Job Closed
This listing is no longer active.
Building Stronger Businesses & Communities. Providing Managed IT Services in the Dallas-Fort Worth Area since 2008.
DevOps AppSec, Security Engineer
Location
Pakistan
Posted
174 days ago
Salary
0
Seniority
Senior
Job Description
DevOps AppSec, Security Engineer
GXA
• Guide developers and engineers on secure coding standards and practices. • Perform code reviews and static/dynamic analysis to identify vulnerabilities. • Integrate security tools into CI/CD pipelines for automated scanning and compliance. • Design and implement authentication, authorization, and encryption for APIs and applications. • Assess and remediate risks in REST/SOAP integrations, data pipelines, and custom applications. • Collaborate with the vISM and Security Team to manage vulnerability identification, tracking, and remediation across applications and infrastructure. • Coordinate and support penetration testing activities, including scoping, execution, and remediation of findings. • Conduct security assessments for new and existing systems, documenting risks and recommending mitigation strategies. • Develop and maintain threat models for applications and infrastructure. • Respond to security incidents, perform root-cause analysis, and document lessons learned. • Support compliance initiatives (e.g., GDPR, HIPAA, PCI-DSS) and assist with audit preparation and evidence collection. • Build and maintain security automation scripts and workflows (e.g., for vulnerability scanning, alerting, and compliance checks). • Integrate security monitoring into Azure Pipelines, Data Factory, and related services. • Maintain comprehensive security documentation, diagrams, and operational procedures. • Work with Business Analysts to translate security requirements into actionable specifications. • Educate stakeholders on security risks, trade-offs, and mitigation strategies. • Participate in client meetings to address security concerns and present solutions.
Job Requirements
- Proficiency in secure coding, application security frameworks (OWASP, NIST), and vulnerability management.
- Experience with security tools (SAST, DAST, dependency scanning, SIEM).
- Strong understanding of authentication, authorization, and encryption protocols.
- Familiarity with CI/CD pipelines, Azure DevOps, and security automation.
- Experience with penetration testing methodologies and remediation processes.
- Ability to investigate, respond to, and remediate security incidents.
- Skill in root-cause analysis and forensic investigation.
- Ability to explain technical security concepts to non-technical stakeholders.
- Experience working with cross-functional teams (engineering, business analysis, operations, security).
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
AWS DevOps Engineer, Associate
MactoresMactores is a trusted leader among businesses in providing modern data platform solutions.
• Manage large customer deployments including Linux and Windows Administration • Help migrate remaining dedicated hardware infrastructure to the cloud • Automate operational and server provisioning workflows using AWS CFT on AWS • Share responsibility for deploying releases and conducting other operations maintenance • Enhance operations infrastructures such as Jenkins clusters, Bitbucket, monitoring tools (Consul), and metrics tools such as Graphite and Grafana • Establish and maintain operational best practices • Design team strategy in collaboration with founders • Participate in hiring culturally fit engineers • Train and guide the team in DevOps practices • Implement monitoring for automated system health checks • Build CI pipeline
• Configure and manage cloud-based infrastructure, interconnecting different accounts in different regions of AWS for web and mobile applications • Implement and manage CI/CD pipelines, infrastructure as code (IaC), and automated testing, using a combination of Github and AWS Codebuild • Automate deployment, scaling, and monitoring of real-time applications, running scripts in simulators and in actual mobile devices connected remotely • Establish and maintain observability systems including logging, monitoring, metrics collection, and alerting • Ensure system reliability and performance through proactive monitoring and incident response planning • Participate in daily standups with teammates and weekly demos with clients • Collaborate with development teams to optimize build processes and deployment strategies • Assist in maintaining security best practices across infrastructure and application deployments
IT Data Integration, DevOps Analyst
The Council for Professional RecognitionWe give teachers the certification & support they need to give young children the quality care & education they deserve.
• Design, build, and maintain data integrations across operational systems, Dataverse, Azure Synapse Analytics, and Dynamics 365. • Ensure synchronization, accuracy, availability, and consistency of data between operational and analytical environments. • Develop, support, and optimize ETL and ELT processes for analytics and reporting platforms, including Power BI. • Monitor and improve data quality through validation rules, reconciliation processes, profiling, and quality checks. • Develop and maintain CI/CD pipelines for data and application components using Azure DevOps and related tools. • Automate deployments and manage environment configurations to ensure consistent release processes across environments. • Monitor data pipelines and system performance; troubleshoot integration, pipeline, and deployment issues. • Collaborate closely with the Business Data Analyst to align data models, integration logic, and structures with reporting requirements. • Develop and maintain data models for both operational and dimensional databases. • Maintain clear technical documentation for data flows, integrations, transformations, and DevOps processes. • Collaborate with Solutions Architects, Integration Developers, vendors, and IT leadership on platform enhancements and issue resolution.
Build & Release Engineer
LeagueA platform technology company powering next-generation healthcare consumer experiences
• Design, maintain, and evolve automated build, packaging, and release workflows across web, backend, and mobile platforms • Own the end-to-end release lifecycle, including versioning, promotion, rollback, and hotfix strategies • Ensure high reliability and uptime of CI/CD systems through monitoring, alerting, and incident response • Support engineering teams in landing critical releases and resolving build or deployment issues • Build and optimize CI/CD pipelines using modern tooling (e.g., GitHub Actions, CircleCI, self-hosted runners) • Improve build performance, cost efficiency, and execution times across pipelines • Manage and evolve containerized build environments (Docker) and Kubernetes-based infrastructure • Implement infrastructure-as-code practices (e.g., Terraform) for reproducible build environments • Design and implement AI-assisted workflows to automate release validation, failure triage, and incident analysis • Optimize pipeline performance and identify bottlenecks • Generate and maintain build scripts, configs, and test scaffolding • Build AI-powered tooling (agents, bots, or copilots) for release orchestration and CI/CD diagnostics • Integrate AI into developer workflows to reduce manual effort and improve productivity • Continuously evaluate and adopt new AI tools and patterns to evolve League’s delivery capabilities • Build and maintain internal tools, dashboards, and CLI utilities to improve developer workflows • Enhance observability of build and release systems (logs, metrics, alerts) • Create and maintain documentation and self-service tooling for engineering teams • Partner with developers to understand friction points and improve release experience at scale • Implement and maintain secure build and release practices, including certificate and secrets management • Partner with Security and Platform teams to ensure safe and compliant releases • Improve reliability through incident management, postmortems, and continuous improvement loops




