AWS DevSecOps Engineer
Indexed description
Key Responsibilities
DevSecOps Engineering & Automation
- Design, implement, and maintain DevSecOps pipelines supporting CI/CD, continuous monitoring, and automated security testing.
- Embed SAST, DAST, SCA, and compliance checks directly into CI/CD tools (Jenkins, GitLab CI, AWS CodePipeline).
- Automate operational tasks and security workflows using Python, Bash, or Go.
- Create SOAR-style automated incident response playbooks and threat detection routines.
- Manage and enhance CI/CD tools such as Jenkins, Git, Jira, Artifactory, and SonarQube.
- Design secure, scalable AWS architectures using best practices and Infrastructure as Code (Terraform, CloudFormation).
- Implement policy-as-code to detect and prevent cloud resource misconfigurations before deployment.
- Build and maintain containerized workloads on ECS and EKS, including automated container vulnerability management.
- Deploy, configure, and manage AWS-native network security tools: AWS WAF, AWS Network Firewall, Security Groups, and NACLs.
- Maintain and operate virtualized NGFWs (Palo Alto, Fortinet, Check Point) running in AWS.
- Monitor and analyze firewall logs, IDS/IPS alerts, VPC flow logs to identify and mitigate threats.
- Manage firewalls, F5 BigIP, VPN, DNS, SFTP, and other TCP/IP-based services.
- Manage AWS services including EC2, VPC, Lambda, S3, EFS, ECR/ECS, EKS, Route53, IAM, RDS, CloudTrail, and CloudWatch.
- Develop and maintain infrastructure-as-code for provisioning, configuration, patching, and lifecycle management.
- Conduct performance, availability, and security assessments across cloud and container environments.
- Troubleshoot incidents, perform root cause analysis, and implement durable remediation.
- Maintain system documentation, architecture diagrams, and security procedures.
- Implement and enforce least-privilege principles using AWS IAM, SSO, and identity integrations.
- Automate permission audits and cloud security posture monitoring.
- Support compliance with frameworks such as SOC 2, HIPAA, PCI-DSS, and ISO 27001.
- Bachelor’s degree in Engineering from an Accreditation Board for Engineering and Technology (ABET) accredited program, with Seven (7) plus years of IT professional experience
- 3+ years experience specifically in AWS Cloud Security, DevOps, or DevSecOps.
- Hands-on experience with AWS firewalls, NGFWs, IDS/IPS, and advanced network security.
- Strong automation mindset with a history of developing guardrails, auto-remediation, or security tooling.
- Proficiency in Python, Bash, or Go.
- Strong knowledge of AWS core services: EC2, VPC, RDS, Lambda, S3, CloudTrail, GuardDuty, Security Hub.
- Proficient with Terraform or CloudFormation.
- Experience overseeing the creation of hybrid software, web and hardware products from initial specifications to final rollout and maintenance.
- Experience integrating various network operating systems, application programs and hardware devices through system specification, design, coding, testing and maintenance support.
- Individual shall consider overall project design including cost, schedule, and social issues that may be associated with a project.
- Experience implementing SOAR platforms or building serverless auto-remediation using Lambda/Step Functions.
- AWS Security Specialty or AWS DevOps Professional certification.
- Experience securing Kubernetes/EKS workloads and container registries.
- Experience automating compliance for SOC 2, HIPAA, PCI-DSS, or ISO 27001.
Join the Mission and Start your Career Journey: Apply Directly via our Careers Portal Connect, Referrals & Inquiries? Email the team: [email protected]
Entarian is an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search