DevSecOps Engineer
Indexed description
Title DevSecOps Engineer
Department Engineering
Location Niwot/Hybrid
Reports To Senior Firmware Engineering Manager
About Us
Established in 1972, Particle Measuring Systems is a global leader for micro-contamination monitoring equipment improving the performance of clean manufactures in the semiconductor and pharmaceutical industries. We’re a growing technology company in Niwot, Colorado, the heart of the Rocky Mountains. We offer an exceptional and rewarding work environment in a great place to live. Our employees enjoy challenging projects in the development and manufacture of light scattering particle counters and diverse technologies and applications.
Your Impact
We are looking for a DevSecOps Engineer who will contribute to the success of our Engineering team by designing, implementing, and managing secure development, testing, compliance, and release processes. In this role, you will help ensure the efficient, secure, and reliable delivery of firmware and software products while collaborating with cross-functional teams to drive continuous improvement, operational excellence, and security-first development practices.
The Role
The DevSecOps Engineer plays a critical role in building and maintaining secure cloud infrastructure, CI/CD pipelines, automated testing environments, and security compliance processes. This position partners closely with software, firmware, quality, and cybersecurity teams to integrate security throughout the software development lifecycle and support the successful delivery of high-quality products.
Job Responsibilities
- Design, implement, and maintain secure cloud environments and CI/CD pipelines that integrate automated security testing, vulnerability management, compliance controls, and continuous security monitoring
- Implement and promote security and compliance practices, including vulnerability scanning, dependency analysis, Software Bill of Materials (SBOM) management, threat modeling, and secure coding standards using SAST, DAST, and SCA tools
- Collaborate with firmware and software development teams to improve workflows, release strategies, automated testing environments, and secure development practices
- Automate provisioning and configuration of servers, containers, and infrastructure components using Infrastructure as Code (IaC) and configuration management tools
- Manage software artifacts and third-party dependencies through binary repository management solutions
- Implement and maintain monitoring, logging, and observability solutions to ensure the availability, performance, and security of CI/CD infrastructure
- Participate in the vulnerability management lifecycle, including investigation, prioritization, and remediation support for security vulnerabilities and incidents
- Troubleshoot and resolve issues related to development environments, automated testing systems, release processes, and security incidents
- Provide technical guidance and mentorship across teams, promoting knowledge sharing, continuous improvement, and secure software development practices
- Continuously evaluate processes and tools to improve efficiency, quality, reliability, and security
- This job description is not intended to be all-inclusive. Responsibilities may evolve over time, and other related duties may be assigned to meet the ongoing needs of the company
- Bachelor of Science in Computer Science or related Engineering field
- Proven experience as a DevSecOps Engineer, Security-Focused DevOps Engineer, or similar role
- Development experience in either embedded firmware or software
- Familiarity integrating SAST, DAST, SCA and SBOM tools into CI/CD pipelines
- Hands-on experience working with binary repositories
- Proficiency with AWS or other major cloud platforms
- Proficiency in IaC and configuration management tools
- Strong scripting skills in languages like Bash, Python, or PowerShell
- Familiar with build tools such as CMake, Make, or custom toolchains
- Experience with containerization technologies such as Docker
- Working knowledge of CI/CD tools like Jenkins, Bitbucket Pipelines and GitHub Actions
- Familiarity with Cyber Security practices including cybersecurity principles, vulnerability management, and DevSecOps practices
- Familiarity with monitoring and logging tools such as Prometheus and Grafana
- Excellent problem-solving and troubleshooting skills, with the ability to analyze complex systems and identify root causes
- Working knowledge of shift-left principles and practices
- Strong communication and collaboration skills, capable of working effectively within a team
- Understanding of Agile, DevOps and DevSecOps methodologies and their application in software development processes
- Expertise in Git and the Atlassian suite of software development tools including Bitbucket pipelines
- Experience integrating security scanning tools into CI/CD pipelines
- Familiarity with software composition analysis (SCA) and open-source compliance practices
- Familiarity with DORA metrics
- Certifications in AWS, Cyber Security, or DevSecOps practices
- Experience with SBOM standards such as SPDX and CycloneDX
- Familiar with industry standards such as EN 18037 and IEC 62443
- Knowledge of the EU Cyber Resilience Act
- Experience in multi-disciplinary engineering environment
- This position follows a hybrid work schedule and is expected to be on-site at least 3 days per week based on project priorities and business needs
- This role primarily operates in an office/lab/manufacturing environment. Must be able to sit, stand, and use a computer for extended periods of time
- Occasional lifting of up to 20 lbs. may be required
- Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of this role
- Competitive base salary range: $95000 - 130000 depending on experience
- Our compensation philosophy: we offer competitive pay based on market data, including local, national, and industry benchmarks. For new hires, offers are generally within the established min- to mid-point of the range for the role, with flexibility to recognize experience, skills, and education. Our approach ensures fair pay internally while remaining competitive externally and allows room for growth.
- Comprehensive benefits package:
- Health coverage: medical, dental, vision, fsa, onsite clinic (CO employees), life insurance
- 401(k) retirement plan with company match
- Vacation, holiday, and leave policies
- Tuition reimbursement, Employee recognition programs, Employee assistance programs
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search