Skip to content Skip to footer
View All Jobs

DevSecOps Lead/Architect


JOB DESCRIPTION

Job Summary:

We are seeking a Senior Staff Engineer – DevSecOps to lead the design, implementation, and continuous improvement of cloud security and DevSecOps practices across AWS and Azure environments. This role will be responsible for securing cloud infrastructure, embedding security into CI/CD pipelines, leading incident response, and driving security best practices across the organization while ensuring compliance with regulatory standards.

Key Responsibilities:

  • Design and implement secure cloud architectures across AWS and Azure following security best practices.
  • Architect secure cloud infrastructure using guardrails and golden path patterns with Infrastructure as Code (IaC).
  • Implement and manage cloud security controls including IAM, VPCs, Security Groups, KMS, Zero Trust, and network security.
  • Integrate security into CI/CD pipelines, including SAST, DAST, SCA, and dependency scanning using GitHub.
  • Lead investigations and response to complex cybersecurity incidents, including malware, unauthorized access, and security breaches.
  • Analyze security events and logs to proactively identify threats and strengthen the organization’s security posture.
  • Conduct vulnerability assessments and recommend remediation strategies.
  • Collaborate with engineering, infrastructure, and security teams to implement DevSecOps best practices.
  • Ensure compliance with SOX, FDA, GxP, GDPR, and other applicable regulatory requirements.
  • Drive security awareness initiatives and provide technical guidance to internal stakeholders.
  • Work in Agile environments using Jira/JSM to support security initiatives.

Required Qualifications:

  • Bachelor’s degree with 9+ years of experience, Master’s degree with 7+ years of experience, or equivalent experience.
  • Strong experience designing and securing cloud environments in AWS and Azure.
  • Hands-on experience with:
    • DevSecOps
    • CI/CD Pipelines
    • GitHub Actions/Pipelines
    • Infrastructure as Code (IaC)
    • IAM
    • VPC
    • Security Groups
    • Key Management Services (KMS)
    • Zero Trust Architecture
    • Network Security
    • Secure SDLC
  • Experience integrating SAST, DAST, SCA, and dependency scanning into development pipelines.
  • Experience with cybersecurity operations, vulnerability management, threat detection, and incident response.
  • Knowledge of cloud, infrastructure, system, and application security.
  • Experience administering enterprise IT systems.
  • Experience working in Agile environments using Jira/JSM.
  • Strong understanding of PII, PHI, and sensitive data protection.
  • Excellent analytical, communication, and problem-solving skills.

Preferred Qualifications:

  • Candidates are expected to work onsite at least 4 days per week; availability for 5 days onsite is preferred.
  • Experience in highly regulated industries such as Biotech, Pharmaceutical, or Life Sciences.
  • Knowledge of SOX, GxP, FDA, GDPR, and CPRA compliance requirements.
  • Technical leadership experience.
  • AWS Certified Security – Specialty certification.
  • CISSP, CISM, CEH, OSCP, GIAC, or equivalent security certifications.

Required Technical Skills:

  • AWS
  • Microsoft Azure
  • DevSecOps
  • Infrastructure as Code (IaC)
  • GitHub / GitHub Actions
  • CI/CD
  • IAM
  • VPC
  • Zero Trust
  • Security Groups
  • AWS KMS / Key Management Services
  • SAST
  • DAST
  • SCA
  • Dependency Scanning
  • Secure SDLC
  • Network Security
  • Incident Response
  • Vulnerability Management
  • Cloud Security
  • Jira / JSM
  • Agile

Job Location: Alameda Full time (W2 Only) USA
Experience: 7+ Years

Apply for this position

Allowed Type(s): .pdf, .doc, .docx