Bechtel, founded in 1898, is one of the world’s leading and most widely recognized construction, engineering, and project management firms. The company was fo
Dev SecOps Engineer
Location
United States
Posted
7 days ago
Salary
0
Seniority
Mid Level
Job Description
Dev SecOps Engineer
Bechtel
Role Description We are looking for an experienced and talented DevSecOps engineer with a focus on MS SQL and Internet Information Server to join our team! As our DevSecOps engineer, you will be working with a team of highly skilled and experienced engineers across multiple teams including development, implementation and integration, and secure operations who are delivering and operating systems for Bechtel Nuclear, Security & Environmental global business unit. These systems support our global customers and projects as they have a positive impact on cleaning up the environment, maintaining national and global security, generating sustainable energy, and returning to space. Major Responsibilities - Build, install, and support various MS SQL Server, Oracle and Mongo DB environments meeting current technical and security standards. - Support code deployments in all environments. - Support systems tests for security, performance, and availability. - Help monitor systems, provide support, and develop ways to improve these systems. - Provide technical guidance and educate team members on operational and security requirements. - Brainstorm for new ideas and ways to improve system delivery and security. - Help with regular system patching including operating system, database, application framework, and other layers. - Help with service account maintenance including password renewal/retrieval from the password vault and updating the impacted systems. - Work with all teams to achieve business objectives. Qualifications - Requires bachelor's degree (or international equivalent) and 2-5 years of relevant experience or 6-9 years of relevant work experience. Requirements - Cloud migration and operation experience, focusing on Microsoft Azure and Azure.gov as cloud provider. - Oracle RDMS including but not limited to import/export, migrations, backup restore, basic troubleshooting, user management and tablespaces. - Working understanding of code and scripts. - Working understanding of US Government data classifications and related security frameworks including but not limited to Controlled Unclassified Information (CUI), Official Use Only (OUO), and Risk Mitigation Framework (RMF). - Knowledge of application externalization technologies and methodologies including but not limited to SSL certificates, Single Sign On (SSO) interactions, and API gateway and externalizations. - Knowledge of Windows server administration for Windows 2019 and higher. - Knowledge of PowerShell scripting or other scripting languages to automate processes during deployment, operations, and maintenance. - Knowledge of best practices and IT operations in an always-up, always-available service mentality. - Familiar with UNIX/Linux administration. - Familiar with Oracle Fusion Middleware (including maintenance and patching) a plus. - Familiar with VMWare virtual server environment and VCenter. - Passionate about technology, automation, security, and eager to learn and share. - Ability to work independently and as part of multiple teams. - Ability to multi-task, be self-motivated, work well independently and with multiple teams, experience working in high-pressure environments, and able to meet deadlines. - Ability to work occasionally after normal business hours. Benefits - Robust benefits to ensure our people thrive. - Programs to enhance our culture. - Time to recharge.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cybersecurity Engineer
AprioTop 35 business advisory and CPA firm helping clients and team members achieve what's next.
• You will own small-to-medium engineering projects end-to-end, configure and operate control sets without direct oversight, and partner closely with Senior and Principal engineers on the larger initiatives that cross multiple domains. • You’re the engineer who can pick up a control implementation, deliver it, document it, and hand it off cleanly to operations. • You’ll start to grow real depth in a domain you care about — identity, endpoint, vulnerability, cloud security, or logging — and you’ll be a working partner to Associate engineers on day-to-day execution. • Project ownership: Take small-to-medium engineering projects end-to-end — scoping, design partnership with a Senior, build, test, deploy, document, and hand off to operations. Deliver them on time without surprises. • Control implementation and operation: Configure and operate security controls across identity, network, cloud, endpoint, logging/monitoring, encryption/key management, and vulnerability management. Execute against approved patterns and standards. • Develop deepening expertise in at least one control domain (e.g., endpoint, identity, vulnerability management, cloud security, IAM, monitoring). Become a real go-to on that domain for the team. • Run vulnerability and patch workflows — scan, prioritize, remediate, validate. Track remediation against SLA and close the loop. • Participate in change reviews, assess security impact for in-scope systems, implement approved changes, and validate post-change posture. • Produce clean operational documentation — runbooks, change records, evidence artifacts — that holds up under audit and peer review. • Partner with the SOC and Detection Engineering on logging coverage, telemetry quality, and the engineering pieces of response (access tooling, isolation capabilities, evidence capture). • Pair with Associate engineers on day-to-day execution. Review their tickets, walk them through the toolset, and grow them toward independence. • Contribute scripts and automation to reduce manual toil (validation checks, evidence collection, repeatable deployments) under the guidance of Senior+ engineers.
• Embody NVIDIA's AI first mentality with a demonstrated passion and experience in creating deliverables with any modern AI toolset (Claude, Codex, Cursor) • Build and lead the implementation of Identity Governance solutions that strengthen NVIDIA's enterprise security posture • Independently develop technical implementation builds, incorporating feedback from senior engineers and collaborators to deliver well-rounded solutions with an emphasis in agentic AI processes • Mentor and develop team members while driving our enterprise Zero Trust strategy through active collaboration • Build and advance our Identity Governance roadmap, balancing central initiatives with reliable day-to-day operations • Partner with product teams to define secure business requirements, ensuring every collaborator has the clarity needed to build effective solutions • Collaborate with project development teams to enable successful delivery by applying the right security tools, technologies, and techniques • Champion SDLC guidelines and continuously find opportunities to streamline and improve team processes
• Design, build, and operate the ingestion and transformation pipelines for security telemetry • Architect the storage layer for a data lake/lakehouse • Build the query and analytics layer for security metrics • Engineer encryption at rest and in transit, fine-grained RBAC/ABAC, audit logging • Ensure data quality and trust by building for stable identity and source attribution • Collaborate with security teams to define data contracts early
• Build, mentor, and grow a high-performing team of security engineers • Set technical direction and establish clear standards for engineering excellence and ownership • Partner in hiring, performance management, and career development • Define and execute the security roadmap for infrastructure, remote access/ZTNA, endpoint, and M&A • Design and implement security controls across cloud, production, and corporate infrastructure • Develop tools and systems to improve security posture and operational efficiency • Conduct security architecture and design reviews for systems and applications • Partner across infrastructure, IT, product, and security teams to reduce risk while enabling velocity



