03 Aug
|
Jobgether
|
Canada
We are currently looking for a DevSecOps Engineer in Canada.
In this role, you will be at the forefront of security, reliability, and DevOps, designing and implementing resilient cloud infrastructure and CI/CD pipelines. You will embed security as code throughout the software development lifecycle, automate remediation, and strengthen platform defenses while enabling rapid and secure delivery at scale. Partnering closely with engineering, DevOps, and product teams, you will help lead incident response for high‑severity outages and drive measurable improvements in operational and security resilience.
Accountabilities
- Embed security into CI/CD pipelines, including Infrastructure as Code scanning, secrets management, Software Composition Analysis, policy‑as‑code, and deployment guardrails.
- Automate vulnerability management, patching, and remediation across cloud and containerized workloads.
- Harden cloud and Kubernetes environments through secure configurations, network segmentation, and workload identity management.
- Advance supply chain security by managing SBOMs, artifact signing, and dependency governance.
- Develop secure deployment patterns, including canary rollouts, safe rollbacks, and guardrails to minimize impact.
- Conduct security design reviews and threat modeling for new services and major architecture changes.
- Strengthen identity and access management practices, enforcing least privilege and secure secrets lifecycle.
- Support compliance and audit readiness by operationalizing controls and maintaining documentation.
- Partner with engineering teams to champion secure coding practices and risk‑based decision‑making.
- Define and report key security KPIs, driving continuous improvement across infrastructure and platform security.
Requirements
- 5+ years of experience in DevSecOps, security engineering, or cloud security within
📌 DevSecOps Engineer (Remote from Canada)
🏢 Jobgether
📍 Canada