CamgianĀ is seeking a motivatedĀ DevSecOpsĀ EngineerĀ to join our growing engineering team. In this role, you will support compliance-driven security automation, CI/CD pipelines, and infrastructure reliability while embedding security best practices throughout the software development lifecycle. This position is ideal for candidates with foundational DevOps experience who are eager to expand their skills in cybersecurity tools, secure system design, and regulated environments.Ā
Qualifications:Ā
Bachelorās degree in computer science, Software Engineering, or related fieldĀ
2ā5 years of experience in a DevOps, SRE, or automation-focused roleĀ
Experience with CI/CD tools (Jenkins, GitLab, Bitbucket) supporting multiple languages (C/C++, Java, Python)Ā
ProficiencyĀ with source code management, branching strategies, merging, and code review practicesĀ
Strong familiarity with configuration management and automation tools (Ansible, Helm)Ā
Solid Linux fundamentals and scripting experience (Bash, Python)Ā
Understanding of secure software development lifecycle (SSDLC) conceptsĀ
Excellent communication and collaboration skillsĀ
U.S. citizenshipĀ requiredĀ
Desired Skills:Ā
Knowledge of security scanning tools and methodologies (SAST, DAST, SCA, vulnerability scanning)Ā
Tools such asĀ Anchore, Xray, Tenable/Nessus, or equivalentĀ
Familiarity with artifact repositories and dependency management (Artifactory or equivalent)Ā
Exposure to virtualization technologies (XCP-ng, XEN, KVM, or VMware)Ā
Basic understanding of code quality and static analysis tools (SonarQube)Ā
Exposure to cloud platforms (AWS, Azure, GCP) and Infrastructure as Code (Terraform)Ā
Interest or experience with containerization and orchestration (Docker, Kubernetes)Ā
Familiarity with monitoring and observability tools (Prometheus, Grafana)Ā
Exposure to secrets management and secure configuration (Vault, AWS Secrets Manager, Kubernetes secrets)Ā
Basic understanding of network and application security (TLS, certificates, authentication, authorization)Ā
Exposure to compliance frameworks such as NIST 800-53, NIST 800-171, RMF, or similarĀ
Experience supporting audits, assessments, or ATO-related activities is a plusĀ
Familiarity with centralized logging or SIEM tools (ELK, OpenSearch, Splunk) is a plusĀ
Responsibilities:Ā
Support andĀ maintainĀ automated security scanning workflows across the CI/CD pipelineĀ
Collaborate with engineering teams to triage, remediate, and prevent security vulnerabilitiesĀ
Monitor and analyze security scanning results in development, staging, and production environmentsĀ
Maintain and enhance CI/CD pipelines using Jenkins, GitLab, and BitbucketĀ
Automate infrastructure provisioning and configuration using Ansible, Helm, and Infrastructure as CodeĀ
Support containerization strategies and secure deployments using Docker and KubernetesĀ
AssistĀ with secrets management, credential handling, and secure configuration baselinesĀ
Support audit preparation, evidence collection, and compliance-related activitiesĀ
Document processes, present findings, incorporate feedback, and contribute to continuous improvementĀ
AssistĀ with troubleshooting across development, staging, and production environments with a security-first mindsetĀ