← All jobs

Staff DevSecOps Engineer

Posted 6m ago

About the role

We are looking for a Staff DevSecOps Engineer to improve security across our Azure cloud infrastructure, Kubernetes environments, CI/CD pipelines, and production systems. You’ll work closely with engineering, IT, quality, product, and compliance teams to identify security gaps, implement practical solutions, and strengthen our overall security posture.

What you'll do

  • Secure and improve CI/CD pipelines, including SAST, SCA, secrets, IaC, and container scanning.
  • Strengthen Azure and AKS security, including identity, networking, secrets, and workload security.
  • Improve Kubernetes and container security.
  • Establish and maintain infrastructure security baselines using Terraform, Bicep, or similar tools.
  • Lead vulnerability management, prioritization, remediation, and reporting.
  • Improve privileged access using least-privilege and just-in-time access.
  • Partner with developers on secure coding, dependency management, and security reviews.
  • Support security incidents, audits, compliance activities, and technical documentation.

Requirements

  • 5+ years of experience in DevOps, SRE, platform engineering, cloud security, security engineering, or related roles.
  • 2+ years of experience in DevSecOps, cloud security, application security, or production security.
  • Strong hands-on experience with Azure, AKS, and Entra ID.
  • Strong experience with CI/CD and software supply chain security.
  • Hands-on Kubernetes and container security experience.
  • Experience with Terraform, Bicep, or similar IaC tools.
  • Scripting experience with Python, Go, Bash, PowerShell, or similar.
  • Experience with vulnerability management and risk-based prioritization.
  • Experience with least-privilege and just-in-time access.
  • Strong communication skills and ability to work independently and influence engineering teams.
  • Nice to Have
  • Experience in regulated environments such as HIPAA, SOC 2, ISO 27001, healthcare SaaS, or fintech.
  • Experience with Aikido, CrowdStrike, Vanta, Azure Policy, Defender for Cloud, Sentinel, or Key Vault.
  • Experience with threat modeling, incident response, disaster recovery, or security architecture.
  • Certifications such as Azure Security Engineer, CKS, CCSP, or CISSP.

About Full Scale

Full Scale is a fully remote-first company that helps businesses build dedicated teams of skilled software engineers. We make it easier for growing companies to find, onboard, and retain high-performing software talent.

Visit Full Scale

AI Alerts shares third-party job opportunities for informational purposes only. We are not the employer and are not involved in the hiring process. Always verify the company and role through official channels before applying, and never pay to apply, train, onboard, process documents, or secure a job offer. Legitimate employers do not ask applicants for money. Read our Terms to learn more.