This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for a DevSecOps Engineer to support secure software delivery in a SaaS environment based in Palo Alto, California. This Long-term Contract position focuses on embedding security throughout development and deployment workflows, helping teams strengthen protection from code creation through production release. The role is ideal for someone who combines hands-on security engineering expertise with practical automation skills and sound judgment when evaluating vulnerabilities.
Job Responsibility
Integrate security practices into development and release processes to promote safer, more reliable software delivery across the engineering lifecycle
Review and assess findings generated through Wiz, determining priority, business impact, and appropriate remediation paths
Partner with engineering teams to improve security controls within CI/CD workflows, with primary emphasis on GitHub and CircleCI pipelines
Create and maintain scripts or lightweight code solutions that automate security checks and connect tools with existing development processes
Evaluate vulnerability disclosures and bug bounty submissions, validating reports and identifying severity to support timely response efforts
Monitor secure code delivery activities from initial commit through production deployment, helping reduce risk at each stage of the pipeline
Act as the primary individual contributor for this function, driving day-to-day execution and advancing DevSecOps practices across the environment
Requirements
Proven experience in DevSecOps or security engineering within a SaaS environment
Hands-on knowledge of Wiz, including the ability to interpret results and triage security findings effectively
Strong familiarity with CI/CD platforms, especially GitHub and CircleCI
Practical scripting or coding ability to automate controls and streamline security workflows
Experience reviewing vulnerability reports, bug bounty submissions, or similar external security findings
Understanding of secure software delivery practices across development, testing, and production stages
Working knowledge of Azure Active Directory and its role in enterprise environments