Also available on
Job Description
📋 Description Own and drive AppSec/DevSecOps roadmap across engineering. Embed security into the SDLC with shift-left and automation. Design and maintain DevSecOps tooling in Kubernetes and GCP, with AI/ML support. Lead security in CI/CD pipelines: code scanning, secret detection, SCA, enforcement. Deliver hardened service templates, secure catalogs, and guardrails. Set security architecture for AI/ML workflows, with model training and deployment controls. 🎯 Requirements 10+ years in Security Engineering, DevSecOps, or related roles. Deep expertise securing Kubernetes environments: images, network policies, and supply chain protections. Experience with AppSec tooling and CI/CD integration (GitHub Actions, ArgoCD). Strong understanding of attacker TTPs and MITRE ATT&CK. Strong grasp of cloud services (GCP preferred) and securing data pipelines. Proficiency with IaC and security scanning for cloud resources (Terraform, Crossplane). 🎁 Benefits Equity and a comprehensive benefits package. Health, dental, and vision coverage. Retirement with company contribution. Parental leave. Mental health and wellness benefits. Flexible PTO and professional development stipend.