Senior DevSecOps Engineer
Job Description:
Softrams is seeking a seasoned Sr. DevSecOps Engineer to drive critical infrastructure changes through Infrastructure as Code (IaC) while ensuring the security of high-profile applications. The ideal candidate will have extensive experience with provisioning, updating, and removing resources or environments, writing, updating, and running Terraform code, managing database updates, and resizing resources based on load and performance metrics. Additionally, the role involves monitoring the certificate management process (e.g., requests, automated rotations, and audits). The Sr. DevSecOps Engineer will also monitor application performance, integrate monitoring tools with other services, create or update dashboards, alerts, and policies, and respond to infrastructure-related incidents. Expertise in CI/CD processes and the ability to troubleshoot job issues are essential. This role will be responsible for managing key infrastructure in the healthcare sector.
Basic Requirements:
Ability to obtain a U.S. Federal Position of Trust clearance designation.
Must reside in and be able to perform work in the United States.
Must have lived in the United States for 3 of the last 5 years.
Meet or exceed one of the following requirements:
Bachelor of Technology more than 5 years of experience or
AA degree with 7 years of experience or
Comparable level certification with more than 9 years of experience in IT Requirements development and documentation
Experience with the following tools:
AWS IAM
AWS Fargate
AWS RDS
AWS ALB
AWS SSM
Cert Mgr
Security Hub, etc
Terraform
CB Core
Akamai
New Relic
Splunk
LaunchDarkly
Sonarqube
Snyk
Datadog
Akamai Gateway
Technology Requirements:
Infrastructure and networking (AWS and otherwise)
Provisioning, updating, removing AWS resources or environments
Writing, updating and running Terraform code
RDS database updates (version patches, maintenance)
Sizing up/down existing resources based on load and performance
IAM roles and policies used internally, external cross account role access for data sharing (incoming/outgoing)
Maintenance and building of networks utilizing VPC, Security Groups, Cisco VPN and Peering.
Working with Akamai on DNS or resource property updates
Security Tooling / Skillset
OWASP ZAP
Burp Suite
Snyk
Penetration Testing
Security Impact Analysis
Certificate Management
New certificate requests, renewing expiring certificates through automated rotation, and certificate auditing.
Monitoring Application Experience
Configuring integration between New Relic and other services (AWS, Splunk On-Call, Slack, etc)
Creating or updating dashboards, alerts, synthetics, policies
Troubleshooting problems and responding to incidents when infrastructure is involved
CI/CD
Creating and updating jobs in CBCore Jenkins
Troubleshooting problems when jobs are not successful
Extensive experience with Infrastructure as Code (IaC) with proficiency in writing, updating, and running Terraform code
Strong understanding of AWS and other cloud providers for provisioning, updating, and removing cloud resources or environments
Proficiency in managing RDS database updates, including version patches and maintenance
Ability to size up/down resources based on load and performance
Experience configuring and managing IAM roles and policies
Knowledge of internal and external cross-account role access for data sharing
Expertise in maintaining and building networks utilizing VPC, Security Groups, VPN, and Peering
Working with DNS and resource property updates
Managing new certificate requests, renewing expiring certificates through automated rotation, and certificate auditing
Configuring integration between monitoring tools (e.g., New Relic) and other services
Creating or updating dashboards, alerts, synthetics, and policies
Proficiency in troubleshooting infrastructure-related problems and responding to incidents
Experience creating and updating jobs in Jenkins or equivalent CI/CD tools
Troubleshooting CI/CD job failures and ensuring successful deployments
Strong analytical and problem-solving skills
Responsibilities:
Extensive experience with Infrastructure as Code (IaC) with proficiency in writing, updating, and running Terraform code
Strong understanding of AWS and other cloud providers for provisioning, updating, and removing cloud resources or environments
Proficiency in managing RDS database updates, including version patches and maintenance
Ability to size up/down resources based on load and performance
Experience configuring and managing IAM roles and policies
Knowledge of internal and external cross-account role access for data sharing
Expertise in maintaining and building networks utilizing VPC, Security Groups, VPN, and Peering
Working with DNS and resource property updates
Managing new certificate requests, renewing expiring certificates through automated rotation, and certificate auditing
Configuring integration between monitoring tools (e.g., New Relic) and other services
Creating or updating dashboards, alerts, synthetics, and policies
Proficiency in troubleshooting infrastructure-related problems and responding to incidents
Experience creating and updating jobs in Jenkins or equivalent CI/CD tools
Troubleshooting CI/CD job failures and ensuring successful deployments
Strong analytical and problem-solving skills
Excellent communication and collaboration skills
Relevant certifications (preferred) such as AWS Certified Solutions Architect, Certified Kubernetes Security Specialist (CKS), Terraform Certification, or equivalent