- Understanding of network security fundamentals (firewalls, zero trust, encryption)
- Familiarity with securing workloads in cloud environments
- Eager to expand knowledge and continually improve
- 7+ years of relevant experience
- Experience with Missile Defense Agency cybersecurity and IT policies and procedures
- Experience with containerization (Docker, Kubernetes)
- Knowledge of Identity & Access Management (IAM)
- Experience with online Collaboration tools (e.g., Teams, SharePoint, JIRA)