DevSecOps Engineer at Planitar leading the integration of security into software development and cloud environments. Focused on automating security processes and collaborating with engineering teams.
Responsibilities
Secure CI/CD Pipelines: Design, build, and maintain automated security testing within continuous integration and deployment pipelines (incorporating SAST, DAST, and SCA tools).
Cloud Security Posture: Implement and monitor security controls across our AWS cloud environment, ensuring compliance with industry best practices and frameworks.
Infrastructure as Code (IaC) Security: Enforce "Security as Code" by implementing automated scanning for Terraform templates to catch misconfigurations before deployment.
Vulnerability Management: Triage, track, and partner with engineering teams to remediate security vulnerabilities across infrastructure, containers, and applications.
Threat Modeling & Architecture: Participate in system design reviews and threat modeling sessions to identify potential attack vectors in new features and infrastructure.
Incident Response: Assist in cloud and application security incident response, including forensic log analysis and mitigation strategy development.
Advocacy & Training: Evangelize secure coding practices and provide guidance to developers on how to build highly secure, resilient systems.
Requirements
3+ years of hands-on experience in DevSecOps, Cloud Security, or a DevOps role with a heavy security focus.
Strong proficiency in securing AWS environments (e.g., deep knowledge of IAM, VPCs, GuardDuty, Security Hub, AWS WAF, KMS).
Strong coding/scripting skills in Python, Bash to automate security workflows and integrate APIs.
Hands-on experience integrating security scanners (e.g., Snyk, SonarQube, Trivy, Checkmarx) into modern pipelines (e.g., GitHub Actions, GitLab CI).
Proficiency writing and reviewing IaC (Terraform) and utilizing IaC security scanners (e.g., tfsec, Checkov).
Solid understanding of Docker and Kubernetes security concepts, including image scanning, RBAC, and network policies.
Practical knowledge of network security fundamentals, including firewalls, zero-trust architecture, VPNs, and TLS/SSL.
Relevant certifications such as AWS Certified Security – Specialty, CKA/CKS (Certified Kubernetes Security Specialist), or OSCP are a plus.
Experience with regulatory compliance frameworks (e.g., SOC2, ISO 27001, HIPAA) is a plus.
Familiarity with SIEM/SOAR tools and centralized logging strategies.
Senior Infrastructure/ DevOps Engineer at a fintech company building products and solutions. Work with industry - leading clients and participate in the development of cutting - edge technology solutions.
Back - End / DevOps Developer building innovative digital products to change the world. Specializing in back - end development and the DevOps ecosystem in the software development team.
Site Reliability Engineer responsible for the installation, configuration, maintenance of middleware technologies at Hyve Solutions. Managing applications on container platforms and ensuring reliable operation of critical middleware components.
Director of IT Operations & DevOps leading infrastructure and DevOps at CanadaHelps. Focus on operational reliability, improvements, and team collaboration in a technology - driven environment.
Own operational reliability of cloud load balancing infrastructure serving global customers. Design and implement frameworks reflecting customer experience for reliability management.
Senior Site Reliability Engineer ensuring platform reliability at Circle. Managing systems and database infrastructure to support high growth in user engagement and system performance.
DevOps II role providing production support for Java - based applications. Involves incident management, CI/CD operations, and collaboration on cloud platforms.
Senior DevOps Engineer at Ad Hoc contributing to DevOps and software engineering strategies. Collaborating across teams and mentoring members to improve software delivery processes.
Senior DevOps Engineer designing and managing cloud infrastructure at Borrowell, a company helping Canadians with their finances. Collaborating with development, security, and QA teams to enhance service delivery.
Senior DevOps Engineer responsible for enhancing CI/CD processes at EQ Bank's IT team. Collaborating with developers to streamline software delivery and operations.