Lead the design and implementation of DevSecOps strategy for AWS Lambda and serverless-based applications
Oversee CI/CD pipelines and integrate automated security testing (SAST, DAST, dependency, and secrets scanning)
Drive infrastructure as code (IaC) standards and ensure secure deployments using CloudFormation, CDK, or Terraform
Manage security posture by enforcing IAM least privilege, secrets management, and continuous compliance monitoring
Establish logging, monitoring, and observability strategies using CloudWatch, X-Ray, and centralized log analysis tools
Lead incident response and root cause analysis for operational or security issues
Collaborate with developers, architects, and security engineers to ensure shift-left security practices
Define and implement governance controls for AWS accounts, including tagging, cost management, and security policies
Mentor and guide DevOps and security engineers in modern serverless DevSecOps practices
Requirements
Bachelor’s degree in Computer Science, Engineering, or related field with 8+ years of experience or a Master’s degree in Computer Science, Engineering, or related field with 6+ years of experience
US Citizenship; Ability to obtain a DoD Secret security clearance
5+ years of experience in DevOps, Security Engineering, or Cloud Operations roles
2+ years of leadership or team lead experience in DevSecOps or Cloud Security
Strong expertise in AWS services, including Lambda, API Gateway, IAM, S3, DynamoDB, Step Functions, VPC, KMS
Hands-on experience with CI/CD tools such as AWS CodePipeline, GitHub Actions, GitLab CI, or Jenkins
Proficiency in scripting/automation (Python, Bash, or PowerShell)
Knowledge of IaC and IaC security tools (CloudFormation, Terraform, CDK, Checkov, tfsec, cfn-nag)
Experience implementing logging/monitoring/alerting systems with CloudWatch, X-Ray, or ELK stack
Strong understanding of identity and access management, least privilege, and secrets management
Experience with deployment techniques to limit down-time (Blue/Green, Rolling, Canary)
Experience with Agile process and framework to manage operational items and maintenance tasks such as security updates, patching, certificate/password rotations, etc.
Benefits
Health and Wellness programs
Income Protection
Paid Leave
Retirement
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
DevSecOpsAWS LambdaCI/CDInfrastructure as CodeCloudFormationTerraformPythonBashPowerShellAgile
Soft skills
leadershipmentoringcollaborationincident responseroot cause analysis