DevSecOps Engineer

Fluence is a company in the Information Technology sector focusing on security integration in DevOps processes.
Security
Mid-Level Software Engineer
Hybrid
3+ years of experience
AI · Cybersecurity

Description For DevSecOps Engineer

We are seeking a highly skilled and motivated DevSecOps Engineer to join our team. In this role, you will be responsible for integrating security practices into our DevOps processes, ensuring that security is embedded throughout the entire software development lifecycle (SDLC). You will work closely with development, operations, and security teams to identify and mitigate risks, implement security controls, and promote a culture of security-first thinking. This role reports directly to the Head of Product Security.

Key Responsibilities Include: • Implement and manage security test tooling, ensuring integration into build pipelines to automate vulnerability detection and remediation. • Roll out and manage third-party security tools, working closely with vendors to ensure seamless integration and functionality. • Enable a secure software supply chain by implementing frameworks that ensure security is maintained across all dependencies, components, and third-party libraries. • Design and implement a secure software factory, embedding security best practices in the build and deployment processes from the ground up. • Perform security hardening of both the development pipelines and operational environments, ensuring systems are resilient against threats and vulnerabilities. • Partner with development, DevOps, and operations teams to embed security into every phase of the software lifecycle and cloud infrastructure management.

What will our ideal candidate bring to Fluence? • Bachelor's degree in computer science, information security, or related field. • 3+ years of hands-on experience DevSecOps or security engineering roles. • Relevant certifications (e.g., CISSP, CCSP, CEH, AWS Security Specialty or equivalent). • Experience with security test tooling (SAST, DAST, SCA) and integrating them into agile environment and build pipelines. • Strong experience in implementing and managing vendor security tools across various cloud platforms (AWS, GCP, Azure). • Proficiency in cloud security and securing infrastructure through Infrastructure as Code (IaC). • Container security knowledge (Docker, Kubernetes), with expertise in hardening containerized environments. • Deep understanding of supply chain security frameworks and secure software development practices. • Proficiency in automation and scripting (Python, Bash) to support security workflows.

Last updated 2 months ago

Responsibilities For DevSecOps Engineer

  • Implement and manage security test tooling, ensuring integration into build pipelines to automate vulnerability detection and remediation
  • Roll out and manage third-party security tools, working closely with vendors to ensure seamless integration and functionality
  • Enable a secure software supply chain by implementing frameworks that ensure security is maintained across all dependencies, components, and third-party libraries
  • Design and implement a secure software factory, embedding security best practices in the build and deployment processes from the ground up
  • Perform security hardening of both the development pipelines and operational environments, ensuring systems are resilient against threats and vulnerabilities
  • Partner with development, DevOps, and operations teams to embed security into every phase of the software lifecycle and cloud infrastructure management

Requirements For DevSecOps Engineer

Python
Kubernetes
  • Bachelor's degree in computer science, information security, or related field
  • 3+ years of hands-on experience DevSecOps or security engineering roles
  • Relevant certifications (e.g., CISSP, CCSP, CEH, AWS Security Specialty or equivalent)
  • Experience with security test tooling (SAST, DAST, SCA) and integrating them into agile environment and build pipelines
  • Strong experience in implementing and managing vendor security tools across various cloud platforms (AWS, GCP, Azure)
  • Proficiency in cloud security and securing infrastructure through Infrastructure as Code (IaC)
  • Container security knowledge (Docker, Kubernetes), with expertise in hardening containerized environments
  • Deep understanding of supply chain security frameworks and secure software development practices
  • Proficiency in automation and scripting (Python, Bash) to support security workflows

Interested in this job?

Jobs Related To Fluence DevSecOps Engineer

Software Development Engineer II, Defensive Security - Security Pipeline Engineering

Software Development Engineer II role at Amazon's Security Pipeline Engineering team, building large-scale security applications and data processing pipelines.

Presales Engineer Light Current

Presales Engineer position specializing in Light Current and Physical Security Systems, combining technical expertise with customer-facing responsibilities.

Technical Program Manager II, Security, CISO

Technical Program Manager position at Google focusing on security and risk management in the Cloud CISO organization.

Regional Operations Manager, Trust and Safety Compute (Vietnamese, English)

Lead Trust and Safety operations for Google Play and Android in APAC region, managing policy implementation and cross-functional collaboration.

Data Center Security Manager

Lead data center security operations at Google, managing vendors, implementing security policies, and protecting critical infrastructure in Berlin.