Dev SecOps Engineer
Location
United States
Posted
2 days ago
Salary
0
Seniority
Mid Level
Job Description
Dev SecOps Engineer
Bechtel Corporation
Role Description We are looking for an experienced and talented DevSecOps engineer with a focus on MS SQL and Internet Information Server to join our team! As our DevSecOps engineer, you will be working with a team of highly skilled and experienced engineers across multiple teams including development, implementation and integration, and secure operations who are delivering and operating systems for Bechtel Nuclear, Security & Environmental global business unit. These systems support our global customers and projects as they have a positive impact on cleaning up the environment, maintaining national and global security, generating sustainable energy, and returning to space. Major Responsibilities - Build, install, and support various MS SQL Server, Oracle and Mongo DB environments meeting current technical and security standards - Support code deployments in all environments - Support systems tests for security, performance, and availability - Help monitor systems, provide support, and develop ways to improve these systems - Provide technical guidance and educate team members on operational and security requirements - Brainstorm for new ideas and ways to improve system delivery and security - Help with regular system patching including operating system, database, application framework, and other layers - Help with service account maintenance including password renewal/retrieval from the password vault and updating the impacted systems - Work with all teams to achieve business objectives Qualifications - Requires bachelor's degree (or international equivalent) and 2-5 years of relevant experience or 6-9 years of relevant work experience Required Knowledge and Skills - Cloud migration and operation experience. Focus on Microsoft Azure and Azure.gov as cloud provider. - Oracle RDMS including but not limited to import/export, migrations, backup restore, basic troubleshooting, user management and tablespaces - Working understanding of code and scripts - Working understanding of US Government data classifications and related security frameworks including but not limited to Controlled Unclassified Information (CUI), Official Use Only (OUO), and Risk Mitigation Framework (RMF) - Knowledge of application externalization technologies and methodologies including but not limited to SSL certificates, Single Sign On (SSO) interactions, and API gateway and externalizations - Knowledge of Windows server administration for Windows 2019 and higher - Knowledge of PowerShell scripting or other scripting languages to automate processes during deployment, operations, and maintenance - Knowledge of best practices and IT operations in an always-up, always-available service mentality. - Familiar with UNIX/Linux administration - Familiar with Oracle Fusion Middleware (including maintenance and patching) a plus - Familiar with VMWare virtual server environment and VCenter. - Passionate about technology, automation, security, and eager to learn and share. - Ability to work independently and as part of multiple teams. - Ability to multi-task, be self-motivated, work well independently and with multiple teams, experience working in high-pressure environments, and able to meet deadlines. - Ability to work occasionally after normal business hours. Benefits For decades, Bechtel has worked to inspire the next generation of employees and beyond! Because our teams face some of the world's toughest challenges, we offer robust benefits to ensure our people thrive. Whether it is advancing careers, delivering programs to enhance our culture, or providing time to recharge, Bechtel has the benefits to build a legacy of sustainable growth. Learn more at Bechtel Total Rewards
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Be the link between Information Security (IS) and the business. • Serve as the dedicated and ongoing Information Security point of contact for Product and Engineering squads. • Actively participate in team ceremonies, planning sessions and product reviews — not as an occasional guest, but as a relevant member of the conversation. • Translate security requirements into language and context that make sense for development teams, product managers (PMs) and product leaders. • Identify, assess, and communicate security risks clearly to non-technical stakeholders. • Build and track risk treatment plans with the areas, prioritizing based on real business impact. • Ensure Product and Engineering teams understand the risks they are assuming with each decision — and that those choices are made consciously. • Act as a facilitator between squads and the IAM team for access provisioning and reviews — removing friction while maintaining necessary controls. • Support teams in incorporating security practices throughout the development lifecycle (security by design, threat modeling, architecture reviews). • Act as a guide on compliance and Information Security policies, with a pragmatic view of the real needs of those building the products. • Foster a security culture that is perceived as an enabler, not an obstacle. • Promote continuous, contextualized security awareness for Product and Engineering teams. • Identify recurring risk patterns and propose systemic improvements, not just ad-hoc fixes.
Security & Compliance Engineer
Grant Street GroupGrant Street Group specializes in cloud-based government solutions for tax collection, e-payments, and auctions.
• Support the day-to-day security posture of systems and services across cloud and on-prem environments. • Review vulnerability findings from scanners, penetration tests, and other assessments, and help drive remediation to closure. • Partner with infrastructure, platform, and engineering teams on secure configuration, access control, logging, monitoring, and incident readiness. • Support compliance and assessment activities related to GovRAMP/FedRAMP, PCI DSS, internal reviews, and third-party examinations. • Use AWS security tooling effectively, support day-to-day security processes, and help translate security and compliance requirements into practical, durable operational outcomes. • Maintain documentation, procedures, and other operational artifacts so they stay aligned with the environment and current control expectations.
Security and Compliance Consultant
Planet TechnologiesFor 24 years, we have built our reputation on establishing trust. Trust with our clients and among our team.
• Serve as a primary technical lead on client engagements involving Microsoft security, compliance, and data protection solutions • Design and implement data security, governance, and compliance strategies aligned with Microsoft 365 and Azure capabilities • Advise clients on secure adoption of Microsoft Copilot, including data exposure risks, governance controls, and compliance considerations • Architect and deploy solutions leveraging tools such as: Microsoft Purview, Microsoft Defender suite and Microsoft Sentinel • Translate regulatory and compliance requirements into actionable technical solutions (e.g., ISO frameworks, government regulations, internal controls) • Conduct data discovery, classification, and protection strategy design • Collaborate with project managers and stakeholders to deliver high-quality outcomes • Contribute to pre-sales efforts, including solution design, scoping, and level-of-effort estimates • Create technical documentation, implementation guides, and client training materials • Act as a subject matter expert (SME) and mentor to other engineers • Develop and refine repeatable offerings around data security, compliance, and Copilot readiness • Stay current on evolving Microsoft security, compliance, and AI governance capabilities
• Define, analyze, and review secure software architectures for centralized automotive computing platforms • Perform threat modeling and security architecture analysis for mixed-criticality, multi-tenant automotive software systems • Partner with safety architects to reason about the interaction between security controls, safety mechanisms, failure modes, and recovery behavior • Define OS security policy, access control, isolation, and privilege models across Android, Linux, QNX, and virtualized environments • Build security systems that maintain integrity and availability for safety-critical vehicle software • Analyze security trade-offs involving performance, latency, memory footprint, boot time, diagnosability, and functional safety requirements • Guide engineering teams on secure build, secure coding, threat mitigation, and security review practices • Collaborate across software, hardware, safety, security, and systems teams to meet NVIDIA and automotive industry standards



