DevSecOps Techno-Functional Lead
Indexed description
Role: DevSecOps Techno-Functional Lead
Location: Tampa, FL (pref.), Jersey City, Dallas or Boston (Onsite 3 days)
Interview: Video Interview
Duration: 12 months contract to hire
Must be able to convert after 12 months without sponsorship
Job Description:
We are looking for an experienced Techno-Functional Lead to serve as the central point of coordination for our CI/CD pipelines, deployment activities, security and compliance scanning, and AI project delivery. This is a hybrid role that blends hands-on technical depth with functional program tracking. You will keep a pulse on the health and status of engineering activities across teams while staying close enough to the code to contribute, troubleshoot, and guide technical decisions.
The ideal candidate is equally comfortable writing Python or .NET code, reasoning about integrations across systems, driving open-source and vulnerability remediation to closure, and managing cross-team status and lifecycle activities for multiple concurrent initiatives.
- Track and coordinate the status of all CI/CD pipelines, deployments, and release activities across teams, maintaining clear visibility into progress, blockers, and risks.
- Own and track FOSS (Free and Open-Source Software) scanning across applications — reviewing scan results, triaging license and dependency findings, coordinating remediation with development teams, and maintaining compliance evidence.
- Own and track Mythos vulnerability scanning activity — monitoring scan coverage and results, triaging findings by severity, driving remediation SLAs, and reporting posture to stakeholders.
- Integrate and maintain security and compliance gates (FOSS/SCA, vulnerability, static analysis) within CI/CD pipelines so issues are caught before release.
- Monitor and report on the status of AI/ML projects, including ongoing discussions, decisions, milestones, and delivery timelines.
- Act as a techno-functional bridge between engineering, DevOps, InfoSec, product, and leadership, translating technical detail into functional status and vice versa.
- Contribute hands-on to development and integration work using Python and/or .NET.
- Oversee software development lifecycle (SDLC) activities, ensuring adherence to standards, timelines, security requirements, and quality gates.
- Support troubleshooting and root-cause analysis across development, test, and production environments.
- Maintain documentation of pipeline configurations, deployment processes, integration points, scan/remediation status, and project status.
- Facilitate discussions, capture action items, and follow through on cross-functional dependencies for AI, security, and engineering initiatives.
- Drive continuous improvement in deployment reliability, release cadence, scan coverage, and remediation turnaround.
Required Qualifications:
- Bachelor's degree in Computer Science, Engineering, or a related field (or equivalent practical experience).
- 10+ years of experience in software development, delivery, and lifecycle management.
- Strong hands-on coding experience in Python or .NET (C#).
- Solid experience with system integrations (REST APIs, messaging, third-party and internal systems).
- Hands-on experience with CI/CD tooling (e.g., Jenkins, GitHub Actions, Azure DevOps, GitLab CI) and deployment processes.
- Hands-on experience with FOSS / open-source composition scanning and license compliance workflows.
- Hands-on experience with vulnerability scanning and remediation tracking, including triage, prioritization, and driving fixes to closure.
- Demonstrated ability to operate in a techno-functional capacity, balancing hands-on technical work with program/status tracking and coordination.
- Strong understanding of SDLC practices and Agile methodologies.
Nice to Have:
- Experience with specific FOSS/SCA and vulnerability tooling such as Black Duck, Snyk, Mend (formerly WhiteSource), FOSSA, Sonatype Nexus Lifecycle, Veracode, Checkmarx, SonarQube, or Qualys.
- Familiarity with SBOM generation and management, and with CVE/CVSS-based prioritization.
- Exposure to AI/ML project delivery and familiarity with AI/ML concepts, models, or data pipelines.
- Experience with cloud platforms (AWS, Azure, or GCP) and managed services.
- Familiarity with containerization and orchestration (Docker, Kubernetes), including container image scanning.
- Working knowledge of SQL and data platforms (e.g., Snowflake, BigQuery, Redshift).
- Experience in enterprise or regulated environments (financial services, healthcare, etc.).
- Experience with observability/monitoring tooling for pipelines and deployments.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search