Camgian Corporation logo

DevSecOps Engineer

Camgian Corporation
3 months ago
Full-time
Remote
United States

CamgianĀ is seeking a motivatedĀ DevSecOpsĀ EngineerĀ to join our growing engineering team. In this role, you will support compliance-driven security automation, CI/CD pipelines, and infrastructure reliability while embedding security best practices throughout the software development lifecycle. This position is ideal for candidates with foundational DevOps experience who are eager to expand their skills in cybersecurity tools, secure system design, and regulated environments.Ā 

Qualifications:Ā 

  • Bachelor’s degree in computer science, Software Engineering, or related fieldĀ 

  • 2–5 years of experience in a DevOps, SRE, or automation-focused roleĀ 

  • Experience with CI/CD tools (Jenkins, GitLab, Bitbucket) supporting multiple languages (C/C++, Java, Python)Ā 

  • ProficiencyĀ with source code management, branching strategies, merging, and code review practicesĀ 

  • Strong familiarity with configuration management and automation tools (Ansible, Helm)Ā 

  • Solid Linux fundamentals and scripting experience (Bash, Python)Ā 

  • Understanding of secure software development lifecycle (SSDLC) conceptsĀ 

  • Excellent communication and collaboration skillsĀ 

  • U.S. citizenshipĀ requiredĀ 

Desired Skills:Ā 

  • Knowledge of security scanning tools and methodologies (SAST, DAST, SCA, vulnerability scanning)Ā 

  • Tools such asĀ Anchore, Xray, Tenable/Nessus, or equivalentĀ 

  • Familiarity with artifact repositories and dependency management (Artifactory or equivalent)Ā 

  • Exposure to virtualization technologies (XCP-ng, XEN, KVM, or VMware)Ā 

  • Basic understanding of code quality and static analysis tools (SonarQube)Ā 

  • Exposure to cloud platforms (AWS, Azure, GCP) and Infrastructure as Code (Terraform)Ā 

  • Interest or experience with containerization and orchestration (Docker, Kubernetes)Ā 

  • Familiarity with monitoring and observability tools (Prometheus, Grafana)Ā 

  • Exposure to secrets management and secure configuration (Vault, AWS Secrets Manager, Kubernetes secrets)Ā 

  • Basic understanding of network and application security (TLS, certificates, authentication, authorization)Ā 

  • Exposure to compliance frameworks such as NIST 800-53, NIST 800-171, RMF, or similarĀ 

  • Experience supporting audits, assessments, or ATO-related activities is a plusĀ 

  • Familiarity with centralized logging or SIEM tools (ELK, OpenSearch, Splunk) is a plusĀ 

Responsibilities:Ā 

  • Support andĀ maintainĀ automated security scanning workflows across the CI/CD pipelineĀ 

  • Collaborate with engineering teams to triage, remediate, and prevent security vulnerabilitiesĀ 

  • Monitor and analyze security scanning results in development, staging, and production environmentsĀ 

  • Maintain and enhance CI/CD pipelines using Jenkins, GitLab, and BitbucketĀ 

  • Automate infrastructure provisioning and configuration using Ansible, Helm, and Infrastructure as CodeĀ 

  • Support containerization strategies and secure deployments using Docker and KubernetesĀ 

  • AssistĀ with secrets management, credential handling, and secure configuration baselinesĀ 

  • Support audit preparation, evidence collection, and compliance-related activitiesĀ 

  • Document processes, present findings, incorporate feedback, and contribute to continuous improvementĀ 

  • AssistĀ with troubleshooting across development, staging, and production environments with a security-first mindsetĀ