Sellers Dorsey is an Equal Employment/Affirmative Action employer. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religious creed, national origin, physical or mental disability, protected Veteran status, or any other characteristic protected by federal, state, or local law. If you need a reasonable accommodation for any part of the employment process, please contact us by email at HumanResources@sellersdorsey.com and let us know the nature of your request and your contact information. Sellers Dorsey maintains a Drug-Free workplace.
Development Security Operations Engineer
Location
United States
Posted
31 days ago
Salary
$105.4K - $140K / year
Seniority
Mid Level
No structured requirement data.
Job Description
Development Security Operations Engineer
Sellers Dorsey
Role Description Sellers Dorsey is seeking a new Development Security Operations Engineer (DevSecOps Engineer) who will be responsible for bridging the gap between software development and security engineering operations. As the DevSecOps Engineer, you will design, build, and maintain automated systems and tools that facilitate software development, testing, deployment, and monitoring, with a strong focus on continuous integration and continuous delivery (CI/CD) practices. You will also streamline the software release life cycle for the firm – ensuring efficient and reliable software delivery, infrastructure development, and system performance, and complete other duties as assigned. Key Responsibilities - Security & Monitoring: - Develop and implement application security vulnerability practices. - Deploy CNAPP/CSPM using tools like Microsoft native Defender for Cloud, Prisma Cloud, Wiz. - Implement security best practices within the CI/CD pipeline and infrastructure to ensure application security. - Responsible for GitHub Enterprise Administration. - Ensure proficiency in application penetration testing. - Assist developers with training and resolving vulnerabilities in a timely manner. - Active participation in Change and Architecture Review Meetings. - Automation: - Develop and implement automation scripts to streamline repetitive tasks like infrastructure provisioning, code builds, testing, deployments, and monitoring across different environments. - Design, build, and maintain continuous integration and continuous delivery pipelines using tools like Sonar, Azure DevOps, GitLab. - Infrastructure Management: - Manage cloud infrastructure Azure including provisioning, scaling, and configuration management using tools like Terraform or Ansible. - Set up monitoring/alert systems to identify potential issues in production environments and create alerts to notify relevant teams. - Work closely with our developers, QA engineers, and system administrators to identify and resolve issues throughout the development lifecycle. - Debug and troubleshoot technical issues related to deployments, infrastructure, and application performance. - Continuous Learning & Application: - Research and analyze the latest security threats, emerging technologies, and DevSecOps trends to stay ahead of evolving risks. - Engage in ongoing professional development by attending training sessions, obtaining certifications, and actively participating in industry discussions. - Apply new knowledge to improve security strategies, enhance system protections, and drive innovation in DevSecOps practices. Qualifications - Bachelor's degree in Computer Science, Information Systems, or equivalent technical discipline. - Four (4) years of experience in a DevSecOps or DevOps Engineer role. - Proven experience as a DevOps Engineer, with a focus on Microsoft technologies. - Knowledge of security best practices in DevOps. - Experience with monitoring tools like Prometheus, Grafana, or Azure Monitor. - Experience with security frameworks and compliance standards (e.g., HIPAA, HITRUST, SOC2, ISO 27001, NIST, GDPR, etc.). Additional/Preferred Education and Certifications - Programming Languages: Proficiency in scripting languages like Python, Bash, Ruby, and PowerShell. - Version Control: Expertise in Git and related branching strategies. - Cloud Computing: Deep understanding of cloud platform Azure. - Configuration Management Tools: Experience with tools like Ansible, Chef, or Puppet. - Security: Sonar Qube, Acunetix, Prisma Cloud, Wiz, Defender for Cloud. - CI/CD Tools: Knowledge of Sonar, Azure DevOps, or similar platforms. - Monitoring Tools: Familiarity with tools like Prometheus, Grafana, and Datadog. Other Requirements - Customer-focused – providing consistent service excellence. - Problem-Solving Skills: Strong analytical skills to identify and solve security and operational challenges in a timely and effective manner. - Collaboration and Communication: Ability to work closely with development, operations, and security teams to ensure smooth deployment and integration of new software releases. - Excellent communication skills to articulate security concerns and solutions effectively. - Strong interpersonal and conflict resolution skills. - Critical thinking and problem-solving skills. - Attention to detail. - Flexible thinking, including the ability to pivot and try new approaches when faced with challenges. - Ability to work on multiple projects in various stages simultaneously. - Desire to work in a fast-paced, high-energy environment. - Ability to prioritize and demonstrate relentless discipline in achieving goals. Compensation & Benefits - The anticipated salary range for candidates is $105,400/year in our lowest geographic market range to up to $140,000/year in our highest geographic market range. - The final pay offered to a successful candidate will be dependent on several factors that may include but are not limited to the type and years of experience within the job, the type of years and experience within the industry, the candidate’s education, and the candidate’s market location. - The successful candidate will also be eligible to participate in our annual Corporate Incentive Plan (CIP) that can range to up to 10% of annual salary. - Eligible to enroll in group healthcare plans that offer medical, dental, and vision. - Eligible for insurance plans offering short-term disability, long-term disability, and basic life. - Employees can enroll in Sellers Dorsey’s 401k plan provided they meet plan requirements. - Sellers Dorsey offers a Flexible Time Off that allows employees to use what they need. - 10 paid holidays throughout the calendar year. - Paid time off for qualifying medical leave, and up to 12 weeks of combined paid parental and bonding leave. Company Description Sellers Dorsey is a healthcare impact strategy firm focused on improving care access, quality, and outcomes for our nation’s most vulnerable populations. We work with providers, managed care organizations, state entities, and others, to design, implement, fund, and optimize sustainable programs that deliver maximum impact to underserved communities.
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
CSOC Analyst
FastlyFastly’s edge cloud platform enables the best of the web to thrive, and helps you deliver better online experiences.
• Active Incident Response: Lead the identification and mitigation of high-impact security events. You will analyze sophisticated traffic patterns and implement precise countermeasures, including rate limiting and custom WAF & Security rules to neutralize threats in real-time. • Managed Security Delivery: Serve as a primary security consultant for MSS Customers. This involves continuous tuning and refining of security policies to optimize detection accuracy and maintaining a hardened security posture tailored to each client's unique environment. • Advanced Threat Hunting: Conduct data-driven investigations using log analysis to uncover potential threats and hardenings opportunities • Security Intelligence & Reporting: Author comprehensive After Action Reports (AARs) and monthly security summaries. You will translate complex telemetry and attack data into high-level actionable insights for customer stakeholders. • Strategic Communication: Act as the Subject Matter Expert (SME) during active security incidents. You will provide clear, calm, and professional guidance via real-time communication channels, ensuring customers are informed and confident in our defensive strategy.
Information Security Operations Engineer
Cushman & WakefieldHeadquartered in Chicago, Illinois, Cushman & Wakefield is a privately-held, international real estate company serving developers, investors, lenders, and occup
Role Description Selected Candidate works within the Security Operations Center to improve, tune, and enhance security alerts, responses, and remediation of detected issues. The engineer will also work within the Incident Management process to remove threats and vulnerabilities within the organization. This role collaborates with other Information Security and IT Operational teams to maintain a secure environment and incident response capabilities. As part of the Global Security Operations Center team, he/she should be responsible for improving security operations and monitoring security events in EDR, perimeter scanning, threat detection, preventative advanced threat hunting, across all security tools. This job requires flexibility of working in 24/7 rotational shifts which includes night shift and weekends. - Serves as the regional point of contact for security escalations/requests and escalates requests to Security architecture as needed. - Responsible for the identification and assessment of enterprise risks. - Identifies, evaluates, and tests appropriate security products, tools, and systems to ensure alignment with the CushWake global security posture. - Articulates security policies, guidelines, and standards to customers and developers. - Able to apply theories, concepts, principles, and methodologies to difficult but conventional assignments. - Works independently within an established framework. - Develop techniques and procedures for conducting IS and cyber security risk assessments and compliance audits. - Evaluates and tests hardware, firmware, and software for possible impact on system security. - Investigates and resolves security incidents. - Implements IS and cyber security policies and takes measures against intrusion, frauds, attacks, or leaks. - Continues to build knowledge of the organization, processes, and customers. - Performs a range of straightforward assignments using prescribed guidelines or policies to analyze and resolve problems. - Partners with Security Architecture on critical scope delivery. - Reviews security INC(s) to ensure proper processes have been followed and to identify additional IoA(s)/IoC(s). - Performs proactive threat hunting using hypothesis and telemetry from endpoints, identities, cloud, and network to identify malicious activity, abnormal behaviors, and emerging attacker techniques. - Serves as the security stakeholder for IR/MIM activities until Security Architecture and/or senior leadership can engage. Company Description INCO: “Cushman & Wakefield”
Security Operations Lead
Newfire Global PartnersSoftware Development, Staff Augmentation, and Advisory Services company operating in 8 countries across 4 continents.
• Design, implement, and continuously mature critical security programs, acting as the primary technical owner for Data Loss Prevention (DLP) to safeguard sensitive company data across the environment. • Engineer and optimize our Security Information and Event Management (SIEM) platform. Oversee log ingestion strategies, write complex custom detection rules, and leverage scripting (e.g., Python, PowerShell) to automate alert triage and response workflows. • Lead proactive vulnerability hunting and assessment initiatives. Continuously evaluate infrastructure weaknesses and partner closely with IT and infrastructure teams to drive and track remediation of identified risks. • Act as the primary technical responder and incident commander during security events. Perform deep-dive forensic analysis, coordinate technical investigations, and guide cross-departmental teams through containment, eradication, and post-incident reviews. • Evaluate, deploy, and maintain the operational security tech stack. Ensure tools integrate seamlessly with the existing environment, continuously tuning them to reduce false positives and maximize return on investment. • Serve as a subject matter expert and technical mentor within the broader technology organization, fostering a culture of security awareness and collaborative risk mitigation.
Security Operations Security Director - Cybersecurity Senior Manager
General DynamicsGeneral Dynamics is a global aerospace and defense company offering products designed to provide safety and security to people around the world. In the past, Ge
Title: Security Operations Security Director /Cybersecurity Sr. Manager Location: USA TX Austin - 7100 Metropolis Drive, Austin III (TXC138) Job Description: Type of Requisition: Pipeline Clearance Level Must Currently Possess: None Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: Other Job Family: Cyber and IT Risk Management Job Qualifications: Skills: Compliance Frameworks, Cyber Security Governance, Cyber Security Management Certifications: None Experience: 10 + years of related experience US Citizenship Required: No Job Description: The Security Director is the senior leader responsible for the governance, compliance, and overarching security posture of a Managed IT Security Operations contract. This role oversees adherence to regulatory frameworks, contractual requirements, and internal governance standards while ensuring the program’s security operations are executed with audit-readiness, risk awareness, and policy alignment at their core. The Security Director serves as the primary authority for cybersecurity compliance, governance controls, and enterprise-level security oversight. Key Responsibilities: • Lead the development, implementation, and enforcement of the contract’s cybersecurity governance framework, ensuring alignment with NIST, CIS, ISO, and all applicable regulatory requirements. • Oversee all compliance activities, including evidence collection, control validation, audit preparation, and corrective action tracking. • Ensure continuous compliance with federal, state, and industry standards, including data protection, privacy regulations, and customer-specific governance requirements. • Establish and maintain policies, procedures, SOPs, and security documentation that support a consistent and mature governance posture. • Serve as the primary liaison for compliance-related communication with customer stakeholders, auditors, and internal executives. • Lead risk management initiatives, including risk assessments, gap analyses, plan of action and milestones (POA&M) management, and mitigation planning. • Oversee the governance layer of SOC operations, ensuring operational practices meet internal and external compliance obligations. • Direct enterprise reporting activities, including compliance dashboards, governance metrics, and executive summaries reflecting organizational security posture. • Monitor changes in regulatory requirements and ensure the program is proactively positioned to meet evolving compliance expectations. • Collaborate with security engineering, SOC leadership, and program management to ensure all operational decisions integrate governance and risk considerations. • Support security architecture reviews and ensure technology decisions adhere to approved security baselines and compliance frameworks. • Lead or support incident response governance, including breach notification processes, documentation standards, and compliance-related reporting. Required Qualifications: • Bachelor’s degree in Cybersecurity, Information Assurance, Compliance, or related field (or equivalent work experience). • 10+ years of cybersecurity or compliance leadership experience, preferably within MSS/MSP or security operations environments. • Deep knowledge of governance and compliance frameworks (NIST RMF and CSF, ISO 27001, CIS Controls, FedRAMP, PCI-DSS, HIPAA, etc.). • Proven experience preparing for and supporting internal and external audits. • Demonstrated ability to build and manage governance programs in complex, multi‑platform IT environments. • Expertise in risk management, policy development, and compliance reporting. • Relevant certifications such as CISSP, CISM, CISA, CGEIT, CRISC, or similar. Preferred Qualifications: • Experience supporting government contracts or highly regulated industries. • Familiarity with cloud governance programs across AWS, Azure, and GCP. • Experience with Zero Trust governance models. • Additional certifications in audit, governance, or cloud security. Key Competencies: • Compliance and governance leadership • Policy and procedure development • Exceptional documentation and audit readiness • Strategic risk management • Strong communication and stakeholder alignment • Analytical decision-making Additional Information: Location: Austin, TX. expect to be in office 2-5 days a week. Timeline: This is a contingent role, expected to start between December 2026 and March of 2027. GDIT IS YOUR PLACE: - Full-flex work week to own your priorities at work and at home - 401K with company match - Comprehensive health and wellness packages - Internal mobility team dedicated to helping you own your career - Professional growth opportunities including paid education and certifications - Cutting-edge technology you can learn from - Rest and recharge with paid vacation and holidays The likely salary range for this position is $147,292 - $199,278. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: Less than 10% Telecommuting Options: Hybrid Work Location: USA TX Austin Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.




