Job Closed

This listing is no longer active.

New Charter Technologies logo
New Charter Technologies

The better way to do IT.

DevSecOps Engineer

DevOps EngineerDevOps EngineerFull TimeRemoteLeadTeam 501-1,000Since 2018H1B No SponsorCompany SiteLinkedIn

Location

Colorado + 3 moreAll locations: Colorado | Montana | Vermont | Wyoming

Posted

110 days ago

Salary

$160K / year

Seniority

Lead

Job Description

DevSecOps Engineer

New Charter Technologies

• Serve as the primary security resource for engineering teams in direct close coordination with information security teams, advising on design decisions, authentication patterns, and API security as features are built rather than after the fact • Conduct lightweight, developer-friendly threat modeling for new features and services, right-sized to the actual audience and risk profile (internal vs. public-facing) • Lead collaboration between engineering and information security teams through architecture and code reviews with actionable, specific guidance that helps teams ship, not slow down • Responsible for remediation and enforcement of security standards as set forth by the information security team • Define and maintain a tiered security standard that distinguishes expectations for internal tooling vs. production SaaS vs. public-facing products • Engage constructively with the enterprise security organization, translating between compliance and governance language and the engineering team's operational reality • Responsible for adherence to GitHub Advanced Security (GHAS) configuration and security standards through ongoing tuning across code scanning, secret scanning, Dependabot, and security campaigns within GitHub Enterprise • Integrate security tooling into CI/CD pipelines as policy-as-code feedback loops, not manual gates • Develop and maintain GitHub Actions workflows with reusable, security-enforcing components • Drive remediation velocity metrics and coverage reporting across engineering teams • Collaborate with information security teams to assess and secure workloads across both Cloudflare and Azure, including Cloudflare Workers, Access policies, WAF, and Zero Trust for public-facing infrastructure, and Azure security controls (Managed Identities, Key Vault, Defender, IAM) for internal and opco-facing services • Apply platform-appropriate security controls as our architecture spans both environments, calibrating to the risk profile of each workload • Evaluate and harden authentication flows, API security patterns, and service-to-service trust boundaries across Cloudflare and Azure environments • Contribute to container and cloud workload security as infrastructure patterns evolve • Contribute to internal security tooling, automation, and integrations using Python and/or Go • Build security utilities such as vulnerability aggregation pipelines, policy enforcement tooling, or developer-facing security dashboards • Collaborate with information security and engineering teams on secure service design patterns, OAuth 2.0/OIDC flows, and API security controls • Support SOC 2 readiness as the product matures toward public customers, mapping application security controls to Trust Services Criteria • Triage and prioritize vulnerability findings based on actual business risk rather than CVSS scores alone, distinguishing real issues from noise in a SaaS-native environment • Partner with GRC and the enterprise security organization on evidence collection and audit preparation, without allowing compliance prep to dominate engineering time.

Job Requirements

  • 7+ years in application security, secure software development, or a closely related discipline
  • Demonstrated ability to operate as an embedded security partner within engineering, working side by side with developers
  • Deep, hands-on experience with GitHub Advanced Security or equivalent security tooling, including code scanning, secret scanning, Dependabot, and security policy enforcement within GitHub Enterprise
  • Experience with threat modeling methodologies (STRIDE, PASTA, or similar) applied to real-world systems, with instinct for right-sizing the process to actual risk
  • Proficiency in Python and/or Go, comfortable reading, writing, and reviewing production-grade code
  • Strong command of OWASP Top 10, common vulnerability classes, and secure design principles
  • Experience securing SaaS or product engineering workloads rather than enterprise IT or perimeter-focused environments
  • Experience securing workloads on Cloudflare (WAF, Access, Zero Trust, Workers) and Microsoft Azure (IAM, Managed Identities, Key Vault, Defender), with demonstrated depth in one and working familiarity in the other
  • Solid understanding of container security concepts with hands-on Docker experience
  • Excellent communication skills, with the ability to translate complex security risk into developer-actionable guidance and executive-level business context
  • Familiarity with SOC 2 Trust Services Criteria and how application security controls map to compliance requirements.

Benefits

  • Growth and learning initiatives
  • Employee benefits
  • Company innovation

Related Categories

Related Job Pages

More DevOps Engineer Jobs

ARA logo

Senior Site Reliability Engineer

ARA

Innovative Solutions to Complex Problems

DevOps Engineer110 days ago
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Partner with software developers, platform engineers, and IT staff to improve system design, operability, deployment safety, and production support readiness. • Define and maintain operational standards, runbooks, support procedures, escalation paths, and service-level objectives. • Evaluate system architecture and changes to ensure they balance functional requirements, service quality, reliability, security, and compliance needs. • Drive continuous improvement in platform stability, maintenance, and availability. • Provide advanced technical support and troubleshooting for complex platform and service issues affecting internal users and stakeholders.

New Mexico
Job Closed
ST Engineering iDirect logo

DevOps Engineer

ST Engineering iDirect

Shaping the Future of How the World Connects

DevOps Engineer111 days ago
Full TimeRemoteTeam 501-1,000Since 1994H1B Sponsor

• Support teams with self‑service tools for provisioning, building, testing, and deploying applications • Improve system reliability, security, and scalability using automation and modern DevOps practices • Maintain and enhance CI/CD pipelines (Jenkins, GitLab CI/CD) • Work across cloud infrastructure (AWS), networking, system administration, and security • Implement infrastructure‑as‑code and environment automation • Drive operational excellence through monitoring, logging, and process improvements

Virginia
Job Closed
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Ensure Azure services are deployed in a consistent, production-ready manner • Drive consistent and repeatable deployment processes across services • Create reusable pipeline templates and deployment patterns • Coach teams on deployment patterns and cloud-native practices • Help teams design systems that are deployable, scalable, and cost-efficient • Build cost awareness into deployment patterns • Optimize serverless and messaging usage for performance per dollar • Monitor and manage cloud spend to prevent waste

Ohio
Job Closed
Talentuch logo

Java Developer

Talentuch

Microsoft, SAP, and general IT recruiters | Talent Acquisition Worldwide | Recruitment Outsourcing

DevOps Engineer111 days ago
Full TimeRemoteTeam 11-50Since 2017H1B No Sponsor

We have grown from an original team of brand planners, and we focus on developing brand and user experiences across the digital landscape. We come to work to mix curiosity and technology to deliver informed commercial results and positive digital experiences. Our is outstaffing, so all projects are different. The company is looking for a Backend Developer. Focus: Implementation and further development of backend services and business logic. Core Responsibilities - Design and implementation of REST APIs and microservices using Spring Boot (Java) on Azure Container Apps - Integration with internal and external systems via the integration layer - Implementation of data access (schema design, queries, migrations, performance optimization) — Azure Database for PostgreSQL - Error and exception handling including logging and monitoring hooks, functional and technical validations - Creation of unit and integration tests Extended Responsibilities - Implementation of security mechanisms (authentication/authorization with Azure Identity Management, role-based access) - Contribution to architectural decisions (API design, domain interfaces, service boundaries, data models) - Refactoring of legacy logic, reduction of technical debt, and standardization of patterns (error handling, logging, DTOs) - Support in performance analysis, scaling strategies, and cost optimization at the backend level Required Stack Java, Spring Boot, REST APIs, Azure Container Apps, Azure Database for PostgreSQL, Azure Identity Management (AD B2C / Entra), Azure DevOps (Repos, Pipelines) What do we offer? - Remote work, the result is all we care about, work from bed, the beach, or anywhere else you want. - Flexibility, we do not impose a strict schedule or mandatory attendance, you allocate your time taking into account your tasks on the project and at the company. - Stability, Client's employees work for The Comopany not for a project, so we continue to cooperate and offer new projects if the current one ends - Diversity, we welcome all people with diverse interests and hobbies. At this position your colleagues will be musicians, artists, athletes, collectors, brave and unusual people. - PTO (14 days) and sick leave (7 days) are provided after 6 months since start working.

Ukraine