Senior DevSecOps Engineer
VirtuousJob Description
📋 Description Design, implement, and improve secure Azure cloud architectures and governance. Strengthen cloud security with RBAC/PIM, Azure Policy, and guardrails. Integrate security into CI/CD pipelines (SAST, DAST, secrets, SBOM). Lead threat modeling and secure design reviews across the SDLC. Build developer-friendly security guardrails and automation. Reduce security backlog and drift through automated remediation. 🎯 Requirements 5+ years in Security Engineering, App/Cloud/Sec DevSecOps in cloud-native SaaS. Strong experience designing and modernizing Azure environments, including networking, RBAC/PIM, Azure Policy, and secure connectivity. Secure SDLC practices, threat modeling, CI/CD security controls, and engineering partnership. Hands-on DevSecOps: SAST, DAST, dependency scanning, secrets management, software supply-chain security, and policy automation. Experience with Kubernetes, Docker, container security, IaC, and cloud-native platforms. GitHub, GitHub Actions, GitHub Advanced Security (or equivalent), SIEM platforms, observability tooling. 🎁 Benefits Market competitive pay leveraging Carta data. Bonusly recognition for birthdays, anniversaries, achievements. 401(k) with company match: 50% up to 6% of compensation. Unlimited PTO for work-life balance. Healthcare benefits including medical, dental, and vision; HSA/FSA options. 12 weeks primary parental leave, 4 weeks secondary parental leave.